Researchers Expose Security Risks of Malicious SIM Cards in Connected Devices
Researchers from the University of Birmingham have identified significant security vulnerabilities associated with malicious SIM cards, which can compromise smartphones, EV chargers, and other connected devices. Presented at the 2026 USENIX WOOT Conference, the study highlights how compromised SIMs can gather device information, interfere with connectivity, and serve as entry points for cyberattacks. The research team developed the CATana toolkit to explore the risks posed by SIM-originating AT commands, discovering multiple security vulnerabilities across various devices. These vulnerabilities allow attackers to execute commands, exfiltrate information, and disrupt device functionality.