cindy
Cindy is an open-source AI agent that runs locally on your machine, integrates multiple AI harnesses and models, and provides memory, skills, and automation to perform real work in your projects and apps.
它展示了对主要移动制造商进行的大规模、持续的安全审计,获得了超过 16.3 万美元的赏金,并位列三星安全研究名人堂榜首。
Oversecured is a leading mobile security provider specializing in detecting vulnerabilities in Android and iOS apps.
Our team at Oversecured shares global security values and strives to continuously improve our mobile app scanning technology to ensure its excellence.
In this article, we share 176 vulnerabilities that we discovered and worked with Samsung to fix throughout our collaboration, including detailed descriptions of 140 of them.
We at Oversecured are incredibly proud of our collaboration with Samsung in making mobile apps more secure. Our strong partnership with Samsung allows us to work together toward improving global mobile security.
Also, our results demonstrate the capability of our scanner to handle most vulnerabilities where others may fall short. Let’s take a closer look at what we have achieved.
Samsung is a leading global electronics company making popular mobile devices based on Android. As a company with a wide range of products, it is unsurprising that they have a vast amount of software code to maintain.
Samsung has one of the most competent cybersecurity teams in the industry, consistently working to improve its security measures. They have implemented various measures to ensure the safety of their users, including a vulnerability disclosure program and regular security audits.
In 2021, Oversecured already conducted a two-week research on Samsung's system app security, which resulted in the discovery of 17 vulnerabilities. We were happy to help Samsung to identify and fix these vulnerabilities, ensuring that their products remain secure for their mobile device users.
Our research 2022-2025 uncovered risky vulnerabilities in Samsung's mobile apps, and we promptly reported them to Samsung's VDP team. We were impressed by Samsung's quick response and efficient handling of the vulnerabilities we reported. As a result, millions of Samsung users can rest assured that their devices are now as secure as those running on AOSP. More details about our research can be found in our [previous article](https://blog.oversecured.com/Discovering-vendor-specific-vulnerabilities-
176 vulnerabilities in Samsung preinstalled Android apps
根据分类、Topic 和编程语言匹配的相似项目。
Cindy is an open-source AI agent that runs locally on your machine, integrates multiple AI harnesses and models, and provides memory, skills, and automation to perform real work in your projects and apps.
A Rust library that provides secure memory handling primitives including zeroization on drop, memory locking, constant-time comparison, and compile-time guarded regions, with zero dependencies and no_std support.
open·kritt is an open-source, self-hosted platform that orchestrates AI agents to perform focused, parallel code analysis for finding real vulnerabilities, with de-duplication and validation.