Skip to main content

HTC left unsecured fingerprint data on the One Max

HTC-One-Max-back-camera-macro
Image used with permission by copyright holder
The HTC One Max was one of the first modern Android smartphones to feature a fingerprint sensor, but it appears HTC didn’t take security of those fingerprints very seriously, and stored some data related to them unencrypted on the device. This means if it fell into the hands of a talented hacker, a copy of your fingerprint could be easily created.

Evidence was presented by a team of experts from security company FireEye Labs at the Black Hat conference in Las Vegas recently, where the authentication and authorization systems used for mobile phone fingerprint analysis were examined. The team wanted to highlight the need for strong security measures to keep fingerprint data safe, because unlike a traditional password, once a fingerprint has been stolen — it’s out there forever, and cannot be changed.

HTC was alerted to the flaw prior to the conference, and sent out an update to fix it before the findings were presented, so if you own a One Max and regularly use the fingerprint sensor — don’t worry, it’s secure now. FireFly Labs also identified other problems related to security issues with sensors, which affected phones other than the One Max — the Samsung Galaxy S5 is mentioned specifically — and these problems have also been patched by their respective manufacturers.

Fingerprint sensors as a way to secure our mobile devices and authorize mobile payments are becoming more common, particularly as new systems such as Samsung Pay and Android Pay emerge. FireFly Labs says owners can help protect themselves by choosing smartphones with up-to-date software, and apply new updates when they arrive, plus to use apps from reliable, known sources. It also urges manufacturers to improve security around sensors and the data collected.

The news comes shortly after Android was affected by the Stagefright bug, which threatened to disable smartphones with a simple message. The seriousness of the alert prompted companies to not only rapidly send out a software fix, but also to promise regular security updates for devices in the future.

Editors' Recommendations

Andy Boxall
Senior Mobile Writer
Andy is a Senior Writer at Digital Trends, where he concentrates on mobile technology, a subject he has written about for…
How to view Instagram without an account
An iPhone 15 Pro Max showing Instagram via a web browser.

Instagram is one of the largest social media platforms on the planet. Whether you want to share a family photo, what you had for lunch at your favorite cafe, or a silly video of your cat, Instagram is the place to do it.

Read more
Something odd is happening with Samsung’s two new budget phones
A person holding the Samsung Galaxy A35 and Galaxy A55.

The Samsung Galaxy A35 (left) and Galaxy A55 Andy Boxall / Digital Trends

I’ve been using the Samsung Galaxy A55 for almost two weeks and have now swapped my SIM card over to the Samsung Galaxy A35. These are the latest entries in Samsung's budget-minded Galaxy-A series. In all honestly, I can barely tell the difference between them.

Read more
Learn 14 languages: Get $449 off a lifetime subscription to Babbel
A person using the Babbel app on their smartphone.

Learning a new language no longer requires you to make time for formal classes because there are now several language learning apps that you can tap. One of them is Babbel, and you can currently get a lifetime subscription to the online learning platform for only $150 from StackSocial. That's $449 off its original price of $599, but we don't know how much time is remaining before the offer expires. If you want to take advantage of the 74% discount, it's highly recommended that you complete the transaction immediately.

Why you should buy the Babbel lifetime subscription
A lifetime subscription to Babbel not only unlocks the possibility of learning one or two new languages, as the platform encompasses a total of 14 languages: English, French, Spanish, German, Italian, Portuguese, Swedish, Turkish, Dutch, Polish, Indonesia, Norwegian, Danish, and Russian. You'll be learning your new language of choice with lessons that only take 10 minutes to 15 minutes each to complete, so unlike classes with a rigid schedule, you can learn at your own pace and at any time you're free through Babbel. The lessons cover real-life topics, and they use speech recognition technology to help you master pronunciation. You'll then test yourself through personalized review sessions that will help make sure that you retain all the information that's being taught to you.

Read more