These cheap Skullcandy earbuds have a worrying Bluetooth flaw that could let anyone connect to your device


  • Researchers warn Skullcandy Dime 3 earbuds on older firmware accept Bluetooth pairing from unknown devices with no user interaction required
  • When leveraged, it can be used to interrupt the owner’s connections, hijack playback, and even capture live microphone audio
  • The vulnerability has been patched in a newer firmware update available only on newer units, does not seem to be addressable for existing earbuds

Carnegie Mellon University’s CERT Coordination Center has warned Skullcandy’s Dime 3 wireless earbuds will accept a Bluetooth pairing request from a stranger’s device without the owner doing anything.

The resulting bond is permanent, and the only sign the owner gets is a spoken “new device paired” notification delivered after it has already happened, with zero user interaction to confirm the request.

Source link

spot_img
spot_img

Leave a reply

Please enter your comment!
Please enter your name here