← Back to events
ActiveTech

1-click MMI execution in Android

Photo: Lobsters

What happened

An application with the CALL_PHONE permission can execute carrier MMI/USSD codes with no user confirmation. A vulnerable application with browsable deeplinks can trigger MMI execution with a single tap.

Summary assembled by rule from the sources below

Why it's spreading

Sources

Community