Go Back   Android Forums > Android Phones > Samsung Admire
Gamers - Check out our new sister sites!
Nintendo Wii U!    |    OUYA - $99 Android System!

test: Reply
 
LinkBack Thread Tools
Old September 25th, 2012, 12:28 PM   #1 (permalink)
OUDHS Developer
Thread Author (OP)
 
Shabbypenguin's Avatar
 
Join Date: Mar 2011
Gender: Male
Posts: 3,574
 
Device(s): SGS3-Metropolis Rom
Carrier: MetroPCS

Thanks: 301
Thanked 3,358 Times in 1,341 Posts
Default PSA: Watch what sites you load

Some of you may have heard the big news, there is a bit of html code that can remotely do a factory reset on your device while browsing around without your consent or way to stop it. the website has to have it setup and has to the stock web browser. since this exploit was released into the public it is unknown on if any sites may "maliciously" add it in. i cant confirm or deny that this device may be subject to this exploit, but its for teh best that you know anyways.

the code can be viewed via a frame on a website, so some jerk posting the html code into a comment isnt gunna make the site screw your phone up. so it has to be setup to run the exploit, but since it is only a few lines im sure a few sites already have ill intentions. if anyone would like to test their device with the exploit i have a secret page setup that i have been testing my devices on. if it doesnt affect your device than ill post about it here and everyone can breathe a sign of relief.

so far it seems its only samsung devices that are affected but many more could be.

__________________
I dont ask for much, but my friend is going through some rough times,
if you wish to donate to me send it his way, he needs it more than i do

Donate here

Know an unloved device? swing by our new forums
Shabbypenguin is offline  
Reply With Quote
Sponsors
Old September 25th, 2012, 02:49 PM   #2 (permalink)
Senior Member
 
qandres12's Avatar
 
Join Date: Jun 2012
Gender: Male
Posts: 1,123
 
Device(s): Samsung Admire (Retired), LG Motion 4G
Carrier: MetroPCS

Thanks: 9
Thanked 149 Times in 129 Posts
Default

shabby ill test this. im restoring my phone back to stock anyways so i might as well. pm me the secret link
qandres12 is online now  
Reply With Quote
Old September 25th, 2012, 03:05 PM   #3 (permalink)
Stand Back!
 
Rxpert83's Avatar
 
Join Date: Aug 2011
Location: MN
Posts: 11,683
 
Device(s): EVO 4g, EVO 4G LTE, Nexus S, Galaxy Nexus, S3, Nexus 7
Carrier: Not Provided

Thanks: 8,858
Thanked 8,965 Times in 5,075 Posts
Default

It's only touchwiz Samsung devices from what I've read
Rxpert83 is online now  
Reply With Quote
Old September 25th, 2012, 03:30 PM   #4 (permalink)
OUDHS Developer
Thread Author (OP)
 
Shabbypenguin's Avatar
 
Join Date: Mar 2011
Gender: Male
Posts: 3,574
 
Device(s): SGS3-Metropolis Rom
Carrier: MetroPCS

Thanks: 301
Thanked 3,358 Times in 1,341 Posts
Default

Quote:
Originally Posted by qandres12 View Post
shabby ill test this. im restoring my phone back to stock anyways so i might as well. pm me the secret link
Quote:
Originally Posted by Rxpert83 View Post
It's only touchwiz Samsung devices from what I've read
its the browser not touchwiz.

anyways may not be of any big concern, everyone is ranting about the sgs3 reset code since even the sgs2 has a diff code to reset it it means that the "exploit" may be on many devices but in order to effectively target them you would have to have every dialer code for every phone and i dont see that happening.

a more likley solution is someone who knows of lets say the admire or lg motion, builds a new site that gets a lot of google hits like lgmnotionrecovery.com or something of teh sort and expects lg motion owners to pull it up on their device

if you give me the dialer codes for this device ill make a page to test, im not gunna use teh factory reset one ill use something like debug menu etc
Shabbypenguin is offline  
Reply With Quote
Old September 25th, 2012, 03:52 PM   #5 (permalink)
Senior Member
 
qandres12's Avatar
 
Join Date: Jun 2012
Gender: Male
Posts: 1,123
 
Device(s): Samsung Admire (Retired), LG Motion 4G
Carrier: MetroPCS

Thanks: 9
Thanked 149 Times in 129 Posts
Default

Quote:
Originally Posted by Shabbypenguin View Post
its the browser not touchwiz.

anyways may not be of any big concern, everyone is ranting about the sgs3 reset code since even the sgs2 has a diff code to reset it it means that the "exploit" may be on many devices but in order to effectively target them you would have to have every dialer code for every phone and i dont see that happening.

