Angela ~ OnePlus device backdoor 11-15-2017, 10:09 AM
#1
A number of OnePlus devices have a little backdoor sitting on them via a factory installed app "EngineerMode" this lovely little tool provides full root access to the device and let's a local attacker have complete control over your device, at the moment there is no remote exploit but in retrospect it's only a matter of time before somebody begins abusing this in my opinion.
OnePlus "Coincidently" left the system signed apk and a SHA256 hashed password on the devices, say hello to angela (password, Mr Robot reference ?)
Entering this command, enables engineering mode opens the backdoor which remains after reboot.
Which devices are affected by this ?
OnePlus 3 (OxygenOS 4.5.1, build number ONEPLUS A3003_16_171012)
OnePlus 5 (OxygenOS 4.5.14, build number ONEPLUSA5000_23_171031)
At the time of writing this these are the only two so far but there maybe more, check your device by looking for any app with the name EngineerMode or similar (Will be under "Show System Apps")
The hash: 79a6a933dfc9b1975e444d4e8481c64c771d8ab40b7ac72f8bc1a1bca1718bef
How was the password found ?
They copied and pasted the hash into Google #OnePlusPwned!
Saying that it also existed inside the EngineerMode.apk, absolute fail in my opinion.
http://www.androidpolice.com/2017/11/14/...ot-access/
Potential remedy for this mighty fuck, install a custom rom on your device such as LineageOS or build your own!
OnePlus "Coincidently" left the system signed apk and a SHA256 hashed password on the devices, say hello to angela (password, Mr Robot reference ?)
Entering this command, enables engineering mode opens the backdoor which remains after reboot.
Code:
adb shell am start -n com.android.engineeringmode/.qualcomm.DiagEnabled --es "code" "angela"Which devices are affected by this ?
OnePlus 3 (OxygenOS 4.5.1, build number ONEPLUS A3003_16_171012)
OnePlus 5 (OxygenOS 4.5.14, build number ONEPLUSA5000_23_171031)
At the time of writing this these are the only two so far but there maybe more, check your device by looking for any app with the name EngineerMode or similar (Will be under "Show System Apps")
The hash: 79a6a933dfc9b1975e444d4e8481c64c771d8ab40b7ac72f8bc1a1bca1718bef
How was the password found ?
They copied and pasted the hash into Google #OnePlusPwned!
Saying that it also existed inside the EngineerMode.apk, absolute fail in my opinion.
http://www.androidpolice.com/2017/11/14/...ot-access/
Potential remedy for this mighty fuck, install a custom rom on your device such as LineageOS or build your own!
![[Image: YmmIqHV.gif]](https://i.imgur.com/YmmIqHV.gif)
Donations: 1CCR21K2fnu2yAinUTFPsVdY7u4FkjNPs5


![[+]](https://sinister.ly/images/modern/collapse_collapsed.png)