Skip to main content

Expert says risk of Bluetooth ‘BlueBorne’ attacks across multiple devices overblown

Security firm says 'BlueBorne' is only a risk if your device isn't updated

Armis - BlueBorne Explained
Bluetooth was originally created in 1998 to serve as a secure short-range wireless connection between two devices. It pairs our wireless mice to our laptops, our smartwatches to our smartphones, and so on. But a recent report published by security firm Armis points to eight Bluetooth-related vulnerabilities — four of which are critical — that reside on more than 5 billion Android, Windows, Linux, and pre-iOS 10 devices. The company dubs this “epidemic” BlueBorne.

“These vulnerabilities are the most serious Bluetooth vulnerabilities identified to date,” Armis said on September 12. “Previously identified flaws found in Bluetooth were primarily at the protocol level. These new vulnerabilities are at the implementation level, bypassing the various authentication mechanisms, and enabling a complete takeover of the target device.”

The problem starts with the complexity of Bluetooth itself. The specification stretches across 2,822 pages, which is massive compared to the base Wi-Fi specification (802.11), which consists of only 450 pages. Because of its complexity, Bluetooth does not receive the same scrutinized audits as other less-complicated protocols. That means vulnerabilities get buried as Bluetooth evolves.

Many issues prior to Bluetooth v2.1 were resolved with the introduction of Secure Simple Pairing, thus the security community shifted its attention away from Bluetooth. But a thorough inspection still needed to be performed and Armis says that its discovery of eight vulnerabilities in a recent analysis of Bluetooth could very well be “the tip of the iceberg.”

Overall, the BlueBorne set of vulnerabilities can enable a hacker to take control of a device, access its content, and use it to infect other Bluetooth-enabled devices with malware. Outside the actual vulnerabilities, the root of the issue stems from keeping Bluetooth turned on. A device will listen for Bluetooth traffic even if it is not set to discoverable mode, so all a hacker needs to know is its Bluetooth device address (BDADDR), and its MAC address.

But how do you get this information? By using open-source hardware sold online that can sniff out encrypted Bluetooth connections passing through the air. These packets of information contain plain text data pointing to the Bluetooth device address. Hackers can then use that address to send unicast traffic if they are within physical proximity of the target device: 33 feet for mobile phones and headsets, and 328 feet for laptops and desktops.

“If the device generates no Bluetooth traffic, and is only listening, it is still possible to ‘guess’ the BDADDR, by sniffing its Wi-Fi traffic,” the firm explains. “This is viable since Wi-Fi MAC addresses appear unencrypted over the air, and due to the MACs of internal Bluetooth/Wi-Fi adapters are either the same, or only differ in the last digit.”

But according to Mike Weber of cyber risk management service provider Coalfire, there is no need to panic. There are no known instances of hackers taking advantage of the vulnerabilities. Even more, creating malware to possibly attack a multitude of devices spanning Windows, iOS, and Linux in a single sweep would be extremely difficult. The discovery of the vulnerabilities only points to possibilities, not an actual attack in the wild.

“If you are on a device that is no longer supported, cannot be updated, or has not yet received a patch from a vendor, it is recommended to keep Bluetooth on the device turned off except when necessary,” Weber suggests.

Microsoft produced a patch for Windows on September 12, 2017. Apple nuked the vulnerabilities on its products with the release of iOS 10, but all devices running iOS 9.3.5 and older are still vulnerable. Google patched the issues on Android 6.0 (Marshmallow) and Android 7.0 (Nougat) on August 7, 2017, but if you’re still worried about BlueBorne, Armis Security provides an app on the Google Play Store.

Updated: Now reflects new information provided by Coalfire.

Kevin Parrish
Former Digital Trends Contributor
Kevin started taking PCs apart in the 90s when Quake was on the way and his PC lacked the required components. Since then…
This Lenovo laptop is normally $2,919 — today it’s $919
The Lenovo ThinkPad T14s Gen 5 opened up on a table.

Lenovo laptop deals aren’t too difficult to come by, but this promotion was so exceptional, it needed its own spotlighting! Right now, Lenovo is knocking $2,000 off the Lenovo ThinkPad T14s. Since it's normally priced at $2,920, it’s hard to say how long this markdown is going to last. If you’ve been sitting on a laptop upgrade for a minute, now might be the time to get some new gear.

Why you should buy the Lenovo ThinkPad T14s laptop
Built for businesses, the ThinkPad has long been the go-to Lenovo laptop for busy professionals. Portability is one of the strong suits here: At 12.50 inches wide, 8.93 inches from front to back, and 0.65 inches tall, the ultraportable T14s is the ideal PC for frequent travelers. It’s lightweight too, weighing but a mere 2.71 pounds.

Read more
Best Dell laptop deals: Cheap laptops starting at $280
The Dell XPS 13 9315 on a table against a window.

Being one of the best laptop brands on the market, it's no surprise that Dell has a huge selection of laptops that you can potentially pick from. Whether you're going for gaming laptops or just normal day-to-day laptops, there's probably a great option for you. In fact, there are even some great budget laptops for those who don't really need anything fancy and just want something basic to get online and access shows or work-related content.
Of course, having so many options can be a bit overwhelming for somebody who isn't familiar with Dell or the laptop market, which is why we scoured the Dell website and other retailers for our favorite picks and listed them below. This list has a lot of crossover with the best Dell XPS deals, student laptop deals and gaming laptop deals, so make sure to check out some of those other great laptop deals as well.

Dell Inspiron 15 -- $280, was $330

Read more
No, an old iPhone won’t beat the Snapdragon X Elite
A photo of a laptop with the Snapdragon X Plus CPU.

Update 6/14/24: A slate of new Geekbench 6 results show that the Snapdragon X Elite performs about as well as Qualcomm claimed, at least in the Galaxy Book4 Edge. The new results, which were uploaded last night and this morning, show the processor reaching the advertised 4GHz and hitting single-core speeds that aligned with Qualcomm's claims. Multi-core speeds are still a bit below where expected, but not by much.

Although these new results show that there's a little more to the story than the peak performance of Qualcomm's new chips, it's important to wait for proper reviews to vet the performance of these processors. At the moment, it appears the software isn't final, so it's hard to draw any firm conclusions about performance before the processors release on June 18.

Read more