• Home
  • About Us
  • Contact Us
  • Disclaimer
  • Privacy Policy
  • Terms and Conditions
Thursday, March 30, 2023
Edition Post
No Result
View All Result
  • Home
  • Technology
  • Information Technology
  • Artificial Intelligence
  • Cyber Security
  • Mobile News
  • Robotics
  • Virtual Reality
  • Home
  • Technology
  • Information Technology
  • Artificial Intelligence
  • Cyber Security
  • Mobile News
  • Robotics
  • Virtual Reality
No Result
View All Result
Edition Post
No Result
View All Result
Home Cyber Security

Samsung Galaxy Retailer Bug Might’ve Let Hackers Secretly Set up Apps on Focused Gadgets

Edition Post by Edition Post
October 31, 2022
in Cyber Security
0
Samsung Galaxy Retailer Bug Might’ve Let Hackers Secretly Set up Apps on Focused Gadgets
189
SHARES
1.5k
VIEWS
Share on FacebookShare on Twitter

Related articles

Kyndryl lays off employees looking for effectivity

Kyndryl lays off employees looking for effectivity

March 30, 2023
UK Units Up Faux Booter Websites To Muddy DDoS Market – Krebs on Safety

UK Units Up Faux Booter Websites To Muddy DDoS Market – Krebs on Safety

March 30, 2023


A now-patched safety flaw has been disclosed within the Galaxy Retailer app for Samsung units that might doubtlessly set off distant command execution on affected telephones.

The vulnerability, which impacts Galaxy Retailer model 4.5.32.4, pertains to a cross-site scripting (XSS) bug that happens when dealing with sure deep hyperlinks. An unbiased safety researcher has been credited with reporting the problem.

“Right here, by not checking the deep hyperlink securely, when a person accesses a hyperlink from a web site containing the deeplink, the attacker can execute JS code within the webview context of the Galaxy Retailer software,” SSD Safe Disclosure mentioned in an advisory posted final week.

XSS assaults permit an adversary to inject and execute malicious JavaScript code when visiting a web site from a browser or one other software.

CyberSecurity

The difficulty recognized within the Galaxy Retailer app has to do with how deep hyperlinks are configured for Samsung’s Advertising & Content material Service (MCS), doubtlessly resulting in a situation the place arbitrary code injected into the MCS web site may result in its execution.

This might then be leveraged to obtain and set up malware-laced apps on the Samsung system when visiting the hyperlink.

“To have the ability to efficiently exploit the sufferer’s server, it’s essential to have HTTPS and CORS bypass of chrome,” the researchers famous.





Source_link

Share76Tweet47

Related Posts

Kyndryl lays off employees looking for effectivity

Kyndryl lays off employees looking for effectivity

by Edition Post
March 30, 2023
0

Kyndryl, the managed IT companies supplier that spun out of IBM, has introduced layoffs that might have an effect on...

UK Units Up Faux Booter Websites To Muddy DDoS Market – Krebs on Safety

UK Units Up Faux Booter Websites To Muddy DDoS Market – Krebs on Safety

by Edition Post
March 30, 2023
0

The UK’s Nationwide Crime Company (NCA) has been busy establishing phony DDoS-for-hire web sites that search to gather data on...

Crypto hacker hijinks, authorities spy ware, and Utah social media shocker • Graham Cluley

Crypto hacker hijinks, authorities spy ware, and Utah social media shocker • Graham Cluley

by Edition Post
March 30, 2023
0

A cryptocurrency hack leads us down a mazze of twisty little passages, Joe Biden’s business spy ware invoice, and Utah...

Adware Distributors Caught Exploiting Zero-Day Vulnerabilities on Android and iOS Units

Adware Distributors Caught Exploiting Zero-Day Vulnerabilities on Android and iOS Units

by Edition Post
March 29, 2023
0

Mar 29, 2023Ravie LakshmananZero-Day / Cellular Safety Plenty of zero-day vulnerabilities that had been addressed final yr had been exploited...

API safety: the brand new safety battleground

API safety: the brand new safety battleground

by Edition Post
March 29, 2023
0

The content material of this put up is solely the duty of the creator.  AT&T doesn't undertake or endorse any...

Load More
  • Trending
  • Comments
  • Latest
AWE 2022 – Shiftall MeganeX hands-on: An attention-grabbing method to VR glasses

AWE 2022 – Shiftall MeganeX hands-on: An attention-grabbing method to VR glasses

October 28, 2022
ESP32 Arduino WS2811 Pixel/NeoPixel Programming

ESP32 Arduino WS2811 Pixel/NeoPixel Programming

October 23, 2022
HTC Vive Circulate Stand-alone VR Headset Leaks Forward of Launch

HTC Vive Circulate Stand-alone VR Headset Leaks Forward of Launch

October 30, 2022
Sensing with objective – Robohub

Sensing with objective – Robohub

January 30, 2023

Bitconnect Shuts Down After Accused Of Working A Ponzi Scheme

0

Newbies Information: Tips on how to Use Good Contracts For Income Sharing, Defined

0

Samsung Confirms It Is Making Asic Chips For Cryptocurrency Mining

0

Fund Monitoring Bitcoin Launches in Europe as Crypto Good points Backers

0
Cerebras Releases 7 GPT-based Massive Language Fashions for Generative AI

Cerebras Releases 7 GPT-based Massive Language Fashions for Generative AI

March 30, 2023
What’s Trending in September 2021 | RobotShop Group

What’s Trending in September 2021 | RobotShop Group

March 30, 2023
Your Complete Information to Cellular Utility Growth

Your Complete Information to Cellular Utility Growth

March 30, 2023

WWDC 2023: Apple to Reveal What’s Subsequent for iOS, MacOS and Extra on June 5

March 30, 2023

Edition Post

Welcome to Edition Post The goal of Edition Post is to give you the absolute best news sources for any topic! Our topics are carefully curated and constantly updated as we know the web moves fast so we try to as well.

Categories tes

  • Artificial Intelligence
  • Cyber Security
  • Information Technology
  • Mobile News
  • Robotics
  • Technology
  • Uncategorized
  • Virtual Reality

Site Links

  • Home
  • About Us
  • Contact Us
  • Disclaimer
  • Privacy Policy
  • Terms and Conditions

Recent Posts

  • Cerebras Releases 7 GPT-based Massive Language Fashions for Generative AI
  • What’s Trending in September 2021 | RobotShop Group
  • Your Complete Information to Cellular Utility Growth

Copyright © 2022 Editionpost.com | All Rights Reserved.

No Result
View All Result
  • Home
  • Technology
  • Information Technology
  • Artificial Intelligence
  • Cyber Security
  • Mobile News
  • Robotics
  • Virtual Reality

Copyright © 2022 Editionpost.com | All Rights Reserved.