Race Toolkit

(github.com)

3 points | by sva_ 16 hours ago ago

1 comments

  • miduil 14 hours ago ago

    This was just shown at the 39C3. Common (unpached) Bluetooth headsets using Airoha's SoCs can be completely taken over by any unauthenticated bystander with a Linux laptop. (CVE-2025-20700, CVE-2025-20701, CVE-2025-20702)

    This includes firmware dumps, user preferences, Bluetooth Classic session keys, current playing track, ...

    > Examples of affected vendors and devices are Sony (e.g., WH1000-XM5, WH1000-XM6, WF-1000XM5), Marshall (e.g. Major V, Minor IV), Beyerdynamic (e.g. AMIRON 300), or Jabra (e.g. Elite 8 Active).

    It was presented here https://fahrplan.events.ccc.de/congress/2025/fahrplan/event/...

    You can watch the pre-recorded talk here:

    https://streaming.media.ccc.de/39c3/relive/887fe87e-6ef2-5d9...