Medium 6.8
CVE-2025-48618
Researchers Uncover Malicious SIM Card Vulnerabilities in Smartphones and IoT Devices
Vendor / product: Android, Quectel, Oppo, SIM cards
Event date: 2025-12-01
Public PoC: Yes
First tracked by RiskWire: 2026-07-28
Sources & citations (6)
- Malicious SIMs can shut down phones, steal files, and drag 5G back to 2G theregister.com · 2026-08-11
- Researchers reveal malicious SIM cards hijack smartphones, EV chargers and bioengineer.org · 2026-08-10
- Security researchers discover SIM card vulnerabilities in mobiles, EV chargers interestingengineering.com · 2026-08-10
- How malicious SIM cards can hijack smartphones, EV chargers and connected devices techxplore.com · 2026-08-10
- Malicious SIMs can hijack smartphones, steal files, and lock them onto 2G helpnetsecurity.com · 2026-08-11
- A Malicious SIM Card Can Run Attacker Code Inside the Modems Behind Cellular IoT Devices thehackernews.com · 2026-08-11
References
See CVE-2025-48618 in context
RiskWire tracks every exploited CVE this week, cross-referenced against CISA KEV with federal remediation deadlines. Filtered to your vendor stack.
Book a 20-min demo →