Home > Hacking > Bluetooth Hacking
Bluetooth Hacking Full Disclosure
Sort Desciption:Bluetooth architecture ● Hardware layer ● Radio, Baseband and Link Manager ● Access through the Host Controller Interface - Standards for USB and UART ● Host protocols ● ...
Content Inside:Bluetooth Hacking Full Disclosure Sy Scan05 Bangkok, Thailand Adam Laurie Marcel Holtmann Martin Herfurt Agenda ● Bluetooth technology overview ● The security mechanisms ● Known vulnerabilities ● Tools that are used ● Live demonstration Who is investigating ● Adam Laurie ● CSO of The Bunker Secure Hosting Ltd. ● DEFCON staff and organizer ● Marcel Holtmann ● Maintainer of the Linux Bluetooth stack ● Martin Herfurt ● Security researcher ● Founder of trifinite. org What is this about What is Bluetooth ● Bluetooth SIG ● Trade association ● Founded 1998 ● Owns and licenses IP ● Bluetooth technology ● A general cable replacement ● Using the ISM band at 2.4 GHz ● Protocol stack and application profiles How it works ● Data and voice transmission ● ACL data connections ● SCO and eSCO voice channels ● Piconet and scatternet topology ● Frequency hopping ● 79 channels ● 1600 hops per second Creating the topology ● Hopping sequence defines the piconet ● Master defines the hopping sequence ● Up to seven active slaves ● Scatternet creation Bluetooth architecture ● Hardware layer ● Radio, Baseband and Link Manager ● Access through the Host Controller Interface - Standards for USB and UART ● Host protocols ● L2CAP, SDP, RFCOMM, BNEP, AVDTP etc. ● Application profiles ● Serial Port Profile, Dialup, PAN, A2DP, HID etc. Bluetooth stack Security mechanisms on the Bluetooth chip Bluetooth host security mechanisms Application specific security mechanisms Bluetooth security ● Link manager security ● All security routines are on-chip ● Nothing is transmitted in "plain text" ● Host stack security ● Interface to the link manager security ● Part of the HCI specification ● Easy interface ● No further encryption of pin codes or keys ...
Source: www.holtmann.org
![]()
![]()
![]()
![]()
![]()
![]()
![]()
![]()
![]()
![]()
![]()
![]()
![]()
![]()
![]()
![]()
![]()
![]()
![]()
![]()
![]()
![]()
![]()
![]()
![]()
![]()
![]()
![]()
![]()
![]()
![]()
![]()
![]()
Related Files
An Ethical Guide to Hacking Mobile Phones - By Ankit Fadia
Filed under: Hacking and Bluetooth HackingAn Ethical Guide to Hacking Mobile Phones - By Ankit Fadia 1. Security Threats Bluetooth Hacking • Introduction • Working • Case Studies • Types of Bluetooth Threats ...
Bluetooth Hacking
Filed under: Hacking and Bluetooth Hacking3 Bluetooth Hacking BT Technology Overview BT Technology Overview BT Technology -A general cable replacement for low range wireless standards (eg. IrDA) -Usage : information ...
Bluetooth Hacking Full Disclosure
Filed under: Hacking and Bluetooth HackingBluetooth architecture ● Hardware layer ● Radio, Baseband and Link Manager ● Access through the Host Controller Interface - Standards for USB and UART ● Host protocols ● ...
Bluetooth Hacking
Filed under: Hacking and Bluetooth HackingBluetooth Hacking - Historia - Introducci n - La stack de GNU/Linux: BlueZ - Aplicaciones ... Es el equivalente a tcpdump sobre bluetooth. ...
Taking the Teeth Out of Bluetooth Phracking
Filed under: Hacking and Bluetooth HackingCracking is the correct term for malicious hacking. Following the classic security mantra ... counter-hacks that untethered communicators can use to foil the would-be phracker. BLUETOOTH ...
