Critical flaw in mediatek chips: data theft possible in seconds
Millions of smartphones could be vulnerable. A significant security flaw has been discovered in MediaTek chipsets, potentially allowing attackers to access sensitive data on affected devices within seconds.

Vulnerability affects widespread android devices
The flaw resides within the Trusted Execution Environment (TEE), a secure area within the main processor that safeguards sensitive information like fingerprints and payment credentials. Researchers at Ledger, a prominent cryptocurrency hardware wallet company, identified the vulnerability during a security audit. The issue was demonstrated on a CMF Phone 1 powered by a MediaTek Dimensity 7300 processor, with hackers gaining access within 45 seconds.
Unlike devices with dedicated security chips – such as Pixel phones, Apple devices, and many Snapdragon-powered phones – MediaTek relies on a TEE integrated into the main chipset. This architecture, while providing a degree of isolation, proved insufficient in this case. The exploit allowed for decryption of storage and extraction of seed phrases used for cryptocurrency wallets.
MediaTek has acknowledged the vulnerability and confirmed that a fix has been rolled out to manufacturers of affected devices. The March 2026 product security bulletin details the affected chips, encompassing models used by major brands including Oppo, Vivo, OnePlus, Samsung, and Nothing. Counterpoint Research estimates that MediaTek processors power nearly 34% of all global smartphones, amplifying the potential impact.
The vulnerability’s ability to function even when the device is powered off is particularly alarming. This means attackers could potentially access PIN details and other sensitive data without requiring physical access or active use of the phone. The security team at Djon reportedly alerted MediaTek to the issue before public disclosure. While the long-term exploitation of this flaw remains unconfirmed, the potential for data compromise is substantial.
This isn’t the first security issue to surface concerning MediaTek. The company has been under scrutiny for vulnerabilities in the past, highlighting the inherent complexities of securing mobile chipsets. The fix is expected to arrive via software updates, making it crucial for users of affected devices to install them promptly. This incident underscores the ongoing arms race between security researchers and those seeking to exploit vulnerabilities.
The speed of the attack – 45 seconds – highlights the severity of the flaw. It’s a stark reminder that security isn’t a static state; it’s a continuous process of discovery and remediation.
The widespread use of MediaTek processors means this isn't a niche problem; it’s a systemic risk impacting a vast number of users.
The swift response from MediaTek is a positive development, but it leaves a lingering question: how many devices remain vulnerable before updates are widely deployed?