#10
The Hacker News
general
August 11, 2026 at 12:05 UTC
A Malicious SIM Card Can Run Attacker Code Inside the Modems Behind Cellular IoT Devices
By [email protected] (The Hacker News)
AI Summary
Researchers at the University of Birmingham and Fuzzware tested 26 phones and cellular modules, finding that a malicious SIM card can inject attacker-controlled commands directly into the modem firmware of devices — including EV chargers, industrial routers, and automotive telematics units — sufficient to achieve full device takeover. This supply-chain-level attack vector requires no network access from the attacker beyond physical or logical SIM insertion, posing significant risk to IoT deployments across critical infrastructure.
Relevance score: 78.0/100
Sponsored
Protect Your Business
Expert cybersecurity solutions to safeguard your organization from evolving threats.
Get Protected →