Bluetooth cracked further

Olle Mulmo mulmo at pdc.kth.se
Sat Jun 4 16:45:23 EDT 2005


On Jun 4, 2005, at 14:12, Thomas Lakofski wrote:

> Finally, the PIN length ranges from 8 to 128 bits. Most manufacturers 
> use a 4 digit PIN and supply it with the device. Obviously, customers 
> should demand the ability to use longer PINs.

Correction: Most manufacturers hardcode the 4-digit PIN to 0000. It has 
been known for some time that those "gadgets" need to be paired in an 
Faradayic environment: if I recall correctly, a paper being presented 
on this at the RSA conference ~2001 or so.

The forced re-pairing vulnerability is news to me. It makes me very 
concerned about Bluetooth keyboards...

/O


---------------------------------------------------------------------
The Cryptography Mailing List
Unsubscribe by sending "unsubscribe cryptography" to majordomo at metzdowd.com



More information about the cryptography mailing list