Daniel Klischies

Vulnerability, Where Art Thou? An Investigation of Vulnerability Management in Android Smartphone Chipsets

Vulnerabilities in Android smartphone chipsets can lead to severe consequences like arbitrary code execution or data theft. Our study reveals that vulnerabilities are inherited across chipset generations and the 90-day disclosure period is rarely followed. A single vulnerability can impact thousands of smartphone models, with updates often delayed. Discover more in our ever-evolving knowledge base at https://chipsets.org!

Authors: Daniel Klischies, Philipp Mackensen , Veelasha Moonsamy To appear at NDSS 2025