Home / Aug 12, 2026 / Story
0
#10 The Hacker News general August 11, 2026 at 12:05 UTC

A Malicious SIM Card Can Run Attacker Code Inside the Modems Behind Cellular IoT Devices

By [email protected] (The Hacker News)

AI Summary

Researchers at the University of Birmingham and Fuzzware tested 26 phones and cellular modules, finding that a malicious SIM card can inject attacker-controlled commands directly into the modem firmware of devices — including EV chargers, industrial routers, and automotive telematics units — sufficient to achieve full device takeover. This supply-chain-level attack vector requires no network access from the attacker beyond physical or logical SIM insertion, posing significant risk to IoT deployments across critical infrastructure.

Relevance score: 78.0/100

# More from August 12