Samsung Says SwiftKey Keyboard Security Flaw Patch Coming in a Few Days

Advertisement
By Ketan Pratap | Updated: 19 June 2015 15:18 IST
Soon after a report claiming that several Galaxy models were plagued with a keyboard security flaw, Samsung has revealed that it is working on a patch for its devices which will start rolling out in a few days. Notably, Samsung has confirmed that it will make use of its Samsung Knox security suite to fix the keyboard security flaw that was alleged to allow an attacker to remotely execute code as a system user on Galaxy devices.

In a blog post, Samsung said, "Samsung takes all security threats very seriously. There have been reports that there is vulnerability when keyboard updates are carried out on Galaxy devices. We are aware of this issue and are committed to providing the latest in security on all of our devices."

"Samsung Knox has the capability to update the security policies of our devices, over-the-air, to invalidate potential vulnerabilities caused by this issue. The security policy updates will begin rolling out in a few days," the firm added.

Samsung explains that all flagship models since Galaxy S4 have the Knox security platform installed, but added that it is working on an expedited firmware update for devices that don't come with Knox by default. It will be made available upon "completion of all testing and approvals."
   
For users with devices featuring Knox, Samsung recommends making sure their devices are ready to receive the security policy update. "To ensure your device receives the latest security updates, go to Settings > Lock Screen and Security > Other Security Settings > Security policy updates, and make sure the Automatic Updates option is activated. At the same screen, the user may also click Check for updates to manually retrieve any new security policy updates."

Advertisement

According to a report by mobile security company NowSecure, the SwiftKey keyboard flaw could allow an attacker to remotely access sensors (including features such as GPS, camera, and microphone); secretly install malicious app without the user knowing and fiddle with how other apps function, or how the smartphone works. The security flaw could also allow an attacker to eavesdrop on incoming/ outgoing messages or voice calls while could allow access to personal data such as images and text messages.

Advertisement

SwiftKey in an emailed statement to NDTV Gadgets defended itself, saying the SwiftKey app available on Google Play and App Store had no such security flaw. The company added that while SwiftKey supplied Samsung with the 'core technology' to power word predictions on its keyboards, it "appears the way this technology was integrated on Samsung devices introduced the security vulnerability." SwiftKey said it is working with "long-time partner" Samsung to resolve the issue.

The statement added that the vulnerability was difficult to exploit, and only possible if the Samsung device user is connected to a compromised network (such as a spoofed public Wi-Fi network) and the device was undergoing a language update at the same time.

 

Get your daily dose of tech news, reviews, and insights, in under 80 characters on Gadgets 360 Turbo. Connect with fellow tech lovers on our Forum. Follow us on X, Facebook, WhatsApp, Threads and Google News for instant updates. Catch all the action on our YouTube channel.

Advertisement

Related Stories

Popular Mobile Brands
  1. Dominic and the Ladies' Purse OTT Release Date: When and Where to Watch it Online?
  2. Motorola Edge 70 Ultra Camera Configuration, Other Key Features Leaked
  3. Motorola Edge 70 India Launch: Everything You Need to Know
  4. WhatsApp Brings a Voicemail-like Feature for Missed Voice and Video Calls
  5. The Rookie Season 7 OTT Release Date: When and Where to Watch it Online?
  6. Realme Narzo 90 Series Price in India Leaked; Will Come in These Colourways
  1. Astronomers Observe Star’s Wobbling Orbit, Confirming Einstein’s Frame-Dragging
  2. Galaxy Collisions Found to Activate Supermassive Black Holes, Euclid Data Shows
  3. JWST Detects Oldest Supernova Ever Seen, Linked to GRB 250314A
  4. Chandra’s New X-Ray Mapping Exposes the Invisible Engines Powering Galaxy Clusters
  5. Blue Origin to Fly First Wheelchair User to Space on New Shepard NS-37
  6. Chandra’s New X-Ray Mapping Exposes the Invisible Engines Powering Galaxy Clusters
  7. Sasivadane Now Streaming on Amazon Prime Video: Everything You Need to Know
  8. Kuttram Purindhavan Now Streaming Online: What You Need to Know?
  9. Lyne Lancer 19 Pro With 2.01-Inch Display, SpO2 Monitoring Launched in India
  10. OpenAI and Disney Reach Licensing Agreement to Bring Its Characters to the Sora App
Gadgets 360 is available in
Download Our Apps
Available in Hindi
© Copyright Red Pixels Ventures Limited 2025. All rights reserved.