close
close

Samsung Galaxy users warned warned when private photos are leaked through

Smartphone security is not surprising when it comes to choosing a device for my daily carry. It should also be for you. So if you can see that one of the security protection offered by a large smartphone player, in this case, the option for safe folders for users of Samsung devices, your confidential photos does not keep your confidential photos as privately as you may have imagined, this is a big reason to worry. We know the following.

ForbesMail Security Alert: Google to output SMS codes for billions of users

Reddit user reports Samsung Secure folder photo exposure

“The safe folder is the perfect place to save all photos, videos, files, apps and data you want to keep private.” The words of Samsung itself describe the function that is the confidentiality of the content for so many Galaxy smartphone users. However, a new report seems to throw a shadow into this claim, whereby photos in the safe housing that uses the device under certain circumstances is passed on to everyone.

A Reddit user went to the platform to complain that the safe folder is anything but the content while it is blocked. Of course, this should not be possible. Finally, Samsung has announced that the secure folder “is protected by the Samsung Knox security platform of the degree of defense, which encrypted all data stored there and ensures that its information protects against malicious attacks.” In addition, users can add a pass code or a biometric lock to keep this data, these private photos, to keep this private photos safe from curious eyes. Or maybe not.

ForbesToo poisonous password stealer uses a single SMS to chop your Android

Dealing with Samsung Secure folder protection to access private photos and videos

The core of the Reddit posting is that it is apparently possible to bypass the protective measures offered in the SCEC folder when an app requires a photo, even if the folder is activated that block all of these access. So you would finally expect it to work. However, the complaint here, the warning that was issued, is that this only applies if the app tries to ensure that access is a personal case that is executed in the main profile. The situation is worryingly different if the access request is made using a work profile app.

Mishaal Rahman wrote at Android Authority and confirmed that he was able to replicate this problem in a UI 7 by creating a work profile with the Shelter app. “Apps like Shelter can create a work profile on every device,” said Rahman, “What does the Shelter app, as long as someone have physical access to their Samsung device, to see which photos and videos are saved in a safe folder.”

Interestingly, it looks as if it is only a photo and video content that is endangered by this susceptibility to security, not in a different way of data. “The Android system file -Picker blocks access to secure folder files, even if the file picker is accessed via a work -app,” Rahman confirmed after thorough tests.

I made Samsung an explanation.

ForbesThe most demanding Gmail Mail attacks of all time – FBI says: Click anything