The Indian government urgently asked Samsung smartphone users to update their devices due to security vulnerabilities.
By infosecbulletin
/ Friday , November 22 2024
Over 2,000 Palo Alto Networks firewalls have been compromised in a widespread attack using two recently patched vulnerabilities (CVE-2024-0012 and...
Read More
By infosecbulletin
/ Thursday , November 21 2024
Renowned cybersecurity researcher Jeremiah Fowler uncovered a non-password-protected database having over 1.1 million records linked to Conduitor Limited (Forces Penpals)....
Read More
By infosecbulletin
/ Wednesday , November 20 2024
Trend Micro released a security update for Deep Security 20 Agent Manual Scan Command Injection RCE Vulnerability (CVE-2024-51503) that resolves...
Read More
By infosecbulletin
/ Wednesday , November 20 2024
Apple released critical updates for its various products including for iOS, iPadOS, macOS, visionOS, and Safari to fix two zero-day...
Read More
By infosecbulletin
/ Tuesday , November 19 2024
Maxar Space Systems has verified a major data breach that exposed particular information of current and former workers. The breach...
Read More
By infosecbulletin
/ Tuesday , November 19 2024
A security vulnerability (CVE-2024-52308) in the GitHub Command Line Interface (CLI) could allow remote code execution on users' devices. With...
Read More
By infosecbulletin
/ Tuesday , November 19 2024
“Sarcoma” ransomware group attacked a well known Bangladeshi insurance company named "Popular life insurance company ltd". The threat actor keeps...
Read More
By infosecbulletin
/ Monday , November 18 2024
Bug Hunt 2024, one of the largest cyber security competitions and conferences in Bangladesh, was successfully held at the ICT...
Read More
By infosecbulletin
/ Saturday , November 16 2024
A serious security flaw has been found in some TP-Link routers, potentially enabling hackers to remotely access the affected devices.The...
Read More
By infosecbulletin
/ Saturday , November 16 2024
The Wall Street Journal reported on Friday citing people familiar with the matter that T-Mobile’s network was among the systems...
Read More
CERT-In issued a warning about a threat to certain Samsung devices running on Android versions 11, 12, 13, and 14. These vulnerabilities could be exploited to gain unauthorized access to sensitive data on these devices.
CERT-In has categorized the risk as high. Attackers may use these vulnerabilities to bypass security measures, access confidential information, and run unauthorized code on targeted systems. The vulnerabilities could pose a threat to different parts of the Samsung ecosystem.
ALSO READ:
Samsung Smartphone Users at Risk of Hacking, Update Now to Protect Yourself
Detailed Analysis and Potential Consequences:
The government’s cybersecurity team found several problems. These include issues with access control in Knox features, flaws in facial recognition software, concerns with the AR Emoji app, errors in Knox security software, and vulnerabilities in different system components. The vulnerabilities also affect the softsimd library, the Smart Clip app, and contacts app. These vulnerabilities include incorrect data size verification, unvalidated user input, and hijacking of specific app interactions.
Samsung phones with Android versions 11, 12, 13, and 14 are at risk, including models like Samsung Galaxy S23 series, Galaxy Z Flip 5, and Galaxy Z Fold 5.
To reduce the dangers of these vulnerabilities, users are strongly advised to take the following measures:
1. Install security updates quickly.
2. Update your apps regularly.
3. Be careful when installing apps.
4. Be cautious when clicking on links.
This advisory is to protect Samsung users from security threats. It stresses the need for proactive measures to secure their devices.