Malicious SIM Cards Exploit Vulnerabilities in Smartphones and IoT Devices

Malicious SIM Cards Exploit Vulnerabilities in Smartphones and IoT Devices

First seen 10 Aug 2026, 11:02 UTC Birmingham.Ac.UkInterestingengineeringTheregisterFeeds2.FeedburnerFinance.Biggo+4 85% similarity 69.5

Article Content

Browse articles
ThreatCluster

Researchers from the University of Birmingham and Fuzzware have discovered severe vulnerabilities in SIM cards that can hijack smartphones and IoT devices, including electric vehicle chargers. The vulnerabilities stem from a feature called 'Proactive SIM,' which allows SIM cards to issue commands directly to device modems using AT commands. Testing 26 devices, including 18 smartphones and 8 IoT modules, the team found that several devices were susceptible to attacks that could lead to code execution, data theft, and downgrading of network connections. The toolkit used for these tests, named CATana, revealed that attackers could exploit these vulnerabilities without user interaction. The findings were presented at the 2026 USENIX WOOT Conference, highlighting the need for improved threat modeling to include hostile SIMs. The research indicates that hostile SIMs could enter the market through compromised software updates or supply chain issues, posing a significant risk to connected infrastructure.

Key Points: • Malicious SIM cards can exploit vulnerabilities in smartphones and IoT devices. • The 'Proactive SIM' feature allows SIMs to issue commands directly to device modems. • The CATana toolkit demonstrated severe security flaws across 26 tested devices.

ThreatCluster AI How this analysis works

Timeline

2025-12-08
CVE-2025-48618 published
Vulnerability assigned a CVE identifier and published in the National Vulnerability Database.
MITRE
2026-08-10
Research findings presented at USENIX WOOT
University of Birmingham researchers revealed vulnerabilities in SIM cards that can hijack devices, including smartphones and EV chargers.
Birmingham.Ac.Uk
2026-08-10
Security vulnerabilities in SIM cards disclosed
Researchers tested 26 devices and found that several could be compromised via SIM-originating AT commands, leading to severe security risks.
Interestingengineering
2026-08-11
Malicious SIM capabilities detailed
Research confirmed that malicious SIMs can execute code, downgrade connections, and steal data from devices, exploiting standard functionalities.
Theregister

Community

Browse all →

Tracked Entities in This Story