Jump to content

SecuRam installs backdoor on ProLogic series safe locks.: Difference between revisions

From Consumer Rights Wiki
Chuck (talk | contribs)
m References: fixed data format
Chuck (talk | contribs)
[Incident]: Incident description + new references
Line 10: Line 10:
{{Ph-I-Int}}
{{Ph-I-Int}}
==Background==
==Background==
In 2023 new broke that Liberty Safe kept a master key for all safes that it sold.<ref>{{Cite news |last=Levenson |first=Michael |date=2023-09-08 |title=How a Company That Makes Gun Safes Angered Gun Owners |url=https://www.nytimes.com/2023/09/08/business/liberty-safe-codes.html |work=The New York Times}}</ref> Security researcher Mark Omo and James Rowley attempted to discover vulnerabilities involving this master key. They were unsuccessful, but did discover two techniques for opening safes sold by Liberty Safe that were equipped with SecuRam ProLogic series locks.<ref>{{Cite news |last=Greenberg |first=Andy |date=2025-08-08 |title=Hackers Went Looking for a Backdoor in High-Security Safes—and Now Can Open Them in Seconds |url=https://www.wired.com/story/securam-prologic-safe-lock-backdoor-exploits/ |work=WIRED}}</ref>
In 2023 new broke that Liberty Safe kept a master key for all safes that it sold.<ref>{{Cite news |last=Levenson |first=Michael |date=2023-09-08 |title=How a Company That Makes Gun Safes Angered Gun Owners |url=https://www.nytimes.com/2023/09/08/business/liberty-safe-codes.html |work=The New York Times}}</ref> Security researcher Mark Omo and James Rowley attempted to discover vulnerabilities involving this master key. They were unsuccessful, but did discover two techniques for opening safes sold by Liberty Safe that were equipped with SecuRam ProLogic series locks.<ref name=":0">{{Cite news |last=Greenberg |first=Andy |date=2025-08-08 |title=Hackers Went Looking for a Backdoor in High-Security Safes—and Now Can Open Them in Seconds |url=https://www.wired.com/story/securam-prologic-safe-lock-backdoor-exploits/ |work=WIRED}}</ref>


==[Incident]==
==The Incident: Discovery that the Backdoor is Vulnerable ==
{{Ph-I-I}}
On August 8th, 2025 while on-stage at DEF CON<ref>[https://media.defcon.org/DEF%20CON%2033/DEF%20CON%2033%20presentations/Mark%20Omo%20James%20Rowlery%20-%20Cash%2C%20Drugs%2C%20and%20Guns%20Why%20Your%20Safes%20Aren%27t%20Safe.pdf DEF CON Presentation] Slides by Mark Omo and James Rowley</ref><ref>[https://infocondb.org/con/def-con/def-con-33/cash-drugs-and-guns-why-your-safes-arent-safe Cash, Drugs, and Guns: Why Your Safes Aren't Safe] - DEF CON talk abstract by Mark Omo and James Rowley</ref> in Las Vegas, researchers Mark Omo and James Rowley demonstrated that SecuRam ProLogic safe locks can be opened by unauthorized users without the passkey using backdoors installed by the manufacturer. In the interest of public safety, they opted not to publicly reveal the techniques they discovered. They did however provide a live demonstration to journalist Andy Greenberg from WIRED.<ref name=":0" />


===[Company]'s response===
===[Company]'s response===

Revision as of 00:18, 16 September 2025

Short summary of the incident using references [1]. Usually 2-3 sentences that summarize the contents or the article. When writing the article, insert text in the space below this box, and then delete this tip box (and the other tip boxes below). In the visual editor, just click on a box and press backspace to delete it. In the source editor, simply delete the double curly brackets, and the text inside them.


Add your text below this box. Once this section is complete, delete this box by clicking on it and pressing backspace.


Background

In 2023 new broke that Liberty Safe kept a master key for all safes that it sold.[2] Security researcher Mark Omo and James Rowley attempted to discover vulnerabilities involving this master key. They were unsuccessful, but did discover two techniques for opening safes sold by Liberty Safe that were equipped with SecuRam ProLogic series locks.[3]

The Incident: Discovery that the Backdoor is Vulnerable

On August 8th, 2025 while on-stage at DEF CON[4][5] in Las Vegas, researchers Mark Omo and James Rowley demonstrated that SecuRam ProLogic safe locks can be opened by unauthorized users without the passkey using backdoors installed by the manufacturer. In the interest of public safety, they opted not to publicly reveal the techniques they discovered. They did however provide a live demonstration to journalist Andy Greenberg from WIRED.[3]

[Company]'s response

If applicable, add the proposed solution to the issues by the company.


Add your text below this box. Once this section is complete, delete this box by clicking on it and pressing backspace.



Lawsuit

If applicable, add any information regarding litigation around the incident here.

Claims

Main claims of the suit.

Rebuttal

The response of the company or counterclaims.

Outcome

The outcome of the suit, if any.


Add your text below this box. Once this section is complete, delete this box by clicking on it and pressing backspace.



Consumer response

Summary and key issues of prevailing sentiment from the consumers and commentators that can be documented via articles, emails to support, reviews and forum posts.


Add your text below this box. Once this section is complete, delete this box by clicking on it and pressing backspace.



References

  1. ref goes here
  2. Levenson, Michael (2023-09-08). "How a Company That Makes Gun Safes Angered Gun Owners". The New York Times.
  3. 3.0 3.1 Greenberg, Andy (2025-08-08). "Hackers Went Looking for a Backdoor in High-Security Safes—and Now Can Open Them in Seconds". WIRED.
  4. DEF CON Presentation Slides by Mark Omo and James Rowley
  5. Cash, Drugs, and Guns: Why Your Safes Aren't Safe - DEF CON talk abstract by Mark Omo and James Rowley


Add a category with the same name as the product, service, website, software, product line or company that this article is about.

The "Incidents" category is not needed.


Add your text below this box. Once this section is complete, delete this box by clicking on it and pressing backspace.