Is OnePlus trustworthy? Two login attempts on my Google account in less than 3 days. - Security Discussion

Hello everyone. First post here.
I bought a OnePlus 7t back in February. Since then I've had several issues with dropped calls, getting messages super late, and connection issues overall. The past week it's gotten weirder, I'm getting log in attempts on my Google account from the other side of the world.
One attempt was from Taiwan and the other was from Vietnam. I've had a Google Account since the beta days and have never had this happen to me in the past and for it to happen twice in a week in strange. Countless phone over the years and this has all been happening since I got the OP.
Any suggestions?
Thanks for reading.

FloridaMan2020 said:
Hello everyone. First post here.
I bought a OnePlus 7t back in February. Since then I've had several issues with dropped calls, getting messages super late, and connection issues overall. The past week it's gotten weirder, I'm getting log in attempts on my Google account from the other side of the world.
One attempt was from Taiwan and the other was from Vietnam. I've had a Google Account since the beta days and have never had this happen to me in the past and for it to happen twice in a week in strange. Countless phone over the years and this has all been happening since I got the OP.
Any suggestions?
Thanks for reading.
Click to expand...
Click to collapse
I'd guess the two things are unrelated, did you change network provider & get your number ported, are you using RCS? RCS sends msg via Google servers (or does OnePlus route it via their serves in China? They do seem to collect excessive info form their phones & send to China servers)
The random login attempts could be someone you know trying to get into your account (just need a VPN to appear to be from those countries) or could be an indication another account/website/app (Chinese stock apps have form) has leaked your email address & password and people are attempting "credential stuffing" ie using that email & password on other sites, gmail would be prime target. Run the email address through "have I been pwnd", even if negative makee sure you use a different password on every account you attach any importance to as leak may be unknown at present & different passwords protect you against this attack (use a password app) and turn on 2FA for any important accounts.

Related

[Q] email client lies

Hi
My Htc Pro 7 (one week old) seems to pretend that it is syncing. It only takes 2 to 3 seconds over Wifi but it doesn't bother downloading new messages.
My (only) email account on the phone is a Blueyonder account (powered by Google). The initial set up went off and collected the account info.
I have turned off SSL and deleted the port numbers from the SMTP and POP settings.
Reentering the username and password convinced it to download the rest of yesterdays emails but not the test one I just sent myself or the others that are on the server.
Outllok 2007 is set to leave copies on the server for 10 days and over the years WM and Symbian handsets have not experienced this problem.
Any suggestions?
Tnx
Since re-entering the username password- the phone is set to look every 15 minutes and ever hour or so it seems to go off- ask if there are any new messages and then download the odd one without bothering to do download the rest...
Am I really the only person who has a mailbox that is at least a day behind???
I guess I am going to have to reset the phone, and lose all my texts etc.
Nice one MuppetSoft!!! By removing our rights to tweak things you have also prevented us from fixing things ourself. Please stop trying to be Apple.
Sometimes the same thing would happen when I hard reset my phone and set up my Hotmail account for the first time. E-mails don't download even though I can clearly see them on my PC. After a couple hours though, it fixes itself and my e-mails appear regularly, and at times, I get alerts to my phone even faster than I would on my computer.
Maybe give it a jump start by using your phone to compose, send, deleted, etc. Otherwise if it still isn't working, then it may be bugged and a hard reset may be in your future.
Thanks for the reply prjkthack
I can send emails without any problems. I have only had the phone just over a week and I am pretty sure that on day one it was working properly. I only noticed the issue a couple of days after the Nodo update- not sure if there is a relation or not.
I guess I will have to wait until i have a day off work before i can prepare for a hard reset. Being undiciplined i tend to leave client contact details in the form of text messages, rather than saving them to contacts.
odder and odder....
it has finally managed to catch up and is now up to date.
I have not made any changes/restores.
Lets hope it stays that way.
Now all I need is my Dev account to be approved so that I can play with mango.
Just bumping my own thread.
The problem returned.
UNTIL I remembered that my Virgin (blueyonder) email account (powered by Google) needs to be in the following format recent:[email protected]
I am such a wanker and should have remembered sooner!!!!
I guess it is a timeout issue, ordinarily the email client asks the server if there are any messages- the server responds "sure about 10000", the email client says "sod that, I'm not cross referencing your list with the ones i am already aware of -I'm off".
With the addition of recent: it only asks for the emails received in the last week or two.
Hopefully the above will be of help to someone else in the near future

