Millions of Samsung Galaxy Phones May Be Vulnerable to Hackers

Millions of Samsung Galaxy Phones May Be Vulnerable to Hackers

Samsung's Galaxy S4 emerges to do battle on Apple's home turf
Reuters
By Andrew Lumby

If you’re one of the millions of users of a Samsung Galaxy phone, you might be a potential target for a malicious hacker.

A report released today by NowSecure, a security firm located in Chicago, found that a glitch in Swift, the keyboard software used by default on all Samsung Galaxy devices could allow a remote attacker to compromise your phone.

This particular bug makes the phone vulnerable to what is known as a “man in the middle” attack. The Swift software consistently sends requests to a server, checking for updates. To someone with the right knowhow, though, it’s possible to impersonate Swift’s server and send through software that can be used to gain control of the device.

The main problem with this vulnerability is that there’s no real solution. The Swift keyboard is so integrated into Samsung’s software that it cannot be removed or disabled — even if it is switched out with a different keyboard app. Steering clear of unsecured Wi-Fi networks will make you less likely to be targeted, but it won’t render you invulnerable.

Related: 10 Biggest Tech Flops of the Century​

Swift runs with elevated permissions, giving it pretty much free rein around the phone. This means that a hacker that worms his way into it can also access the Galaxy’s microphone and camera, track the user’s location or listen to their calls. They can even install apps.

NowSecure claims to have made Samsung and Google’s Android team aware of this vulnerability in late 2014, and Samsung reportedly has made a patch available to network providers. It’s not clear, though, whether providers have pushed out the patch to users yet. Many networks have a record of being notoriously slow to push through updates and security patches, and NowSecure’s tests found a number of Galaxy phones on different carriers were still vulnerable as of Tuesday.

If you’re of a more technical bent, you may be interested in seeing the details of NowSecure’s report on their blog. If you’re of a less technical bent, you might want to check with your carrier and try to avoid insecure Wi-Fi networks.

Quote of the Day - October 16, 2017

By The Fiscal Times Staff

Speaking at a cabinet meeting on Monday, President Trump said:

"Obamacare is finished, it's dead, it's gone ... There is no such thing as Obamacare anymore."

Click here for the video.

Poll: Trump Tax Cuts Favor the Wealthy; Deficit Should Be Higher Priority

By The Fiscal Times Staff

Trump and the GOP still have work to do if they want to convince Americans that their tax plan won’t mostly help the rich. A CBS News Nation Tracker poll released Sunday finds that 58 percent say the tax reforms being discussed favor the wealthy, while 19 percent say it treats everyone equally and 18 percent say it favors the middle class.

The poll also found that 39 percent say that cutting the deficit should be a priority, even if it means taxes stay the same. About half as many people said cutting taxes should be prioritized even if the deficit rises.

The poll, conducted by YouGov, surveyed 2,371 U.S. adults between October 11 and 13. Its margin of error is 2.5 percent.

Coporate Tax Cut Could Be Phased In

By The Fiscal Times Staff

House tax writers (at least some of them) are worried that slashing the corporate tax rate found will push the deficit higher in a hurry – an analysis by the Tax Policy Center found that cutting the rate to the stated goal of 20 percent would cost $2 trillion over a decade. One way to soften the fiscal blow would be to phase in the reduction over three to five years. House Republicans say such an approach would reduce the size of the lost revenue by half.

Larry Summers: GOP Tax Claims Are 'Made-Up'

Feng Li/Getty Images
By The Fiscal Times Staff

Former U.S. Treasury Secretary Lawrence Summers isn't happy with the Republican tax plan, and it's not just because he has a different set of ideas as a Democrat. More fundamentally, he says Republicans are making false claims: “When you have -- and I hate to be in a position of using this word about our government -- when you have senior economic officials making claims that are made-up ... it’s very hard to have a dialogue, and compromise, and get to a good place.”

Summers is also worried about the effects of a tax cut for the rich during a time of considerable social turmoil: “There’s a lot of unhappiness and anger out there … It’s really hard to see why focusing a corporate tax cut on those at the very high-end is going to do much to assuage that anger.”

How Much Did Mike Pence’s NFL Walkout Cost Taxpayers?

U.S. Vice President Mike Pence and wife Karen arrive in Cartagena, Colombia, August 13, 2017. Colombian Presidency/Handout via REUTERS
Handout .
By Yuval Rosenberg

Vice President Mike Pence’s decision to attend an NFL game between the Indianapolis Colts and San Francisco 49ers yesterday and then leave after some 49ers players kneeled during the national anthem was quickly criticized by some as a planned piece of political theater — and a somewhat expensive one at that. “After all the scandals involving unnecessarily expensive travel by cabinet secretaries, how much taxpayer money was wasted on this stunt?” Rep. Adam Schiff (D-CA) tweeted Sunday afternoon.

The answer, CNN reports, is about $242,500: "According to the Air Force, flying a C-32, the model of plane used for Air Force 2, for one hour costs about $30,000. Pence's flight from Las Vegas to Indianapolis Saturday took about three hours and 20 minutes, so it cost about $100,000. Pence then flew from Indianapolis to Los Angeles on Sunday, which took about four hours and 45 minutes, costing about $142,500."

President Trump defended Pence’s trip, tweeting that it had been “long planned.” CNN also reports that some of the costs of Pence's flight from Indianapolis to Los Angeles will be paid back by the Republican National Committee because the vice president is attending a political event there.