Critical Snapdragon Exploit Takes Over Devices in Just 5 Minutes – What You Need to Know

snapdragon exploit
Advertisement
Trust this source on GoogleAlways see our reviews and tech guides first in search results
Add trusted source

Kaspersky ICS CERT has publicly detailed a critical hardware vulnerability hitting a wide array of Qualcomm Snapdragon chipsets. The exploit, presented at Black Hat Asia 2026 on April 23 and tracked as CVE-2026-25262, has rattled the security community. First confirmed by Qualcomm in April 2025, full technical details are now available, exposing a backdoor capable of total device takeover and data destruction.

snapdragon exploit takes over device

The Sahara Protocol and BootROM Flaw

The issue lies deep in the BootROM, the silicon-hardcoded firmware that runs first when a device powers up. Because this code is etched into the hardware itself, standard OTA software updates can’t touch it, making patches nearly impossible.

Researchers uncovered a major weakness in Qualcomm‘s Sahara protocol handling. For those who work with device flashing, Sahara manages low-level communication in Emergency Download (EDL) mode to load critical software before the main OS starts.

With just a few minutes of physical access, attackers can exploit this to sidestep the entire secure boot chain. Once inside the application processor, they gain the ability to:

Advertisement
  • Install persistent backdoors that survive reboots.
  • Pull sensitive data like passwords, files, contacts, and real-time location.
  • Take over device sensors for covert camera and microphone access.

The malware even fakes a system reboot to throw off users. Clearing the infection often requires draining the battery completely to wipe volatile memory, and detection remains extremely challenging.

Affected Chipsets and Devices

While newer flagships like Snapdragon 8 Elite have stronger defenses, this flaw hits many older and mid-range chips still in widespread use.

Vulnerable Qualcomm Chipsets:

  • MSM8916 (Snapdragon 410) (Xiaomi REDMI 2)
  • SDX50 (Xiaomi Mi MIX 3 5G and Mi 9 Pro 5G)
  • MDM9x07
  • MDM9x45 (Xiaomi Mi 5, Mi 5s, Mi 5s Plus, Mi Note 2, Mi MIX)
  • MDM9x65
  • MSM8909
  • MSM8952

Real-World Impact

Physical access requirements limit mass remote attacks, but the risk to supply chains, repair shops, and targeted users remains severe. Compromised devices turn into perfect surveillance tools. With hardware deployed across consumer REDMI phones to industrial IoT systems, the potential fallout spans far beyond typical mobile threats.

Advertisement

Source: Kaspersky

Advertisement
Featured Deal
1 / 5
Google Pixel Watch 5 (45mm)

Google Pixel Watch 5 (45mm)

5.0 / 5.0
💎Best Android Device
Samsung Galaxy S26 Ultra

Samsung Galaxy S26 Ultra

4.9 / 5.0
$1,212.85$1,499.99-19%
Buy on Amazon
Samsung Galaxy Watch 8

Samsung Galaxy Watch 8

4.9 / 5.0
$289.99$349.99-17%
Buy on Amazon
Google Pixel Watch 4

Google Pixel Watch 4

4.8 / 5.0
396.00$499.99-21%
Buy on Amazon
👑A good choice
Apple iPhone 17 Pro

Apple iPhone 17 Pro

4.8 / 5.0
$1,012.97$1,099.00-8%
Buy on Amazon
* As an Amazon Associate, Droid Tools earns from qualifying purchases. Disclosure.
Cristian Penisoara
Cristian PenisoaraGuides Writer · Android Power User

Cristian Penisoara is a Guides Writer and Android specialist at Droid Tools. An Android user since version 2 and a professional event photographer, he combines technical curiosity with a detail-oriented approach - every guide he publishes is tested step-by-step on a real device before it goes live.

Advertisement

Comments & Discussions

Join the conversation! We use Disqus to handle comments. Click the button below to load the comment section.

Advertisement
More Stories

Keep Reading

Robert Haba1 min read

Android 17 QPR2 Beta 3 brings App lock and Pixel UI changes

Android 17 QPR2 Beta 3 arrived on August 14 as the latest preview of the December release. 9to5Google described the Friday launch as unexpected and began a running catalog of changes that was still marked as updating. As new changes are discovered, the latest entries will be placed at the top of the page. Readers […]

android 17
Robert Haba1 min read

One UI 9 Update Rolls Out With Now Nudge AI and Gemini-Powered Galaxy AI

Samsung has begun rolling out the stable One UI 9 update, based on Android 17, starting with the Galaxy Z Fold 8 series worldwide, according to Memeburn. Samsung is also internally testing the update on 49 additional Galaxy phones and tablets, with the software rolling out through the rest of the year on a staggered […]

best one ui 9 features
Luiza Mosneagu1 min read

HyperOS 4 Setup Leak Reveals 10 New Features and Glass Design

A leaked HyperOS 4 setup screen has exposed Xiaomi's planned onboarding flow, along with a list of ten major features tied to the update. The files directly reference “Xiaomi HyperOS 4” and divide several features by device class, with some Glass effects marked exclusively for flagship models and the Q18. The leak also backs up […]

hyperos 4
Robert Haba1 min read

HyperOS 4 Leak Reveals Major “Liquid Glass” Redesign for Xiaomi 18 Series

New leaks are offering the clearest look yet at HyperOS 4, and they suggest Xiaomi is preparing the biggest visual overhaul in the software's history, including a redesigned interface and refreshed wallpapers. Liquid Glass Interface Leak Details Screenshots reportedly pulled from internal Xiaomi 18-series prototypes running an early Android 17-based build of HyperOS 4 reveal […]

HyperOS 4 image
Robert Haba1 min read

Xiaomi 17 Series Gets Stable Android 17 Update via HyperOS 3

Xiaomi has started rolling out stable Android 17 to the Xiaomi 17, Xiaomi 17 Ultra, and Xiaomi 17T Pro, packaged under the HyperOS 3 label. A Confusing Label, But a Real Platform Jump The HyperOS 3 branding is the same one Xiaomi already used for its Android 16 rollout, which makes the naming a bit […]

xiaomi 17 receive android 17