On the first day of the Pwn2Own event this year, contestants successfully hacked the Samsung Galaxy S22 device twice for a total reward of $75,000 and some Matter of Pwn points.
They have found an exploit to validate the device for access – even though it’s running on the latest Android OS with all updates installed. Well, this device will be put up for hacking again on the second day of the event to find more exploits.
Validation Exploits in Galaxy S22
To the unknown, Pwn2Own is an annual consumer-focused event that lets anyone hack the devices of popular OEMs for rewards. The four-day event this year started with two contestants hacking the Samsung Galaxy S22 device for both monetary and Pwn points.
The first one among them – the STAR Labs team has leveraged a zero-day exploit in Galaxy S22 for executing their improper input validation attack, earning $50,000 and 5 Master of Pwn points.
STAR Labs was able to execute their improper input validation attack on their 3rd try against the Samsung Galaxy S22. They earn $50K and 5 Master of Pwn points. #P2OToronto #Pwn2Own The team got a great video of the exploit attempt: https://t.co/69It9QBOy2 pic.twitter.com/20WyVDuV5b — Zero Day Initiative (@thezdi) December 6, 2022