Amazon, Sony, Xiaomi, Samsung Devices Successfully Hacked at Pwn2Own Tokyo 2019

White hat hackers also managed to crack TP-Link and Netgear routers.

Advertisement
By Gaurav Shukla | Updated: 7 November 2019 13:31 IST
Highlights
  • Hackers managed to steal a photo off Xiaomi Mi 9 and Samsung Galaxy S10
  • Hacker duo Fluoroacetate won the most money on day 1
  • Samsung Q60 and Sony X800G TVs were also hacked

Hacker duo Amat Cama and Richard Zhu who go by the name Fluoroacetate had the most success

Photo Credit: The ZDI

A number of popular devices from the likes of Amazon, Netgear, Sony, Samsung, TP-Link, and Xiaomi were hacked by various white hat hacker teams as part of the Pwn2Own Tokyo 2019 competition. The organisers of the event will be sharing the details of the hacks with the respective companies to release the patched versions of their devices in the future. The hackers managed to crack Amazon Echo Show 5 smart speaker, Samsung Q60 TV, Sony X800G TV, Netgear Nighthawk Smart Wi-Fi Router R6700, and TP-Link AC1750 Smart Wi-Fi router, apart from the Samsung Galaxy S10 and Xiaomi Mi 9 smartphones on the first day of the competition, as well as part of the second day.

Hacker duo Amat Cama and Richard Zhu who go by the name Fluoroacetate had the most success and they were able to crack five devices. The duo exploited Sony X800G, the first television in Pwn2Own history, using a JavaScript out-of-bounds (OOB) Read, whereas they compromised an Amazon Echo Show 5 using an integer overflow in JavaScript.

Fluoroacetate were able to hack Samsung Q60 television as well using integer overflow in JavaScript. The team also saw success with the Xiaomi Mi 9, on which they used a JavaScript bug to extract a picture from the phone. Amat Cama and Richard Zhu managed to grab a picture off the Samsung Galaxy S10 by going through the phone's NFC module. The duo was also able to push a file on the phone using a stack overflow. Lastly, the team managed to crack Netgear Nighthawk Smart Wi-Fi Router R6700 (LAN interface). For these exploits, the Fluoroacetate team won over $195,000 (roughly Rs. 1.4 crores).

Advertisement

Another team, Pedro Ribeiro and Radek Domanski who call themselves Flashback targeted the LAN and WAN interfaces of the TP-Link AC1750 Smart Wi-Fi router and were successful. They also succeeded in cracking both LAN and WAN interfaces of Netgear Nighthawk Smart Wi-Fi Router R6700.

Advertisement

Most of these devices were hacked on the first day, and the second day is still going on and we are likely to see more exploits of some of the already existing devices and more. We will update this space as and when the day two ends.

As mentioned, the Pwn2Own Tokyo 2019 team will share these exploits with the respective companies to get them fixed.

 

Get your daily dose of tech news, reviews, and insights, in under 80 characters on Gadgets 360 Turbo. Connect with fellow tech lovers on our Forum. Follow us on X, Facebook, WhatsApp, Threads and Google News for instant updates. Catch all the action on our YouTube channel.

Advertisement

Related Stories

Popular Mobile Brands
  1. Top OTT Releases of the Week: Kantara Chapter 1, Lokah Chapter 1, Idli Kadai, and More
  2. iQOO Neo 11 With Snapdragon 8 Elite SoC Launched: Price, Specifications
  3. Vivo X300 Series With 200-Megapixel Zeiss Camera Launched Globally
  4. Reliance Offers Free 18-Month Google AI Pro with Gemini, Veo to Jio Users
  5. Gemini 3 AI Model Will Be Released Soon, Says Google CEO Sundar Pichai
  6. Samsung Galaxy S26 Series Teased to Launch With These Notable Upgrades
  7. Apple CEO Confirms Partnership Plans for AI Services Beyond OpenAI
  8. Realme GT 8 Pro Will Launch in India in November With This Chipset
  1. Realme GT 8 Pro India Launch Date Tipped After Company Confirms November Debut
  2. iPhone 17 Series, iPhone Air Join Apple’s Self Service Repair Programme Across US, Canada and Europe
  3. iQOO 15 Indian Variant Allegedly Surfaces on Geekbench With Snapdragon 8 Elite Gen 5 Chipset
  4. Apple CEO Reportedly Confirms Partnership Plans Beyond OpenAI; Revamped Siri Expected to Launch in 2026
  5. Scientists May Have Finally Solved the Sun’s Mysteriously Hot Atmosphere Puzzle
  6. Vivo X300 Series Launched Globally With 200-Megapixel Zeiss Camera, Up to 6.78-Inch Display: Price, Features
  7. Canva Introduces Revamped Video Editor, New AI Tools and a Marketing Platform
  8. Thode Door Thode Paas OTT Release Date: Know When and Where to Watch it Online
  9. Blackmail Now Streaming Online: Know Where to Watch This Tamil Crime Thriller Movie
  10. Eva Husson’s Playdate OTT Release Date: When and Where to Watch it Online?
Gadgets 360 is available in
Download Our Apps
Available in Hindi
© Copyright Red Pixels Ventures Limited 2025. All rights reserved.