Phone hacked - Samsung Galaxy Note 10+ Questions & Answers

I need help identifying what app or setting got me into this mess.
I think the hacker has adb access.
He shuts down apps.. etc
He is messing with the notifications.. i get ony a few. Sometimes they come in late.
I have made reset from samsung setting and the boot menu, AND I INSTALLED A NEW ROM (the one for my phone) WITH ODIN. Still the issue resurfaces.
I think my roomate installed smthg in it. He is on the house wifi and he is got a degree in networking (i think thats what it's called, we study in french in my country)
Please i need help.

If someone needs any further details, please ask.

Avoid the wifi network you suspect your hacker friend is on, reinstall the rom downloaded on another network and stay on 4G and see if it still happens? Also suspect your PC to be hacked...

Thx for replying,
I did format my pc but i have connected it to house wifi.. didn't notice anything out of order though.
I found out about the "Revoke USB debugging authorisations" option in Developer Options. I think it is working.

Today, since i made a new instagram account, i added a mutual friend. Turns out it was an old and lost account, and thats when i got the error from the video.
Fortunately, i fixed it by un.following the account and clearing the app storage.
I need to know what access does he have?

Can't upload the video, here's some shots.

Look no further than yourself for the cause of this... one way or another.
RX: Factory reset, change Google account password.
Stop with the social media crap and go mingle with real people.

This not about social media, it's about getting my phone back.
With my old account, I couldn't even talk to my messenger friend. Today, thats like having your phone number unreachable all the time, frustrating.
Please if you don't want to help don't, but no need for quick unhelpful replies.

Carch921 said:
This not about social media, it's about getting my phone back.
With my old account, I couldn't even talk to my messenger friend. Today, thats like having your phone number unreachable all the time, frustrating.
Please if you don't want to help don't, but no need for quick unhelpful replies.
Click to expand...
Click to collapse
How was it compromised?
Understand if it was compromised it's more than likely because you left yourself vulnerable to attack.
A compromised OS needs to be cleaned or wiped... I gave you the solution(s).
No need to say thanks but don't give me lip about your screw ups.

Thank you.
I tried factory reset more than 10 times, different ways. No luck.
I think he is got access to one of my friends account but i don't know how he is using this connection with me ( message, notification.. i don't know)
@blackhawk what you said is true, and i didn't mean no offense.

Carch921 said:
Thank you.
I tried factory reset more than 10 times, different ways. No luck.
I think he is got access to one of my friends account but i don't know how he is using this connection with me ( message, notification.. i don't know)
@blackhawk what you said is true, and i didn't mean no offense.
Click to expand...
Click to collapse
Reflash the firmware especially if it is Oreo or below.
If it's not embedded in the firmware, it's being added by you albeit inadvertently.
Your Achilles heel is social media... don't be so predictable. Break the link in the chain.
None of the social apps should be running on the device, they are malware. At least keep them in the cloud.
Email must always be kept in the cloud and any attachments downloaded from it scruntinized or preferably not downloaded at all. All downloads are suspect.
At this point your data base is suspect as well.
Insanity is doing the same thing over and over, expecting a different result.

Android 11.
I am trying.

Carch921 said:
Android 11.
I am trying.
Click to expand...
Click to collapse
Unless someone physically got their hands on it, there's no known way the Android 11 stock factory image can be compromised by a rootkit or virus. A factory reset is all that is needed.
The problem happened after the reset.

blackhawk said:
Unless someone physically got their hands on it, there's no known way the Android 11 stock factory image can be compromised by a rootkit or virus. A factory reset is all that is needed.
The problem happened after the reset.
Click to expand...
Click to collapse
That is exactly what i suspect did happen. I often leave my phone home and my pattern is known for him.
How can i undo a modification of that level.
(I intend to go to a phone repair shop and install new soft with the "box". Is this recommended or is it a bad idea)

Carch921 said:
That is exactly what i suspect did happen. I often leave my phone home and my pattern is known for him.
How can i undo a modification of that level.
(I intend to go to a phone repair shop and install new soft with the "box". Is this recommended or is it a bad idea)
Click to expand...
Click to collapse
Never leave a phone physically unsecured as that's the only real security there is.
You need to have the firmware reflashed then be careful what you put back on it.
Change all your passwords and use secure passwords.

