Update:Security Threat Bluetooth Phones

Thread Tools
 
Search this Thread
 
Old 02-17-2004, 02:07 PM
  #1  
Cruisin'
Thread Starter
 
kkneubuh's Avatar
 
Join Date: Sep 2003
Location: MN
Posts: 19
Likes: 0
Received 0 Likes on 0 Posts
Update:Security Threat Bluetooth Phones

Received from my corporate security group:

Multiple vulnerabilities have been found in Bluetooth enabled Nokia, Ericsson and Sony Ericsson mobile phones.

How Does This Affect Me?

If a hacker is within range (just a few meters) of a Bluetooth enabled device, the attack could result in the phone resetting or terminating the current operation. In the worst case, a hacker could use your phone to send SMS (Short Message Service), and use your browser to access the Internet. The connection fees are charged to your phone bill, since the connection was made via your phone.

No "device pairing," such as a remote headset, is required from one Bluetooth device to another Bluetooth device. Therefore, anyone in range of the phone could initiate an attack. (Device Pairing refers to the initial authentication of two Bluetooth devices such as a cellular phone and a remote headset.)

Affected models are:

Nokia 6310, 6310i, 7650, 8910 and 8910i
Ericsson T68
Sony Ericsson R520m, T68i, T610 and Z1010

Action Required
In public places, where devices with Bluetooth technology might be targets of malicious attacks, you can stop hackers by setting the device to a non-discoverable mode (hidden), or simply switch off the Bluetooth functionality altogether. This does not affect other functionalities of the phone.
No fix is currently available. However, exposure to this threat can be limited by enabling Bluetooth only when it is absolutely necessary
Old 02-17-2004, 02:51 PM
  #2  
Moderator Alumnus
 
rets's Avatar
 
Join Date: Dec 2003
Location: NYC/SF/Tokyo/HK
Posts: 12,177
Likes: 0
Received 86 Likes on 30 Posts
Post Re: Update:Security Threat Bluetooth Phones

Another one?

But this seems more real. Thanks.
Old 02-17-2004, 03:49 PM
  #3  
Advanced
 
mamorgan1's Avatar
 
Join Date: Nov 2003
Posts: 53
Likes: 0
Received 0 Likes on 0 Posts
so, someone has to be sitting next to me to hack into my phone...how often is that going to happen?
Old 02-17-2004, 04:13 PM
  #4  
'06 750Li Sapphire/Creme
 
ndabunka's Avatar
 
Join Date: Dec 2003
Location: Charlotte, NC
Age: 61
Posts: 2,012
Likes: 0
Received 0 Likes on 0 Posts
Re: Update:Security Threat Bluetooth Phones

Originally posted by kkneubuh
Received from my corporate security group:

Multiple vulnerabilities have been found in Bluetooth enabled Nokia, Ericsson and Sony Ericsson mobile phones.

How Does This Affect Me?

If a hacker is within range (just a few meters) of a Bluetooth enabled device, the attack could result in the phone resetting or terminating the current operation. In the worst case, a hacker could use your phone to send SMS (Short Message Service), and use your browser to access the Internet. The connection fees are charged to your phone bill, since the connection was made via your phone.

No "device pairing," such as a remote headset, is required from one Bluetooth device to another Bluetooth device. Therefore, anyone in range of the phone could initiate an attack. (Device Pairing refers to the initial authentication of two Bluetooth devices such as a cellular phone and a remote headset.)

Affected models are:

Nokia 6310, 6310i, 7650, 8910 and 8910i
Ericsson T68
Sony Ericsson R520m, T68i, T610 and Z1010

