Security News

Samsung boosts bug bounty to a cool million for cracks of the Knox Vault subsystem
2024-08-08 01:15

Samsung has dangled its first $1 million bug bounty for anyone who successfully compromises Knox Vault - the isolated subsystem the Korean giant bakes into its smartphones to store info like credentials and run authentication routines. Folks who can unlock a Samsung device and plunder user data before the handset is first unlocked will net up to $400,000 - although that is dependent on the amount of information that can be snaffled.

Samsung boosts bug bug bounty to a cool million for cracks of the Knox Vault subsystem
2024-08-08 01:15

Good luck, crackers: It's an isolated processor and storage enclave, and top dollar only comes from a remote attack Samsung has dangled its first $1 million bug bounty for anyone who successfully...

Samsung to pay $1,000,000 for RCEs on Galaxy’s secure vault
2024-08-06 17:13

Samsung has launched a new bug bounty program for its mobile devices with rewards of up to $1,000,000 for reports demonstrating critical attack scenarios. [...]

Cellebrite got into Trump shooter's Samsung device in just 40 minutes
2024-07-22 03:44

Infosec in brief Unable to access the Samsung smartphone of the deceased Trump shooter for clues, the FBI turned to a familiar - if controversial - source to achieve its goal: digital forensics tools vendor Cellebrite. Cellebrite has been used for years by law enforcement to break into locked smartphones.

Samsung Galaxy Unpacked 2024: Samsung’s Next Foldable Phones Have Built-In Google AI
2024-07-10 17:52

After first announcing onboard AI in January, Samsung expanded what it's calling the Galaxy AI ecosystem on July 10 at the Galaxy Unpacked event in Paris. Samsung's two newest phones are the Galaxy Z Fold6 and Galaxy Z Flip6, both of which use Google's Gemini AI for translation, creative features and cosmetic changes.

Samsung UK discloses year-long breach, leaked customer data
2023-11-17 05:58

The UK division of Samsung Electronics has allegedly alerted customers of a year-long data breach - the third such incident the South Korean giant has experienced around the world in the past two years. An email to customers, shared on social media by web security consultant and Have I Been Pwned creator Troy Hunt, detailed that the breach exposing data of customers who made purchases between July 1, 2019 and June 30, 2020 was discovered on November 13.

New Samsung data breach impacts UK store customers
2023-11-15 23:07

Samsung Electronics is notifying some of its customers of a data breach that exposed their personal information to an unauthorized individual. The company says that the cyberattack impacted only customers who made purchases from the Samsung UK online store between July 1, 2019, and June 30, 2020.

Samsung hit by new data breach impacting UK store customers
2023-11-15 23:07

Samsung Electronics is notifying some of its customers of a data breach that exposed their personal information to an unauthorized individual. The company says that the cyberattack impacted only customers who made purchases from the Samsung UK online store between July 1, 2019, and June 30, 2020.

Samsung Galaxy gets new Auto Blocker anti-malware feature
2023-10-31 16:20

Samsung has unveiled a new security feature called 'Auto Blocker' as part of the One UI 6 update, offering enhanced malware protection on Galaxy devices. Auto Blocker is an opt-in security feature that prevents the side-loading of risky apps downloaded from outside the Galaxy Store and Google Play.

Samsung Galaxy S23 hacked two more times at Pwn2Own Toronto
2023-10-25 22:46

Security researchers hacked the Samsung Galaxy S23 smartphone two more times on the second day of the Pwn2Own 2023 hacking competition in Toronto, Canada. The contestants also demoed zero-day bugs in printers, routers, smart speakers, surveillance systems, and NAS devices from Canon, Synology, Sonos, TP-Link, QNAP, Wyze, Lexmark, and HP. Interrupt Labs security researchers were the first to demo a Samsung Galaxy S23 zero-day in an improper input validation attack, while the ToChim team exploited a permissive list of allowed inputs to hack Samsun's flagship.