HTC Sense : my experience with HTC Support (or lack of)

Hi,
It all started about about 6 month ago, when i received my HTC Desire z (my 5th HTC branded phone).
I signed up on the all new HTCSense.com service. And it worked. At least for some time.
About 3 month later, i noticed i could not log in my HTCSense account anymore. Either from my phone or my laptop.
Here are the symptoms (on my laptop) :
On the login screen, i enter my email and password.
Then i click on Login
The Login button greys out and i have circle on the left to signify the site is "working".
I can wait up to 10 minutes, and the page doesnt change.
Sometimes after 20 or 25 minutes the website displays this error : "HTCSense.com is currently down for maintenance. We'll be back soon!"
I tried, and got the same result on Chrome, Firefox, IE9, and on 2 different computers
If i tried the "forgot your password", i got the same symptoms.
Out of curiosity, i tried to sign up a new account, with a new email, and guess what? it worked perfectly.
So i tried to type the wrong password on the sign up page, but logically, it warned my the password was wrong directly, so with this new account, i could not recreate the symptoms from the 1st account with this new account.
Therefore, i concluded it was a problem with my account and not password related.
So, 1 month later, i contacted HTC support Hotline, and they told me to wait a few days because their server were under maintenance and it would be back 2 days later.
So i waited .... 5 days... and it still didnt work. So i called again, and they kept telling me the same thing : "the server is under maintenance"
So i decided to use HTC Support online, and i explained my problem again and again by email.
But i always got the same answer : the server is under maintenance !!!
This was 2 months ago, and the server is still " under maintenance" ... But only for me.
So i decided to give up, and asked them to delete my HTC Sense account since i couldnt even login anymore.
Here is their answer to my request :
"Thank you for contacting us, Please try the following : In Sense.com website, after login in, go to Account > red link “Click here to delete your HTC Sense account” > input password"
There i think i could have grabbed a gun and kill myself, which obviously, i didnt
After i wrote them back, and made them understand i couldnt use this method to delete my account, they asked me to give them my login informations and PASSWORD.
Any sane web developper will know that if you need to ask the password of a customer to delete their account, there is something really wrong in their design. But well, i complied, and i sent them my password.
Now, here is their new answer : "our server is currently under maintenance so we cannot delete your account at this moment. We will do it as soon as the servers are back online".
Now i think will find some rope and hung myself
What else can i do?
you gave them your password? big no no.
call them up and don't get off the phone until it's resolved. go to a manager if you have to. it's pretty obvious that their scripted answer is of no use to you.. if they say "the server is under maintenance" again, tell them that's the answer you've received for weeks and that you will not get off the phone until it's fixed.
perhaps......
It all depends at what time you call. I have called in the afternoons/evenings and the support sucks. I have called in the morning time and I have gotten exceptional support from them. Better luck in the future, have an awesome day.
I'm new to HTC and tried to register for HTC Sense and never got the verification email. I logged a support request and have been asked for my username, password, secret question (and answer), phone make and model, phone number, IMEI and serial number!
Why they need all or even any of that information in order to delete or reset my account I have no idea but I responded by telling them politely to 'go whistle' and I am awaiting their next inspired suggestion.
I have worked in IT for over 20 years and you just don't go asking for this stuff if you are a legitimate support service. I'm distinctly unimpressed so far and looks like HTC Sense is one service I will be managing without.
Andy
htc = pia
I love my EVO 4g, but tolerate HTC. After about a year of owning it, I finally tried to set up an HTC.com account. I had been running AOSP ROMs for most of the time, and just decided to try Sense again. I got the same sort of "servers are down" messages. I tried alternate email account and user name...same results. Its not a big thing to me, I can get most any widget or wallpaper or whatever from a dozen other places. Sense is pretty, but it is a resource hog. I don't want the widgets, I want memory and storage space back.
Is this Application like Ipone have ones?
even if you get it working mate it ll just stop working after a while. ive had to remove and add the account to the phone a few times to make it sync again. as it stands just now I get no gps details or phonecall details the phone wont lock but I can see my messages at least.
Lol, almost a year later and the servers are still under maintenance....

Samsung account unable to log in when in China?

