Samsung Galaxy backdoor discovered by developer
Vulnerability allows for remote read/write capabilities.


An Android developer has discovered a backdoor in a number of Samsung Galaxy smartphones that could enable remote wiping.
According to Paul Kocialkowski, who detailed his discovery in a guest post on the Free Software Foundation blog, modern smartphones have two processors: one running the main operating system in this case, Android while the other, known as the modem, baseband or radio, is in charge of communications with the mobile telephony network.
"This [second] processor always runs a proprietary operating system," he said.
"These systems are known to have backdoors that make it possible to remotely convert the modem into a remote spying device," he claimed.
Kocialkowski said this can involve the device's microphone, GPS locator, camera, and/or data stored on the phone.
He claimed while working on Replicant, a fully free version of Android, he and his team discovered the Samsung programme running on the applications processor in charge of handling the communication protocol.
"[It] actually implements a backdoor that lets the modem perform remote file I/O operations on the file system," said Kocialkowski.
Get the ITPro daily newsletter
Sign up today and you will receive a free copy of our Future Focus 2025 report - the leading guidance on AI, cybersecurity and other IT challenges as per 700+ senior executives
"This programme is shipped with the Samsung Galaxy devices and makes it possible for the modem to read, write, and delete files on the phone's storage ... [and] runs with sufficient rights to access and modify the user's personal data," he claimed.
Replicant has consequently published a patch that replaces the Samsung-RIL library, which, it is claimed, closes the backdoor. More information on the backdoor and access to the patch are available at the Replicant wiki.

Jane McCallion is Managing Editor of ITPro and ChannelPro, specializing in data centers, enterprise IT infrastructure, and cybersecurity. Before becoming Managing Editor, she held the role of Deputy Editor and, prior to that, Features Editor, managing a pool of freelance and internal writers, while continuing to specialize in enterprise IT infrastructure, and business strategy.
Prior to joining ITPro, Jane was a freelance business journalist writing as both Jane McCallion and Jane Bordenave for titles such as European CEO, World Finance, and Business Excellence Magazine.
-
Asus ZenScreen Fold OLED MQ17QH review
Reviews A stunning foldable 17.3in OLED display – but it's too expensive to be anything more than a thrilling tech demo
By Sasha Muller
-
How the UK MoJ achieved secure networks for prisons and offices with Palo Alto Networks
Case study Adopting zero trust is a necessity when your own users are trying to launch cyber attacks
By Rory Bathgate
-
Red Hat and Samsung agree landmark software deal to develop next-gen storage
News The partnership is a first for Samsung as the companies commit to developing memory software designs that can keep up with emerging tech
By Connor Jones
-
The IT Pro Products of the Year 2019: All the year’s best hardware
Best Our favourite equipment from the past 12 months
By ITPro
-
Best business smartphones: The top handsets from Apple, Samsung, Google and more
Best The best business smartphones on the market today packed with work-focused features you need
By Alan Martin
-
Samsung Galaxy S5: Top 16 tips and tricks
Tutorials Get the most out of your Galaxy S5
By Zach Marzouk
-
Samsung Galaxy Tab S3 review
Reviews The best Android tablet around - but it’s still not a match for the iPad
By Adam Shepherd
-
Tablet market falls 15% as low-cost devices lead sales
News Weakened market caused by 'low-cost detachables" sees third-quarter tablet sales fall by 15%
By Dale Walker
-
Apple re-awarded $120m in Samsung spat
News Judge rules in favour of Apple in latest round of patent infringement bout
By Clare Hopping
-
Samsung Galaxy S7/S7 Edge price, features and specs: Samsung Galaxy overtakes Apple iPhone US sales
Rumours Galaxy S7 beats iPhone 6s shipments in American market
By Jane McCallion