Cellphone chipmaker Qualcomm fixes three zero-days exploited by hackers

Sports News


Chipmaker big Qualcomm released patches on Monday fixing a collection of vulnerabilities in dozens of chips, together with three zero-days that the corporate stated could also be in use as a part of hacking campaigns. 

Qualcomm cited Google’s Menace Evaluation Group, or TAG, which investigates government-backed cyberattacks, saying the three flaws “could also be beneath restricted, focused exploitation.” 

Based on the corporate’s bulletin, Google’s Android safety group reported the three zero-days (CVE-2025-21479, CVE-2025-21480, and CVE-2025-27038) to Qualcomm in February. Zero-days are safety vulnerabilities that aren’t identified to the software program or {hardware} maker on the time of their discovery, making them extremely valuable for cybercriminals and authorities hackers. 

Due to Android’s open supply and distributed nature, it’s now as much as machine producers to use the patches supplied by Qualcomm, which suggests some gadgets should still be susceptible for a number of extra weeks, even if there are patches obtainable. 

Contact Us

Do you will have extra details about these Qualcomm zero-days? Or different zero-day exploits or zero-day makers? From a non-work machine and community, you may contact Lorenzo Franceschi-Bicchierai securely on Sign at +1 917 257 1382, or through Telegram and Keybase @lorenzofb, or email.

Qualcomm stated within the bulletin that the patches “have been made obtainable to [device makers] in Could along with a robust suggestion to deploy the replace on affected gadgets as quickly as potential.”

Google spokesperson Ed Fernandez instructed TechCrunch that the corporate’s Pixel gadgets are usually not affected by these Qualcomm vulnerabilities.

Kimberly Samra, a spokesperson for Google’s TAG didn’t instantly present extra details about these vulnerabilities, and the circumstances during which TAG discovered them. 

Qualcomm acknowledged the fixes. “We encourage finish customers to use safety updates as they turn into obtainable from machine makers,” stated firm spokesperson Dave Schefcik.

Chipsets present in cellular gadgets are frequent targets for hackers and zero-day exploit builders as a result of chips usually have broad entry to the remainder of the working system, which suggests hackers can bounce from there to different elements of the machine which will maintain delicate information. 

In the previous few months, there have been documented circumstances of exploitation towards Qualcomm chipsets. Final 12 months, Amnesty International identified a Qualcomm zero-day that was being utilized by Serbian authorities, probably by utilizing telephone unlocking device maker Cellebrite.

Up to date to incorporate Qualcomm’s spokesperson remark.



Source link

- Advertisement -
- Advertisement -

LEAVE A REPLY

Please enter your comment!
Please enter your name here

- Advertisement -
Trending News

38 Merchandise To Assist Fight Annoying Summer time Issues

They're mechanically cleanable too!Thigh Society is a woman-founded, size-inclusive small biz from Marnie Consky.BuzzFeed Purchasing editor Chelsea Stuart loves...
- Advertisement -

More Articles Like This

- Advertisement -