Overview
Coursera Flash Sale
40% Off Coursera Plus for 3 Months!
Grab it
Explore a 41-minute conference talk from the 38th Chaos Communication Congress (38C3) that reveals critical security vulnerabilities in Bluetooth's new Auracast feature before its widespread implementation. Dive into the technical analysis of Broadcast Isochronous Streams (BIS) in Bluetooth LE Audio, where researchers demonstrate how both unencrypted and encrypted broadcasts can be compromised. Learn about the insufficient security properties of the protocol, methods to crack authentication codes, and techniques for hijacking encrypted broadcasts. Discover findings from a survey of real-world Auracast implementations showing weak default configurations that compromise both authenticity and confidentiality. Get introduced to a toolkit for dumping, decrypting, and hijacking encrypted Auracast streams, presented by security researchers Frieder Steinmetz and Dennis Heinze.
Syllabus
38C3 - Auracast: Breaking Broadcast LE Audio Before It Hits the Shelves
Taught by
media.ccc.de