The Indian Computer Emergency Response Team, commonly known as CERT In, has released a high severity cybersecurity warning for Android smartphone users across the country. The advisory highlights a serious vulnerability affecting several Android operating system versions, including Android 14, Android 15, and Android 16 QPR2.
According to the government agency, the security flaw could allow cybercriminals to remotely execute malicious code on affected devices. If successfully exploited, attackers may gain unauthorized access to sensitive information, compromise device security, or disrupt normal smartphone operations.
CERT In stated that the vulnerability exists within certain Android system components and may impact millions of users using smartphones, tablets, and other Android based devices. The cybersecurity agency warned that hackers could exploit the flaw through specially crafted applications, malicious files, or compromised online content.
The advisory has raised concerns because Android is the most widely used mobile operating system in India and several other countries. A successful cyberattack could expose users to risks such as data theft, financial fraud, unauthorized surveillance, and malware installation.
Technology experts have advised Android users to take immediate precautions to reduce the risk of cyberattacks. Smartphone users are strongly encouraged to install the latest security updates and software patches released by device manufacturers and mobile brands. These updates often include fixes for newly discovered vulnerabilities and help improve overall device protection.
Users have also been advised to download applications only from trusted sources such as the official Google Play Store. Installing applications from unknown websites or third party platforms may increase the risk of malware infections and unauthorized access. Cybersecurity professionals further recommend avoiding suspicious links, attachments, and pop up messages received through emails, SMS, or messaging applications.
CERT In noted that attackers may attempt to exploit the vulnerability remotely without requiring physical access to the device. This makes timely software updates extremely important for maintaining smartphone security. Experts also suggest enabling automatic updates whenever possible so devices receive the latest patches without delay.
The warning comes at a time when cyber threats targeting mobile devices are increasing globally. Smartphones now store large amounts of personal and financial information including banking details, passwords, photographs, business data, and digital identity records. As a result, cybercriminals increasingly target mobile platforms to carry out phishing attacks, identity theft, and financial scams.
Several smartphone manufacturers have already started releasing security updates for supported devices following the discovery of the vulnerability. However, the availability of updates may vary depending on the device model, brand, and region. Older smartphones that no longer receive official software support could remain vulnerable to security risks.
Cybersecurity experts have advised users to regularly check device settings for pending software updates and install them immediately. In addition, users should review app permissions, remove unused applications, and activate security features such as screen locks and two factor authentication to strengthen device protection.
The CERT In advisory highlights the growing importance of cybersecurity awareness among smartphone users. Government agencies and technology companies continue to encourage users to follow safe digital practices as cyber threats become more advanced and widespread.
Authorities have also reminded organizations and businesses using Android based devices to monitor their systems closely and ensure that all corporate devices receive updated security patches. Failure to address vulnerabilities promptly could expose both individuals and institutions to serious cyber risks.

