Skip to content
Electronics

40% of Android phones have modem vulnerability allowing an attacker to listen in to your calls

By Sarah Chen
1 min read
Android 10
Android 10
In this article (5)

A vulnerability discovered by security firm Check Point Research could allow a malicious app to skip the usual security features giving it access to call and text history. It also gives an attacker the ability to record conversations. The Qualcomm Modem Interface (QMI) software is normally impossible for third-party apps to access, but if key aspects of Android are hacked, the QMI vulnerability can be used to listen in and record an active phone call, and as we already pointed out, steal call and SMS records.

QMI is used on as much as 40% of Android handsets including those made by Google, Samsung, OnePlus, LG, Xiaomi, and more. Check Point kept certain information out of its report to make sure that the attack can not be easily copied. There is no indication that the attack has been used by a malicious hacker.

Check Point revealed all of this to Qualcomm last October calling it a high-rated vulnerability. The chipmaker told the phone manufacturers that use Qualcomm’s modem chips. So far, the vulnerability has not been fixed and we can only hope that Qualcomm and Google will patch this in a future security update.

However, Qualcomm says that it did make fixes available to “many” Android phone manufacturers last December and that these firms passed along security updates to end-users. The vulnerability will be part of the June Android bulletin.

Qualcomm issued a statement today that said, “Providing technologies that support robust security and privacy is a priority for Qualcomm. We commend the security researchers from Check Point for using industry-standard coordinated disclosure practices. Qualcomm Technologies has already made fixes available to OEMs in December 2020, and we encourage end-users to update their devices as patches become available.”

Questions & Answers

Q.

Which phone manufacturers are affected by this modem vulnerability?

A.

The vulnerability affects Android handsets from several manufacturers, including Google, Samsung, OnePlus, LG, and Xiaomi. It is present in devices that use the Qualcomm Modem Interface (QMI) software.

Q.

What kind of information could an attacker access using this vulnerability?

A.

A malicious app could gain access to call and text history, record active phone conversations, and steal SMS records. This is possible by exploiting the QMI vulnerability if key aspects of Android are first compromised.

Q.

Have any fixes for this vulnerability been released yet?

A.

Qualcomm states it made fixes available to many Android phone manufacturers in December 2020. These firms were then encouraged to pass along security updates to end-users for installation. The vulnerability will also be addressed in the June Android bulletin.

Q.

Is there any evidence this vulnerability has been exploited by attackers?

A.

There is no indication that this specific attack has been used by a malicious hacker. Check Point kept certain information out of its report to prevent the attack from being easily replicated.

Reader pulse

What's the biggest concern for retailers?

23,648 votes so far

Weekly Briefing

Asia's retail intelligence, in your inbox

Tuesday, Thursday and a Saturday Weekly Wrap: the retail stories, numbers and moves that mattered across Asia. Nothing else, and you can unsubscribe in one click.

  • Top industry moves and market shifts
  • Weekly data-driven analysis from across Asia
  • Tuesday, Thursday and the Saturday Weekly Wrap

Read by retail operators, investors and brand teams across Asia.

Protected by a quick human check. No spam, ever. Unsubscribe in one click.

SecureGDPR ready