[{"data":1,"prerenderedAt":-1},["ShallowReactive",2],{"$fMF0AiNBZ8aSaJ6k-oRqCTaOw_ypKSgtmykseezD1bDM":3},{"lesson":4},{"id":5,"slug":6,"article_id":7,"title":8,"body":9,"prevention":10,"framework_refs":11,"status":22,"created_at":23,"published_at":24,"article":25,"tags":29,"podcasts":48},"dc9a1690-89ce-48a5-a01f-b1fa903b8235","unisoc-modem-exploit-chain-grants-full-android-kernel-access-via-volte-call","dbcceda9-4c4a-42d1-9a35-ce5bca9f92cb","Unisoc Modem Exploit Chain Grants Full Android Kernel Access via VoLTE Call","A two-stage exploit chain targeting Unisoc modem firmware allows attackers who control a rogue 4G network to gain full Android kernel access simply by having the victim answer a VoLTE video call. The root cause lies in unpatched vulnerabilities within the modem's firmware attack surface, which is particularly dangerous because it sits at a privileged layer below the operating system. With no fix yet available from Unisoc, millions of devices using this chipset remain exposed to a highly impactful, low-user-interaction attack. This case highlights the critical risk posed by firmware-level vulnerabilities in mobile chipsets, which are often slower to patch than OS-level software and affect a broad ecosystem of device manufacturers.","**Immediate actions:**\n- Disable VoLTE video calling on affected Unisoc-based devices until a firmware patch is released by the vendor.\n- Audit your device inventory to identify all assets running Unisoc chipsets and flag them as high-risk pending remediation.\n- Advise users not to answer calls from unknown numbers on potentially affected devices as a temporary risk-reduction measure.\n\n**Long-term improvements:**\n- Establish a firmware vulnerability tracking program that monitors chipset-level CVEs from all hardware vendors in your supply chain.\n- Require contractual SLA commitments for timely firmware patch delivery from hardware vendors and OEMs during procurement.\n- Implement network segmentation to isolate mobile devices from critical internal systems, limiting lateral movement if a device is compromised.\n\n**Detection measures:**\n- Deploy mobile threat defense (MTD) solutions capable of detecting anomalous baseband or modem activity on managed devices.\n- Monitor cellular network connections for signs of rogue base station (IMSI catcher) activity using network detection tools.\n- Establish logging and alerting for unusual kernel-level events on mobile endpoints enrolled in your MDM solution.",[12,13,14,15,16,17,18,19,20,21],"CIS Control 7: Continuous Vulnerability Management","CIS Control 12: Network Infrastructure Management","CIS Control 18: Penetration Testing","NIST SP 800-124: Guidelines for Managing the Security of Mobile Devices","NIST SP 800-193: Platform Firmware Resiliency Guidelines","NIST SI-2: Flaw Remediation","NIST SA-12: Supply Chain Protection","NIST SC-7: Boundary Protection","GSMA FS.40: Mobile Device Security Guidelines","ISO\u002FIEC 27001: A.12.6.1 Management of Technical Vulnerabilities","published","2026-08-17T14:21:30.033261+00:00","2026-08-17T14:21:29.936+00:00",{"id":7,"url":26,"slug":27,"title":28},"https:\u002F\u002Fthehackernews.com\u002F2026\u002F08\u002Funisoc-volte-video-call-exploit-chain.html","unisoc-volte-video-call-exploit-chain-can-give-attackers-full-android-kernel-acc-797946","Unisoc VoLTE Video Call Exploit Chain Can Give Attackers Full Android Kernel Access",[30,36,42],{"id":31,"name":32,"slug":33,"description":34,"color":35},"05757c8d-6b93-4194-b35d-7359e7d33b0e","Vulnerability Management","vulnerability-management","Missing scans, no risk prioritization","#fb923c",{"id":37,"name":38,"slug":39,"description":40,"color":41},"af7fce9e-1ce8-4156-93bc-09dcfbfdf29d","Patch Management","patch-management","Unpatched vulnerabilities, delayed updates","#ef4444",{"id":43,"name":44,"slug":45,"description":46,"color":47},"f43a7f30-5046-4b10-9dba-1a704139821e","Network Segmentation","network-segmentation","Lateral movement, flat networks, missing firewalls","#06b6d4",[]]