Advertisement

Google made a big allegation on Samsung, said- Exynos processor has many flaws, your phone can be hacked

Google made a big allegation on Samsung, said- Exynos processor has many flaws, your phone can be hacked

⚡ Key Points

  • Google's Project Zero team discovered 18 security vulnerabilities in Samsung's Exynos chipset.
  • Four of the 18 flaws allow hackers to remotely control a device using only the victim's phone number — no user interaction needed.
  • Affected devices include Samsung Galaxy S22, A-series, and M-series phones, Vivo S and X series phones, and Google Pixel 6 and Pixel 7.
  • Cars using the Exynos Auto T5123 chipset are also at risk.
  • Disabling Wi-Fi Calling and VoLTE on your phone reduces exposure until patches are released.
In this article
  1. What Are the Exynos Chipset Flaws Google Discovered?
  2. Which Devices Are Affected by the Exynos Security Vulnerabilities?
  3. How to Protect Your Phone Right Now
  4. Why This Matters Beyond Samsung
  5. What Happens Next

Google's Project Zero security research team has exposed critical Exynos chipset flaws — 18 vulnerabilities found inside Samsung's Exynos processor that could allow hackers to remotely seize control of your phone, smartwatch, or even your car, without any interaction from you.

What Are the Exynos Chipset Flaws Google Discovered?

Google's Project Zero, one of the world's most respected security research teams, identified a total of 18 security vulnerabilities within Samsung's Exynos chipsets. Team lead Tim Willis confirmed that four of these 18 flaws are especially dangerous: they can be exploited by attackers to remotely take over a device using only the victim's phone number. No clicks, no downloads, no user action required.

Advertisement

The remaining 14 vulnerabilities are considered less immediately threatening, but they are still serious. Exploiting them would require access to a malicious or compromised mobile network — something that is not beyond the reach of a determined attacker.

Which Devices Are Affected by the Exynos Security Vulnerabilities?

The scope of affected hardware is wide. Samsung's own devices make up the largest group, but the problem extends to phones from other brands and even to vehicles.

  • Samsung phones: Galaxy S22, M33, M13, M12, A71, A53, A33, A21s, A13, A12, and A04 series
  • Vivo phones: S16, S15, S6, X70, X60, and X30 series
  • Google phones: Pixel 6 and Pixel 7 series
  • Vehicles: Cars equipped with the Exynos Auto T5123 chipset

Samsung's Exynos chipset is widely embedded across mobile devices, smartwatches, and connected cars, which is why the blast radius of these flaws is so unusually large.

How to Protect Your Phone Right Now

Until Samsung and affected device makers release security patches, there are two immediate steps you can take to reduce your exposure to these Exynos chipset flaws:

  1. Turn off Wi-Fi Calling on your device. This feature uses the internet to route phone calls and is one of the attack vectors the four most critical vulnerabilities exploit.
  2. Disable VoLTE (Voice over LTE). Like Wi-Fi calling, VoLTE is a potential entry point for remote exploitation.

Both settings are typically found under your phone's Calls or Mobile Network settings. Disabling them reduces functionality slightly but removes the primary surface through which a remote attacker could target your device without any interaction from you.

Why This Matters Beyond Samsung

What makes this disclosure particularly significant is that it implicates Google's own Pixel devices. Google's Project Zero team found and reported the vulnerabilities — and Google's own Pixel 6 and Pixel 7 phones, which also use Exynos modems in certain configurations, are on the affected list. This is a rare case where the team discovering the flaw also makes a product vulnerable to it.

Advertisement

The involvement of the Exynos Auto T5123 chipset used in vehicles also marks an expansion of the threat surface beyond consumer smartphones into connected automotive systems, highlighting how pervasive chipset-level vulnerabilities can be across modern technology ecosystems.

What Happens Next

Google's Project Zero operates under a responsible disclosure policy, typically giving vendors 90 days to issue a patch before full technical details are made public. Samsung is expected to address these vulnerabilities through its regular monthly security update cycle. Users on affected devices should watch for incoming software updates and install them as soon as they become available. In the meantime, keeping Wi-Fi Calling and VoLTE switched off remains the most practical short-term defence against the four most critical Exynos chipset flaws.

What's your reaction?

Frequently Asked Questions

Which Samsung phones are affected by the Exynos chipset flaws?

The affected Samsung models include the Galaxy S22, M33, M13, M12, A71, A53, A33, A21s, A13, A12, and A04 series phones.

Can hackers control my phone remotely through the Exynos vulnerability?

Yes. Four of the 18 flaws identified by Google's Project Zero can be exploited to remotely take over a device using only the target's phone number, with no action required from the phone's owner.

Are Google Pixel phones affected by these Exynos security flaws?

Yes. Google Pixel 6 and Pixel 7 series phones are on the list of affected devices because they use Exynos modems in certain configurations.

How can I protect my phone from the Exynos chipset vulnerability?

Turn off Wi-Fi Calling and disable VoLTE in your phone's network settings. These two features are the main attack vectors for the four most critical vulnerabilities.

Are vehicles affected by the Samsung Exynos security flaw?

Yes. Cars equipped with the Exynos Auto T5123 chipset are also identified as at risk, expanding the vulnerability beyond smartphones to connected automotive systems.

Share: Facebook X / Twitter WhatsApp LinkedIn
Advertisement
Advertisement