Beware Bluesnarfer

rpm

Admin
Staff member
Joined
Jul 22, 2003
Messages
66,740
http://mybroadband.co.za/nephp/?m=show&id=451

"If you keep your Bluetooth function on your mobile phone or PDA (personal digital assistant) switched on, you could just find your address book deleted, or your phone log tapped into. Such attacks are called “Bluesnarfing”."
 

slimothy

Banned
Joined
Jan 14, 2005
Messages
4,808
dude this is old, we did this when the ngage came out here in december 2003, we used laptops then, but in April 2004 the first PDA application was released for it, August 2004 the first rudementery Symbian version was out for mobile phones and now? well now the source is and has been available for ages.

THIS IS NOT A MAJOR THREAT
as someone who has sniffed bluetooth traffic over the air I can tell you not many people use it for stuff other than syncing devices, great if calaender info is top secret but not great for other things

What is a threat however is the new keyjack software, basically a proof of concept to show that your bluetooth device gives keys out to anyone who asks for connections running already, allowing a user to hijack a session and control devices, now thats cooler than just sniffing data.

WiFi is way more prone to attacks since its a better protocol for constant data exchanges and therefor is used on wireless networks where data would be more important/sensitive and not 99% crap 9which blue tooth traffic is alot of the time)
 
Top