I ithink i this is the problem.( in the pic below)
There was an app called android device.. don't know if this is normal. So i deleted it and restarted and things are back to normal.

Sorry i can't upload the image, the app closes automatically.

Scan it online with Virustotal.

Sell the phone Facebook

Related

[Q] windows live id service unavailable issue

Hi Guys when i try to download any app thru marketplace, i get "windows live id service unavailable" error pop up. i've seen somewhere that the only choice is to reset the phone, but i've too many things inside n i'm too lazy to backup... anyway to sort this w/o hard-reset the phone??
darren486 said:
Hi Guys when i try to download any app thru marketplace, i get "windows live id service unavailable" error pop up. i've seen somewhere that the only choice is to reset the phone, but i've too many things inside n i'm too lazy to backup... anyway to sort this w/o hard-reset the phone??
Click to expand...
Click to collapse
The service is probably down for maintenance or...for a problem. This does occurs occassionally with any service...and should be back up by the time you read this.
Gosh, I hope you don't take this as proof that Microsoft is abandoning the Lumia 900 and Nokia in general.
actually the problem presisted for 2days, but once i hard reset the phone yesterday, everything goes back to normal, this is actually the 2 time i've done this with the phone... abit frustrating, but still, i like the phone for the design
darren486 said:
actually the problem presisted for 2days, but once i hard reset the phone yesterday, everything goes back to normal, this is actually the 2 time i've done this with the phone... abit frustrating, but still, i like the phone for the design
Click to expand...
Click to collapse
that is interesting. That should not happen at all. Unless you're logging in , or attempting to log in with a different id, marketplace should use your core login. If you remember, if this happens again, let me know. I have some contacts in WP support at ms.
thanks! will inform you if i have any issue again, but luckily, no issue till now after the reset

[Q] Play Store and You Tube not working properly

Hello,
This is my first post. I am sorry, if I break any rules or norm of xda-developers. Sorry, if that happens, but I don't intend to disrespect or hurt anyone. I have high respect for the developers and I have been learning a lot about Android because of you guys. Thanks for that.
Lately I have been experiencing an issue on my Note 2. Sorry, but I can't really pin point what I did that it's going all crazy. I searched online using our friend, google, and saw that many others have this issue. My apps are not getting updated, for that matter, none of the devices (Nexus 7, and a Samsung Galaxy S Duos) at my home are able to do that. So, I am assuming its a Router issue. I tried changing DNS address and firewall settings. None of them worked. I am mostly on Wifi, but these issues don't surface when I use cellular data. Maybe, its the router itself.
Other than that, YouTube isn't loading specific videos and keeps logging me out. Some "specific" (they are not 18+) videos won't load no matter what I do to load them. Other videos work fine. However, I didn't try to load them on cellular data so far.
Contacts are not syncing. I tried whatever suggestions people offered. It works for few minutes, and then fail. AGAIN and AGAIN. To keep it simple, I turned off syncing from every other app, Skype, Samsung etc except for google. Turned off sync completely. Made a .vcf file as backup. Deleted all my contacts related data, from Phone and GMail. Yes, it did hurt. Mailed myself vcf file. Imported all my contacts to Gmail. Turned on sync with google on my phone. And, it worked fine, for few minutes. Back to square one after that. I am not sure if problem lies with one of the contacts as this was the best I could think of to solve my sync issues.
One of the correlations I was able to establish was to make Play Store and YouTube work, I had to first get my sync problem out of the way. For the moments for which it was working, everything else was working.
So far I have not tried factory reset. I have my reservations regarding it. I have experience in ROOTING, flashing, overclocking etc. Did that for my desire, and my friends desire C. But I am satisfied with how my phone was working, and so far am not looking to Root it. But if you think that factory reset or rooting could solve my problem, please enlighten me.
Thanks for the help. Really appreciate it.
You can try factory resetting one of them and use a different Google account. Perhaps nothing should be same as the other two devices. If yes then it could be an issue with the account or some apps. If no it could be an Internet or router problem. Try data or something.
Next try factory reset other device but this time give it details as the device you reset earlier. See how they go. If it goes fine thanks factory reset them back and this time your original account. See if it works or not. This will jot down what the problem is.
If it works then something was wrong with your devices. If not then something is wrong with your account.
Sent from my GT-N7100 using xda premium
UtkarshGupta said:
You can try factory resetting one of them and use a different Google account. Perhaps nothing should be same as the other two devices. If yes then it could be an issue with the account or some apps. If no it could be an Internet or router problem. Try data or something.
Next try factory reset other device but this time give it details as the device you reset earlier. See how they go. If it goes fine thanks factory reset them back and this time your original account. See if it works or not. This will jot down what the problem is.
If it works then something was wrong with your devices. If not then something is wrong with your account.
Sent from my GT-N7100 using xda premium
Click to expand...
Click to collapse
Thanks for replying (I also clicked the button as I figured people appreciate that more) and thanks to all other 60+ people for looking into my issue.
I can what you suggested by factory resetting, but I am keeping that as my last option for now, for two reasons. First, one of the devices, belongs to a friend of mine, who already use a different account than mine. Also, in nexus 7, I have a separate account for him. I am thinking of resetting/changing my router, internet works fine though and I paid a hell lot of money for it. Second, I don't want to loose all data. If I was to do this, I will probably root my phone along with it too, save some time. As the problem started for all the devices at the same time, I strongly sense its a wifi issue. Also, when I change some of the settings in router, things start working fine for half and hour or so.

