Nasty bug allows hackers to take over many Android phones. Here's what you can do.

There's no official fix for most devices, but there's a workaround.
By
Stan Schroeder
 on 
Samsung Galaxy S22
Samsung Galaxy S22 is one of the affected devices, but only the variants with an Exynos chipset are vulnerable. Credit: Samsung

As bugs go, it doesn't get any worse than this: A newly found vulnerability in Samsung's Exynos modems allows hackers to take over phones without any intervention from the phone's owners.

Google Project Zero found a total of 18 zero-day vulnerabilities in Samsung's Exynos modems in late 2022 and early 2023. Four of those allow the hackers to remotely compromise the users's phone, and only require that they know the victim's phone number. Google claims that skilled attackers might be able to "quickly create an operational exploit to compromise affected devices silently and remotely."

The list of phones that are vulnerable is quite long: Samsung S22, M33, M13, M12, A71, A53, A33, A21, A13, A12 and A04 series, Google Pixel 6 and Pixel 7 series, and Vivo S16, S15, S6, X70, X60 and X30 series.

Mashable Light Speed
Want more out-of-this world tech, space and science stories?
Sign up for Mashable's weekly Light Speed newsletter.
By clicking Sign Me Up, you confirm you are 16+ and agree to our Terms of Use and Privacy Policy.
Thanks for signing up!

Additionally, any wearables that use the Exynos W920 chipset (these include the Galaxy Watch 4 and 5, for example), and any vehicles that use the Exynos Auto T5123 chipset are vulnerable too.

The silver lining for Samsung Galaxy S22 owners is that phones from that series that are sold in the U.S. have a Qualcomm chipset instead of Samsung's Exynos chipset, and are therefore not vulnerable. Galaxy S22 owners in Europe aren't so lucky. Also, Google fixed the vulnerability on Pixel 7 phones with its March 2023 security patch, though 9to5Google notes that the Pixel 6, Pixel 6 Pro, and Pixel 6a are still vulnerable.

Fortunately, there is a way for users to temporarily remedy the issue by turning off Wi-Fi calling and Voice-over-LTE in their device's settings. This might result in slightly lower voice call quality, but it at least means your phone is safe until an official patch is available.

Topics Cybersecurity

Stan Schroeder
Stan Schroeder
Senior Editor

Stan is a Senior Editor at Mashable, where he has worked since 2007. He's got more battery-powered gadgets and band t-shirts than you. He writes about the next groundbreaking thing. Typically, this is a phone, a coin, or a car. His ultimate goal is to know something about everything.


Recommended For You
Nasty WhatsApp bug let users access 'View Once' photos multiple times
WhatsApp app logo seen on a smartphone screen.

New 'browser syncjacking' cyberattack lets hackers take over your computer via Chrome
Google Chrome logo on laptop


New Android 16 beta update brings major feature to older Pixel phones
a hand holding up a Google Pixel 9a with the screen unlocked

Nothing's new Phone 3a and 3a Pro are the coolest-looking phones you can get
Nothing Phone 3a and 3a Pro

More in Tech
How to watch LAFC vs. Inter Miami online for free
Lionel Messi of Inter Miami CF

How to watch Vancouver Whitecaps vs. Pumas UNAM online for free
Leonardo Suarez of Pumas UNAM celebrates

Target Circle members can still score 3 free months of Peacock Premium
illustrated tv screen with peacock logo and colorful background

How to watch Club America vs. Cruz Azul online for free
Detailed view of the shoes of Kevin Alvarez of America

How to watch LA Galaxy vs. Tigres UANL online for free
Gabriel Pec of Los Angeles Galaxy during a game

Trending on Mashable
NYT Connections hints today: Clues, answers for April 2, 2025
Connections game on a smartphone

Wordle today: Answer, hints for April 2, 2025
Wordle game on a smartphone

NYT Strands hints, answers for April 2, 2025
A game being played on a smartphone.

NYT Mini crossword answers, hints for April 2, 2025
Close-up view of crossword puzzle.

The biggest stories of the day delivered to your inbox.
These newsletters may contain advertising, deals, or affiliate links. By clicking Subscribe, you confirm you are 16+ and agree to our Terms of Use and Privacy Policy.
Thanks for signing up. See you at your inbox!