Android lock screen security flaw outed on a Galaxy Note 2

Is there anything compromising on your home screen?
Is there anything compromising on your home screen?

Just what we need, another lock screen vulnerability.

A self-proclaimed mobile enthusiast discovered a security vulnerability in a Samsung Galaxy Note 2 that could give anyone access to a user's home screen, including making phone calls.

Terence Eden posted about the security loophole on his personal blog today, describing the method that can bypass pattern lock, PIN, passwords, and even face unlock.

To bypass a user's lock screen, someone can press the emergency call button followed by the "in case of emergency" icon on the bottom left of the keypad.

Then by holding the home button for a few seconds, the home screen will flash briefly before returning to the lock screen.

An inefficient flaw

It may be a somewhat small security flaw, since the home screen only flashes for less than a second, but Eden demonstrated that fast fingers can access any quick dial numbers a user may have set up on their home screen.

The method can also be used to launch apps on the user's home screen, though they'll only be visible for less than a second before returning to the lock screen with the app running in the background.

Though an inefficient method of hacking, a persistent attacker could access a user's calendar and contacts through this method.

The method was tested on a Samsung Galaxy Note 2 running Android 4.1.2 Jelly Bean. It's unknown if the security flaw is limited to the Note 2- Samsung's version of Android - or whether it's a wider issue in Android 4.1.2.

Eden said he contacted Samsung about his discovery, but said that after five days, he's yet to hear from the South Korean company. Maybe after today's public revelation, the firm will feel prompted to issue a response.

TOPICS
Latest in Security
Hacker silhouette working on a laptop with North Korean flag on the background
North Korea unveils new military unit targeting AI attacks
An image of network security icons for a network encircling a digital blue earth.
US government warns agencies to make sure their backups are safe from NAKIVO security issue
Laptop computer displaying logo of WordPress, a free and open-source content management system (CMS)
This top WordPress plugin could be hiding a worrying security flaw, so be on your guard
Computer Hacked, System Error, Virus, Cyber attack, Malware Concept. Danger Symbol
Veeam urges users to patch security issues which could allow backup hacks
UK Prime Minister Sir Kier Starmer
The UK releases timeline for migration to post-quantum cryptography
Representational image depecting cybersecurity protection
Cisco smart licensing system sees critical security flaws exploited
Latest in News
Ray-Ban Meta Smart Glasses
Samsung's rumored smart specs may be launching before the end of 2025
Apple iPhone 16 Review
The latest iPhone 18 leak hints at a major chipset upgrade for all four models
Quordle on a smartphone held in a hand
Quordle hints and answers for Monday, March 24 (game #1155)
NYT Strands homescreen on a mobile phone screen, on a light blue background
NYT Strands hints and answers for Monday, March 24 (game #386)
NYT Connections homescreen on a phone, on a purple background
NYT Connections hints and answers for Monday, March 24 (game #652)
Quordle on a smartphone held in a hand
Quordle hints and answers for Sunday, March 23 (game #1154)