I have a problem with my Note 9. Whenever I'm in China (I work here a lot), my Samsung Account logs out and cannot log in again. The notification keeps popping up (with sound) even after I clear it. It wants to remain logged in at all times or complains. I don't use anything by Samsung so have no need for it but the damned thing cannot be switched off** The problem disappears as soon as I arrive back in Europe.
It's almost as if the GFW of China is not allowing connection to Samsung servers or maybe Samsung rejects requests from China? But then, I get the same thing through a VPN and a SOCKS proxy, so I'm very confused by this. Could it be a time zone bug?
**I've followed every guide out there, Samsung services cannot be fully switched off or removed on a Note 9. Prove me wrong! please.
UPDATE, can't believe my luck. I've fixed it!
I logged into Samsung's website and was met with a prompt to Accept the latest Terms and Conditions. After I did this, the phone can log in and no longer complains. Way-to-go Samsung, you bunch of fools. There was no way to log in via my phone because of your stupid implementation of web services.
nadimaj said:
UPDATE, can't believe my luck. I've fixed it!
I logged into Samsung's website and was met with a prompt to Accept the latest Terms and Conditions. After I did this, the phone can log in and no longer complains. Way-to-go Samsung, you bunch of fools. There was no way to log in via my phone because of your stupid implementation of web services.
Click to expand...
Click to collapse
... stupid implementation of web services....

Can fishy email images effect android devices?

Hi Guys,
I got a strange email in my emails, when looking at the email from / to it looked spoofed and I was about to click back but I accidentally clicked 'Download images', the ones that are usually blocked when opening an email, not actual attachments. Can JPEGs etc... contain anything malicious?
I factory reset my phone after that happened but that didn't stop my getting 3 calls from Africa this morning, 2 within one minute.
phoneNoob2020 said:
Hi Guys,
I got a strange email in my emails, when looking at the email from / to it looked spoofed and I was about to click back but I accidentally clicked 'Download images', the ones that are usually blocked when opening an email, not actual attachments. Can JPEGs etc... contain anything malicious?
I factory reset my phone after that happened but that didn't stop my getting 3 calls from Africa this morning, 2 within one minute.
Click to expand...
Click to collapse
They can, eg Stagefright or later in 2016 this
https://www.forbes.com/sites/thomasbrewster/2016/09/06/google-android-one-photo-hack/
or just last year
https://www.komando.com/security-pr...e-over-an-android-phone-with-an-image/543634/
which you phone may be vulnerable to if not still getting regular updates
and just this month patch also has media framework bug allowing possible escalation of privileges
https://9to5google.com/2020/06/01/pixel-june-20-security-patch/
however it could just be a coincidence you got a storm call, they just use computers to call from a number list or random numbers.
A factory reset may not get rid of malware that has been able to install itself in the system partition. You need to reflash the full factory image again. Or if your phone not getting updates any more from manufacturer you should ALSO flash a trusted custom rom ie Lineage OS from official source (hopefully there is one for your EXACT model) after you have clean flashed the most recent manufacturer ROM.
I use Android 10 with security patch from April.
Would I be right in assuming that the phone needs to be rooted for anything to be installed on the system partition? I don't have mine rooted.
Last time I reflashed a device, even with official firmware it stopped me getting updates.
It is quite annoying since pretty much everybody keeps saying it is safe to open a spam email as long as a link is not clicked or attachment downloaded but that appears to be rubbish since the images rendering within an email seem to be enough for a phone to be hijacked.
phoneNoob2020 said:
I use Android 10 with security patch from April.
Would I be right in assuming that the phone needs to be rooted for anything to be installed on the system partition? I don't have mine rooted.
Last time I reflashed a device, even with official firmware it stopped me getting updates.
It is quite annoying since pretty much everybody keeps saying it is safe to open a spam email as long as a link is not clicked or attachment downloaded but that appears to be rubbish since the images rendering within an email seem to be enough for a phone to be hijacked.
Click to expand...
Click to collapse
You should be pretty much covered for known security issues as you are on April security patch. Though there are of course likely be other unpublished vulnerabilities. You can try submit suspect images to virustotal.com see if it's already known.
Unfortunately malware can install into system partition even if you have not rooted your phone in some cases eg if vulnerability is in already privileged process. (note: I'm not security expert)
Given you are pretty much up to date with known patches I think the phone calls likely just a coincidence, unless you have more indications of hacked phone or other accounts etc.
Edit: PS even if those images were malicious you may be OK as you have recent security patch so they might not have been able to compromise your phone.
IronRoo said:
You should be pretty much covered for known security issues as you are on April security patch. Though there are of course likely be other unpublished vulnerabilities. You can try submit suspect images to virustotal.com see if it's already known.
Unfortunately malware can install into system partition even if you have not rooted your phone in some cases eg if vulnerability is in already privileged process. (note: I'm not security expert)
Given you are pretty much up to date with known patches I think the phone calls likely just a coincidence, unless you have more indications of hacked phone or other accounts etc.
Edit: PS even if those images were malicious you may be OK as you have recent security patch so they might not have been able to compromise your phone.
Click to expand...
Click to collapse
Strange thing is Tuesday night before this, I got a reset password email for Netflix... i didn't think too much of it and don't know why they would do that.
That is before Thursday when I accidentally opened a spam mail then later on Thursday got a few calls from an African Number.
Then today I got 3 password reset emails from my other email account, of course the reset requests went to my email.
Microsoft really suck too because I cannot get on my email account from a browser since when I put my phone number in it says, try again later. I am already logged in through the app though.
phoneNoob2020 said:
Strange thing is Tuesday night before this, I got a reset password email for Netflix... i didn't think too much of it and don't know why they would do that.
That is before Thursday when I accidentally opened a spam mail then later on Thursday got a few calls from an African Number.
Then today I got 3 password reset emails from my other email account, of course the reset requests went to my email.
Microsoft really suck too because I cannot get on my email account from a browser since when I put my phone number in it says, try again later. I am already logged in through the app though.
Click to expand...
Click to collapse
so many reset password requests suggests something is going on, possibly your phone but maybe more likely just one of your online accounts passwords leaked, there were a couple of big ones recently, check haveibeenpwnd or is it just that you reset your phone?
Yeah, I always need to change my browser to old IE to log in to MS cause of my settings/addons
IronRoo said:
so many reset password requests suggests something is going on, possibly your phone but maybe more likely just one of your online accounts passwords leaked, there were a couple of big ones recently, check haveibeenpwnd or is it just that you reset your phone?
Yeah, I always need to change my browser to old IE to log in to MS cause of my settings/addons
Click to expand...
Click to collapse
Well I got myself an Iphone SE for now, heard that they are sandboxed as long as they are not jailbroken.. however I removed the native mail app since that has a vulnerability now which is quite famous.
I know it iPhone is a bit of a swear word around here, but it is the best option until re-installing the OS on Xioami mi 8 pro.
Hopefully there is a way to set mi 8 into recovery without using third party tools, XZ1 had a feature to re-install android but that was pretty rare. It is a shame the storage space is so awful on it or I wouldn't have wanted to change phone

