semiconductor / news / / manilastandard.net
Kaspersky ICS CERT discovered a hardware-level vulnerability affecting Qualcomm chipsets.
Kaspersky discovered a BootROM vulnerability in multiple Qualcomm chipsets affecting both consumer and industrial devices.
KEY POINTS
- The vulnerability, CVE-2026-25262, can be exploited via the Sahara protocol in Emergency Download Mode.
- Attackers need only a few minutes of physical access to fully compromise affected Qualcomm-based devices.
- A standard reboot may not remove malware; only complete power loss or battery depletion ensures device reset.
- The risk of compromise includes not only user handling but also the supply chain and repair processes.
COMPANIES
Summarized by Newsio from manilastandard.net. How we summarize →