Breaking News

Transcend's New ESD420 Portable SSD Offers MagSafe Compatibility and Pro-Level Performance G.SKILL Trident Z5 DDR5 Memory and WigiDash Receives European Hardware Awards 2025 Silicon Power Launches WP10 Magnetic Wireless Power Bank Razer Unveils the Ultra-Lightweight DeathAdder V4 Pro Sony launches a high-resolution shotgun microphone with superior sound quality and compact design.

logo

  • Share Us
    • Facebook
    • Twitter
  • Home
  • Home
  • News
  • Reviews
  • Essays
  • Forum
  • Legacy
  • About
    • Submit News

    • Contact Us
    • Privacy

    • Promotion
    • Advertise

    • RSS Feed
    • Site Map

Search form

Samsung Keyboard Security Flaw Puts Milions Of Devices At Risk

Samsung Keyboard Security Flaw Puts Milions Of Devices At Risk

Smartphones Jun 17,2015 0

Over 600 million Samsung mobile device users have been affected by a significant security risk on leading Samsung models, including the recently released Galaxy S6. According to a report published by security specialist NowSecure, the risk comes from a pre-installed keyboard that allows an attacker capable of controlling a user’s network traffic to manipulate the keyboard update mechanism on Samsung phones and execute code as a privileged (system) user on the target’s phone.

The Swift keyboard comes pre-installed on Samsung devices and cannot be disabled or uninstalled. Even when it is not used as the default keyboard, it can still be exploited.

If the flaw in the keyboard is exploited, an attacker could remotely access sensors and resources like GPS, camera and microphone. Malicious app(s) could be secretly installed, and sensitive personal data like pictures and text could be accessed. Attackers could also
tamper with how other apps work or how the phone works, or even eavesdrop on incoming/outgoing messages or voice calls.

NowSecure says it had notified Samsung about the flaw in December of 2014. Given the magnitude of the issue, NowSecure notified CERT who assigned CVE-2015-2865, and also informed the Google Android security team.

Samsung said it would upgrade the Knox security software in a few days to eliminate the security risks.

It isn't easy for users to tell if their device has been patched either. NowSecure recommends avoiding connection to insecure Wi-Fi networks, contacting their service provider for patch details or even temporarily switching to a different mobile device.

Standalone SwiftKey apps on the Google Play and Apple App Stores are not affected by this flaw. A SwiftKey statement says, "We supply Samsung with the core technology that powers the word predictions in their keyboard. It appears that the way this technology was integrated on Samsung devices introduced the security vulnerability. We are doing everything we can to support our long-time partner Samsung in their efforts to resolve this important security issue".

Tags: SAMSUNG
Previous Post
Amazon Introduces Improved Kindle Paperwhite
Next Post
Lumia 640 XL Coming in The U.S.

Related Posts

  • Galaxy AI Is Coming to New Galaxy Watch for More Motivational Health

  • Samsung Introduces Galaxy A55 5G and Galaxy A35 5G

  • Samsung’s New AI PC, Galaxy Book4 Series, Available Globally Beginning February 26

  • Samsung and Google Cloud Join Forces to Bring Generative AI to Samsung Galaxy S24 Series

  • Samsung Galaxy S24 Ultra Creates New Standards of Durability and Visual Clarity With Corning® Gorilla® Armor

  • Samsung announces 2024 Neo QLED, MICRO LED, OLED

  • Samsung Electronics Expands Odyssey Gaming Monitor Lineup With New OLED Models at CES 2024

  • Samsung Adds More Devices to Its Self-Repair Program, Including Foldables for the First Time

Latest News

Transcend's New ESD420 Portable SSD Offers MagSafe Compatibility and Pro-Level Performance
PC components

Transcend's New ESD420 Portable SSD Offers MagSafe Compatibility and Pro-Level Performance

G.SKILL Trident Z5 DDR5 Memory and WigiDash Receives European Hardware Awards 2025
Enterprise & IT

G.SKILL Trident Z5 DDR5 Memory and WigiDash Receives European Hardware Awards 2025

Silicon Power Launches WP10 Magnetic Wireless Power Bank
Consumer Electronics

Silicon Power Launches WP10 Magnetic Wireless Power Bank

Razer Unveils the Ultra-Lightweight DeathAdder V4 Pro
PC components

Razer Unveils the Ultra-Lightweight DeathAdder V4 Pro

Sony launches a high-resolution shotgun microphone with superior sound quality and compact design.
Cameras

Sony launches a high-resolution shotgun microphone with superior sound quality and compact design.

Popular Reviews

be quiet! Light Loop 360mm

be quiet! Light Loop 360mm

be quiet! Dark Mount Keyboard

be quiet! Dark Mount Keyboard

be quiet! Light Mount Keyboard

be quiet! Light Mount Keyboard

Noctua NH-D15 G2

Noctua NH-D15 G2

Soundpeats Pop Clip

Soundpeats Pop Clip

be quiet! Light Base 600 LX

be quiet! Light Base 600 LX

Crucial T705 2TB NVME White

Crucial T705 2TB NVME White

be quiet! Pure Base 501

be quiet! Pure Base 501

Main menu

  • Home
  • News
  • Reviews
  • Essays
  • Forum
  • Legacy
  • About
    • Submit News

    • Contact Us
    • Privacy

    • Promotion
    • Advertise

    • RSS Feed
    • Site Map
  • About
  • Privacy
  • Contact Us
  • Promotional Opportunities @ CdrInfo.com
  • Advertise on out site
  • Submit your News to our site
  • RSS Feed