Best buy guide: Galaxy Watch 6 or Galaxy S24+. Woo-hoo join SamMobile on WhatsApp or Telegram!

SamMobile has affiliate and sponsored partnerships. If you buy something through one of these links, we may earn a commission.

Notifications
    News for you

    Samsung devices vulnerable to malware apps due to security leak

    Phone
    By 

    Last updated: December 2nd, 2022 at 14:32 UTC+01:00

    Millions of Android devices, including Samsung, appear to have been left vulnerable by a major security leak. This isn't as much a vulnerability as it is an actual leak of a critical component used by device manufacturers who rely on Android OS.

    More specifically, Android OEMs, including LG, Samsung, and others, have had their platform signing keys leaked. A signing key ensures that the version of Android on a device is legitimate. In addition, the signing key can be used by individual apps, meaning that Android will trust any app that shares the same signing key as the operating system. (via @maldr0id / 9to5Google)

    In theory, this can allow a malicious party to attach malware to a trusted app and go unnoticed. It wouldn't matter if a new app version contains malware. As long as the app is signed using the same key as the OS, it would be considered a trusted update, regardless of whether it came from the Galaxy Store, the Play Store, or other sources. That is, in theory. Google claims that no such vulnerable apps have made it onto the Play Store, which is good news.

    Samsung already took measures to minimize risks

    Aside from Samsung, other mobile brands affected by this security leak are LG, MediaTek, szroco, Revoview, and there may be others.

    The issue was originally reported in May 2022, and thankfully, Google says that Samsung (and other manufacturers) have “taken remediation measures to minimize the user impact.” The statement is a bit fuzzy, and it's unclear which apps are still vulnerable to this security issue or to what extent. But measures were set in place to minimize the risk of getting malware. And thankfully, Google also said that the exploit hasn't been found in any apps available through the Play Store, and ensured that Play Protect offers a layer of security against these vulnerabilities.

    In any case, it seems like the best way to avoid problems caused by this security leak is to not sideload apps from third-party websites for a while.

    PhoneTablet Samsung Electronics

    You might also like

    Top-level visits underway as Samsung seeks turnaround in China

    Top-level visits underway as Samsung seeks turnaround in China

    China is an important market and while Samsung once enjoyed a considerable share in the country's smartphone market, it has since fallen to 0%. The company needs to do a lot more than just launch basic phones to revive its fortunes in the lucrative market. Samsung has set up a dedicated team to pursue a […]

    • By Adnan Farooqui
    • 3 days ago
    Samsung and Google tease new AI features

    Samsung and Google tease new AI features

    Samsung and Google have started teasing new AI (Artificial Intelligence) features developed through a partnership that's never been stronger. In a recent social media post on X, both Samsung Mobile and Google's Rick Osterloh confirmed that the two companies are continuing to work together to develop new exciting features. According to these recent teasers, Google's […]

    • By Mihai Matei
    • 3 days ago
    Samsung LATAM wants to recycle nearly 15,000 tons of e-waste in 2024

    Samsung LATAM wants to recycle nearly 15,000 tons of e-waste in 2024

    Samsung will extend its recycling and waste collection efforts to three more Latin American countries. During Earth Day earlier this week, the company announced that it will run its waste collection program in 13 countries instead of 10. Through its extended efforts, Samsung's new goal for 2024 is to collect a minimum of 14,183 tons […]

    • By Mihai Matei
    • 4 days ago
    Galaxy Z Flip smartphones may eventually get a zoom camera

    Galaxy Z Flip smartphones may eventually get a zoom camera

    One thing the Galaxy Z Flip series lacks is a telephoto camera. All the models released so far only feature wide and ultra-wide lenses, but new evidence has emerged to suggest that Samsung might eventually add a third sensor to the back of its future Galaxy Z Flip phones. A Samsung patent unearthed by GalaxyClub […]

    • By Mihai Matei
    • 4 days ago
    Samsung outfits Amazon’s latest film studio with cutting-edge LEDs

    Samsung outfits Amazon’s latest film studio with cutting-edge LEDs

    Samsung is showcasing its display technology prowess through a new collaboration with Amazon that revolves around its latest addition to its entertainment business portfolio: Culver Post. The latter is a state-of-the-art theatrical post-production studio located in Los Angeles. Samsung says it has partnered with 424 Post and Harbor to provide advanced display technologies for Amazon's […]

    • By Mihai Matei
    • 4 days ago
    Samsung Rewards loyalty program is now available in Canada

    Samsung Rewards loyalty program is now available in Canada

    Prospective Samsung customers in Canada now have one extra reason to use a Samsung Account when they purchase new products. The Korean tech giant announced it is bringing the Samsung Rewards program to Canada, allowing customers to earn points and exclusive benefits. Samsung Rewards is a loyalty program that lets customers accumulate points whenever they […]

    • By Mihai Matei
    • 5 days ago