The 2021 Pwnie Nominee For Most Epic Fail

Samsung’s “secure” chip has a memcpy() buffer overflow

Link: Chip Chop — Smashing the Mobile Phone Secure Chip for Fun and Digital Forensics (pdf)

Samsung bumped up the core security on their new premium Galaxy S20 models, introducing a shiny new “black box” secure chip, S3K250AF, with CC EAL 5+ certification. This baby is designed to withstand attacks from state-level actors! So long as those state-level actors have never read Phrack. That’s right, we’re partying like it’s 1996 with a memcpy() buffer overflow. That’s right, it’s *in* the secure chip. It was even certified 100%-secure-no-scam! Whoops?