Tuesday, September 02, 2014
Search
  
Submit your own News for
inclusion in our Site.
Click here...
Breaking News
webOS Is Still Alive With LuneOS ROM Release for Android, webOS Devices
AMD Launches AMD Radeon R9 285 Graphics, "Never Settle: Space Edition" Game Bundle
AMD Introduces New 8-core FX-series Processors
New Philips Hue Beyond Combines Functionality And Ambient Lighting for Home
LG and Samsung Add Swarovski Crystals on Their Products
Pioneer DDJ-WeGO3 Allows You To Mix Tracks from Spotify or iTunes
Apple's iCloud Could Have Allowed Celebrity Nude-Photo Leak
Google To Launch New Budget Phone In India
Active Discussions
help questions structure DVDR
Made video, won't play back easily
Questions durability monitor LCD
Questions fungus CD/DVD Media, Some expert engineer in optical media can help me?
CD, DVD and Blu-ray burning for Android in development
IBM supercharges Power servers with graphics chips
Werner Vogels: four cloud computing trends for 2014
Video editing software.
 Home > News > Mobiles > Samsung...
Last 7 Days News : SU MO TU WE TH FR SA All News

Monday, January 13, 2014
Samsung Denies Vulnerability In KNOX


Samsung has denied a reported vulnerability on a Samsung Galaxy S4 device with the KNOX security platform.

Last month, security researchers at Ben-Gurion University Cyber Security Labs said that they had identified a critical vulnerability in highly secure Samsung mobile devices which are based on the Knox architecture. The breach, researchers believe, enables easy interception of data communications between the secure container and the external world including file transfers, emails and browser activity.

Samsung said that after collaborating with Google and having discussed the research with the original researchers, the company has verified that "the exploit uses legitimate Android network functions in an unintended way to intercept unencrypted network connections from/to applications on the mobile device." Samsung said the research did not identify a flaw or bug in Samsung KNOX or Android; "it demonstrated a classic Man in the Middle (MitM) attack, which is possible at any point on the network to see unencrypted application data."

Samsung and Google said that such attacks can be prevented if apps are built to support Secure Sockets Layer (SSL) encryption. In additio, such issues can be addressed through the proper configuration of mechanisms available in Knox.

The configuration settings Samsung said would prevent the attack from working include Knox?s mobile device management feature, which can lock down security-sensitive device settings; and "per-app VPN", which forces traffic from a designated app through a VPN tunnel. KNOX implements a FIPS 140-2 Level 1 certified VPN client, a NIST standard for data-in-transit protection along with NSA suite B cryptography.




Previous
Next
Acer CEO Blames Ultrabook Strategy For Company's Weak Results        All News        Samsung Display Showcased Foldable Display Prototype At CES
Sony Introduces The Xperia E1 And The Xperia T2 Ultra Smartphones     Mobiles News      Competition Among U.S. Mobile Carriers Escalates

Get RSS feed Easy Print E-Mail this Message

Related News
Samsung Introduces First Curved Soundbar For TVs
Samsung Partners with Nike On Running App
Samsung Applied for Samsung Quantum Dot TV Trademark
Samsung, LG Introduce New Smartwatches
Samsung Starts Mass Production Of First 3D TSV DDR4 Modules
Samsung To Unveil Virtual Reality Headset, Bendable TVs
Samsung To Unveil New Smart TV Content at IFA 2014
Samsung Delivers Slim Level Box mini Wireless Speaker
Samsung, Microsoft Want To End Android Patent Dispute Soon
Galaxy Note 4 May Come in Two Versions
Samsung Buys Home-automation Company SmartThings
Samsung Exynos 5430 Is The Company's First 20nm SoC

Most Popular News
 
Home | News | All News | Reviews | Articles | Guides | Download | Expert Area | Forum | Site Info
Site best viewed at 1024x768+ - CDRINFO.COM 1998-2014 - All rights reserved -
Privacy policy - Contact Us .