logo

Flaw in Super Secret BlackPhone Underscores Third Party Risk

ID: 988a4f6c-07d1-54b4-91ac-783ebb37d8df

STIX ID: report--988a4f6c-07d1-54b4-91ac-783ebb37d8df

Feed Name: Security Ledger

Threat Score
30/100

Date Published: 2016-01-06

Date Updated: 2026-05-05

Author: Paul Roberts

...
...

SentinelOne discovered a vulnerability in the Black Phone 1 where an undocumented open socket in the built-in Icera/nVidia modem binary and a privileged modem process could let a malicious app send SMS messages invisibly or redirect calls; Silent Circle patched the issue for Black Phone 1, paid a bug bounty, and used the finding to re-evaluate third-party component risks.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.