A Lock Screen Gemini Flaw May Send SMS Without a PIN on Android

An Android lock screen flaw involving Gemini may allow an SMS message to be sent without entering a PIN. The issue is concerning because it reportedly requires physical access to the phone for only a few seconds.

The reported impact extends beyond text messages. Gemini access to WhatsApp, even after a user has revoked it, may also be restored without a notification to the device owner.

A PIN Prompt Can Be Bypassed

Under normal conditions, Gemini should request PIN verification when asked to send a message from the lock screen. This protection is intended to prevent unauthorized use after Gemini access to Messages has been disabled.

The flaw can reportedly be triggered by touching “Add attachment” and pressing “Continue” at the same time. The PIN request may then disappear, allowing the message to be sent without further verification.

Gadget.viva.co.id reported that the method does not require specialist technical skills. A person holding the device can reportedly reproduce the two-finger action in less than three seconds.

FeatureExpected BehaviourReported Risk
SMS sendingRequires a lock screen PINPIN may be bypassed
WhatsApp accessRemains disabled after revocationPermission may be restored without notice

Privacy Settings May Change Unnoticed

The WhatsApp element of the issue could affect users who intentionally disabled AI integration to protect private conversations. A person briefly borrowing a phone may be able to alter that permission state through the lock screen.

The report also noted that no log or notification may appear when settings change through this route. That could make it harder for owners to discover that Gemini access has been enabled again.

Physical access is central to the reported attack scenario. Phones that are frequently lent to others or left unattended therefore require additional precautions until an official fix is available.

Google Has Acknowledged the Report

Security researchers first reported the vulnerability in May 2026, and Google has acknowledged it. As of mid-July 2026, no official security update to resolve the issue was available.

The Register published the findings before a patch was released. System-level security fixes can take around six to ten weeks, making temporary user action more relevant in the meantime.

Google has not confirmed a complete list of affected devices or software versions. Early indications point to Android 16 and several vendor interfaces, meaning the issue may not be limited to Pixel phones.

Steps Users Can Take Now

Users can remove Gemini access to Messages, WhatsApp, and Phone through Settings > Apps > Gemini > Permissions. This restricts the AI tool’s access to communication apps while waiting for an official update.

It is also possible to disable Gemini use from the Android lock screen through the phone’s lock screen settings. Depending on the manufacturer, the relevant option may appear as “AI shortcuts” or “Gemini on lock screen”.

Temporary MeasureSettings LocationEffect
Remove app permissionsSettings > Apps > Gemini > PermissionsRemoves access to Messages, WhatsApp, and Phone
Disable lock screen accessSettings > Display > Lock screenRemoves the AI shortcut attack route

These measures may reduce the convenience of using AI from the lock screen. Users should also watch for device security updates and install the official patch when it becomes available.

Related