a more likley solution is someone who knows of lets say the admire or lg motion, builds a new site that gets a lot of google hits like lgmnotionrecovery.com or something of teh sort and expects lg motion owners to pull it up on their device

if you give me the dialer codes for this device ill make a page to test, im not gunna use teh factory reset one ill use something like debug menu etc
the debug code for the dialer on the admire is ##33284#
qandres12 is online now  
Reply With Quote
Old September 25th, 2012, 04:26 PM   #6 (permalink)
OUDHS Developer
Thread Author (OP)
 
Shabbypenguin's Avatar
 
Join Date: Mar 2011
Gender: Male
Posts: 3,574
 
Device(s): SGS3-Metropolis Rom
Carrier: MetroPCS

Thanks: 301
Thanked 3,358 Times in 1,341 Posts
Default

just confirmed its on teh prevail gb PSA: Watch what sites you load

Exploit test to test without wiping your data. does this device have a dialer code to do a factory reset? or any other malicious kind of attack?
Shabbypenguin is offline  
Reply With Quote
Old September 25th, 2012, 04:39 PM   #7 (permalink)
Senior Member
 
qandres12's Avatar
 
Join Date: Jun 2012
Gender: Male
Posts: 1,123
 
Device(s): Samsung Admire (Retired), LG Motion 4G
Carrier: MetroPCS

Thanks: 9
Thanked 149 Times in 129 Posts
Default

Quote:
Originally Posted by Shabbypenguin View Post
just confirmed its on teh prevail gb PSA: Watch what sites you load

Exploit test to test without wiping your data. does this device have a dialer code to do a factory reset? or any other malicious kind of attack?
yes it does have a factory reset code. i know because i type it in thinking it was a different code and it reset everything. i dont know what it is at the moment though
qandres12 is online now  
Last edited by qandres12; September 25th, 2012 at 04:41 PM.
Reply With Quote
Old September 25th, 2012, 04:44 PM   #8 (permalink)
OUDHS Developer
Thread Author (OP)
 
Shabbypenguin's Avatar
 
Join Date: Mar 2011
Gender: Male
Posts: 3,574
 
Device(s): SGS3-Metropolis Rom
Carrier: MetroPCS

Thanks: 301
Thanked 3,358 Times in 1,341 Posts
Default

Quote:
Originally Posted by qandres12 View Post
yes it does have a factory reset code. i know because i type it in thinking it was a different code and it reset everything. i dont know what it is at the moment though
ok then. you guys are in teh same boat as teh prevail. id suggets using a different browser on sites you dont know etc
Shabbypenguin is offline  
Reply With Quote
Old September 25th, 2012, 05:02 PM   #9 (permalink)
Senior Member
 
qandres12's Avatar
 
Join Date: Jun 2012
Gender: Male
Posts: 1,123
 
Device(s): Samsung Admire (Retired), LG Motion 4G
Carrier: MetroPCS

Thanks: 9
Thanked 149 Times in 129 Posts
Default

Quote:
Originally Posted by Shabbypenguin View Post
ok then. you guys are in teh same boat as teh prevail. id suggets using a different browser on sites you dont know etc
it works. the site takes me to DATA menu. shabby what dialer code did you use?? i want to be able to disable the usb charging whenever i connect my phone to the computer since the computer doesnt charge the phone right. i can do that through the DATA menu just need the code

EDIT: nevermind i got it lol. shabby you are missed here
qandres12 is online now  
Last edited by qandres12; September 25th, 2012 at 05:04 PM.
Reply With Quote
Old September 26th, 2012, 11:22 AM   #10 (permalink)
Member
 
enigmadroid's Avatar
 
Join Date: Jul 2012
Location: St. Pete Beach, FL
Posts: 344
 
Device(s): LG MS770
Carrier: MetroPOS

Thanks: 28
Thanked 81 Times in 55 Posts
Send a message via AIM to enigmadroid Send a message via Yahoo to enigmadroid
Default

I'll have the prawn please!
__________________
~# rm -rf /media/Windows
enigmadroid is offline  
Reply With Quote
Sponsors
Reply

Samsung Admire
Current Rating:
Rate this Phone:

The Samsung Admire is a mid-range smartphone running Android 2.3. The phone falls in line with simiar devices of its class and features an 800MHz CPU, 3.2MP camera, and Samsung's TouchWiz UI. Though the Admire calls the MetroPCS network its h... Read More



Go Back   Android Forums > Android Phones > Samsung Admire
Thread Tools

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Trackbacks are On
Pingbacks are On
Refbacks are On



All times are GMT -5. The time now is 01:42 PM.
Powered by vBulletin® Version 3.8.7
Copyright ©2000 - 2013, vBulletin Solutions, Inc.