Amazon, Sony, Xiaomi, Samsung Devices Successfully Hacked at Pwn2Own Tokyo 2019

White hat hackers also managed to crack TP-Link and Netgear routers.

Advertisement
By Gaurav Shukla | Updated: 7 November 2019 13:31 IST
Highlights
  • Hackers managed to steal a photo off Xiaomi Mi 9 and Samsung Galaxy S10
  • Hacker duo Fluoroacetate won the most money on day 1
  • Samsung Q60 and Sony X800G TVs were also hacked

Hacker duo Amat Cama and Richard Zhu who go by the name Fluoroacetate had the most success

Photo Credit: The ZDI

A number of popular devices from the likes of Amazon, Netgear, Sony, Samsung, TP-Link, and Xiaomi were hacked by various white hat hacker teams as part of the Pwn2Own Tokyo 2019 competition. The organisers of the event will be sharing the details of the hacks with the respective companies to release the patched versions of their devices in the future. The hackers managed to crack Amazon Echo Show 5 smart speaker, Samsung Q60 TV, Sony X800G TV, Netgear Nighthawk Smart Wi-Fi Router R6700, and TP-Link AC1750 Smart Wi-Fi router, apart from the Samsung Galaxy S10 and Xiaomi Mi 9 smartphones on the first day of the competition, as well as part of the second day.

Hacker duo Amat Cama and Richard Zhu who go by the name Fluoroacetate had the most success and they were able to crack five devices. The duo exploited Sony X800G, the first television in Pwn2Own history, using a JavaScript out-of-bounds (OOB) Read, whereas they compromised an Amazon Echo Show 5 using an integer overflow in JavaScript.

Advertisement

Fluoroacetate were able to hack Samsung Q60 television as well using integer overflow in JavaScript. The team also saw success with the Xiaomi Mi 9, on which they used a JavaScript bug to extract a picture from the phone. Amat Cama and Richard Zhu managed to grab a picture off the Samsung Galaxy S10 by going through the phone's NFC module. The duo was also able to push a file on the phone using a stack overflow. Lastly, the team managed to crack Netgear Nighthawk Smart Wi-Fi Router R6700 (LAN interface). For these exploits, the Fluoroacetate team won over $195,000 (roughly Rs. 1.4 crores).

Another team, Pedro Ribeiro and Radek Domanski who call themselves Flashback targeted the LAN and WAN interfaces of the TP-Link AC1750 Smart Wi-Fi router and were successful. They also succeeded in cracking both LAN and WAN interfaces of Netgear Nighthawk Smart Wi-Fi Router R6700.

Advertisement

Most of these devices were hacked on the first day, and the second day is still going on and we are likely to see more exploits of some of the already existing devices and more. We will update this space as and when the day two ends.

As mentioned, the Pwn2Own Tokyo 2019 team will share these exploits with the respective companies to get them fixed.

 

Get your daily dose of tech news, reviews, and insights, in under 80 characters on Gadgets 360 Turbo. Connect with fellow tech lovers on our Forum. Follow us on X, Facebook, WhatsApp, Threads and Google News for instant updates. Catch all the action on our YouTube channel.

Advertisement

Related Stories

Popular Mobile Brands
  1. Redmi 15A Goes Official With This Price Tag
  2. iQOO Z11 Launched With MediaTek Dimensity 8500 SoC, 9,020mAh Battery
  3. Apple's Foldable iPhone Said to Ship After iPhone 18 Pro Models Debut
  4. Meta Might Be Preparing to Launch These New Ray-Ban Smart Glasses Soon
  5. OpenAI Might Never Release the Adult Mode in ChatGPT
  6. Samsung Galaxy Z Fold 8 Wide Leak Hints At a Bigger, Tablet-Like Design
  1. Samsung Galaxy Book 6 Ultra, Galaxy Book 6 Pro Launched in India, Galaxy Book 6 Tags Along: Price, Specifications
  2. Apple's Mac Pro Desktop With M2 Ultra Chipset Discontinued Nearly Three Years After Launch
  3. OpenAI Reportedly Shelves ChatGPT’s Adult Mode Plans Indefinitely
  4. Meta Ray-Ban Scriber, Blazer Smart Glasses Listed on US FCC Database With Wi-Fi 6 Support: Report
  5. Redmi 15A Launched in India With Dual Rear Cameras, 6,300mAh Battery: Price, Specifications
  6. Google Makes Switching to Gemini Easier With Chat Transfer, Memory Import Tools
  7. RCS Universal Profile 4.0 Will Bring Native Video Call and Rich Text Support to Messaging Apps
  8. Apple's iPhone Fold Likely to Ship Later Than iPhone 18 Pro, iPhone 18 Pro Max: Mark Gurman
  9. Samsung Galaxy Z Fold 8 Wide Leak Reveals Much Bigger, Tablet-Like Design
  10. WhatsApp Announces Big Update; Rolls Out Cross-Platform Chat Transfer Tool, Dual Accounts on iOS and More
Download Our Apps
Available in Hindi
© Copyright Red Pixels Ventures Limited 2026. All rights reserved.