Original topic:

Knox Security Breach

(Topic created on: 05-21-2020 07:47 PM)
845 Views
Arvindmohan
Active Level 4
Options
Galaxy Note
This reply of Samsung, which, according me gives a message that though Knox Security is inbuilt in the Samsung Handset but third party application, if installed, the same exploits the vulnerability of the handset & customers would then be disowned. Point is if on installation of third party application installed unknowingly, if this is the senerio, then the claim of Knox Security is 100 guaranteed in public domain is equally deplorable. At least, the Knox Security with Macfee inbuilt in the chipset should warn at the time of third party application installation, which has not been done. Be that as it may, the reply of Samsuy reads as under:-

"Dear Mr. Arvind,

Greetings!
This is in regards to the complaint of your Samsung SM-N975FZSDINS, bearing serial # RZ8M90D1SXX.
It is our best endeavor to provide you with impeccable product experience at Samsung. Having said that, we always believe that our customers are the best judge and may help with improving our products.

Therefore, we take every feedback with an assurance of improvement with every passing day.
The feedback shared by you regarding is appreciated but we will like to confirm you that since Android is open OS and no handset manufacturer will have control on it. Please note that, It is the discretion of the customer as which all applications he wants to install on the handset and which all not to be installed. The alleged breach may be related to third-party application which, as stated by you have been installed on the handset by you.

This is purely related to third-party application which have been installed on the handset and hacker has used the same to get an access of your handset.
Assuring best of the services always.

Best regards,

Sunny Kumar

Senior Executive - Customer Experience

Samsung India Electronics Pvt. Ltd. 

Desk Phone- 0120-3705031 Ext. No- 41281

(Mon to Sat 10:00 A.M - 07:00 P.M)"


The forbes report published recently on 07/05/2020 confirms that Samsung handsets are prune to vulnerability for remote explosion, the link whereof would reads as under:-

https://www.forbes.com/sites/daveywinder/2020/05/07/samsung-confirms-critical-security-warning-for-m...


Thus, the said remote vulnerability in the Samsung Handset is being cured in awaited May 2020 Security Patch in India.

9 Comments
AMPK
Expert Level 3
Galaxy Note
It is astonishing to note the vulnerability.
0 Likes
Anonymous
Not applicable
Galaxy Note

Ok why does samsung allow Knox to violate people privacy I never set up a work profile yet I have one my I'd is knoxcore-5250 cant turn off my work profile yet this isnt a work phone or a school phone it's my phone I'm not a developer bit die to the fact t j.g at this oho e seems to be an official phone my life has bern hacked bank accounts drained and everybody stands back and watches doing nothing why 

AMPK
Expert Level 3
Galaxy Note
We talk of Samsung vulnerability. But Facebook and Google has all the information about our mobile, what we do, All data and use it for there research and business . So as long as we are connected to internet nothing is safe. Let us have security software to save major security breach.
0 Likes
Arvindmohan
Active Level 4
Galaxy Note
No
0 Likes
Dilli
Expert Level 5
Galaxy Note
I suggest dont keep your important data digitally on your phone Knox is not perfect. Why do you think we get security updates? It's to patch certain vulnerabilities in background but not all get solved. Dont bank on your phone too much specially your bank and credit card details should not be saved in your mobile phone. Just an advice. 😉
0 Likes
Arvindmohan
Active Level 4
Galaxy Note
Nothing that sort is kept. It's remote vulnerability in Samsung, which is exploited upon installation of application from outside store send in the name of JIOFIBER. Be aware, now another application in the name of JIO UPI is being circulated through SMS's.
Dilli
Expert Level 5
Galaxy Note
If security is concerned android being open source was never safe. Better to be safe than install 3rd party apps unless necessary and authentic
Arvindmohan
Active Level 4
Galaxy Note
Off Course from now onwards. But point remains the Samsung should not have claimed 100 percent guarantee of Knox security in public domain. Had this fact known to me, I would have had preferred to install my Quick Heal Paid version with me since 2015 & renewed from time to time & still valid through June 2020. The bottom line remains that remote facility available & inbuilt in Samsung handsets & more preciously could be found in Help section of Sumsung Members application is vulnerable.
Arvindmohan
Active Level 4
Galaxy Note
No permission given