CERT-In has released a high-risk alert for users of Samsung Galaxy mobile phones, advising them to quickly update the operating system and security features on their phones.
Samsung phones are categorized as “high-risk” due to multiple vulnerabilities that could allow attackers to bypass security restrictions, access sensitive information, and execute arbitrary code. Owners of these phones are advised to update their firmware or operating system as soon as possible.
What could happen if you don’t follow the advisory
Samsung Galaxy phone owners could be subjected to several risks if they don’t update their security and OS, as directed by CERT-In. Here are some vulnerabilities highlighted in the advisory by the government.
- Steal phone’s secret code (SIM PIN)
- Shout loud commands to phone (broadcast with elevated privilege)
- Peek into private AR Emoji files
- Change the clock on the castle gate (Knox Guard lock)
- Snoop around phone’s files (access arbitrary files)
- Steal important information (sensitive information)
- Control the phone like a puppet (execute arbitrary code.