Hackers Can Exploit Samsung Pre-Installed Apps to Spy On Users

The_King

Level 12
Thread author
Verified
Top Poster
Well-known
Aug 2, 2020
542
Multiple critical security flaws have been disclosed in Samsung's pre-installed Android apps, which, if successfully exploited, could have allowed adversaries access to personal data without users' consent and take control of the devices.


"The impact of these bugs could have allowed an attacker to access and edit the victim's contacts, calls, SMS/MMS, install arbitrary apps with device administrator rights, or read and write arbitrary files on behalf of a system user which could change the device's settings," Sergey Toshin, founder of mobile security startup Oversecured, said in an analysis published Thursday.


Toshin reported the flaws to Samsung in February 2021, following which patches were issued by the manufacturer as part of its monthly security updates for April and May. The list of the seven vulnerabilities is as follows -


  • CVE-2021-25356 - third-party authentication bypass in Managed Provisioning
  • CVE-2021-25388 - Arbitrary app installation vulnerability in Knox Core
  • CVE-2021-25390 - Intent redirection in PhotoTable
  • CVE-2021-25391 - Intent redirection in Secure Folder
  • CVE-2021-25392 - Possible to access notification policy file of DeX
  • CVE-2021-25393 - Possible to read/write access to arbitrary files as a system user (affects the Settings app)
  • CVE-2021-25397 - Arbitrary file write in TelephonyUI
Samsung device owners are recommended to apply the latest firmware updates from the company to avoid any potential security risks
 

About us

  • MalwareTips is a community-driven platform providing the latest information and resources on malware and cyber threats. Our team of experienced professionals and passionate volunteers work to keep the internet safe and secure. We provide accurate, up-to-date information and strive to build a strong and supportive community dedicated to cybersecurity.

User Menu

Follow us

Follow us on Facebook or Twitter to know first about the latest cybersecurity incidents and malware threats.

Top