• Hype
  • Murai
  • Lipstiq
  • Varnam
  • Hangat
  • Autofreaks
Lowyat.NET
  • News
    • Lifestyle
    • Computing
    • Hardware
    • Internet
    • Rumours & Leaks
    • Software
  • Forums
    • Kopitiam
    • Tradezone
    • Property Talk
    • Finance & Business
    • Fast and Furious
  • Gaming
    • PC Gaming
    • Console
    • Esports
  • Mobile
    • Apps
    • OS
    • Tablets
    • Phones
    • Telco
      • Celcom
      • DiGi
      • Maxis
      • Tune Talk
      • U Mobile
      • Buzzme
  • Pricelists
    • Compu-zoneUpdated
    • ViewnetUpdated
    • Sri ComputersUpdated
    • StartecUpdated
  • More
    • Automotive Tech
    • Drone
    • Enterprise
    • Entertainment
    • Fashion
    • E-Hailing
    • Wearables
No Result
View All Result
Lowyat.NET
  • News
    • Lifestyle
    • Computing
    • Hardware
    • Internet
    • Rumours & Leaks
    • Software
  • Forums
    • Kopitiam
    • Tradezone
    • Property Talk
    • Finance & Business
    • Fast and Furious
  • Gaming
    • PC Gaming
    • Console
    • Esports
  • Mobile
    • Apps
    • OS
    • Tablets
    • Phones
    • Telco
      • Celcom
      • DiGi
      • Maxis
      • Tune Talk
      • U Mobile
      • Buzzme
  • Pricelists
    • Compu-zoneUpdated
    • ViewnetUpdated
    • Sri ComputersUpdated
    • StartecUpdated
  • More
    • Automotive Tech
    • Drone
    • Enterprise
    • Entertainment
    • Fashion
    • E-Hailing
    • Wearables
No Result
View All Result
Lowyat.NET
No Result
View All Result
Home Mobile Apps

Researchers Find Vulnerability In Samsung Galaxy Default Keyboard App

by Farhan
June 17, 2015
Share on WhatsappShare on TelegramThreads

samsung-galaxy-exploit

A vulnerability in Samsung smartphones has been discovered that could allow hackers to gain access to the system and do as they please. The issue lies with the update mechanism on Samsung’s version of the SwiftKey keyboard installed on all Samsung Galaxy phones, which isn’t encrypted and could be subjected to man-in-the-middle attacks.

The Samsung IME keyboard (which is what Samsung calls its customised version of SwiftKey) periodically checks in with an authorised server to see if there is an update available. Due to the unsecured nature of this traffic, it isn’t too difficult for hackers to hijack the traffic and fool the system into downloading their own malicious payload. Samsung grants elevated privileges to these upgrades, which allows the hackers to use it to circumvent the protections built into Android.

YouTube video

Researcher Ryan Welton demonstrated the attack during a BlackHat security conference this week, and has pointed out that it still works even if the owner of the phone does not use the Samsung IME keyboard; the update mechanism still checks with the server even if the user never uses the keyboard. Fortunately for other SwiftKey users, this vulnerability does not extend to them as updates go through the Google Play update mechanism and prevents this from happening.

There is little that Samsung Galaxy users can do about the vulnerability except wait for it to be patched. It is understood that Samsung is aware of the problem, and has pushed out a security patch to carriers. Most users should be receiving the fix soon; although those that rely on network operators to push out updates may be waiting a bit longer.

RELATED:  Samsung Galaxy Z TriFold Users Report Short-Lived Inner Screens

[Source: Ars Technica]

Filed Under Samsung
Updated 11:57 am, Wed, 17 June 15
https://lowy.at/fbrdw
SendShareShareShare1Tweet1

Follow us on Instagram, Facebook, Twitter or Telegram for more updates and breaking news. 

No Result
View All Result

TRENDING THIS WEEK

  1. 1
    Fintech

    TNG Digital Retracts RON95 Subsidy Initiative, Issues Apology

  2. 2
    Fintech

    TNG eWallet Gets Physical Customer Service Hub At Kota Raya

  3. 3
    Telco

    China Mobile’s CMLink Now Offers Prepaid Plans In Malaysia; Priced From RM25/Month

  4. 4
    Hybrid Vehicles

    Honda Prelude Now Open For Booking In Malaysia

  5. 5
    Automotive

    Tesla Officially Launches Model Y L In Malaysia; Pricing To Start From RM260,000

NETWORK

  • Hype
  • Murai
  • Lipstiq
  • Varnam
  • Hangat
  • Autofreaks

ABOUT

  • Advertise
  • Careers
  • Privacy Statement
  • Editorial Policy
  • Terms of Use
  • Contact Us

©2026 VIJANDREN RAMADASS. ALL RIGHTS RESERVED.

No Result
View All Result
  • News
  • Forums
  • Laptops
  • Telco
  • Mobile
  • Gaming
  • Banking
  • Fintech
  • Artificial Intelligence
  • Cryptocurrency
  • Cyber Security
  • Hybrid Vehicles
  • Advertise with Us

©2026 VIJANDREN RAMADASS. ALL RIGHTS RESERVED.

No Result
View All Result
  • News
  • Forums
  • Laptops
  • Telco
  • Mobile
  • Gaming
  • Banking
  • Fintech
  • Artificial Intelligence
  • Cryptocurrency
  • Cyber Security
  • Hybrid Vehicles
  • Advertise with Us

©2026 VIJANDREN RAMADASS. ALL RIGHTS RESERVED.