Millions of Samsung Galaxy Phones May Be Vulnerable to Hackers

Millions of Samsung Galaxy Phones May Be Vulnerable to Hackers

Samsung's Galaxy S4 emerges to do battle on Apple's home turf
Reuters
By Andrew Lumby

If you’re one of the millions of users of a Samsung Galaxy phone, you might be a potential target for a malicious hacker.

A report released today by NowSecure, a security firm located in Chicago, found that a glitch in Swift, the keyboard software used by default on all Samsung Galaxy devices could allow a remote attacker to compromise your phone.

This particular bug makes the phone vulnerable to what is known as a “man in the middle” attack. The Swift software consistently sends requests to a server, checking for updates. To someone with the right knowhow, though, it’s possible to impersonate Swift’s server and send through software that can be used to gain control of the device.

The main problem with this vulnerability is that there’s no real solution. The Swift keyboard is so integrated into Samsung’s software that it cannot be removed or disabled — even if it is switched out with a different keyboard app. Steering clear of unsecured Wi-Fi networks will make you less likely to be targeted, but it won’t render you invulnerable.

Related: 10 Biggest Tech Flops of the Century​

Swift runs with elevated permissions, giving it pretty much free rein around the phone. This means that a hacker that worms his way into it can also access the Galaxy’s microphone and camera, track the user’s location or listen to their calls. They can even install apps.

NowSecure claims to have made Samsung and Google’s Android team aware of this vulnerability in late 2014, and Samsung reportedly has made a patch available to network providers. It’s not clear, though, whether providers have pushed out the patch to users yet. Many networks have a record of being notoriously slow to push through updates and security patches, and NowSecure’s tests found a number of Galaxy phones on different carriers were still vulnerable as of Tuesday.

If you’re of a more technical bent, you may be interested in seeing the details of NowSecure’s report on their blog. If you’re of a less technical bent, you might want to check with your carrier and try to avoid insecure Wi-Fi networks.

Craigslist Car Scams Are on the Rise, Especially in Midwest

REUTERS/Mario Anzuoni
By Beth Braverman

An insurance group is warning consumers of a widespread scam in which fraudsters are buying cars on Craigslist with bogus checks. 

The National Insurance Crime Bureau has identified nearly 100 instances throughout the Midwest of Craigslist car sales in which the buyers used fake bank checks. 

“These scams are well organized and have all the appearances of being legitimate,” NCIB President and CEO Joe Wehrle said in a statement. “But in the end, the criminal gets the car and the sellers or their financial institutions are left on the hook for thousands of dollars still owed on the car.” 

Related: A New Vicious Scam Targets Desperate Homeowners 

The scam appears to be especially prevalent in states where vehicle owners retain the title despite an outstanding lien. NCIB, a nonprofit supported by the insurance industry, advises car sellers never to sign over the title until they have the money for the sale in hand, even if that means waiting a week or more for a check to clear. 

Craigslist offers its own list of tips to avoid scams. Remember, the online marketplace offers no guarantees regarding items bought or sold via its site and little recourse if you are the victim of a scam. 

The site’s No. 1 tip is to do all transactions in person. A growing number of police stations now offer dedicated space for people meeting in person for transactions they’ve agreed to online. 

Those with information about insurance fraud or vehicle theft can anonymously report it by calling 800-835-6422 or texting keyword “fraud” to TIP411.

15 Restaurants Offering Free Food for Moms on Mother’s Day

How much more Americans spend on Valentine’s Day compared to <a href="http://www.thefiscaltimes.com/Articles/2010/05/07/The-Value-of-Celebrating-Mom.aspx#page1" target="_blank">Mother’s Day</a>.
iStockphoto
By Rebecca Lehmann, Brad's Deals

Your Mom was the one who taught you to head straight for the clearance racks. Show her how much you've learned by taking her out for some deliciously cheap eats before taking a free garden tour.

Related: 10 Worst States for Working Mothers

Mother's Day Freebies 2015

As always, local participation may vary, so call ahead to check - and then make reservations if you can.

