惯性聚合 高效追踪和阅读你感兴趣的博客、新闻、科技资讯
阅读原文 在惯性聚合中打开

推荐订阅源

D
DataBreaches.Net
IT之家
IT之家
博客园_首页
博客园 - 【当耐特】
V
V2EX
Apple Machine Learning Research
Apple Machine Learning Research
G
Google Developers Blog
让小产品的独立变现更简单 - ezindie.com
让小产品的独立变现更简单 - ezindie.com
Recent Announcements
Recent Announcements
F
Fortinet All Blogs
GbyAI
GbyAI
腾讯CDC
H
Hackread – Cybersecurity News, Data Breaches, AI and More
OSCHINA 社区最新新闻
OSCHINA 社区最新新闻
I
InfoQ
H
Help Net Security
T
Tailwind CSS Blog
B
Blog RSS Feed
Martin Fowler
Martin Fowler
人人都是产品经理
人人都是产品经理
The Cloudflare Blog
博客园 - 叶小钗
雷峰网
雷峰网
量子位

Help Net Security

Police arrest 10 suspected members of Black Axe cybercrime gang ShinyHunters claims it stole 1.4 million records from Udemy Sevii unveils Cyber Swarm Defense Mode to stop AI-driven attacks at scale Alleged Chinese hacker extradited to US over cyberattacks targeting COVID-19 research Cequence Agent Personas bring granular control and governance to enterprise AI agents NowSecure MARI gives enterprises evidence-based visibility into third-party mobile app risk The metrics killing your SOC, and what to use instead US state privacy fines reached $3.425 billion in 2025 Canada’s first SMS blaster case leads to three arrests Linux storage management tool Stratis 3.9.0 adds online encryption and cache-less pool startup TLS Connect gives SMBs a right-sized automated tool to manage TLS certificates Aptori expands its platform with autonomous offensive testing to reduce security bottlenecks Your IAM was built for humans, AI agents don’t care The AI criminal mastermind is already hiring on gig platforms 25 open-source cybersecurity tools that don’t care about your budget Product showcase: LuLu reveals unauthorized outbound connections from Mac apps Week in review: Claude Mythos finds 271 Firefox flaws, Vercel breach Users advised to drop passwords and make room for passkeys - Help Net Security Indirect prompt injection is taking hold in the wild - Help Net Security Compromised everyday devices power Chinese cyber espionage operations - Help Net Security New Cisco firewall malware can only be killed by pulling the plug - Help Net Security Meta is overhauling how you sign in, manage settings, and protect your accounts - Help Net Security Ubuntu 26.04 LTS delivers memory-safe system tools and live patching for Arm servers - Help Net Security OpenAI’s GPT-5.5 is out with expanded cybersecurity safeguards - Help Net Security AI is speeding up nation-state cyber programs - Help Net Security A study of 1,000 Android apps finds a privacy policy logging gap - Help Net Security IT spending to hit $6.31 trillion record, thanks to AI - Help Net Security Where AI in CI/CD is working for engineering teams - Help Net Security With AI's help, North Korean hackers stumbled into a near-undetectable attack - Help Net Security Hacker with a special interest in breaching sports institutions ends behind bars - Help Net Security
Android pushes new scam, theft, and AI protections in 202...
Sinisa Marko · 2026-05-13 · via Help Net Security

Phone scammers spoofing bank caller IDs have driven an estimated $980 million in annual losses worldwide, according to Europol. Android’s 2026 security roadmap takes direct aim at that pattern with a verified call system built in partnership with banks, alongside a wider set of protections covering app behavior, device theft, location data, and on-device AI processing.

Verified financial calls

A new feature called verified financial calls will check incoming calls against the official app of a participating bank or financial institution. When a call arrives that appears to come from the bank, Android queries the installed app to confirm whether a call is actually being placed. If the app reports no active call, the system ends the connection. Banks can also designate certain numbers as inbound-only, which means any outgoing call from those numbers gets terminated automatically.

“We’ll begin rolling this out on Android 11+ devices with Revolut, Itaú, and Nubank in the coming weeks, before expanding it to more banks later this year,” Eugene Liderman Director, Android Security & Privacy Team, explained.

Live Threat Detection and Chrome download checks

Live Threat Detection, Android’s on-device AI system for flagging suspicious app behavior, gains new warnings for SMS forwarding and accessibility overlay abuse. A capability called dynamic signal monitoring will watch application-system interactions in real time and push down updated detection rules to address new threats. It arrives on Android 17 devices, with protections shipping in the second half of 2026.

Android security 2026

Live threat detection can notify you that an unsafe app was found (Source: Google)

Chrome on Android adds another download-time check. With Safe Browsing enabled, the browser will evaluate APK files for known malware and block downloads of harmful packages.

Advanced Protection, the one-toggle hardening mode introduced last year, picks up several additions. Android 17 removes accessibility service access from any app that is not labeled an accessibility tool, disables device-to-device unlocking and Chrome WebGPU support, and integrates scam detection for chat notifications.

USB protection is available on Pixel devices running Android 16 and later, and Intrusion Logging is rolling out to all devices on the Android 16 December update and newer. Android Enterprise support for Advanced Protection arrives later in the year.

Theft protection expanded

Find Hub’s Mark as lost feature in Android 17 will require biometric authentication to unlock a phone after it has been flagged, blocking thieves who may have observed the PIN. Marking a device as lost also hides Quick Settings and disables new Wi-Fi and Bluetooth pairings.

Following a Brazil pilot, default-on theft protections will be enabled on all new Android 17 devices and on phones reset or upgraded to the latest OS. In Argentina, Chile, Colombia, Mexico, and the UK, the protections extend to any device running Android 10 or higher, activating Remote Lock and Theft Detection Lock automatically.

Android 17 also reduces the number of allowed PIN guesses on supported devices and lengthens wait times between failed attempts. The IMEI can be accessed from the lock screen on Android 12 and later to help law enforcement and carriers verify ownership.

Location, contacts, and AI processing

Android 17 adds a one-time location button for sharing precise location during a specific task in an open app, along with a top-of-screen indicator showing recent location access. A redesigned contact picker lets developers request access to individual contacts and specific fields, with permissions kept temporary.

Android 17 introduces AISeal with pKVM for AI workloads, a hardware-backed isolation layer that pairs with Private Compute Core and Private AI Compute to process ambient data in a verified environment.

Other changes include automatic three-hour hiding of one-time passwords from most apps to block OTP theft, a carrier-configurable default-off setting for 2G connectivity, and the rollout of post-quantum cryptography across Android’s data protection stack. Android OS verification, launching on Pixel devices with Android 17, will allow users to confirm their phone is running an official build, backed by a public append-only ledger for Google-signed apps and GMS APIs.