Skip to content
  • Home
  • Cyber Map
  • About Us – Contact
  • Disclaimer
  • Terms and Rules
  • Privacy Policy
Cyber Web Spider Blog – News

Cyber Web Spider Blog – News

Globe Threat Map provides a real-time, interactive 3D visualization of global cyber threats. Monitor DDoS attacks, malware, and hacking attempts with geo-located arcs on a rotating globe. Stay informed with live logs and archive stats.

  • Home
  • Cyber Map
  • Cyber Security News
  • Security Week News
  • The Hacker News
  • How To?
  • Toggle search form
Unpatched Vulnerabilities in OnePlus Phones Pose Risks

Unpatched Vulnerabilities in OnePlus Phones Pose Risks

Posted on September 24, 2026 By CWS

Recent findings have revealed significant security vulnerabilities in OnePlus devices, allowing malicious apps to gain root access without user consent. Security researcher Rasmus Moorats identified these issues in the OnePlus 15 running the newest OxygenOS, demonstrating that apps could exploit these flaws without needing special permissions.

Discovery of the Security Flaws

Moorats uncovered two key vulnerabilities within OnePlus’s software that, when combined, enable unauthorized root access. Root access grants the highest level of control on Android devices, posing substantial security risks. OnePlus confirmed the presence of these flaws across multiple devices, including those from OPPO, yet has not specified which models are affected.

The company acknowledged these vulnerabilities in May but insisted on controlling the disclosure process. Despite warning Moorats against publishing without permission, he released his findings on September 24, citing the lack of a provided fix as a driving factor.

Technical Details of the Exploitation

The first flaw resides in the OnePlus service called AtlasService, which collects debugging data and operates with root access. This service can be accessed by any app, allowing malicious software to exploit it and execute commands within a restricted system area known as dumpstate.

The second vulnerability involves the olc2 service, which executes commands and requires existing root access, a condition met by exploiting the first flaw. This combination allows apps to gain comprehensive control over the device, including loading kernel code.

Impact and User Precautions

The vulnerabilities require a malicious app to be installed and operational, meaning the threat is local and cannot be executed remotely. Users are advised to install apps only from trusted sources, as the attack cannot proceed without a malicious app already on the device.

While there is no evidence of these vulnerabilities being exploited in real-world attacks, the security implications are significant. Moorats’s findings suggest the flaws could affect not only the OnePlus 15 but also older models like the OnePlus 12 Pro and potentially the entire OxygenOS 16 lineup.

OnePlus has yet to release a patch or advisory regarding these issues, and no CVE has been assigned. This situation underscores the importance of cautious app installation practices until a comprehensive fix is available.

Broader Security Concerns

This is not an isolated incident of security lapses in flagship Android devices. In August, researcher Lukas Maar identified a method to gain root access on various brands, including Samsung, Xiaomi, and Realme, by exploiting manufacturer-added code.

OnePlus’s slow response to security reports is not unprecedented. In 2025, a separate flaw in OxygenOS allowing unauthorized access to text messages was only addressed after public disclosure by Rapid7.

As the tech industry grapples with these challenges, users must remain vigilant and prioritize device security through cautious application management and timely software updates.

The Hacker News Tags:Android, app permissions, AtlasService, Cybersecurity, device security, mobile security, olc2, OnePlus, OPPO, OxygenOS, phone security, Rasmus Moorats, root access, security flaws, Vulnerabilities

Post navigation

Previous Post: Urgent Update: Roundcube Webmail SQL Flaw Exploited
Next Post: Hackers Target Critical VPN Flaws in Check Point Systems

Related Posts

TrojPix Exploits Pixel Modulation to Leak Data TrojPix Exploits Pixel Modulation to Leak Data The Hacker News
Linux GoGra Backdoor Targets South Asia via Microsoft API Linux GoGra Backdoor Targets South Asia via Microsoft API The Hacker News
The 5 Golden Rules of Safe AI Adoption The 5 Golden Rules of Safe AI Adoption The Hacker News
Shai-Hulud v2 Campaign Spreads From npm to Maven, Exposing Thousands of Secrets Shai-Hulud v2 Campaign Spreads From npm to Maven, Exposing Thousands of Secrets The Hacker News
Ransomware Gangs Exploit Unpatched SimpleHelp Flaws to Target Victims with Double Extortion Ransomware Gangs Exploit Unpatched SimpleHelp Flaws to Target Victims with Double Extortion The Hacker News
Google and Rivals Launch Advanced Cybersecurity AI Models Google and Rivals Launch Advanced Cybersecurity AI Models The Hacker News

Categories

  • Cyber Security News
  • How To?
  • Security Week News
  • The Hacker News

Recent Posts

  • AI-Induced Hacks Challenge Legal Frameworks
  • SCOUTz Launches Beta for MSPs with New Intelligence Platform
  • AI Search Poisoning and Security Risks: Key Cyber News
  • Hackers Target Critical VPN Flaws in Check Point Systems
  • Unpatched Vulnerabilities in OnePlus Phones Pose Risks

Pages

  • About Us – Contact
  • Disclaimer
  • Privacy Policy
  • Terms and Rules

Archives

  • September 2026
  • August 2026
  • July 2026
  • June 2026
  • May 2026
  • April 2026
  • March 2026
  • February 2026
  • January 2026
  • December 2025
  • November 2025
  • October 2025
  • September 2025
  • August 2025
  • July 2025
  • June 2025
  • May 2025

Recent Posts

  • AI-Induced Hacks Challenge Legal Frameworks
  • SCOUTz Launches Beta for MSPs with New Intelligence Platform
  • AI Search Poisoning and Security Risks: Key Cyber News
  • Hackers Target Critical VPN Flaws in Check Point Systems
  • Unpatched Vulnerabilities in OnePlus Phones Pose Risks

Pages

  • About Us – Contact
  • Disclaimer
  • Privacy Policy
  • Terms and Rules

Categories

  • Cyber Security News
  • How To?
  • Security Week News
  • The Hacker News

Copyright © 2026 Cyber Web Spider Blog – News.

Powered by PressBook Masonry Dark