This article is from the source 'guardian' and was first published or seen on . It last changed over 40 days ago and won't be checked again for changes.

You can find the current article at its original source at http://www.theguardian.com/technology/2015/nov/24/google-can-unlock-android-devices-remotely-if-phone-unencrypted

The article has changed 4 times. There is an RSS feed of changes available.

Version 0 Version 1
Google can unlock unencrypted Android devices remotely Google can unlock some Android devices remotely, distict attorney reveals
(35 minutes later)
Google and Apple will unlock smartphones and tablets when ordered to do so by a court, if the devices are not encrypted, a report from the Manhattan district attorney’s office has revealed. Google and Apple can and will unlock smartphones and tablets when ordered to do so by a court, if the devices are not encrypted, a report from the Manhattan district attorney’s office has said.
The report, which details methods for extracting information from smartphones and other Android or iOS devices for law enforcement purposes when the owner does not give permission, explains that Apple can reset a locked phone with physical access to the device and Google can do similar remotely.The report, which details methods for extracting information from smartphones and other Android or iOS devices for law enforcement purposes when the owner does not give permission, explains that Apple can reset a locked phone with physical access to the device and Google can do similar remotely.
For either company to unlock the device without the owner’s permission the smartphone or tablet must not be encrypted. Apple has enabled encryption by default in September 2014 with iOS 8 should a user set a passcode, which meant that the company could no longer unlock a device and access the data on it without knowing the user’s passcode.For either company to unlock the device without the owner’s permission the smartphone or tablet must not be encrypted. Apple has enabled encryption by default in September 2014 with iOS 8 should a user set a passcode, which meant that the company could no longer unlock a device and access the data on it without knowing the user’s passcode.
According to data from Apple, 67% of Apple iPhone, iPad and iPod touch users are running iOS 9, 24% are using iOS 8 leaving 9% of users on iOS 7 or earlier.According to data from Apple, 67% of Apple iPhone, iPad and iPod touch users are running iOS 9, 24% are using iOS 8 leaving 9% of users on iOS 7 or earlier.
Android more at riskAndroid more at risk
The situation is different for Android. Google’s version of Android, which runs on most Android smartphones and tablets in the western world, only implemented encryption by default with the latest version Android 6.0 Marshmallow released in October 2015.The situation is different for Android. Google’s version of Android, which runs on most Android smartphones and tablets in the western world, only implemented encryption by default with the latest version Android 6.0 Marshmallow released in October 2015.
“Apple’s and Google’s decisions to enable full-disk encryption by default on smartphones means that law enforcement officials can no longer access evidence of crimes stored on smartphones, even though the officials have a search warrant issued by a neutral judge,” said the Manhattan district attorney’s office.“Apple’s and Google’s decisions to enable full-disk encryption by default on smartphones means that law enforcement officials can no longer access evidence of crimes stored on smartphones, even though the officials have a search warrant issued by a neutral judge,” said the Manhattan district attorney’s office.
Android’s full-disk encryption, which secures the phone’s entire storage and will not allow the device to start without a passcode, was implemented with Android 5.0 Lollipop but not enabled by default. Some other implementations of device encryption, such as Samsung’s Knox system, were available with earlier versions of Android.Android’s full-disk encryption, which secures the phone’s entire storage and will not allow the device to start without a passcode, was implemented with Android 5.0 Lollipop but not enabled by default. Some other implementations of device encryption, such as Samsung’s Knox system, were available with earlier versions of Android.
Apart from Google’s Nexus 6, full-disk encryption was only optional until Marshmallow came along. Before then, users would have had to choose to enable encryption.Apart from Google’s Nexus 6, full-disk encryption was only optional until Marshmallow came along. Before then, users would have had to choose to enable encryption.
According to data from Google, Marshmallow is used by 0.3% of Google Android devices worldwide. Lollipop versions 5.0 and 5.1 account for 25.6%, while Android 4.4 KitKat accounts for the largest share of Android users with 37.8%.According to data from Google, Marshmallow is used by 0.3% of Google Android devices worldwide. Lollipop versions 5.0 and 5.1 account for 25.6%, while Android 4.4 KitKat accounts for the largest share of Android users with 37.8%.
The situation also extends to cloud backup services which these companies offer . Should the phone and backed-up data be encrypted, Google and Apple will be unable to access the data without the user’s password, according to the report.The situation also extends to cloud backup services which these companies offer . Should the phone and backed-up data be encrypted, Google and Apple will be unable to access the data without the user’s password, according to the report.
Forcing tech companies to turn over user dataForcing tech companies to turn over user data
The Manhattan district attorney’s office argues that Apple and Google, the designers and distributors of the systems which run iPhones and Android devices, should be capable of recovering data from devices if issued with a court order. The attorney’s office says on security of personal data would be negligible.The Manhattan district attorney’s office argues that Apple and Google, the designers and distributors of the systems which run iPhones and Android devices, should be capable of recovering data from devices if issued with a court order. The attorney’s office says on security of personal data would be negligible.
“Apple and Google have never explained why the prior systems lacked security or were vulnerable to hackers and, thus, needed to be changed. It is therefore unclear why it would be unsafe for Apple and Google to retain the ability to access data on devices pursuant to search warrants,” the Manhattan district attorney’s office said.“Apple and Google have never explained why the prior systems lacked security or were vulnerable to hackers and, thus, needed to be changed. It is therefore unclear why it would be unsafe for Apple and Google to retain the ability to access data on devices pursuant to search warrants,” the Manhattan district attorney’s office said.
New York County district attorney Cyrus Vance, Jr, is currently attempting to force both Apple and Google to change the way the devices are encrypted. The report includes letters addressed to both technology companies, as well as a bill to force the changes through.New York County district attorney Cyrus Vance, Jr, is currently attempting to force both Apple and Google to change the way the devices are encrypted. The report includes letters addressed to both technology companies, as well as a bill to force the changes through.
“New York can and should lead the nation in protecting its citizens, and in responding to the misguided and dangerous attempts by digital device manufacturers to turn digital devices into virtual safes that, being beyond the reach of law enforcement, are havens for criminals,” said the report.“New York can and should lead the nation in protecting its citizens, and in responding to the misguided and dangerous attempts by digital device manufacturers to turn digital devices into virtual safes that, being beyond the reach of law enforcement, are havens for criminals,” said the report.
The message is clear. Apple’s iPhone users are safe from government snooping of their smartphone data if they are using a strong passcode and iOS 8 or above.The message is clear. Apple’s iPhone users are safe from government snooping of their smartphone data if they are using a strong passcode and iOS 8 or above.
Android users on Lollipop or older must actively enable full device encryption within their device security settings if they wish to prevent Google being able to remotely access their devices when asked to by a court.Android users on Lollipop or older must actively enable full device encryption within their device security settings if they wish to prevent Google being able to remotely access their devices when asked to by a court.