1.3 million Android-based TV boxes backdoored; researchers still don't know how

The source of the TV boxes' backdoor infection remains unknown. One possible infection vector could be an attack by an intermediate malware that exploits operating system vulnerabilities to gain root privileges.
Doctor Web explained that the streaming devices are running outdated versions, which can be vulnerable to exploits that can remotely execute malicious code, making these devices easy targets.
It’s not unusual for budget device manufacturers to install older OS versions in streaming boxes while misleading consumers into thinking they are using more current models.
While licensed device makers are restricted in modifying AndroidTV, any device maker is free to change open source versions, increasing the risk of security vulnerabilities.
Read at Ars Technica