Action Required
In public places, where devices with Bluetooth technology might be targets of malicious attacks, you can stop hackers by setting the device to a non-discoverable mode (hidden), or simply switch off the Bluetooth functionality altogether. This does not affect other functionalities of the phone.
No fix is currently available. However, exposure to this threat can be limited by enabling Bluetooth only when it is absolutely necessary
No action required because setting your phone to "non-discoverable" mode SHOULD have been done after the external devices were set up anyway. I guess those users who aren't aware of technology may not have done this so in all appears to be a good post. Not really a security threat though.
Old 09-14-2005, 09:13 AM
  #5  
10th Gear
 
rkclarke's Avatar
 
Join Date: Aug 2005
Age: 54
Posts: 12
Likes: 0
Received 0 Likes on 0 Posts
Seems like a bad "feature" of those phone models. My Motorolas are only discoverable for 60 seconds then they turn off themselves.
Old 09-15-2005, 04:36 PM
  #6  
Drifting
 
mobilezen's Avatar
 
Join Date: Mar 2004
Location: Dallas, TX
Posts: 2,440
Likes: 0
Received 0 Likes on 0 Posts
Don't forget Nokia Series 60 phones as well.

Also, if you include the T68i and T610...then also the S710a, P910, K700i, etc etc. Setting your device to hidden mode is best even though Virgin Megastores in the UK have figured out a way to send advertisements to your phone even when your bluetooth is hidden. Makes you think twice huh.
Old 09-15-2005, 06:22 PM
  #7  
2004 SSM/EB/5AT/Navi/RSB
 
bluenoise's Avatar
 
Join Date: Jan 2005
Location: Bay Area, CA
Age: 57
Posts: 1,306
Likes: 0
Received 1 Like on 1 Post
It's a silly bit of fun to "bluejack" other people's phones during meetings here at work.
Old 09-15-2005, 06:43 PM
  #8  
The DVD-A Script Guy
 
Adobeman's Avatar
 
Join Date: Apr 2005
Location: CT
Age: 60
Posts: 2,009
Received 184 Likes on 131 Posts
Well, My BT is only on when I am in the car so there gonna have to do it while they are beside me. Nobody stays there to long
Old 09-15-2005, 07:00 PM
  #9  
Drifting
 
mobilezen's Avatar
 
Join Date: Mar 2004
Location: Dallas, TX
Posts: 2,440
Likes: 0
Received 0 Likes on 0 Posts
Originally Posted by bluenoise
It's a silly bit of fun to "bluejack" other people's phones during meetings here at work.
Any of us with PDA/Phones do it right? hrm...
Old 09-15-2005, 08:14 PM
  #10  
2004 SSM/EB/5AT/Navi/RSB
 
bluenoise's Avatar
 
Join Date: Jan 2005
Location: Bay Area, CA
Age: 57
Posts: 1,306
Likes: 0
Received 1 Like on 1 Post
Originally Posted by mobilezen
Any of us with PDA/Phones do it right? hrm...
From my Treo 650, I can see all the other 650 owners in the room who've left their phones in discoverable mode. Attempting to connect to any of them causes them to make an embarassing "dink-dink-dink-dink" ascending scale sound.
Old 09-15-2005, 08:38 PM
  #11  
Pro
 
frenchnew's Avatar
 
Join Date: Mar 2005
Location: Quebec
Age: 65
Posts: 529
Likes: 0
Received 2 Likes on 2 Posts
Originally Posted by ndabunka
No action required because setting your phone to "non-discoverable" mode SHOULD have been done after the external devices were set up anyway. I guess those users who aren't aware of technology may not have done this so in all appears to be a good post. Not really a security threat though.


Most people are not tech savy these days and the same things happens to those same people who have wireless networks setup at home, they leave the doors wide open.

Best regards

frenchnew
Related Topics
Thread
Thread Starter
Forum
Replies
Last Post
mlody
5G TLX (2015-2020)
85
12-04-2019 02:11 PM
MetalGearTypeS
3G TL Audio, Bluetooth, Electronics & Navigation
6
08-29-2016 08:28 PM
InFaMouSLink
Car Parts for Sale
3
10-30-2015 09:43 AM
SUPRMN84
3G TL Audio, Bluetooth, Electronics & Navigation
5
10-07-2015 09:46 PM
jmaxima03
Member Cars for Sale
1
09-27-2015 10:22 AM



Quick Reply: Update:Security Threat Bluetooth Phones



All times are GMT -5. The time now is 04:20 AM.