Home > Hacking > Bluetooth Hacking



DoD Bluetooth Smart Card Reader Security Requirements Matrix ...

Sort Desciption:

This matrix was developed by the DISA Field Security Operations (FSO) and is an unofficial compilation of DoD security requirements for DoD Bluetooth Smart ...



Content Inside:

1 DoD Bluetooth Smart Card Reader Security Requirements Matrix Version 2.0 June 1, 2007 2 This matrix was developed by the DISA Field Security Operations (FSO) and is an unofficial compilation of DoD security requirements for DoD Bluetooth Smart Card Readers (SCR). The purpose of the matrix is to provide a tool for DISA FSO when evaluating Bluetooth SCRs. The requirements listed in this document are subject to change as new security vulnerabilities are identified or DoD commands or agencies provide comments to DISA. A copy of this matrix will be provided to DoD commands/agencies and vendors upon request (send an email request to http://fso_spt@disa.mil). See Requirement 25.0 in the DoD Wireless Push Email System Security Requirements Matrix, version 2.0, 1 June 2007, for information on handheld device security Bluetooth requirements. Changes from previous version: -Previous version was 1.0, dated Oct 27, 2006. -Requirement 2.0. Reorganized and added new information (Requirement 2.3). Requirement Number Requirement Source of Requirement 1.0 Bluetooth mutual authentication, 128 bit Bluetooth encryption, and FIPS 140-2 certified cryptography must all be used for all communications between the smart card reader and the host device. NSA Bluetooth Security Team 2.0 Bluetooth Pairing requirements NSA Bluetooth Security Team 2.1 Bluetooth pairing passkeys must be at least eight decimal digits in length and generated randomly. 2.2 Pairing should be done as infrequently as possible, ideally in a secure area where attackers cannot realistically observe the passkey entry and intercept Bluetooth pairing messages. (Note: A “secure area” is defined as a non-public area that is indoors away from windows in locations with physical access controls.) 2.3 Bluetooth mutual authentication immediately after the initial establishment of any Bluetooth connection 3.0 The Bluetooth smart card reader must remain undiscoverable to other Bluetooth devices at all t ...

Source: iase.disa.mil


add to Google Reader add to Google Bookmark add to bloglines add to newsgator add to FURL add to digg add to webnews add to Netscape add to Yahoo MyWeb add to spurl.net add to diigo Bookmark newsvine Bookmark del.icio.us Bookmark @ SIMPIFY Bookmark MISTER WONG Bookmark Linkarena Bookmark icio.de Bookmark oneview Bookmark folkd.com Bookmark yigg.de Bookmark reddit Bookmark StumbleUpon Bookmark Slashdot Bookmark blinklist Bookmark technorati add to blogmarks add to blinkbits add to ma.gnolia add to smarking.com add to netvouz add to co.mments add to Connotea add to de.lirio.us

 

Related Files

An Ethical Guide to Hacking Mobile Phones - By Ankit Fadia

Filed under: Hacking and Bluetooth Hacking
An Ethical Guide to Hacking Mobile Phones - By Ankit Fadia 1. Security Threats Bluetooth Hacking • Introduction • Working • Case Studies • Types of Bluetooth Threats ...

Bluetooth Hacking

Filed under: Hacking and Bluetooth Hacking
3 Bluetooth Hacking BT Technology Overview BT Technology Overview BT Technology -A general cable replacement for low range wireless standards (eg. IrDA) -Usage : information ...

Bluetooth Hacking Full Disclosure

Filed under: Hacking and Bluetooth Hacking
Bluetooth architecture ● Hardware layer ● Radio, Baseband and Link Manager ● Access through the Host Controller Interface - Standards for USB and UART ● Host protocols ● ...

Bluetooth Hacking

Filed under: Hacking and Bluetooth Hacking
Bluetooth Hacking - Historia - Introducci n - La stack de GNU/Linux: BlueZ - Aplicaciones ... Es el equivalente a tcpdump sobre bluetooth. ...

Taking the Teeth Out of Bluetooth Phracking

Filed under: Hacking and Bluetooth Hacking
Cracking is the correct term for malicious hacking. Following the classic security mantra ... counter-hacks that untethered communicators can use to foil the would-be phracker. BLUETOOTH ...