Samsung responds to Knox vulnerability reports, offers tips to prevent data theft

Advertisement
By Robin Sinha | Updated: 13 January 2014 12:42 IST

Samsung has replied to the recent criticism surrounding its Knox security service for its smartphones, and mentions that it has verified the cyber-attack problem and has intercepted the data.

Last month, a big vulnerability was discovered in Samsung's native security service, Knox, by cyber-security researchers in Ben Gurion University in Israel. The glitch was not only suspected to exploit the user's emails and communication data, but was also said to enable the hackers to inject malicious codes, which could affect the whole device.

Advertisement

The popular Korean tech giant has also mentioned some tips and tricks on how users can avoid compromising important data on their Knox-enabled handsets. The tips will be also sent as a message to the Knox users.

"This research did not identify a flaw or bug in Samsung KNOX or Android; it demonstrated a classic Man in the Middle (MitM) attack, which is possible at any point on the network to see unencrypted application data. The research specifically showed this is also possible via a user-installed program, reaffirming the importance of encrypting application data before sending it to the Internet. Android development practices encourage that this be done by each application using SSL/TLS. Where that's not possible (for example, to support standards-based unencrypted protocols, such as HTTP), Android provides built-in VPN and support for third-party VPN solutions to protect data. Use of either of those standard security technologies would have prevented an attack based on a user-installed local application," stated the firm's official description of the problem.

Advertisement

Samsung also gave a detailed description of the procedures to be followed to further protect Knox-enabled devices from MitM attacks. KNOX offers additional protections against MitM attacks, namely, Mobile Device Management (MDM), per-app VPN, and FIPS 140-2.

 

Get your daily dose of tech news, reviews, and insights, in under 80 characters on Gadgets 360 Turbo. Connect with fellow tech lovers on our Forum. Follow us on X, Facebook, WhatsApp, Threads and Google News for instant updates. Catch all the action on our YouTube channel.

Advertisement

Related Stories

Popular Mobile Brands
  1. Asus Unveils Zenbook 14 at Computex 2026, New Vivobook S Series Tags Along
  2. Samsung Galaxy Z Fold 8, Z Fold 8 Ultra Leaked Dummies Hint at These Designs
  3. Anthropic Brings Its Cybersecurity AI Model Claude Mythos to India
  4. Computex 2026: Top 10 Product Launches and Announcements on Day 1
  5. New iPhone 18 Pro Leak Suggests It Could Arrive in These Battery Variants
  6. Hisense Launches U7SE 144Hz ULED Mini-LED TV Series in India
  7. Sony Bravia 7II 4K TVs With Cognitive Processor XR Debut in India
  8. Vivo Y500 Surfaces on Bluetooth SIG Database With Multiple Model Numbers
  1. Apple Design Awards 2026 Winners Announced: Guitar Wiz, NBA, Cyberpunk 2077: Ultimate Edition Bag Top Spots
  2. Anthropic Expands Project Glasswing to 15 Countries, Brings Claude Mythos to India
  3. Nothing Ear 3a, CMF Buds Neo Spotted on Regulatory Databases Ahead of Anticipated Debut
  4. Samsung Galaxy Z Fold 8, Galaxy Z Fold 8 Ultra Could Feature Vastly Different Designs, Leaked Dummy Units Suggest
  5. Hisense U7SE 144Hz ULED Mini-LED TV Series With Up to 100-Inch Screens Launched in India: Price, Features
  6. Vivo Y500 Surfaces on Bluetooth SIG Database With Multiple Model Numbers, Could Launch Soon
  7. Asus Ascent QN10 Mini PC With Snapdragon X2 Elite Chipset Showcased at Computex 2026
  8. MSI Showcases New Katana, Venture Laptops and Crosshair A16 HX MLG Edition at Computex 2026
  9. Acer TravelMate P6 14 AI and P2 Spin 14 Unveiled, Acer TravelMate X2 15 and X2 14 Tag Along
  10. Sony Bravia 7II 4K TVs Launched in India With Cognitive Processor XR, Dolby Vision: Price, Features
Download Our Apps
Available in Hindi
© Copyright Red Pixels Ventures Limited 2026. All rights reserved.