Hackers need to inject just one line of code to wipe off the data of Samsung smartphones.
Thursday, September 27, 2012: If you are using a Samsung Android phone, you are in trouble! Hackers are eyeing your devices and can wipe off your data as and when they want, pretty easily. So, you are advised to carefully click on any links. Security experts have discovered a security flaw which makes Samsung's Android-based smartphones vulnerable for remote attacks. The flaw allows the hackers to remotely access the devices and wipe-off all the data from the smartphones.
According to some online reports, hackers need to inject just one line of code to wipe off the data of Samsung's smartphones.
Samsung Galaxy SIII and Samsung Galaxy SII are two such devices pointed out by security experts. Apart from this, there are other devices as well including Galaxy Beam, Galaxy Ace and S Advance. Each of these devices run Samsung's TouchWiz software. The TouchWiz software is apparently the cause of the vulnerability.
The hack was first demonstrated by Ravi Borgaonkar. Borgankar is a researcher in the Security in Telecommunications department at Technical University Berli. He demonstrated the hack on Galaxy S III at the Ekoparty security conference. He showed how Samsung's new phone is susceptible to the simple reset. All it needs is a simple USSD code that can be sent from a website, by another handset by NFC or triggered by a QR code. The USSD code can easily reset the device, wiping off all the users data.
The worst part is that if the process is initiated, it cannot be cancelled. Users will be able to see the ongoing process once its starts but they cannot undo it.
Watch how the code works:
Source: efytimes
Thursday, September 27, 2012: If you are using a Samsung Android phone, you are in trouble! Hackers are eyeing your devices and can wipe off your data as and when they want, pretty easily. So, you are advised to carefully click on any links. Security experts have discovered a security flaw which makes Samsung's Android-based smartphones vulnerable for remote attacks. The flaw allows the hackers to remotely access the devices and wipe-off all the data from the smartphones.
According to some online reports, hackers need to inject just one line of code to wipe off the data of Samsung's smartphones.
Samsung Galaxy SIII and Samsung Galaxy SII are two such devices pointed out by security experts. Apart from this, there are other devices as well including Galaxy Beam, Galaxy Ace and S Advance. Each of these devices run Samsung's TouchWiz software. The TouchWiz software is apparently the cause of the vulnerability.
The hack was first demonstrated by Ravi Borgaonkar. Borgankar is a researcher in the Security in Telecommunications department at Technical University Berli. He demonstrated the hack on Galaxy S III at the Ekoparty security conference. He showed how Samsung's new phone is susceptible to the simple reset. All it needs is a simple USSD code that can be sent from a website, by another handset by NFC or triggered by a QR code. The USSD code can easily reset the device, wiping off all the users data.
The worst part is that if the process is initiated, it cannot be cancelled. Users will be able to see the ongoing process once its starts but they cannot undo it.
Watch how the code works:
Source: efytimes
0 σχόλια:
Post a Comment