Very weird bug on my phone

Hi everyone,
I'm new here, nice to meet you all. Last night I finally bought the LG G3, switched from an iPhone 5S.
Right away I flashed the phone to Lollipop that I found in this thread: http://forum.xda-developers.com/lg-g3/general/kdz-poland-lollipop-lg-g3-20a00-t2938255
And the phone really works flawlessly except for one weird (and pretty annoying) bug.
When I'm surfing using Chrome or the generic browser that comes with the phone, after visiting a few websites (music forums, basketball websites, etc., nothing out of the ordinary that I usually visit), for some reason the browser gets redirected to an app called "Porn Factory" and wants me to download it to my phone.
Now, I'm pretty sure this isn't normal behaviour. And I've read that people have experienced a similar issue with their phones, but I still haven't found a solution to stop this from happening.
I tried a fresh install of Chrome, deleted all data/cache and it still happens from time to time. My phone isn't loaded with a lot of apps, just a few social media apps basically as it's brand new. Also tried scanning it with a few of the anti-virus apps on Google Play and nothing.
So yeah, if anybody could give a tip or two on how to solve this I would be very greatful. This is my last resort. :-\
Other than this, I'm really enjoying the G3!
p.s. I do apologize if the thread isn't in the right section, I'm new here.
Try to do factory reset (wipe data)
Next time use G3 Q&A, Help & Troubleshooting forum as it belongs to this section.
sounds like it is trying to tell you something
but seriously it doesn't sound like anyone else has that issue (or they think it's a good thing, who knows)
could it be an SD card issue?
Can you boot into safe mode by pressing+holding the reboot button?
So the only thing I can do is a complete factory reset? How certain are you guys this could work? I mean I could do it, but I just want to try everything else before wiping everything and starting again from scratch.
Really appreciate the help guys!
Are you signed into chrome?
Bert.C said:
Are you signed into chrome?
Click to expand...
Click to collapse
Yeah, I logged in with my google account the first time I launched it. I could clear all settings and re-install the app and not sign in when I launch it for the first time. If that's a viable solution?
The thing is this is also happening on the stock browser which came with the phone and I'm not signed into anything on there.
* Try other browsers.
*Try some free antivirus solution.
* Is this happening on the same connection (WiFI / Data)? Maybe it's something in the network / dns proxy, etc.
* Check your internet settings (ip, dns, etc.)
What you have there is either mallware or some other type of bad "virus". This can't be considered a but by a long shot.
kraven001 said:
* Try other browsers.
*Try some free antivirus solution.
* Is this happening on the same connection (WiFI / Data)? Maybe it's something in the network / dns proxy, etc.
* Check your internet settings (ip, dns, etc.)
What you have there is either mallware or some other type of bad "virus". This can't be considered a but by a long shot.
Click to expand...
Click to collapse
Same thing is happening on my home Wifi, my friend's house wifi and my cellular data. On Chrome and the stock browser.
Well I've done a factory reset a few moments ago, will see if anything changes.
My best guess is either some bad configuration (with a mallware dns or whatever) or some mallware that does that intercepting / redirect. Bugs are crashes, things not working etc not porn redirection , that's what mallware does.
kraven001 said:
My best guess is either some bad configuration (with a mallware dns or whatever) or some mallware that does that intercepting / redirect. Bugs are crashes, things not working etc not porn redirection , that's what mallware does.
