August 15, 2022
Phones powered by Unisoc SoCs vulnerable to remote hacker attacks: Checkpoint Research

Mobile phones powered by Unisoc chips have been found vulnerable to an issue that could allow attackers to remotely intercept communications. Cybersecurity analysis firm Check Point Research announced on Thursday that it has identified a vulnerability in Unisoc modems that could affect communications. This issue is present in the modem firmware and affects 4G and 5G Unisoc chipsets as per the firm. Unisoc acknowledged the vulnerability and considered it to be of a serious nature, giving it a score of 9.4 out of 10.

Check Point Research said in its own report good That critical vulnerability, tracked as CVE-2022-20210, was discovered while scanning non-access stratum (NAS) message handlers. Using malformed packets, the problem could allow a hacker or military unit to intercept the device’s radio communications.

Researchers at Check Point Research were able to trace Vulnerability on Unisoc T700 chip-based Motorola Moto G20 with Android January 2022 security patch. However, this issue is not limited to a particular Unisoc SoC model or a specific phone.

“We found a vulnerability in the Unisoc modem built into 11 percent of smartphones,” Check Point Software reverse engineering and security research attorney Slava Makaviev said in a prepared statement. “An attacker could have used a radio station to send a malformed packet that would reset the modem, denying the user the possibility of communication. Left without a patch, cellular communications could be blocked by an attacker.” Is.”

Makaviev said the vulnerability was found in the Unisoc modem firmware, not the Android operating system.

Check Point Research disclosed its findings to Unisoc in May. The Shanghai-based chipmaker acknowledged the vulnerability upon receipt of the disclosure and issued a patch.

However, the fix has not yet reached the users. Google said it would publish the patch provided in an upcoming Android security bulletin, the research firm noted.

Check Point Research urges users to always update their mobile phones to the latest software version available.

Unisoc, formerly known as Spreadtrum, has been growing in the market for smartphone chipmakers over the past few months.

according to a recent report By market research firm Counterpoint, Unisoc’s stake rose to 47 percent in the first quarter of the year, up from 20 percent in the same quarter last year. It also gave a tough competition to MediaTek which was facing supply crunch for 4G chips.

Companies including Samsung, Motorola and Realme are using Unisoc SoCs in their budget phones.

Leave a Reply

Your email address will not be published.