Home > Hacking > Bluetooth Hacking
DoD Bluetooth Smart Card Reader Security Requirements Matrix ...
Sort Desciption:This matrix was developed by the DISA Field Security Operations (FSO) and is an unofficial compilation of DoD security requirements for DoD Bluetooth Smart ...
Content Inside:1 DoD Bluetooth Smart Card Reader Security Requirements Matrix Version 2.0 June 1, 2007 2 This matrix was developed by the DISA Field Security Operations (FSO) and is an unofficial compilation of DoD security requirements for DoD Bluetooth Smart Card Readers (SCR). The purpose of the matrix is to provide a tool for DISA FSO when evaluating Bluetooth SCRs. The requirements listed in this document are subject to change as new security vulnerabilities are identified or DoD commands or agencies provide comments to DISA. A copy of this matrix will be provided to DoD commands/agencies and vendors upon request (send an email request to http://fso_spt@disa.mil). See Requirement 25.0 in the DoD Wireless Push Email System Security Requirements Matrix, version 2.0, 1 June 2007, for information on handheld device security Bluetooth requirements. Changes from previous version: -Previous version was 1.0, dated Oct 27, 2006. -Requirement 2.0. Reorganized and added new information (Requirement 2.3). Requirement Number Requirement Source of Requirement 1.0 Bluetooth mutual authentication, 128 bit Bluetooth encryption, and FIPS 140-2 certified cryptography must all be used for all communications between the smart card reader and the host device. NSA Bluetooth Security Team 2.0 Bluetooth Pairing requirements NSA Bluetooth Security Team 2.1 Bluetooth pairing passkeys must be at least eight decimal digits in length and generated randomly. 2.2 Pairing should be done as infrequently as possible, ideally in a secure area where attackers cannot realistically observe the passkey entry and intercept Bluetooth pairing messages. (Note: A “secure area” is defined as a non-public area that is indoors away from windows in locations with physical access controls.) 2.3 Bluetooth mutual authentication immediately after the initial establishment of any Bluetooth connection 3.0 The Bluetooth smart card reader must remain undiscoverable to other Bluetooth devices at all t ...
Source: iase.disa.mil
![]()
![]()
![]()
![]()
![]()
![]()
![]()
![]()
![]()
![]()
![]()
![]()
![]()
![]()
![]()
![]()
![]()
![]()
![]()
![]()
![]()
![]()
![]()
![]()
![]()
![]()
![]()
![]()
![]()
![]()
![]()
![]()
![]()
Related Files
An Ethical Guide to Hacking Mobile Phones - By Ankit Fadia
Filed under: Hacking and Bluetooth HackingAn Ethical Guide to Hacking Mobile Phones - By Ankit Fadia 1. Security Threats Bluetooth Hacking • Introduction • Working • Case Studies • Types of Bluetooth Threats ...
Bluetooth Hacking
Filed under: Hacking and Bluetooth Hacking3 Bluetooth Hacking BT Technology Overview BT Technology Overview BT Technology -A general cable replacement for low range wireless standards (eg. IrDA) -Usage : information ...
Bluetooth Hacking Full Disclosure
Filed under: Hacking and Bluetooth HackingBluetooth architecture ● Hardware layer ● Radio, Baseband and Link Manager ● Access through the Host Controller Interface - Standards for USB and UART ● Host protocols ● ...
Bluetooth Hacking
Filed under: Hacking and Bluetooth HackingBluetooth Hacking - Historia - Introducci n - La stack de GNU/Linux: BlueZ - Aplicaciones ... Es el equivalente a tcpdump sobre bluetooth. ...
Taking the Teeth Out of Bluetooth Phracking
Filed under: Hacking and Bluetooth HackingCracking is the correct term for malicious hacking. Following the classic security mantra ... counter-hacks that untethered communicators can use to foil the would-be phracker. BLUETOOTH ...
