Android 17 Blocks Non-Accessibility Apps from Accessibility API to Prevent Malware Abuse
2026-03-16T07:24:18Z•9587f465d57512dc02256cdbbd163746b3a96de91c0dbf42cec92a2092f1225d
AI-securityAppArmorCISA KEVChromeGlassWormInstagram E2EE deprecationOpenClawRCESkiaSocksEscortStorm-2561VENONVeeambanking trojanbotnetcontainer escapecredential theftlocal privilege escalationmalwaren8nopen-vsxprompt injectionremote code executionsupply-chainzero-day
What happened
A large set of high-impact security stories: Google added Accessibility-API restrictions in Android 17 to curb malware abuse; multiple actively exploited and critical RCE vulnerabilities were disclosed or patched (Chrome Skia zero-day CVE-2026-3909; n8n RCEs — CVE-2025-68613, CVE-2026-27577, CVE-2026-27493 — flagged by CISA for active exploitation; Veeam Backup & Replication critical RCEs CVE-2026-21666 and CVE-2026-21667). Researchers also disclosed nine AppArmor “CrackArmor” kernel issues enabling privilege escalation and container-escape, while supply-chain attacks and malware campaigns are
Why it matters
A reviewed impact interpretation has not been published for this record.
Evidence and limitations
- Source ID
- the_hacker_news
- Record identifier
- 9587f465d57512dc02256cdbbd163746b3a96de91c0dbf42cec92a2092f1225d
- Enrichment time
- 2026-03-16T07:24:18Z
- AI-assisted enrichment
- Yes
This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.