Home > Hacking > Bluetooth Hacking
Bastian Ballmann & Martin Karger
Sort Desciption:Hacking Bluetooth Bastian Ballmann & Martin Karger ... Tools - sdptool / sdpd ● browse - Query remote SDP daemon ● search - Search for ...
Content Inside:Hacking Bluetooth Bastian Ballmann & Martin Karger Hacking Bluetooth Standard tools Tools - BlueZ / OBEX ● hciconfig - Device configuration ● hcitool - Handling connections ● hcidump - Sniffing ● l2ping - L2CAP echo request ● sdptool / sdp - Service discovery ● btobex / obexftp - Object Exchange ● dfutool - Firmware up-/download ● bccmd - CSR BCCMD interface Tools - hciconfig ● Device configuration ● noscan - Non-discoverable mode ● class 0x000204 - Claim to be a phone ● noauth - Disable authentication ● noencrypt - Disable encryption Tools - hcitool ● scan - Scan for devices ● info - Information about remote device ● key - Change link key Tools - hcidump ● sniff traffic directed to local devices ● Use -X to dump hex and ascii ● -A to sniff SCO audio data Tools - l2ping ● L2CAP echo request ● -c <count> ● -s <size> ● New Ping of death for Bluetooth ^^ ● Can be used to DOS some PDAs and phones (e. g. Widcomm stack) Tools - sdptool / sdpd ● browse - Query remote SDP daemon ● search - Search for services ● Remember not every service is listed in SDP (yeah we all love Blue Bug! =) ● sdpd - start SDP daemon ● sdptool add / del - Add or delete records Tools - btobex / obexftp ● Obex - Object Exchange protocol ● The good old Bluesnarf attack ● btobex pb <addr> <channel> ● btobex cal <addr> <channel> ● Bluesnarf on Sony Ericsson phones ● obexftp -b <addr> -B 10 -g telecom/pb. vcf ● Blue jacking ● btobex push <addr> <file> ● Directory Traversal on OBEX FTP servers Tools - dfutool ● Up-/download firmware ● Part of USB specification (optional) ● How to get it ● cvs -d: pserver: anonymous: cvs. bluez. org: /cvsroot/bluez login ● cvs -d: pserver: anonymous: cvs. bluez. org: /cvsroot/bluez c ...
Source: www.evilgenius.de
![]()
![]()
![]()
![]()
![]()
![]()
![]()
![]()
![]()
![]()
![]()
![]()
![]()
![]()
![]()
![]()
![]()
![]()
![]()
![]()
![]()
![]()
![]()
![]()
![]()
![]()
![]()
![]()
![]()
![]()
![]()
![]()
![]()
Related Files
An Ethical Guide to Hacking Mobile Phones - By Ankit Fadia
Filed under: Hacking and Bluetooth HackingAn Ethical Guide to Hacking Mobile Phones - By Ankit Fadia 1. Security Threats Bluetooth Hacking • Introduction • Working • Case Studies • Types of Bluetooth Threats ...
Bluetooth Hacking
Filed under: Hacking and Bluetooth Hacking3 Bluetooth Hacking BT Technology Overview BT Technology Overview BT Technology -A general cable replacement for low range wireless standards (eg. IrDA) -Usage : information ...
Bluetooth Hacking Full Disclosure
Filed under: Hacking and Bluetooth HackingBluetooth architecture ● Hardware layer ● Radio, Baseband and Link Manager ● Access through the Host Controller Interface - Standards for USB and UART ● Host protocols ● ...
Bluetooth Hacking
Filed under: Hacking and Bluetooth HackingBluetooth Hacking - Historia - Introducci n - La stack de GNU/Linux: BlueZ - Aplicaciones ... Es el equivalente a tcpdump sobre bluetooth. ...
Taking the Teeth Out of Bluetooth Phracking
Filed under: Hacking and Bluetooth HackingCracking is the correct term for malicious hacking. Following the classic security mantra ... counter-hacks that untethered communicators can use to foil the would-be phracker. BLUETOOTH ...
