Flaw let hackers spy on—and even alter—data sent via Bluetooth

产品中心 2024-09-22 12:51:55 724

Say it with me: Bluetooth is not your friend.

It turns out that the frustratingly buggy way to pair speakers, printers, and numerous other third-party devices with your smartphone or computer can't keep a secret. Security researchers this week announced a major vulnerability in the Bluetooth specification that allows hackers to not only listen in on the data being sent between two devices, but clandestinely alterit as well.

"[An] attacker is able to the listen in on, or change the content of, nearby Bluetooth communication, even between devices that have previously been successfully paired," the researchers explain.

Dubbed the KNOB attack, the vulnerability affected every single standard-compliant Bluetooth device tested by a group consisting of security researchers from the Singapore University of Technology and Design, University of Oxford, and CISPA Helmholtz Center for Information Security. And yes, that means chips made by Broadcom, Qualcomm, Apple, Intel, and Chicony were all vulnerable.

Mashable Light SpeedWant more out-of-this world tech, space and science stories?Sign up for Mashable's weekly Light Speed newsletter.By signing up you agree to our Terms of Use and Privacy Policy.Thanks for signing up!

Importantly, this doesn't mean that anyone, anywhere, with malicious intent can listen in on your AirPod-enabled phone conversations or alter your AirDrop data transfer. For starters, this vulnerability does notapply to Bluetooth Low Energy (BLE) devices like AirPods. Instead, it covers Bluetooth BR/EDR. Also, the attacker would have to be physically near you in order to pull this off — a fact that provides some consolation until you think about all the times you use Bluetooth while in public places.

There is some more good news. The researchers who discovered this vulnerability also responsibly disclosed it to manufacturers. And hey, some of those manufacturers even did something about it.

Apple, for example, issued a patch in late July for iOS, macOS, and watchOS. Microsoft, Cisco, Google, and Blackberry also all issued various patches.

SEE ALSO:Hackers can ransomware your fancy digital camera

That's the good news. The bad? Well, you need to have actually installed the patches for the fix to take effect.

So go ahead and make sure your phone, computer, and any other Bluetooth-enabled device is up to date. And maybe, just maybe, going forward think twice about sending sensitive data over Bluetooth. Find a friend that cankeep a secret.


Featured Video For You
From ATMs to printers, hackers prove you can play 'Doom' on anything
本文地址:http://r.zzzogryeb.bond/html/677a698741.html
版权声明

本文仅代表作者观点,不代表本站立场。
本文系作者授权发表,未经许可,不得转载。

全站热门

The Analog Embrace: How Some Experiences Are Surviving the Digital Age

North Korea expanding air base, according to satellite imagery

石棉县公安局 组织企业开展消防应急演练

“倒春寒”来袭我市两条国道挺住了

Yoon, US Senate's armed service committee chief discuss alliance, N.K. threats

Raptors head coach becomes next best NBA meme with a priceless reaction shot

Woman tells her parents that she was accepted to med school in the best way

Twitter will remove millions of accounts from users' follower numbers

友情链接