UNISOC Modem Flaw Could Let Attackers Take Control Through Video Calls

UNISOC Modem Flaw Could Let Attackers Take Control Through Video Calls

A UNISOC modem flaw can let attackers reach Android kernel memory after exploiting the modem. Here’s which phones researchers tested and how you can lower your risk from video calls.

What Happened With the UNISOC Modem Flaw?

According to Infosecurity Magazine, security researchers found a serious vulnerability in modem software used by some Android phones with UNISOC chips.

UNISOC — a company that makes chips for phones and other smart devices — was notified about the issue. Researchers said they had not received a response.

The flaw allows malicious code already running inside the modem to reach parts of the phone that should normally be separated.

That includes the Android kernel, the core part of the operating system that controls important phone functions.

Researchers demonstrated the full attack on a Realme C33 using a UNISOC T612 chip and a July 2025 Android security update.

They then triggered the final stage by placing a video call over a 4G calling system known as VoLTE.

Researchers did not report that this attack leaked users’ personal information. However, cyberattacks can create different risks depending on what criminals manage to access.

Your personal information may also already appear in data leaks from other services, websites, employers, or retailers without you realizing it.

If you are not sure whether your information was leaked somewhere online, automatic monitoring can help you spot problems earlier. Futureproof monitors your data for leaks 24/7 and helps you reduce scam risks with simple, clear steps.

Which Phones May Be Affected?

Researchers specifically listed the Xiaomi Redmi A5 and Motorola E13 among devices affected by the newly disclosed isolation flaw.

They also demonstrated the complete attack chain on a Realme C33 with a UNISOC T612 chip.

However, researchers said their device list should not be treated as complete.

An earlier part of the attack involved a separate UNISOC modem vulnerability affecting several chip families, including T612, T616, T606, and T7250.

The researchers did not report that personal information was stolen from users during real-world attacks.

They also did not report evidence that criminals are actively using the flaw against phone owners.

Check if your email was found in a leak

Futureproof monitors your information for data leaks 24/7 and guides you with clear steps to keep it safer from scams.

Run a free check

How a Video Call Could Trigger the UNISOC Attack

The attack involves two connected security weaknesses.

First, specially prepared mobile network data can exploit a flaw in how the UNISOC modem processes information used during calls.

Researchers previously showed that this weakness could allow malicious code to run inside the modem.

The newer flaw makes that access more serious.

The modem and Android kernel are not properly separated on the tested devices. As a result, modem-level code can reach protected phone memory.

In the researchers’ test, the final stage started after the target answered a video call.

That detail matters. The research does not show that simply receiving any normal video call automatically gives someone control of your phone.

The attacker first needs to prepare and deliver specially crafted network data as part of the exploit chain.