G+_Ben Reese Posted March 28, 2015 Share Posted March 28, 2015 I was curious about how legit this might be, so sitting at a stop light I told my phone to scan bluetooth... Phones, laptops, and a Pioneer head unit all came up. A few seconds later I was paired using 0000 able to place calls - from the other car. I've wondered for a while... Just how secure is bluetooth? I think there's some encryption, but how are the keys determined? Is the communication just encrypted by the pairing code? Originally shared by *Clean* Funny Pics Hmmmm... I'm suspicious... #CFPics #funny Link to comment Share on other sites More sharing options...
G+_Timothy Hamlett Posted March 28, 2015 Share Posted March 28, 2015 ROFL I have to do this sometime... you could also conceivably do this in a downtown Starbucks or something.... Link to comment Share on other sites More sharing options...
G+_Raymond Larabee Jr. Posted March 29, 2015 Share Posted March 29, 2015 Try it at a truck stop sometime. I've also made phone calls from other phones that didn't have their Bluetooth turned off. Link to comment Share on other sites More sharing options...
G+_Tom Nardi Posted March 29, 2015 Share Posted March 29, 2015 Once the two devices are paired, Bluetooth is fairly secure. But the key exchange is the weak point. You can sniff keys over the air with the right hardware (like the ubertooth), or just guess them. The range of BT is also greatly underestimated. If you have an industrial BT radio like the AIRCable Host XR and a good antenna, pairing with devices as far away as 1/4 mile is no problem. Link to comment Share on other sites More sharing options...
G+_Brent Burzycki Posted March 29, 2015 Share Posted March 29, 2015 Totally common and worrisome... That said if contacts are stored in the head unit / system why not be able to export them... Then let the social engineering begin into every aspect of someone's personal life.. Link to comment Share on other sites More sharing options...
G+_Eddie Foy Posted March 29, 2015 Share Posted March 29, 2015 BT is semi secure. The short distance is probably more effective then the encryption. THhe Ubertooth (or the HackRF) and other's research has hacked it. Link to comment Share on other sites More sharing options...
G+_Adam EL-Idrissi Posted March 29, 2015 Share Posted March 29, 2015 Even with an off the shelf adapter you can still have fun. Pwn phone/pad ring any bells? Link to comment Share on other sites More sharing options...
G+_Eddie Foy Posted March 29, 2015 Share Posted March 29, 2015 Gotta love the PwnieExpress stuff. Pricey, but cool Link to comment Share on other sites More sharing options...
G+_Adam EL-Idrissi Posted March 29, 2015 Share Posted March 29, 2015 Pricey unless you've already got a nexus device. Pwnie community builds. Link to comment Share on other sites More sharing options...
G+_Eddie Foy Posted March 29, 2015 Share Posted March 29, 2015 community versions are always lacking pro versions. I've pondered installing it, but rather just buy it. Link to comment Share on other sites More sharing options...
G+_Adam EL-Idrissi Posted March 29, 2015 Share Posted March 29, 2015 I had it on my nexus 7 2012 but switched back to android after a couple days. Link to comment Share on other sites More sharing options...
Recommended Posts