Happy MitM: Fun and Toys in Every Bluetooth Device

08/16/2021
by   Jiska Classen, et al.
0

Bluetooth pairing establishes trust on first use between two devices by creating a shared key. Similar to certificate warnings in TLS, the Bluetooth specification requires warning users upon issues with this key, because this can indicate ongoing Machine-in-the-Middle (MitM) attacks. This paper uncovers that none of the major Bluetooth stacks warns users, which violates the specification. Clear warnings would protect users from recently published and potential future security issues in Bluetooth authentication and encryption.

READ FULL TEXT

page 1

page 2

page 3

page 4

research
02/20/2018

Frictionless Authentication System: Security & Privacy Analysis and Potential Solutions

This paper proposes a frictionless authentication system, provides a com...
research
08/29/2020

A Formal Security Analysis of the pEp Authentication Protocol for Decentralized Key Distribution and End-to-End Encrypted Email

To send encrypted emails, users typically need to create and exchange ke...
research
10/15/2021

Machine Learning Algorithms In User Authentication Schemes

In the past two decades, the number of mobile products being created by ...
research
02/17/2023

Towards Zero-trust Security for the Metaverse

By focusing on immersive interaction among users, the burgeoning Metaver...
research
06/05/2019

An Overview of GSMA's M2M Remote Provisioning Specification

M2M devices are ubiquitous, and there is a growing tendency to connect s...
research
02/01/2023

A Robust Certificate Management System to Prevent Evil Twin Attacks in IEEE 802.11 Networks

The evil twin attack is a major security threat to WLANs. An evil twin i...
research
04/06/2018

e-SAFE: Secure, Efficient and Forensics-Enabled Access to Implantable Medical Devices

To facilitate monitoring and management, modern Implantable Medical Devi...

Please sign up or login with your details

Forgot password? Click here to reset