Skip to main content

20 Samsung SmartThings Hub vulnerabilities jeopardized smart homes

Cisco’s Talos cybersecurity experts reported 20 vulnerabilities in the Samsung SmartThings Hub. Talos didn’t publicize the widespread weaknesses until after Samsung readied a firmware update for SmartThings customers.

The Samsung SmartThings Hub plays a central role for other SmartThings components including thermostats, cameras, light bulbs, smart plugs, motion detectors and more.

Recommended Videos

The threat also extended beyond Samsung’s smart home devices. The SmartThings Hub runs on Linux-based firmware that enables interoperability with other Internet of Things (IoT) smart home devices via Ethernet, Zigbee, Z-Wave, and Bluetooth connections. In other words, anyone who exploited the Hub’s weaknesses could potentially control all connected electronic devices in the home.

Other smart home vulnerabilities

Talos cybersecurity experts noted, “In total, Talos found 20 vulnerabilities in the Samsung SmartThings Hub. These vulnerabilities vary in the level of access required by an attacker to exploit them and the level of access they give an attacker. In isolation, some of these might be hard to exploit, but together they can be combined into a significant attack on the device.”

Some of the potential threat scenarios exposed because of the Hub vulnerability include:

  • Unlocking doors protected with smart locks
  • Disabling motion detectors and security cameras
  • Damaging appliances connected to smart plugs

Regarding the exploit and the subsequent firmware update, Samsung responded by email to GearBrain, “Samsung takes security very seriously, and our products and services are designed with security as a priority. We are aware of the security vulnerabilities for SmartThings Hub V2 and released a patch for the automatic update to address the issue. All active SmartThings Hub V2 devices in the market are updated to-date.”

How to check your Samsung SmartThings Hub firmware version

Samsung pushes out over-the-air (OTA) software and firmware updates to active devices, but it’s always a good idea to check on your own to confirm that nothing interfered with the update.

You can check your SmartThings Hub’s firmware version in three ways: The SmartThings mobile app, the SmartThings Classic app, and the SmartThings web console.

Once you have opened either of the apps or logged in to the website, click on Hub or Hubs and then check the Firmware Version field.

Bruce Brown
Bruce Brown Contributing Editor   As a Contributing Editor to the Auto teams at Digital Trends and TheManual.com, Bruce…
Samsung reveals futuristic new smart home appliances for CES 2023
A person using the new Bespoke fridge touchscreen.

The first day of CES 2023 is right around the corner, but Samsung isn't waiting to introduce the world to its new lineup of smart home appliances. Specifically, the Bespoke lineup is now on full display, with new smart refrigerators, smart ovens, and smart washers making an appearance.

Samsung’s Bespoke lineup has long been a premium choice for smart home shoppers -- and that trend looks to continue throughout this year. One of the biggest upgrades is for the Bespoke 4-Door Flex Refrigerator with Family Hub+, which now offers a massive 32-inch touchscreen (up from a 21.5-inch display) that’s embedded directly into its glass panel door. The screen will support the new Family Hub software, allowing you to stream your favorite shows, share photos, or check the status of connected devices.

Read more
Samsung and Google partnership finds a shared home for SmartThings
The Google Nest Audio speaker on a table.

Matter — the interoperability protocol that will bring smart devices from different brands under a single umbrella of control — is less than a month away from its official launch. Ahead of the grand reveal, Samsung and Google have announced a partnership that adds a convenient element of interoperability to their respective smart home ecosystems.

Sounds confusing? Well, here’s the easy breakdown. Samsung, in collaboration with partner brands, sells a wide range of smart home devices, from doorbells and switches to lights and garage door openers. However, barely a few of those SmartThings gadgets worked seamlessly with Google’s Home app for controlling smart home gizmos.

Read more
Smart homes without Wi-Fi: Huge possibilities or roadblocks?
Amazon Echo Show 15 hanging horizontally on the wall.

When it comes to smart home automations, there really isn't much that can't be done these days. From the moment you wake in the morning to the final minutes before bed, by issuance of a few simple voice commands, you can check your daily schedule, raise and lower blinds, fire up a pot of coffee, stream news radio, lock and unlock doors, initiate a video call, and so much more.
And as product developers are continuing to roll out new and innovative features, today's leading smart home devices are getting easier to use, more efficient, and -- you guessed it -- smarter. With innovation around every turn, what could possibly be improved upon?
Our hot take: The reliance on our Wi-Fi networks to operate this equipment.

The Internet of Things and ecosystems
The vast majority of smart home devices require a web connection, which is why this class of consumer tech and its related peripherals are often referred to as Internet of Things (IoT) components. While this label can be applied to essentially any hardware that has the capability of connecting to the internet, the phrase takes on a new meaning when discussing smart devices.

Read more