Scores out of ten

Nexus devices  5.2 (best)
LG 4.0
Motorola 3.1
Samsung 2.7
Sony 2.5
HTC 2.5
Asus 2.4
Alps 0.7
Symphony 0.3
Walton 0.3 (worst)

Calculating the score

We developed the FUM score to compare the security provided by different device manufacturers. The score gives each Android manufacturer a score out of 10 based on the security they have provided to their customers over the last four years.

The score has three components:

the proportion of devices free from known critical vulnerabilities.
the proportion of devices updated to the most recent version.
the number of vulnerabilities the manufacturer has not yet fixed on any device.

Proportion of devices running vulnerable versions of Android

Proportion of devices affected by critical vulnerabilities

This figure shows our estimate of the proportion of Android devices running insecure, maybe secure and secure versions of Android over time. Further details on how this figure constructed can be found on a separate page.

Help us, install Device Analyzer

We are only able to produce these scores due to the contributions made to Device Analyzer by members of the public. If you have an Android device you can install the Device Analyzer app and provide researchers with additional data on which devices are secure. Device Analyzer follows best practices in privacy preservation.

If you have information about a vulnerability not listed on this site then you can submit it.

If you have MDM data and want to know which devices used by your organisation are vulnerable then we can help: contact us.

Vulnerabilities and papers

We are collating all critical vulnerabilities in Android and storing this information in a machine readable format (json). We are only tracking critical vulnerabilities which an app could exploit. These are vulnerabilities that allow an app (malicious or compromised) to either gain root or gain privileges which can then be used to obtain root.

Published papers



Computer Laboratory
University of Cambridge
15 JJ Thompson Avenue
Cambridge CB3 0FD