Google Wallet hacked again; new exploit doesn't need root access [video]
bgr.com
bgr.com
This looks like a typical authentication-done-wrong problem on Google's side here... Not sure if it really qualifies for the name "hack" though.
There's a reason why password change dialogs in OSes ask for your previous password before letting you change it. Just relying on a single layer is foolhardy. For things as critical as money, you need multiple hurdles.
If you're trying to protect an application from a device that's been stolen, assume that the attacker has unlocked, physical access. The only platform that has a claim to a safe lock-screen is Blackberry because they: - Require the password before allowing any USB access - Will wipe the device after 5 failed password entries by USB or on the console
http://developer.android.com/guide/topics/admin/device-admin...