Automatic Uncovering of Privilege-Escalation Vulnerabilities in Pre-Installed Apps in Android Firmware

Pre-installed apps on Android devices often come with privileged access, making them potential security risks. This study introduces FIRMSCOPE, an automated tool that scans Android firmware to detect privilege-escalation vulnerabilities. Analyzing over 330,000 apps across 2,000 firmware images, the research uncovers critical security flaws that allow unauthorized access to sensitive user data, device controls, and system functions.

Our award-winning mobile app security technology

NVTC Cyber Awards 2024 - Chris Gogoel from Quokka
NVTC Cyber Awards 2024 Honoree Quokka
NVTC Cyber 50 Awards Honoree logo
Global Infosec Awards logo
The Channel Co. CRN Mobile 100 2022 badge

Mobile security that makes you smile.

Sign up for our newsletter, The Quokka Intel Briefing

Quokka icon

Copyright © 2026, Quokka. All rights reserved.