Critical flaw in mediatek chips could expose millions of smartphones to data theft
Millions of Android devices are potentially vulnerable to a serious security flaw affecting MediaTek chipsets, potentially allowing attackers to access sensitive data within seconds. The vulnerability, discovered by security researchers at Ledger, could compromise devices even when powered off.

Data breach risk: mediatek security flaw impacts vast number of phones
The flaw resides within the Trusted Execution Environment (TEE), a secure area within the main processor designed to safeguard sensitive information like fingerprint data and cryptocurrency wallet seed phrases. Dojon, Ledger’s internal security team, reportedly demonstrated the exploit on a CMF Phone 1 powered by a MediaTek Dimensity 7300, gaining access within 45 seconds. The implications are significant, considering MediaTek processors power nearly 34% of all smartphones globally, according to Counterpoint Research.
Unlike some competitors like Pixel phones and Apple devices, which utilize dedicated security chips, MediaTek relies on integrating the TEE into its main processors. This architectural difference leaves a wider attack surface.
MediaTek has acknowledged the vulnerability and confirmed it has released fixes to manufacturers of affected devices. The March 2026 product security bulletin details the affected processors, including those used in devices from Oppo, Vivo, OnePlus, Samsung, and Nothing. While the exact extent of exploitation remains unclear, the potential for data theft is substantial.
The fix requires a software update. Users are urged to install any available updates for their MediaTek-powered Android phones. This isn't a matter of if a vulnerability exists, but of when it's addressed. The fact that this flaw could potentially bypass even a device's power-off state is deeply concerning.
This incident underscores the ongoing arms race between security researchers and chip manufacturers. The reliance on a single vendor for a significant portion of the smartphone market creates a concentrated risk. The prompt release of a fix is a positive sign, but the incident will likely prompt a closer examination of security architectures across the Android ecosystem.