Overview
Coursera Flash Sale
40% Off Coursera Plus for 3 Months!
Grab it
Explore a comprehensive security assessment of Bluetooth Classic implementations in automotive systems through this 18-minute conference presentation from WOOT '25. Learn about BlueToolkit, a newly developed open-source security testing framework designed to automate reconnaissance, exploit testing, and report generation for Bluetooth Classic devices using black-box testing methods. Discover how researchers tested 44 different design and implementation exploits across six vulnerability databases, including critical Machine-in-the-Middle (MITM), Remote Code Execution (RCE), and Denial of Service (DoS) attacks. Examine the results of a large-scale automotive security study involving 22 vehicles from 14 leading manufacturers produced between 2016 and 2023, which revealed 128 vulnerabilities across 891 individual tests. Understand the four new attacks discovered during the research and gain insights into the inadequate security posture of automotive Bluetooth implementations. Review the framework's extensible architecture based on YAML configuration files that allows integration of future exploits, and learn about the responsible disclosure process followed with affected vendors.
Syllabus
WOOT '25 - Bluetooth Security Testing with BlueToolkit: a Large-Scale Automotive Case Study
Taught by
USENIX