Click to expand...
Click to collapse
I get what you're saying, but how is it possible the phone got infected out of the box? I basically used it for a couple of hours before this started happening. Didn't surf any "bad" websites and installed only a couple of social apps.
there are lots of "ways" these get pushed and lots of crappy ads that you press and install things or reconfigure things that you wouldn't know. I don't know, I would start analyzing the apps looking at what's going on ...
don't want to be the devil's advocate but maybe one of your friends played a practical joke on you ... don't know these things tend to happen ...
kraven001 said:
there are lots of "ways" these get pushed and lots of crappy ads that you press and install things or reconfigure things that you wouldn't know. I don't know, I would start analyzing the apps looking at what's going on ...
don't want to be the devil's advocate but maybe one of your friends played a practical joke on you ... don't know these things tend to happen ...
Click to expand...
Click to collapse
Nobody has touched the phone except me since I got it.... and just finished the factory reset thing and set up a totally new device, opened chrome, surfed a few pages and it happens again.
This makes no sense.
try this: https://play.google.com/store/apps/details?id=com.bitdefender.antivirus
don't know, out of ideas really
One thing you guys may not have considered also, is that the guy you got the kdz from might have tampered with it and put adware or malware into the file...
Now, I'm in no way saying he has (Everyone on here is very trustworthy), but from all the solutions that look to have failed in this thread, that could be the only option. You can always try a factory reset, as stated above and if it's just something on the ROM then it might fix it, but if it's in the KDZ itself, the only way to get rid of it would be to flash a different file.
iDefalt said:
One thing you guys may not have considered also, is that the guy you got the kdz from might have tampered with it and put adware or malware into the file...
Now, I'm in no way saying he has (Everyone on here is very trustworthy), but from all the solutions that look to have failed in this thread, that could be the only option. You can always try a factory reset, as stated above and if it's just something on the ROM then it might fix it, but if it's in the KDZ itself, the only way to get rid of it would be to flash a different file.
Click to expand...
Click to collapse
Is there another 5.0 Lollipop KDZ file except the one I used? (http://forum.xda-developers.com/lg-g3/general/kdz-poland-lollipop-lg-g3-20a00-t2938255)
At this point I'm willing to try everything as reseting the phone to factory settings also didn't help.
Id consider flashing the stock kdz again. But get it from here from someone known and start fresh.
Bert.C said:
Id consider flashing the stock kdz again. But get it from here from someone known and start fresh.
Click to expand...
Click to collapse
Could you please point me to the file I need to download? I'm new to all this and really don't have an idea which file I need. I have the D855 version of the phone.
Thank you!
See if this is the what you're looking for.
Or here?
Or here?
Its not a bug, just webpage redirecting. Some website does that, some on both desktop and mobile version, some just one of them. One of the web page i visit lg-phone-firmware.com is one of them. In mobile version it always redirect to ads.
Viable solution is to try desktop view. Else try browser that support adblock.
Well it appears I got rid of this problem. Downgraded to KitKat, rooted my device and installed a custom ROM that I found here.
Thanks for the help guys!
Sent from my LG-D855 using XDA Free mobile app

