Vietnam.vn - Nền tảng quảng bá Việt Nam

Bluetooth vulnerability lets hackers control Android and iOS devices

Báo Thanh niênBáo Thanh niên10/12/2023


According to The Hacker News , security researcher Marc Newlin reported the vulnerability to software vendors in August 2023. He said Bluetooth technology has an authentication bypass vulnerability, allowing attackers to connect to devices in the area without user confirmation and operation.

The bug, tracked as CVE-2023-45866, describes an authentication bypass that allows a threat actor to connect to devices and execute code on keystrokes as the victim. The attack tricks the target device into thinking it is connected to a Bluetooth keyboard by exploiting the unauthenticated pairing mechanism defined in the Bluetooth specification.

Lỗ hổng Bluetooth giúp hacker kiểm soát thiết bị Android và iOS - Ảnh 1.

Bluetooth connectivity standard is facing many security flaws

Successful exploitation of the vulnerability could allow an attacker within the Bluetooth range to transmit keystrokes to install applications and run arbitrary commands. Notably, the attack does not require any specialized hardware and can be performed from a Linux computer using a standard Bluetooth adapter. Technical details of the vulnerability are expected to be published in the future.

The Bluetooth vulnerability affects a wide range of devices running Android 4.2.2 and up, iOS, Linux, and macOS. It affects macOS and iOS when Bluetooth is enabled and an Apple Magic Keyboard is paired with the vulnerable device. It also works in LockDown Mode, Apple's digital threat protection mode. Google says the bug, CVE-2023-45866, can lead to device privilege escalation in close proximity without requiring additional execution privileges.



Source link

Comment (0)

No data
No data

Same tag

Same category

Hang Ma Street is brilliant with Mid-Autumn colors, young people are excitedly checking in non-stop
Historical message: Vinh Nghiem Pagoda woodblocks - documentary heritage of humanity
Admiring Gia Lai coastal wind power fields hidden in the clouds
Visit Lo Dieu fishing village in Gia Lai to see fishermen 'drawing' clover on the sea

Same author

Heritage

;

Figure

;

Enterprise

;

No videos available

News

;

Political System

;

Destination

;

Product

;