Definition
The security architecture protecting Android devices — including SELinux policies, kernel hardening (KASLR, CFI, slab protections), verified boot, and OEM-specific customizations layered on AOSP.
Key Points
- 2026-09: oempocalypse research shows AOSP/chipset hardening can be bypassed via OEM-specific code in One UI, HyperOS, ColorOS (2026-09-14-oempocalypse-android-root)
- OEM kernel drivers and IPC endpoints represent a distinct attack surface from generic Linux
- Locked bootloaders and verified boot do not prevent exploitation when OEM code is vulnerable
- Samsung and Xiaomi dominate Turkish smartphone market — high regional relevance