The Google Project Zero team said it reported 18 zero-day vulnerabilities in Exynos Modems produced by Samsung between late 2022 and early 2023 in a new alert that was released on Thursday.
The blog post by Project Zero’s director, Tim Willis, claims that four of the flaws (CVE-2023-24033 and three further flaws without a CVE-ID) allowed potential attackers to conduct internet-to-baseband remote code execution (RCE).
With just the victim’s phone number and these four flaws, an attacker can remotely exploit a phone at the baseband level without any user input read more Google Exposes 18 Zero Day Flaws in Samsung Exynos Chips.
Stay up-to-date with the latest cybersecurity news and increase your cybersecurity awareness through ReconBee.com‘s in-depth coverage of the newest threats, breaches, and solutions.