Question Hacked pixel 6

Can anyone help me carrier unlock my Verizon phone? My phone has been hacked and I hope being able to flash it will help me to get rid of whatever they have done to it. Can anyone tell me why I get this message when I reset my phone? Any help would be greatly appreciated
there is no carrier unlock for VZW models. if you can boot into recovery, sideload the OTA version that was last on your device.
What did you do that resulted in the phone being hacked? With the sectors being wiped that are shown in the images, it looks like you have provided total device access to something whilst having an unlocked bootloader or something similar. If you let us know what happened, it might help us to figure out what options you may still have.
But definitely see if you can do what @uicnren mentioned first.
Im not sure who or how they wiped anything. It happened one day after connecting to my girlfriends wifi. I got ahold of Verizon and they sent me a new phone and as soon as I started it the same thing happened to it also
How do I find what OTA version was used on my phone?
Nothing hacked here... this is an error when wiping the Secure Element (the trusted secure module).
(https://android-review.linaro.org/p...cure_element/1.0/SecureElementHalCallback.cpp line #66)
Are you initiating the wipe from the recovery? If so, that's likely the reason. If there is an account attached to the device, a wipe must first be initiated from within Android (Settings)
Woodruff87 said:
Im not sure who or how they wiped anything. It happened one day after connecting to my girlfriends wifi. I got ahold of Verizon and they sent me a new phone and as soon as I started it the same thing happened to it also
Click to expand...
Click to collapse
what symptoms were you seeing that made you think you were hacked?
Those errors are normal in Recovery Mode. I see them all the time, sometimes they don't appear, usually they do.
Did you remove your google accounts from settings, do a factory reset from the reset menu and lastly in recovery mode where you posted the screenshots from.
Your Account might be hacked but the phone is unlikely hacked. You would get a message at boot telling you that the device has been modified. With a locked bootloader its extremely unlikely (unless NSO Group is targeting you).
Woodruff87 said:
Can anyone help me carrier unlock my Verizon phone? My phone has been hacked and I hope being able to flash it will help me to get rid of whatever they have done to it. Can anyone tell me why I get this message when I reset my phone? Any help would be greatly appreciated
Click to expand...
Click to collapse
Did you unlock the bootloader? Have custom firmware/kernel installed?
A "hacker" wins nothing by resetting/wiping your phone. They want data, and that only works if the phone can turn on and works. This looks like a wipe/factory reset gone wrong, which spells user error or software error and less likely a "hacker" attack. Most hacks you will never notice. A hacker that makes you notice that something went wrong, is either an amateur or did it on purpose. Ergo, he wants you to know that something went wrong, which usually only happens in order to extort you. If there is no extortion, then an obvious act by a hacker is highly unlikely.
We need some more information. What firmware had you installed? What happened exactly when. Did you install any new apps recently? What did you do prior to something going wrong? All the information that could help us troubleshoot your issue.
You said your phone wiped itself a day after connecting to your girlfriends wifi, and that a replacement device that you got sent by your carrier, did the same. Did you check your Google account? Do you have two factor authentication activated? It sounds like your phone got wiped over wifi, which would require access to your Google account. It's just odd that you get errors, which normally shouldn't happen if someone would use the erase a lost Android device function.
It's also possible that your backup from your GAccount is simply corrupted (many people had issues with random reboots). You should try and set up your (replacement) phone anew without any backup, maybe that can fix your issue.
Beyond that Google account thing-y, anything else is highly unlikely. Even specialized companies have serious issues getting into a modern smartphone, lest alone an Android 12 phone with a Google Server grade Titan m2 chip. The newer the firmware, the less likely the chance that someone from the outside could get in, especially with a phone like a Pixel that isn't very common. Most security firms/govermental agencies can only abuse older, known security loopholes. It's more likely that very popular phones like a Samsung or IPhone are targets from "the bad guys", since there will be bigger payoff for breaking the security of those phones, since there is a greater pool of users to target. Most hacks I've witnessed weren't random, they were targeted. Ask yourself: Am I worth the trouble of getting hacked? Do you have anything of interest on your phone that would warrant an excessive use of resources? Managing to hack a Pixel is not only unlikely in terms of the security you need to breach, but also in terms of the potential payoff in relation to the necessary knowhow and resources. It's just "not worth it".
What you should do immediately, just in case, is secure your Google account. Change your password. Maybe even change your two-factor authentication, if you have one (sms is not secure, use a token generating software/device). Change the wifi password from your girlfriend and check the list of connected devices. make a list of these connected devices + history (find that in the rooter software) and check them against the devices you know of. Also check the list of connected devices to your GAccount. Use the option to log out ALL devices from your Google account, so only your device is connected.
Do any other people have access to your phone? Do any other people know your passwords? Does your girlfriend has access? Do any other people have biometric security saved on your phone? Do you trust your girlfriend completely?
