Close Menu
GeekBlog

    Subscribe to Updates

    Get the latest creative news from FooBar about art, design and business.

    What's Hot

    Stop falling for scams when Norton’s antivirus software is 70% off right now

    March 28, 2026

    Acer Promo Codes and Deals: Save 40% on Bundles

    March 28, 2026

    Playing Wolfenstein 3D with one hand in 2026

    March 28, 2026
    Facebook X (Twitter) Instagram Threads
    GeekBlog
    • Home
    • Mobile
    • Tech News
    • Blog
    • How-To Guides
    • AI & Software
    Facebook
    GeekBlog
    Home»Tech News»Hackers can now crash phones and downgrade 5G to 4G networks with a toolkit exploiting unencrypted pre-authentication messages
    Tech News

    Hackers can now crash phones and downgrade 5G to 4G networks with a toolkit exploiting unencrypted pre-authentication messages

    Michael ComaousBy Michael ComaousAugust 30, 20253 Mins Read
    Share Facebook Twitter Pinterest LinkedIn Tumblr Email Copy Link
    A representational concept of a social media network
    Share
    Facebook Twitter LinkedIn Pinterest Email Copy Link

    • 5G phones can be silently downgraded to insecure 4G, leaving the device exposed
    • The exploit works without setting up expensive and complex fake towers
    • Tested smartphones include flagship models from Samsung, Google, Huawei, and OnePlus

    In late 2023, researchers uncovered a set of flaws in 5G modem firmware from major chipmakers, including MediaTek and Qualcomm, collectively named 5Ghoul.

    A group of academics at the Singapore University of Technology and Design (SUTD) has now shown how 5G phones can be tricked into falling back to 4G networks through a method that avoids the need for a fake base station.

    Instead, it targets a vulnerable stage of communication between phone and tower, where critical messages remain unencrypted.


    You may like

    The SNI5GECT toolkit, short for “Sniffing 5G Inject,” makes use of the tiny time window at the start of a connection attempt.

    It targets the pre-authentication phase, when the data passing between the tower and the phone remains unencrypted.

    Because of this gap, attackers can intercept and inject messages without needing to know the phone’s private credentials.

    During this stage, the system can capture identifiers sent from the tower and use them to read and modify messages.

    Sign up to the TechRadar Pro newsletter to get all the top news, opinion, features and guidance your business needs to succeed!

    With such access, the attacker can force a modem crash, map a device fingerprint, or trigger a switch from 5G to 4G.

    Since 4G carries long-known flaws, the forced downgrade leaves the target open to older tracking or location attacks.

    The tests revealed a success rate between 70% and 90% when attempted from around twenty meters away, suggesting the method works in realistic conditions.

    The academics tested the framework on several smartphones, including popular models from Samsung, Google, Huawei, and OnePlus.

    In these cases, the researchers were able to intercept both uplink and downlink traffic with notable accuracy.

    Importantly, the method avoids the complexity of setting up a rogue base station, something that has long limited practical attacks on mobile networks.

    The Global System for Mobile Communications Association (GSMA) has since confirmed the issue and assigned it the identifier CVD-2024-0096, marking it as a downgrade risk.

    The claim from the team is that their toolkit is not meant for criminal use but for further research into wireless security.

    They argue it could help with the development of packet-level detection and new forms of 5G protection.

    Still, the ability to crash devices or silently downgrade them raises questions about the resilience of current networks.

    While no clear reports exist of real-world abuse so far, the method is public and the software is open source, so the risk remains that skilled actors could adapt it.

    Unfortunately, users have few direct options to block such low-level exploits, though broader digital hygiene may help limit downstream risks.

    However, running updated antivirus software, securing credentials with a password manager, and enabling an authenticator app for accounts can reduce the impact of secondary attacks that might follow from a network downgrade.

    Via The Hacker News

    You might also like

    Crash downgrade exploiting Hackers messages networks phones preauthentication toolkit unencrypted
    Share. Facebook Twitter Pinterest LinkedIn Tumblr Telegram Email Copy Link
    Previous ArticleThe 59 Best Deals From REI’s 2025 Labor Day Sale
    Next Article My favorite affordable phone cases are BOGO free (including for the new Google Pixel 10 series)
    Michael Comaous
    • Website

    Michael Comaous is a dedicated professional with a passion for technology, innovation, and creative problem-solving. Over the years, he has built experience across multiple industries, combining strategic thinking with hands-on expertise to deliver meaningful results. Michael is known for his curiosity, attention to detail, and ability to explain complex topics in a clear and approachable way. Whether he’s working on new projects, writing, or collaborating with others, he brings energy and a forward-thinking mindset to everything he does.

    Related Posts

    3 Mins Read

    Stop falling for scams when Norton’s antivirus software is 70% off right now

    4 Mins Read

    Acer Promo Codes and Deals: Save 40% on Bundles

    2 Mins Read

    Playing Wolfenstein 3D with one hand in 2026

    7 Mins Read

    Whoop has LeBron – now it wants your mom

    1 Min Read

    Sony temporarily suspends memory card sales due to shortages

    2 Mins Read

    Apple TV is now home to CrunchyRoll anime

    Top Posts

    The Mesh Router Placement Strategy That Finally Gave Me Full Home Coverage

    August 4, 20251,033 Views

    Discord will require a face scan or ID for full access next month

    February 9, 2026767 Views

    Best Stores for Buying MP3 and Digital Music You Can Keep Forever

    August 2, 2025442 Views
    Stay In Touch
    • Facebook

    Subscribe to Updates

    Get the latest tech news from FooBar about tech, design and biz.

    Most Popular

    The Mesh Router Placement Strategy That Finally Gave Me Full Home Coverage

    August 4, 20251,033 Views

    Discord will require a face scan or ID for full access next month

    February 9, 2026767 Views

    Best Stores for Buying MP3 and Digital Music You Can Keep Forever

    August 2, 2025442 Views
    Our Picks

    Stop falling for scams when Norton’s antivirus software is 70% off right now

    March 28, 2026

    Acer Promo Codes and Deals: Save 40% on Bundles

    March 28, 2026

    Playing Wolfenstein 3D with one hand in 2026

    March 28, 2026

    Subscribe to Updates

    Get the latest creative news from FooBar about art, design and business.

    Facebook
    • About Us
    • Contact us
    • Privacy Policy
    • Disclaimer
    • Terms and Conditions
    © 2026 GeekBlog

    Type above and press Enter to search. Press Esc to cancel.

    Ad Blocker Enabled!
    Ad Blocker Enabled!
    Our website is made possible by displaying online advertisements to our visitors. Please support us by disabling your Ad Blocker.