En.Softonic Android 17 Enhances Security with Forensic Logging Against Spyware
Article Content
- •Android 17 introduces Intrusion Logging to enhance forensic capabilities.
- •Logs are encrypted and stored for 12 months, aiding in attack investigations.
- •USB Protection feature prevents unauthorized data access while devices are locked.
Google has introduced six new features in Android 17's Advanced Protection mode, aimed at enhancing security for high-risk users like journalists and activists. A key feature, Intrusion Logging, records security events and network activity, including app behavior and Chrome's Incognito mode, storing this data end-to-end encrypted on Google’s servers for 12 months. Users must opt-in to enable this feature, which cannot be manually deleted. This logging system is the first of its kind for consumer mobile platforms, developed with input from civil liberties organizations. Additionally, USB Protection blocks new data connections while the phone is locked, and access to the Accessibility API has been tightened to prevent abuse. These updates are for users facing targeted attacks, making it harder for spyware to erase traces of its activity.
Ask AI about this cluster
Answers cite the sources they use
Timeline
More articles in this cluster (4)
Common questions
How do I enable Intrusion Logging?
What devices support these new features?
Can I delete the logs manually?
Continue Reading
Citrix NetScaler Critical Vulnerabilities Exploited: Urgent Patching Required Citrix NetScaler ADC and Gateway products are affected by critical vulnerabilities CVE-2026-88771 and CVE-2026-88772, both assigned a CVSS score of 9.5. The Cybersecurity and Infrastructure Security Agency (CISA) added these CVEs to its Known Exploited Vulnerabilities catalog on September 27, 2026, and mandated…
Critical Citrix NetScaler Zero-Day Vulnerabilities Exploited Citrix disclosed two critical zero-day vulnerabilities, CVE-2026-88771 and CVE-2026-88772, affecting NetScaler ADC and Gateway systems, which are being actively exploited. Both vulnerabilities have a CVSS score of 9.5 and allow unauthenticated attackers to execute arbitrary commands remotely. CVE-2026-88771 arises…