DEMO: BTLEmap: Nmap for Bluetooth Low Energy

07/01/2020
by   Alexander Heinrich, et al.
0

The market for Bluetooth Low Energy devices is booming and, at the same time, has become an attractive target for adversaries. To improve BLE security at large, we present BTLEmap, an auditing application for BLE environments. BTLEmap is inspired by network discovery and security auditing tools such as Nmap for IP-based networks. It allows for device enumeration, GATT service discovery, and device fingerprinting. It goes even further by integrating a BLE advertisement dissector, data exporter, and a user-friendly UI, including a proximity view. BTLEmap currently runs on iOS and macOS using Apple's CoreBluetooth API but also accepts alternative data inputs such as a Raspberry Pi to overcome the restricted vendor API. The open-source project is under active development and will provide more advanced capabilities such as long-term device tracking (in spite of MAC address randomization) in the future.

READ FULL TEXT
research
09/12/2023

Commands as AI Conversations

Developers and data scientists often struggle to write command-line inpu...
research
03/06/2018

Analysing the Potential of BLE to Support Dynamic Broadcasting Scenarios

In this paper, we present a novel approach for broadcasting information ...
research
05/19/2023

Chrowned by an Extension: Abusing the Chrome DevTools Protocol through the Debugger API

The Chromium open-source project has become a fundamental piece of the W...
research
05/07/2021

Sobi: An Interactive Social Service Robot for Long-Term Autonomy in Open Environments

Long-term autonomy in service robotics is a current research topic, espe...
research
09/26/2022

Device Tracking via Linux's New TCP Source Port Selection Algorithm (Extended Version)

We describe a tracking technique for Linux devices, exploiting a new TCP...
research
04/24/2019

Handoff All Your Privacy: A Review of Apple's Bluetooth Low Energy Continuity Protocol

We investigate Apple's Bluetooth Low Energy (BLE) Continuity protocol, d...
research
03/28/2020

Security Analysis of the Open Banking Account and Transaction API Protocol

To counteract the lack of competition and innovation in the financial se...

Please sign up or login with your details

Forgot password? Click here to reset