Make sure you use a special, new password for your GAccount, never reuse old ones that you have used somewhere else. Also check your emails on https://haveibeenpwned.com/
Beyond that, if you are not doing already, use a password manager.
Woodruff87 said:
Im not sure who or how they wiped anything. It happened one day after connecting to my girlfriends wifi. I got ahold of Verizon and they sent me a new phone and as soon as I started it the same thing happened to it also
Click to expand...
Click to collapse
Wait a sec. Verizon sent you a new (refurbished probably but new nonetheless) phone and when you turned it on weren't you greeted with the startup menu? Am I missing something?
Morgrain said:
Did you unlock the bootloader? Have custom firmware/kernel installed?
A "hacker" wins nothing by resetting/wiping your phone. They want data, and that only works if the phone can turn on and works. This looks like a wipe/factory reset gone wrong, which spells user error or software error and less likely a "hacker" attack. Most hacks you will never notice. A hacker that makes you notice that something went wrong, is either an amateur or did it on purpose. Ergo, he wants you to know that something went wrong, which usually only happens in order to extort you. If there is no extortion, then an obvious act by a hacker is highly unlikely.
We need some more information. What firmware had you installed? What happened exactly when. Did you install any new apps recently? What did you do prior to something going wrong? All the information that could help us troubleshoot your issue.
You said your phone wiped itself a day after connecting to your girlfriends wifi, and that a replacement device that you got sent by your carrier, did the same. Did you check your Google account? Do you have two factor authentication activated? It sounds like your phone got wiped over wifi, which would require access to your Google account. It's just odd that you get errors, which normally shouldn't happen if someone would use the erase a lost Android device function.
It's also possible that your backup from your GAccount is simply corrupted (many people had issues with random reboots). You should try and set up your (replacement) phone anew without any backup, maybe that can fix your issue.
Beyond that Google account thing-y, anything else is highly unlikely. Even specialized companies have serious issues getting into a modern smartphone, lest alone an Android 12 phone with a Google Server grade Titan m2 chip. The newer the firmware, the less likely the chance that someone from the outside could get in, especially with a phone like a Pixel that isn't very common. Most security firms/govermental agencies can only abuse older, known security loopholes. It's more likely that very popular phones like a Samsung or IPhone are targets from "the bad guys", since there will be bigger payoff for breaking the security of those phones, since there is a greater pool of users to target. Most hacks I've witnessed weren't random, they were targeted. Ask yourself: Am I worth the trouble of getting hacked? Do you have anything of interest on your phone that would warrant an excessive use of resources? Managing to hack a Pixel is not only unlikely in terms of the security you need to breach, but also in terms of the potential payoff in relation to the necessary knowhow and resources. It's just "not worth it".
What you should do immediately, just in case, is secure your Google account. Change your password. Maybe even change your two-factor authentication, if you have one (sms is not secure, use a token generating software/device). Change the wifi password from your girlfriend and check the list of connected devices. make a list of these connected devices + history (find that in the rooter software) and check them against the devices you know of. Also check the list of connected devices to your GAccount. Use the option to log out ALL devices from your Google account, so only your device is connected.
Do any other people have access to your phone? Do any other people know your passwords? Does your girlfriend has access? Do any other people have biometric security saved on your phone? Do you trust your girlfriend completely?
Make sure you use a special, new password for your GAccount, never reuse old ones that you have used somewhere else. Also check your emails on https://haveibeenpwned.com/
Beyond that, if you are not doing already, use a password manager.
Click to expand...
Click to collapse
Thanks I really appreciate the help and all the advice. I checked https://haveibeenpwned.com/ and my account has been pawned in 1 data breach... I will deactivate the Google account and start over fresh. Thanks again for all the info
bencozzy said:
Two things are they refurbished? And do they work without signing into google?
Click to expand...
Click to collapse
The first one was new, but the one I got from Google as a replacement was refurbished. Ill try resetting through the settings and deactivating all my accounts.
Woodruff87 said:
Thanks I really appreciate the help and all the advice. I checked https://haveibeenpwned.com/ and my account has been pawned in 1 data breach... I will deactivate the Google account and start over fresh. Thanks again for all the info
Click to expand...
Click to collapse
This, among many other things, is one of the reasons I use GrapheneOS and NO gooble services (despite all the attention they give to sandboxed gooble services).
Woodruff87 said:
Thanks I really appreciate the help and all the advice. I checked https://haveibeenpwned.com/ and my account has been pawned in 1 data breach... I will deactivate the Google account and start over fresh. Thanks again for all the info
Click to expand...
Click to collapse
your google address was found on that site for another service and you used the same password for both services, correct?
despite what some believe, your google account will not get hacked unless your password is insecure (ie. leaked or insufficient with 2FA). anything less and your asking for trouble (also using GrapheneOS).

