Millions of Samsung Galaxy Phones May Be Vulnerable to Hackers

If you’re one of the millions of users of a Samsung Galaxy phone, you might be a potential target for a malicious hacker.
A report released today by NowSecure, a security firm located in Chicago, found that a glitch in Swift, the keyboard software used by default on all Samsung Galaxy devices could allow a remote attacker to compromise your phone.
This particular bug makes the phone vulnerable to what is known as a “man in the middle” attack. The Swift software consistently sends requests to a server, checking for updates. To someone with the right knowhow, though, it’s possible to impersonate Swift’s server and send through software that can be used to gain control of the device.
The main problem with this vulnerability is that there’s no real solution. The Swift keyboard is so integrated into Samsung’s software that it cannot be removed or disabled — even if it is switched out with a different keyboard app. Steering clear of unsecured Wi-Fi networks will make you less likely to be targeted, but it won’t render you invulnerable.
Related: 10 Biggest Tech Flops of the Century
Swift runs with elevated permissions, giving it pretty much free rein around the phone. This means that a hacker that worms his way into it can also access the Galaxy’s microphone and camera, track the user’s location or listen to their calls. They can even install apps.
NowSecure claims to have made Samsung and Google’s Android team aware of this vulnerability in late 2014, and Samsung reportedly has made a patch available to network providers. It’s not clear, though, whether providers have pushed out the patch to users yet. Many networks have a record of being notoriously slow to push through updates and security patches, and NowSecure’s tests found a number of Galaxy phones on different carriers were still vulnerable as of Tuesday.
If you’re of a more technical bent, you may be interested in seeing the details of NowSecure’s report on their blog. If you’re of a less technical bent, you might want to check with your carrier and try to avoid insecure Wi-Fi networks.
Chart of the Day: SALT in the GOP’s Wounds

The stark and growing divide between urban/suburban and rural districts was one big story in this year’s election results, with Democrats gaining seats in the House as a result of their success in suburban areas. The GOP tax law may have helped drive that trend, Yahoo Finance’s Brian Cheung notes.
The new tax law capped the amount of state and local tax deductions Americans can claim in their federal filings at $10,000. Congressional seats for nine of the top 25 districts where residents claim those SALT deductions were held by Republicans heading into Election Day. Six of the nine flipped to the Democrats in last week’s midterms.
Chart of the Day: Big Pharma's Big Profits
Ten companies, including nine pharmaceutical giants, accounted for half of the health care industry's $50 billion in worldwide profits in the third quarter of 2018, according to an analysis by Axios’s Bob Herman. Drug companies generated 23 percent of the industry’s $636 billion in revenue — and 63 percent of the total profits. “Americans spend a lot more money on hospital and physician care than prescription drugs, but pharmaceutical companies pocket a lot more than other parts of the industry,” Herman writes.
Chart of the Day: Infrastructure Spending Over 60 Years

Federal, state and local governments spent about $441 billion on infrastructure in 2017, with the money going toward highways, mass transit and rail, aviation, water transportation, water resources and water utilities. Measured as a percentage of GDP, total spending is a bit lower than it was 50 years ago. For more details, see this new report from the Congressional Budget Office.
Number of the Day: $3.3 Billion

The GOP tax cuts have provided a significant earnings boost for the big U.S. banks so far this year. Changes in the tax code “saved the nation’s six biggest banks $3.3 billion in the third quarter alone,” according to a Bloomberg report Thursday. The data is drawn from earnings reports from Bank of America, Citigroup, Goldman Sachs, JPMorgan Chase, Morgan Stanley and Wells Fargo.
Clarifying the Drop in Obamacare Premiums

We told you Thursday about the Trump administration’s announcement that average premiums for benchmark Obamacare plans will fall 1.5 percent next year, but analyst Charles Gaba says the story is a bit more complicated. According to Gaba’s calculations, average premiums for all individual health plans will rise next year by 3.1 percent.
The difference between the two figures is produced by two very different datasets. The Trump administration included only the second-lowest-cost Silver plans in 39 states in its analysis, while Gaba examined all individual plans sold in all 50 states.