Samsung Says 'Find My Mobile' Vulnerability Was Fixed Last Month

Advertisement
By NDTV Correspondent | Updated: 5 November 2014 19:17 IST
Samsung has responded to reports from last month about a vulnerability in its Find My Mobile service, specifically that which allowed unauthorised individuals to remotely lock, unlock, and ring Samsung devices.

The Find My Mobile vulnerability was reported by the National Institute of Standards and Technology (NIST) in the US on its National Vulnerability Database (NVD), which gave it a high-severity rating at 7.8, and an exploitability sub-score of 10.0 due to its network exploitable nature, low access complexity, no authentication requirement, and disruption potential.

The Samsung Find My Mobile vulnerability was also reported by Egyptian security researcher Mohamed A. Baset (@SymbianSyMoh), who also uploaded two videos showing the vulnerability being exploited with cross-site request forgery (CSRF) attacks. Baset said he was able to insert scripts into Find My Mobile fields via the Web interface to force the service to lock, unlock, and ring a linked Samsung smartphone.

Samsung responded to the reports on its global blog in a post titled, 'Samsung's Find My Mobile service is safe'. The South Korean consumer electronics giant said the "reported issue in Find My Mobile was fixed through an update on October 13, and no user information has been compromised. Even before the update, any data from the phone or on the server could not be accessed by the hacker."

Advertisement

It added, "Samsung Electronics takes the security of our products very seriously and remains committed to providing our customers with the best user experience."

Advertisement

The firm did highlight conditions (seen below) required for the "unlikely situation" in which an attacker could remotely lock, unlock, and ring a Samsung device, but once again stressed the attacker would not have been able to access data.

  1. The attacker occupies a way to send a link containing malicious code.
  2. The Find My Mobile user sets up Find My Mobile Remote control 'ON' at his/her device
  3. The user enters up his/her ID and password and logs on Find My Mobile website (http://findmymobile.samsung.com) (If the user doesn't use the website after log-on, it will be automatically logged out)
  4. The user clicks the link in email/instant message/SMS sent by attackers
 

Catch the latest from the Consumer Electronics Show on Gadgets 360, at our CES 2026 hub.

Advertisement

Related Stories

Popular Mobile Brands
  1. Flipkart Sale Early Deals: iPhone 17 Price in India Drops Under Rs. 75,000
  2. Samsung Galaxy A07 5G Launched With 6,000mAh Battery: Price, Features
  3. Here's When the Vivo V70 Series Could Launch in India
  4. Apple Could Soon Add Support for End-to-End Encrypted RCS Messages
  5. Astronomers Find 'Mystery Engine' Powering Nebula Around a Dead Star
  6. Amazon Great Republic Day Sale to Offer Discounts on These Laptops, Tablets
  7. Slack Introduces Agentic AI: How the New Slackbot Automates Your Workflow
  8. iQOO Z11 Turbo Selfie Camera Revealed in New Teasers
  9. Oppo Find N6, Watch X3 Specifications Leaked Ahead of Launch
  1. Astronomers Find ‘Mystery Engine’ Powering Massive Nebula Around a Dead Star, Challenging Physics
  2. Vivo V70 Series India Launch Timeline Leaked; Two Models Expected to Debut
  3. iPhone 17 Price in India Drops Under Rs. 75,000 Ahead of Flipkart Republic Day Sale 2026
  4. Slack Introduces Agentic AI: How the New Slackbot Automates Your Workflow
  5. Arc Raiders' Sales Cross 12.4 Million Copies as Embark Studios Rolls Out New Update
  6. Space Gen: Chandrayaan OTT Release Date: When and Where to Watch Nakuul Mehta, Shriya Saran Starrer Online?
  7. Qubo Dashcam 4G Live Launched in India With Live GPS Tracking, Safety Alerts Alongside Dashcam Trio: Price, Features
  8. Samsung Galaxy Z Flip 8 to Reportedly Miss Out on Major Camera Upgrades; Specifications Leak
  9. Apple's iOS 26.3 Beta 2 Update Hints at End-to-End Encryption Support for RCS Messaging: Report
  10. Realme P Series Phone With 10,000mAh Battery Spotted on BIS Website; Could Launch in India Soon
Gadgets 360 is available in
Download Our Apps
Available in Hindi
© Copyright Red Pixels Ventures Limited 2026. All rights reserved.