Question I'm hacked

My girlfriend can see everything I do on my phone, even listen in to my surroundings and spy on me with my camera. I've looked at all the running processes and I can't find the malware. Any advice besides a system reset? Thanks
She's probably just has your password mate. Change it or factory reset your device. If that doesn't work find a new gf.
tycox93 said:
She's probably just has your password mate. Change it or factory reset your device. If that doesn't work find a new gf.
Click to expand...
Click to collapse
Believe me it's not just the password. She's installed some kind of parental Spyware like MSpy
If you're sure that's what she has done, and not just a bit paranoid, then you should be able to find it if you got into safe mode. At least I believe so.
tycox93 said:
If you're sure that's what she has done, and not just a bit paranoid, then you should be able to find it if you got into safe mode. At least I believe so.
Click to expand...
Click to collapse
I'm 100% convinced that's what she's done but I'm not that tech savvy when it comes to phones so I'm not sure which processes are part of the Android OS and which processes are the spy app.
Ditch gf.
Factory reset, will purge anything she loaded. The bootloader is locked so the only thing she could hack is the user data partition, a factory reset clears this.
Delete Google and Samsung accounts in settings>factory reset from settings not recovery menu>don't set up your Google account initially>change Google and Samsung account passwords on another computer (PC or Mac), write down passwords and make them complicated, setup the Google account on phone then.
It is clean. Be careful what you then load and who you give access to your phone if anyone.
I had a phone bought on eBay which I think it was cloned
It was the Xiaomi mi mix fold 2. I kept sending me messages please close the screen mirroring ect..I tried to reset it but nothing worked. Someone cracked the ROM in my opinion. eBay refunded me in full. I think you shall better buy a new phone
If you're paranoid:
reset your computer without a network connection.
reset your phone and don't connect to wifi yet.
reset your home wifi modem/router
connect your devices and use a strong password.
After this only a specialist can hack you.
simrag said:
I had a phone bought on eBay which I think it was cloned
It was the Xiaomi mi mix fold 2. I kept sending me messages please close the screen mirroring ect..I tried to reset it but nothing worked. Someone cracked the ROM in my opinion. eBay refunded me in full. I think you shall better buy a new phone
Click to expand...
Click to collapse
No reason to replace the phone if it's a stock Samsung and it factory resets. As long as Knox isn't tripped it's still running with a stock rom and bootloader that haven't been altered and are still secure.
Odinsinces3 said:
If you're paranoid:
reset your computer without a network connection.
reset your phone and don't connect to wifi yet.
reset your home wifi modem/router
connect your devices and use a strong password.
After this only a specialist can hack you.
Click to expand...
Click to collapse
After reset it can't be accessed until account info is entered. My solution bypasses that entirely.
If he factory resets from recovery without first deleting Google and maybe Samsung accounts from the phone he may get locked out by FRP!
FPR is more wicked than any bad gf...
In Samsung's it's always best to factory reset from Settings rather than the boot menu. I redundantly make sure FRP won't be invoked by also deleting the accounts before the reset whenever possible*
*a boot loop or total system crash trashes this option, better hope the account password works...
How to stay away from Hackers?, How they simply get the access to hack our devices.
Everett34 said:
How to stay away from Hackers?, How they simply get the access to hack our devices.
Click to expand...
Click to collapse
They don't; most victims inadvertently install the malware themselves. Social media sites like WhatsApp, Tiktok etc are hunting grounds for hackers. Poor settings and app selection, clumsy browsing habits, side loading, unlocked bootloaders, no firewall in use, being careless what's downloaded, not keeping email in the cloud, allowing others physical access to the device, sharing drives, using unsecured wifi hotspots, not using Android 9 or higher... among others.

Categories

Resources