Skip to main content

OnePlus responds to privacy fears after hacker mode found on its phones

A special app has been discovered installed on OnePlus smartphones that, in the hands of a skilled hacker, could allow unauthorized access to the entire device. The app, which is produced by Qualcomm, is known as EngineerMode, and is designed to assist with tests, fault finding, and other prerelease checks while the phone is at the factory. With some code and a password, however, hackers could treat EngineerMode as a “backdoor,” to your phone, making it a serious security problem.

The app was discovered on OnePlus phones by a mobile security researcher on Twitter, who goes by the pseudonym Elliot Alderson (also the name of the main character in USA Network’s hacker series Mr. Robot). With the assistance of researchers at NowSecure, Alderson cracked the password to EngineerMode, demonstrating its weaknesses and the relative ease anyone familiar with the app, and Android’s workings, could gain root access to a OnePlus phone.

Recommended Videos

EngineerMode has been found on the OnePlus 3, OnePlus 3T, and OnePlus 5 phones. Since the app became widely known, threads have appeared about it on OnePlus’s community forums. Some owners with firewalls installed on their phones report EngineerMode requesting access to the network multiple times per day. Most question why a tool primarily made for prerelease testing is still present on the device after it’s sold.

Please enable Javascript to view this content

OnePlus responds to fears

It’s not just OnePlus owners that may have phones with EngineerMode installed, as the Qualcomm tool is likely used by many manufacturers, and has already been found on smartphones produced by Xiaomi and Asus, according to Alderson’s Twitter feed. However, should you be concerned? Does EngineerMode pose a serious security risk?

OnePlus has responded to the situation in a post on its community forums. A member of the OxygenOS — the name given to OnePlus’s version of Android — team wrote:

“Yesterday, we received a lot of questions regarding an apk found in several devices, including our own, named EngineerMode, and we would like to explain what it is. EngineerMode is a diagnostic tool mainly used for factory production line functionality testing and after sales support.

“We’ve seen several statements by community developers that are worried because this apk grants root privileges. While, it can enable adb root which provides privileges for adb commands, it will not let 3rd-party apps access full root privileges. Additionally, adb root is only accessible if USB debugging, which is off by default, is turned on, and any sort of root access would still require physical access to your device.

While we don’t see this as a major security issue, we understand that users may still have concerns and therefore we will remove the adb root function from EngineerMode in an upcoming OTA.”

It’s not the first time OnePlus has needed to respond to security concerns. In October a data collection program was discovered on OnePlus devices, which the company claimed was used for diagnostic and customer service needs, but owners were automatically enrolled into the program. Changes were made to OxygenOS so owners could opt-out of the data program during setup.

OnePlus is currently preparing to launch the OnePlus 5T, an updated version of its current OnePlus 5, which launched earlier this year.

Andy Boxall
Andy is a Senior Writer at Digital Trends, where he concentrates on mobile technology, a subject he has written about for…
How many software updates does the OnePlus 13 get?
A person holding the OnePlus 13, showing the wireless charging insert in the camera cutout.

The OnePlus 13 and OnePlus 13R are the company's latest entries in the western market, with the OnePlus 13 designed to serve as a sort of flagship and the 13R to take the role of a midrange, entry-level phone.  The OnePlus 13 starts at $900, while the 13R retails for $600 for its 12GB RAM/256GB storage configuration.

Considering the price of other flagships, the OnePlus 13 is more wallet-friendly than most. But does that come with a tradeoff, and will the phone be worth considering in two or three years? The simple answer is yes, although there are several factors you should be aware of.
How many software updates does the OnePlus 13 get?
The OnePlus 13 will receive four years of major software updates and six years of security updates. This means the OnePlus 13 will reach the end of its lifespan on Android 19, although it will still be a viable phone for a couple of years after, thanks to the security updates.

Read more
Does the OnePlus 13 have an IR blaster?
A video playing on the OnePlus 13.

The OnePlus 13 has made its international debut after launching earlier in its home country of China. The new smartphone offers an excellent camera system, impressive battery life, and a fresh design. But does it include an IR blaster? How about on the OnePlus 13R? It's time to find out.
Is there an IR blaster on the OnePlus 13?

Yes, the OnePlus 13 has an IR (infrared) blaster. This feature allows users to use their smartphone as a remote control for various compatible devices, such as TVs, air conditioners, sound systems, and set-top boxes. This capability is particularly advantageous for those who prefer a streamlined approach to managing multiple gadgets from a single device.

Read more
There may be yet another new OnePlus phone coming — and it’s small(ish)
A person holding the OnePlus 12.

OnePlus recently launched the OnePlus 13 and OnePlus 13R globally, but rumors suggest it might have another phone up its sleeve. Leaks point to a smaller "OnePlus 13 Mini" on the horizon.

It was initially teased in December by Digital Chat Station, a reliable Chinese leaker. Specs for this compact powerhouse have now surfaced from the same contact (via Android Headlines). It is believed that the OnePlus 13 Mini could be a rebranded Oppo Find X8 Mini, a device that launched in China last year.

Read more