{"id":130210,"date":"2025-08-08T22:54:10","date_gmt":"2025-08-08T22:54:10","guid":{"rendered":"https:\/\/www.europesays.com\/us\/130210\/"},"modified":"2025-08-08T22:54:10","modified_gmt":"2025-08-08T22:54:10","slug":"hackers-went-looking-for-a-backdoor-in-high-security-safes-and-now-can-open-them-in-seconds","status":"publish","type":"post","link":"https:\/\/www.europesays.com\/us\/130210\/","title":{"rendered":"Hackers Went Looking for a Backdoor in High-Security Safes\u2014and Now Can Open Them in Seconds"},"content":{"rendered":"<p class=\"paywall\">Zhou added in his statement that Securam will be fixing the vulnerabilities Omo and Rowley found in future models of the ProLogic lock. \u201cCustomer security is our priority and we have begun the process of creating next-generation products to thwart these potential attacks,\u201d he writes. \u201cWe expect to have new locks on the market by the end of the year.\u201d<\/p>\n<p>Photograph: Ronda Churchill<\/p>\n<p class=\"paywall\">In a followup call, Securam director of sales Jeremy Brookes confirmed that Securam has no plan to fix the vulnerability in locks already in use on customers\u2019 safes, but suggests safe owners who are concerned buy a new lock and replace the one on their safe. \u201cWe\u2019re not going to be offering a firmware package that upgrades it,\u201d Brookes says. \u201cWe\u2019re going to offer them a new product.\u201d<\/p>\n<p class=\"paywall\">Brookes adds that he believes Omo and Rowley are \u201csingling out\u201d Securam with the intention of \u201cdiscrediting\u201d the company.<\/p>\n<p class=\"paywall\">Omo responds that\u2019s not at all their intent. \u201cWe\u2019re trying to make the public aware of the vulnerabilities in one of the most popular safe locks on the market,\u201d he says.<\/p>\n<p>A Senator\u2019s Warning<\/p>\n<p class=\"paywall\">Beyond Liberty Safe, Securam ProLogic locks are used by a wide variety of safe manufacturers including Fort Knox, High Noble, FireKing, Tracker, ProSteel, Rhino Metals, Sun Welding, Corporate Safe Specialists, and pharmacy safe companies Cennox and NarcSafe, according to Omo and Rowley\u2019s research. The locks can also be found on safes used by CVS for storing narcotics and by multiple US restaurant chains for storing cash.<\/p>\n<p class=\"paywall\">Rowley and Omo aren&#8217;t the first to raise concerns about the security of Securam locks. In March of last year, US senator Ron Wyden wrote an <a href=\"https:\/\/www.wyden.senate.gov\/news\/press-releases\/wyden-urges-ncsc-to-warn-public-about-backdoor-codes-to-commercial-locks-and-safes\" target=\"_blank\" rel=\"noopener\">open letter<\/a> to Michael Casey, then director of the National Counterintelligence and Security Center, urging Casey to make clear to American businesses that safe locks made by Securam, which is owned by a Chinese parent company, have a manufacturer reset capability. That capability, Wyden wrote, could be used as a backdoor\u2014a risk that had already led to Securam locks being prohibited for US government use like all other locks with a manufacturer reset, even as they&#8217;re widely used by private US companies.<\/p>\n<p class=\"paywall\">In response to learning about Rowley and Omo\u2019s research, Wyden wrote in a statement to WIRED that the researchers\u2019 findings represent exactly the risk of a backdoor\u2014whether in safes or in encryption software\u2014that he\u2019s tried to call attention to.<\/p>\n<p class=\"paywall\">\u201cExperts have warned for years that backdoors will be exploited by our adversaries, yet instead of acting on my warnings and those of security experts, the government has left the American public vulnerable,\u201d Wyden writes. \u201cThis is exactly why Congress must reject calls for new backdoors in encryption technology and fight all efforts by other governments, <a data-offer-url=\"https:\/\/www.washingtonpost.com\/technology\/2025\/02\/07\/apple-encryption-backdoor-uk\/\" class=\"external-link\" data-event-click=\"{&quot;element&quot;:&quot;ExternalLink&quot;,&quot;outgoingURL&quot;:&quot;https:\/\/www.washingtonpost.com\/technology\/2025\/02\/07\/apple-encryption-backdoor-uk\/&quot;}\" href=\"https:\/\/www.washingtonpost.com\/technology\/2025\/02\/07\/apple-encryption-backdoor-uk\/\" rel=\"nofollow noopener\" target=\"_blank\">such as the UK<\/a>, to force US companies to weaken their encryption to facilitate government surveillance.