Android Flaw Let Gemini Send Messages From Locked Phones

Sophia Taylor

By Sophia Taylor

Published:

Google has confirmed a security flaw in Android that could allow someone to send messages from a locked phone without entering its PIN.

The issue involves Gemini, Google’s artificial intelligence assistant, when it is available from the lock screen on some Android 16 devices. It cannot be exploited remotely, as an attacker must have physical access to the phone.

However, someone holding an affected device could potentially use Gemini to send SMS or WhatsApp messages while appearing to be the phone’s owner. Reports of the vulnerability began emerging in May 2026.

How the PIN check was bypassed

Normally, if Gemini does not have permission to access an app such as Messages, it asks the user to open the app. Android then displays a PIN prompt before allowing the request to continue.

The flaw involved pressing two on-screen controls at the same time. By selecting the continue button while also pressing Gemini’s attachment button, an unauthorized user could reportedly bypass the PIN request and send a text message from the locked device.

The technique could also allow someone to reconnect Gemini to apps that the phone owner had previously disabled. For example, WhatsApp could reportedly be linked to Gemini again without completing the usual authentication step.

After the phone was properly unlocked, its settings would show that the app had been connected to Gemini, even though no PIN was entered during the process.

Why the flaw matters

The vulnerability has some important limitations. An attacker must possess the device, know the correct sequence of actions and be able to use Gemini from the lock screen.

Even so, the issue could create serious risks if a phone is lost, stolen or left unattended. Messages sent from a trusted number or account can be particularly convincing.

A criminal could contact friends, relatives or colleagues to request money, claim that the owner is in danger or ask for personal information. Recipients may be less suspicious because the message appears to come from someone they know.

Google said the problem was not limited to Pixel phones. However, it did not provide a full list of affected manufacturers, models or software versions.

What Android users should do

Google confirmed that it was aware of the flaw and had already prepared a fix, with deployment planned for the week the vulnerability was publicly reported.

Android users should update their operating system and apps as soon as the updates become available.

Until the patch is installed, users can reduce their exposure by disabling Gemini access from the lock screen. They should also review which apps are connected to Gemini and remove any permissions they do not need.

Anyone whose phone is lost or stolen should remotely lock the device, contact their mobile provider and warn close contacts to be cautious of unexpected messages or requests for money.