Google Fixes Android Flaw Letting Gemini Send Messages Without a PIN
Updated
Updated · scworld.com · Jul 20
Google Fixes Android Flaw Letting Gemini Send Messages Without a PIN
3 articles · Updated · scworld.com · Jul 20
Summary
Google said it will deploy a fix this week for an Android lock-screen flaw that lets someone with physical access send SMS and WhatsApp messages through Gemini without entering a PIN.
The bypass hinges on a specific multi-touch gesture: pressing Gemini's “Add attachment” button and the “Continue” prompt at the same time when Gemini requests access to apps such as Messages.
That sequence can grant Gemini access from the lock screen, first to SMS and then to other apps including WhatsApp by typing “@WhatsApp” in the Gemini text window.
Google said the bug is not limited to Pixel devices, underscoring broader Android exposure even though the exploit still requires the attacker to have the phone in hand.
The flaw has drawn attention because stolen phones could be used to send fraudulent messages, including in scams that impersonate victims to family or friends.
As AI assistants gain power, is the smartphone lock screen becoming fundamentally insecure?
This bug was a simple gesture. What happens when AI agents start finding their own exploits?
Gemini Lock Screen Flaw Hits Android 16: How a Critical Bypass Threatens User Security and What Google Is Doing
Overview
In May 2026, a critical security flaw called the Gemini lock screen bypass was discovered on Android 16 devices. This vulnerability lets Google's Gemini AI assistant send messages or reconnect to apps like WhatsApp directly from the lock screen, without needing the user's PIN or authentication. If someone gets physical access to your phone, they can exploit this flaw by simply typing commands into Gemini, bypassing security steps and gaining access to sensitive apps. The issue requires physical access to the device, but Google is rolling out a fix and users are advised to disable Gemini's lock screen access until their device is updated.