Samsung confirms fingerprint security flaw

Security concerns over Samsung’s new S10 model have surfaced. Users on social media demonstrated a bug which allows unregistered fingerprints to unlock the device

Samsung recently acknowledged the bug in a reply to the BBC, saying that it was “aware of the case of S10’s malfunctioning fingerprint recognition and will soon issue a software patch”.

Many online banking applications, such as Monzo and Lloyds, use biometric scanners instead of passwords, leaving S10 users vulnerable. 

KakaoBank, the most popular internet-only service in Samsung’s native South Korea, advised users to disable fingerprint access amid fears that their accounts could be compromised with ease if their devices fell into the wrong hands. 


The bug occurs when an air gap between the screen protector and the sensor effectively stops the sensor from working correctly. Most smartphone manufacturers use an optical reader, which takes a 2D image of a fingerprint. However, Samsung uses Qualcomm’s ultrasonic fingerprint reader technology, which takes a 3D image using sonic waves.

The security flaw was initially highlighted by a British woman, who first reported it to The Sun. She claimed that both her and her partner’s unregistered thumbprints could unlock the device. 

In 2017, the Samsung Galaxy S8 suffered a similar embarrassment when it was found that its facial recognition security could be bypassed with a photograph.

Luke Conrad

Technology & Marketing Enthusiast

Six ways to maintain compliance and remain secure

Patrick Spencer VP at Kiteworks • 16th September 2024

With approximately 3.4 billion malicious emails circulating daily, it is crucial for organisations to implement strong safeguards to protect against phishing and business email compromise (BEC) attacks. It is a problem that is not going to go away. In fact, email phishing scams continue to rise, with news of Screwfix customers being targeted breaking at...

Enriching the Edge-Cloud Continuum with eLxr

Jeff Reser • 12th September 2024

At the global Debian conference this summer, the eLxr Project was launched, delivering the first release of a Debian derivative that inherits the intelligent edge capabilities of Debian, with plans to expand these for a streamlined edge-to-cloud deployment approach. eLxr is an open source, enterprise-grade Linux distribution that addresses the unique challenges of near-edge networks...

Embracing digital AI recruitment without rocking the boat

Katherine Loranger • 11th September 2024

Artificial intelligence (AI) is set to become indispensable in business operations. For global enterprises, AI offers significant benefits by simplifying complexity and enabling confident decisions—when used in the right way. Those HR recruitment teams that seamlessly integrate AI technologies will optimise their recruitment practices and will have the opportunity to better realise their commitment to...

Why a data strategy underpins a successful AI strategy

Jim Liddle • 05th September 2024

AI and machine learning offer exciting innovation capabilities for businesses, from next-level predictive analytics to human-like conversational interfaces for functions such as customer service. But despite these tools’ undeniable potential many enterprises today are unprepared to fully leverage AI’s capabilities because they lack a prioritised data strategy. Bringing siloed and far-flung unstructured data repositories into...
The Digital Transformation Expo is coming to London on October 2-3. Register now!