\u201d<\/p>\n<p>ResetHeist<\/p>\n<p class=\"paywall\">Rowley and Omo\u2019s research began with that same concern, that a largely undisclosed unlocking method in safes might represent a broader security risk. They initially went searching for the mechanism behind the Liberty Safe backdoor that had caused a backlash against the company in 2023, and found a relatively straightforward answer: Liberty Safe keeps a reset code for every safe and, in some cases, makes it available to US law enforcement.<\/p>\n<p class=\"paywall\">Liberty Safe has since <a data-offer-url=\"https:\/\/www.libertysafe.com\/pages\/protecting-your-privacy?srsltid=AfmBOoqDvQTJmLYXWXhIraMN3DtvT_r21ywZMSlLqEaXgXjOfnKs4PTz\" class=\"external-link\" data-event-click=\"{&quot;element&quot;:&quot;ExternalLink&quot;,&quot;outgoingURL&quot;:&quot;https:\/\/www.libertysafe.com\/pages\/protecting-your-privacy?srsltid=AfmBOoqDvQTJmLYXWXhIraMN3DtvT_r21ywZMSlLqEaXgXjOfnKs4PTz&quot;}\" href=\"https:\/\/www.libertysafe.com\/pages\/protecting-your-privacy?srsltid=AfmBOoqDvQTJmLYXWXhIraMN3DtvT_r21ywZMSlLqEaXgXjOfnKs4PTz\" rel=\"nofollow noopener\" target=\"_blank\">written on its website<\/a> that it now requires a subpoena, a court order, or other compulsory legal process to hand over that master code, and will also delete its copy of the code at a safe owner\u2019s request.<\/p>\n<p>Rowley and Omo planned to reveal the existence of Securam\u2019s vulnerabilities more than a year ago, but held off until now due to the company\u2019s legal threats.Photograph: Ronda Churchill<\/p>\n<p class=\"paywall\">Rowley and Omo didn&#8217;t find any security flaw that would allow them to abuse that particular law-enforcement-friendly backdoor. When they started examining the Securam ProLogic lock, however, their research on the higher-end version of the two kinds of Securam lock used on Liberty Safe products revealed something more intriguing. The locks have a reset method documented in their manual, intended in theory for use by locksmiths helping safe owners who have forgotten their unlock code.<\/p>\n<p class=\"paywall\">Enter a \u201crecovery code\u201d into the lock\u2014set to \u201c999999\u201d by default\u2014and it uses that value, another number stored in the lock called an encryption code, and a third, random variable to compute a code that&#8217;s displayed on the screen. An authorized locksmith can then read that code to a Securam representative over the phone, who then uses that value and a secret algorithm to compute a reset code the locksmith can enter into the keypad to set a new unlock combination.<\/p>\n","protected":false},"excerpt":{"rendered":"Zhou added in his statement that Securam will be fixing the vulnerabilities Omo and Rowley found in future&hellip;\n","protected":false},"author":3,"featured_media":130211,"comment_status":"","ping_status":"","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[7],"tags":[77071,734,77072,13336,4995,158,67,132,68],"class_list":{"0":"post-130210","1":"post","2":"type-post","3":"status-publish","4":"format-standard","5":"has-post-thumbnail","7":"category-technology","8":"tag-black-hat","9":"tag-cybersecurity","10":"tag-defcon","11":"tag-hacking","12":"tag-security","13":"tag-technology","14":"tag-united-states","15":"tag-unitedstates","16":"tag-us"},"share_on_mastodon":{"url":"https:\/\/pubeurope.com\/@us\/114995610420597985","error":""},"_links":{"self":[{"href":"https:\/\/www.europesays.com\/us\/wp-json\/wp\/v2\/posts\/130210","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/www.europesays.com\/us\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www.europesays.com\/us\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www.europesays.com\/us\/wp-json\/wp\/v2\/users\/3"}],"replies":[{"embeddable":true,"href":"https:\/\/www.europesays.com\/us\/wp-json\/wp\/v2\/comments?post=130210"}],"version-history":[{"count":0,"href":"https:\/\/www.europesays.com\/us\/wp-json\/wp\/v2\/posts\/130210\/revisions"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/www.europesays.com\/us\/wp-json\/wp\/v2\/media\/130211"}],"wp:attachment":[{"href":"https:\/\/www.europesays.com\/us\/wp-json\/wp\/v2\/media?parent=130210"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www.europesays.com\/us\/wp-json\/wp\/v2\/categories?post=130210"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www.europesays.com\/us\/wp-json\/wp\/v2\/tags?post=130210"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}