Skip to main content

20 Samsung SmartThings Hub vulnerabilities jeopardized smart homes

Cisco’s Talos cybersecurity experts reported 20 vulnerabilities in the Samsung SmartThings Hub. Talos didn’t publicize the widespread weaknesses until after Samsung readied a firmware update for SmartThings customers.

The Samsung SmartThings Hub plays a central role for other SmartThings components including thermostats, cameras, light bulbs, smart plugs, motion detectors and more.

The threat also extended beyond Samsung’s smart home devices. The SmartThings Hub runs on Linux-based firmware that enables interoperability with other Internet of Things (IoT) smart home devices via Ethernet, Zigbee, Z-Wave, and Bluetooth connections. In other words, anyone who exploited the Hub’s weaknesses could potentially control all connected electronic devices in the home.

Other smart home vulnerabilities

Talos cybersecurity experts noted, “In total, Talos found 20 vulnerabilities in the Samsung SmartThings Hub. These vulnerabilities vary in the level of access required by an attacker to exploit them and the level of access they give an attacker. In isolation, some of these might be hard to exploit, but together they can be combined into a significant attack on the device.”

Some of the potential threat scenarios exposed because of the Hub vulnerability include:

  • Unlocking doors protected with smart locks
  • Disabling motion detectors and security cameras
  • Damaging appliances connected to smart plugs

Regarding the exploit and the subsequent firmware update, Samsung responded by email to GearBrain, “Samsung takes security very seriously, and our products and services are designed with security as a priority. We are aware of the security vulnerabilities for SmartThings Hub V2 and released a patch for the automatic update to address the issue. All active SmartThings Hub V2 devices in the market are updated to-date.”

How to check your Samsung SmartThings Hub firmware version

Samsung pushes out over-the-air (OTA) software and firmware updates to active devices, but it’s always a good idea to check on your own to confirm that nothing interfered with the update.

You can check your SmartThings Hub’s firmware version in three ways: The SmartThings mobile app, the SmartThings Classic app, and the SmartThings web console.

Once you have opened either of the apps or logged in to the website, click on Hub or Hubs and then check the Firmware Version field.

Editors' Recommendations

Bruce Brown
Digital Trends Contributing Editor Bruce Brown is a member of the Smart Homes and Commerce teams. Bruce uses smart devices…
Kohler reveals luxurious smart home products that turn your bathroom into a spa
The Kohler Anthem+ on a white table.

Kohler showed off a bevy of new products at CES 2024, including a luxurious lineup of new smart home gadgets, all of which are designed to transform your bathroom into a "personal sanctuary." Along with updates to the Numi 2.0 smart toilet and high-end Stillness Bath, Kohler showed off a new fan, sink, and bidet, as well as smart valves and more.

The Anthem+ Digital Control was one of the most intriguing items at the Kohler booth, as can power nearly all aspects of your bathroom from a single control panel. Via its touch display, it allows you to control water, light, sound, and steam. All told, it can connect to 12 water outlets to power a variety of sprayers, showerheads, and body sprays.

Read more
Samsung SmartThings learns a bunch of useful new tricks at CES 2024
A person sitting on a couch with SmartThings products in the foreground.

Samsung SmartThings -- an application designed to connect and control your smart home devices -- doesn't quite get the same attention as platforms like Google Home or Apple HomeKit. However, it made some big announcements at CES 2024, and it's shaping up to be a big year for Samsung's first-party platform. Along with enhanced support for TVs and new uses for QR codes, SmartThings is rolling out a brilliant Map View feature, which creates a digital map of your home and shows you exactly where all your connected devices are located.

Here's how it works. Instead of scrolling through a list of all your devices or jumping between groups in your smartphone app, Map View lets you see a 3D representation of your home on your smartphone. Inside this map, you'll find icons for all your smart home gadgets corresponding to their actual physical location. That means you can quickly find exactly which device you want to control without needing to scroll through a long list.

Read more
Samsung goes all-in with AI, reveals several new smart home appliances at CES 2024
The Samsung Bespoke AI Fridge from CES 2024.

Samsung unleashed a flurry of announcements at CES 2024, including several upcoming smart home appliances powered by AI. The lineup features an induction cooktop, washer and dryer combo, slide-in range, and refrigerator, all of which use new A.I. features to streamline your daily chores.

The Samsung Bespoke 4-Door Flex Refrigerator was among the first reveals, debuting ahead of CES 2024. Featuring the premium AI Family Hub+ and AI Vision Inside, the futuristic fridge can scan and identify 33 different types of food items and send you alerts before they expire.

Read more