This article originally appeared in The Brad's Deals Blog.
Read more from The Brad's Deals Blog:

6 Things You Should Never Waste Your Money 
37 Things You Should Always Keep in Your Car
Is Vision Insurance Worth it For You

 

This Disease Hikes Health Care Costs By More than $10,000 a Year

Client Sanon has her finger pricked for a blood sugar test in the Family Van in Boston
REUTERS/Brian Snyder
By Beth Braverman

Medical professionals and economists have been worried about the growing prevalence of diabetes for years. A new report shows their concerns are well placed. In 2013, the per capita health care bills of consumers with diabetes was $15,000, nearly 71 percent ($10,700) higher than those without the disease, according to the Healthcare Cost Institute

The brunt of those bills are borne by health care providers, but consumers with diabetes have per capita out-of-pocket costs of $1,922, compared to just $738 for those who do not have diabetes. 

For those under the age of 65, health care expenses grew an average 4.1 percent from 2012 to 2013, but the increase was even higher among children, who saw expenses rise 7 percent from 2011 to 2012 and then another 9.6 percent from 2012 to 2013.

Related: Diabetes Detection Up in Pro-Obamacare States

“There has been extraordinary growth in health spending for children with diabetes,” HCCI senior research Amanda Frost said in a statement, citing branded insulin as one factor in the increase. 

For children, the costs go beyond medication. A 2012 study in Health Affairs found that people who develop diabetes before age 30 make less money than their peers, are more likely to drop out of high school and less likely to attend college. 

One of the most widespread chronic diseases in the United States, diabetes care consumes about 10 percent of U.S. health care spending, according to a study by the University of Michigan.

This College Choice Could Make You $3Million Richer

iStockPhoto/The Fiscal Times
By Beth Braverman

The differences in starting salaries for STEM majors versus those who study the humanities have been widely publicized. Now, a new study looks at how those differences add up over a lifetime of earnings – and the results are staggering. 

The lowest paid graduates, early childhood education majors, earn just $39,000 annually mid-career, while the highest paid petroleum engineering majors, make an average of $136,000 per year. Over a career, that difference amounts to more than $3 million, according to the report The Economic Value of College Majors by economists at Georgetown University. 

Among the major fields of study, architecture and engineering students earn highest average salary--$83,000 per year, and education majors earn the lowest--$45,000 per year. 

Related: 10 Public Universities with the Worst Graduation Rates 

The study finds that generally it’s still worth it to go to college. The average bachelor’s degree holder makes $1 million more over a lifetime than a person with just a high school diploma. 

A separate report released last fall by the Federal Reserve Bank of New York found that the value of a bachelor’s degree has reached an all-time high of around $300,000. Researchers found that it takes about 10 years to recoup the cost of a degree, a historically low level, down from close to 25 years in the late 1970s and 1980s. 

So those education majors should still go to college, but they might be smart to look for more moderately priced options and to be more wary about taking on debt than their engineering peers.

Putin’s Shiny New Tank Breaks Down

Russian Armata tank
Sputnik
By Rob Garver

According to news reports, including the Associated Press, the pride of the Russian military – Vladimir Putin’s T-14 Armata tank – broke down in the middle of Red Square on Thursday during a practice run of the Victory Day parade scheduled for Saturday. The state-of-the-art tank was one of eight rolling through Moscow Thursday morning when it unexpectedly came to a halt while the others rolled on.

According to the AP, the soldiers on hand first tried to tow the tank away, but were unsuccessful. After about 15 minutes, the problem was apparently solved, and the tank rolled off under its own power.

Related: 7 New Weapons in Vladimir Putin's Arsenal​

An executive of the company that produced the tank told the AP that, despite the apparent attempts to tow it away, the tank had not broken down and was functioning properly.

The T-14 is meant to be the main battle tank that will carry the Russian Army into the rest of the 21st century. Its unmanned turret is controlled remotely by crew members safely inside an armored compartment in the body of the tank. It has advanced weapons system and armor, and is believed to be a match for any tank currently in service with North Atlantic Treaty Organization forces.

The T-14 has been written about extensively in the government-controlled Russian press, and its public unveiling is being treated as a major event. In addition, the parade Saturday will be watched not only by millions of Russians, but also by dozens of foreign dignitaries on hand to hel celebrate the 70th anniversary of the end of World War II. That means any malfunction of the tank during the actual parade on Saturday would be terribly embarrassing to the Kremlin.