Definition

The security architecture protecting Android devices — including SELinux policies, kernel hardening (KASLR, CFI, slab protections), verified boot, and OEM-specific customizations layered on AOSP.

Key Points

  • 2026-09: oempocalypse research shows AOSP/chipset hardening can be bypassed via OEM-specific code in One UI, HyperOS, ColorOS (2026-09-14-oempocalypse-android-root)
  • OEM kernel drivers and IPC endpoints represent a distinct attack surface from generic Linux
  • Locked bootloaders and verified boot do not prevent exploitation when OEM code is vulnerable
  • Samsung and Xiaomi dominate Turkish smartphone market — high regional relevance

Sources