Zero-day: Bluetooth gap turns millions of headphones into listening stations
-
I never have it enabled unless I am in the car driving and need driving directions or listening to music/podcasts. I prefer wired headphones, but manufacturers are making that difficult.
Because they can't sell you more Bluetooth crap if they give you a choice.
Stop buying no-Jack phones.
-
What is that site asking me to agree to? No thanks
GDPR. First time opening a European website? German ones like this are particularly transparent (by law, not choice).
-
The Bluetooth chipset installed in popular models from major manufacturers is vulnerable. Hackers could use it to initiate calls and eavesdrop on devices.
Sounds like the attack scenario is very sophisticated and targeted, and only works within the range of Bluetooth low energy (BLE) connectivity, so 10-15 meters under best circumstances. At that point they might as well eavesdrop on my calls in person.
-
The site wants to share info with advertisers. I found this to be refreshingly honest.
We and our up to 185 partners use cookies and tracking technologies. Some cookies and data processing are technically necessary, others help us to improve our offer and operate it economically...
Anyway, can we get an archive link?
It’s strange to think about how complicit the public has become with this. You mean to tell me that 185 separate connections to other companies are required for me to… read an article?
-
I know someone who works somewhat high up at Apple and he told me another reason was that they really wanted to improve the water proofing.
That's just gaslighting. Other phones had audio jacks, water protection, and you didn't have to hold them funny.
My bro is a huge apple kool-aid guy and he spouts their dogma word-for-word.
-
It’s strange to think about how complicit the public has become with this. You mean to tell me that 185 separate connections to other companies are required for me to… read an article?
Well yeah, they have to hoard your advertising data somehow. How else can they advertise things that you don't need to buy?
-
you can just permanently connect your headphones to your dongle
No. Fuck that. My PC has a headphone jack, and I use it. I don't have a bunch of extra USB-C ports on the front of my computer. Modern phones have plenty of spaces for headphone jacks. They could put it there, they just don't want to.
I used a USB connection through my KVM to connect to one computer or the next. But it's just something to plug my headphones into the 3.5mm jack.
Since it never gets unplugged, it doesn't get lost; unlike all those "just have this snowflake dongle in one of all of your stuff so it can get lost monthly and you can buy another" people.
Again: my startac 7800 had a jack and it was tiny. Apple and Samsung have NO EXCUSE.
-
Or public transit. Or public parks. Or grocery stores.
Yesss. Find that sploit and please let it never be fixable. I didn't download a copy of The Wheels On The Bus for nothing.
-
Sounds like the attack scenario is very sophisticated and targeted, and only works within the range of Bluetooth low energy (BLE) connectivity, so 10-15 meters under best circumstances. At that point they might as well eavesdrop on my calls in person.
Directional antennas exist and are very inexpensive
-
The site wants to share info with advertisers. I found this to be refreshingly honest.
We and our up to 185 partners use cookies and tracking technologies. Some cookies and data processing are technically necessary, others help us to improve our offer and operate it economically...
Anyway, can we get an archive link?
Instead of hacking Bluetooth, sounds more effective to be an "advertising partner".
-
The site wants to share info with advertisers. I found this to be refreshingly honest.
We and our up to 185 partners use cookies and tracking technologies. Some cookies and data processing are technically necessary, others help us to improve our offer and operate it economically...
Anyway, can we get an archive link?
You can get/make your own archive link by going to archive.ph and entering the article's URL.
Here's the link for this one: https://archive.ph/wUAQn
-
The Bluetooth chipset installed in popular models from major manufacturers is vulnerable. Hackers could use it to initiate calls and eavesdrop on devices.
Archive link: archive.ph/wUAQn
-
Sounds like the attack scenario is very sophisticated and targeted, and only works within the range of Bluetooth low energy (BLE) connectivity, so 10-15 meters under best circumstances. At that point they might as well eavesdrop on my calls in person.
Honey i got to go there is a man outside our window with a lapton and an radio antenna
"Ignore the man outside your window and just read off your credit card number -
The Bluetooth chipset installed in popular models from major manufacturers is vulnerable. Hackers could use it to initiate calls and eavesdrop on devices.
So glad I use wired earbuds and refused to buy a phone that didn't support them.
-
This one is great for destroying speakers: warning super loud (turn down your volume before playing) https://m.soundcloud.com/osium-1/official-paul-walker-tribute-fast-and-furious-7
Good Lord! Thank you for the warning! On lowest audible phone volume it blew me away lol
What is that and why does it exist??
-
The Bluetooth chipset installed in popular models from major manufacturers is vulnerable. Hackers could use it to initiate calls and eavesdrop on devices.
Unchecked consumer-grade RF signals that are broadcast in every direction are insecure??
Color me shocked!
-
No, the real reason is it saves a few pennies per phone. They can already spy on us through the internal mic.
It’s always about the money. Everyone else yelling about them spying, they’ll only do that if it makes them more money.
-
The Bluetooth chipset installed in popular models from major manufacturers is vulnerable. Hackers could use it to initiate calls and eavesdrop on devices.
Hah, jokes on them, I managed to fuck my earbuds' microphones so they're useless now.
-
The Bluetooth chipset installed in popular models from major manufacturers is vulnerable. Hackers could use it to initiate calls and eavesdrop on devices.
Yep I only use wired...
-
Sounds like the attack scenario is very sophisticated and targeted, and only works within the range of Bluetooth low energy (BLE) connectivity, so 10-15 meters under best circumstances. At that point they might as well eavesdrop on my calls in person.
10-15 meters might be good enough to conduct the attack from a neighboring office or apartment, while actual eavesdropping is not so easy.