Contacts constantly got deleted and banned itself

HI Community,
after a really long hiatus i am back to ask you guys something. My account or phone is acting really weird, from time to time it is deleting contacts from my synced google contacts list. Up to that the same number is often getting blocked at the same time on other apps like whatsapp, snapchat and instagram at the same time. It is a really weird thing and had sometimes happened several times for one contact out of my list. If it would be only facebook apps i could somehow understand it but in some kind of way the contact is getting blocked through a full list of apps.
In time it has occured for at least 5-10 different contacts on my smartphone, it does often get unnoticed but sometimes i´m looking through my blocked list (which is normally empty) and i do see that contacts are getting blocked again. As Example i was writing yesterday with someone and this morning i wanted to check the chat and it went to neverland. One close look into my list it showed me that the number got blocked again and at the same time on instagram too.
Up to that i do had the problem last year already and switched to a new smartphone so it might go away. But nevermind the problem is still there. I´m really afraid that someone has access to my phone because i couldn´t understand how the contacts are getting deleted themselves. RN i´m running a xiaomi mi9, no custom rom or anything, before that i was running a Oneplus 5. It is a weird problem and i would be glad if you could get me some advices.
BR,
Maurice
0
Seppppx said:
Most likely someone hacked your google account and wants to drive you crazy instead of just deleting all stuff at once. Change your password on your google account and every account that uses the same password. Use a password manager like Bitwarden or KeepassDX. Both are open source. Use a strong password to access those.
If the problem persist completely reflash your ROM with miflash.
Click to expand...
Click to collapse
Hi Sepm thanks for the fast reply. I´ve changed my password on 8th of july the last time and even activated the 2nd device control so i can only log me in if i do accept it on my phone.
Quick push

Categories

Resources