Kaspersky ICS CERT has publicly detailed a critical hardware vulnerability hitting a wide array of Qualcomm Snapdragon chipsets. The exploit, presented at Black Hat Asia 2026 on April 23 and tracked as CVE-2026-25262, has rattled the security community. First confirmed by Qualcomm in April 2025, full technical details are now available, exposing a backdoor capable …

Kaspersky ICS CERT has publicly detailed a critical hardware vulnerability hitting a wide array of Qualcomm Snapdragon chipsets. The exploit, presented at Black Hat Asia 2026 on April 23 and tracked as CVE-2026-25262, has rattled the security community. First confirmed by Qualcomm in April 2025, full technical details are now available, exposing a backdoor capable of total device takeover and data destruction.

The issue lies deep in the BootROM, the silicon-hardcoded firmware that runs first when a device powers up. Because this code is etched into the hardware itself, standard OTA software updates can’t touch it, making patches nearly impossible.
Researchers uncovered a major weakness in Qualcomm‘s Sahara protocol handling. For those who work with device flashing, Sahara manages low-level communication in Emergency Download (EDL) mode to load critical software before the main OS starts.
With just a few minutes of physical access, attackers can exploit this to sidestep the entire secure boot chain. Once inside the application processor, they gain the ability to:
The malware even fakes a system reboot to throw off users. Clearing the infection often requires draining the battery completely to wipe volatile memory, and detection remains extremely challenging.
While newer flagships like Snapdragon 8 Elite have stronger defenses, this flaw hits many older and mid-range chips still in widespread use.
Vulnerable Qualcomm Chipsets:
Physical access requirements limit mass remote attacks, but the risk to supply chains, repair shops, and targeted users remains severe. Compromised devices turn into perfect surveillance tools. With hardware deployed across consumer REDMI phones to industrial IoT systems, the potential fallout spans far beyond typical mobile threats.
Source: Kaspersky

Google Pixel Watch 5 (45mm)
Cristian Penisoara is a Guides Writer and Android specialist at Droid Tools. An Android user since version 2 and a professional event photographer, he combines technical curiosity with a detail-oriented approach - every guide he publishes is tested step-by-step on a real device before it goes live.

Google has released Android 17 QPR3 Beta 1 to every still-supported Pixel device, from the Pixel 6a through the new Pixel 11 series, and the rollout arrived earlier than expected this afternoon. The update looks sizable, carrying fixes for at least 20 bugs that had carried over from QPR2. The beta ships as build DP11.260918.005 […]

The previous Android 17 QPR2 Beta 6 update mostly focused on fixing bugs that had been plaguing devices for a while, including a substantial issue that caused phones to reboot simply from scrolling through content, along with fixes for letterboxed content leaking through the status bar during app transitions and a Pixel 9 Pro Fold […]

Honor MagicOS 11 debuts on September 15 with a set of new features for eligible devices, ranging from a smoother, more fluid UI to a more capable AI assistant. Honor unveiled MagicOS 11 at its 2026 Global Developer Conference, and the company said the official version will open for unlimited testing right after the event, […]

Honor MagicOS 11 is set to debut tomorrow at the company's developer conference, and ahead of the official launch, one of Honor's own officials has already revealed a new Power Saving feature coming with the software. XiaoFangge, Honor's Product Maintenance and Upgrade Manager, said MagicOS 11 will include what he described as a cute Easter […]
The next story loads as you reach the end. You can also load it using the button.
Comments & Discussions
Join the conversation! We use Disqus to handle comments. Click the button below to load the comment section.