@nazokiyoubinbou @Viss Exactly
-
@Viss I feel vindicated by my leaving the house shortcut that disables WiFi and Bluetooth so that I have to intentionally turn them on if I need them. I may just go to leaving Bluetooth off period, unless Iβm using it.
-
more and more, i'm aligned with the under 40 crowd (other than the constantly being glued to a smart phone). audio, politics, so many other areas, the old 60s saw of don't trust anyone over 30 doesn't seem that wrong...
-
@Viss @funnymonkey this concerns me with rfid which you can't even turn off...
I know in most cases it's encrypted on stuff like credit cards but like work badges or stuff? Do you think your boss would believe "no I didn't go into the server room and execute that malware off a USB stick? Yeah I know my badge was recorded as opening the door but it wasn't me... Pinky promise"
Paranoid people have rfid blocking wallets but so many still have work badges on their waist or neck....
-
@Viss @funnymonkey this concerns me with rfid which you can't even turn off...
I know in most cases it's encrypted on stuff like credit cards but like work badges or stuff? Do you think your boss would believe "no I didn't go into the server room and execute that malware off a USB stick? Yeah I know my badge was recorded as opening the door but it wasn't me... Pinky promise"
Paranoid people have rfid blocking wallets but so many still have work badges on their waist or neck....
@vrek @funnymonkey you have to get a lot closer for rfid than you do bt. you can hack bt from across the street
-
@vrek @funnymonkey you have to get a lot closer for rfid than you do bt. you can hack bt from across the street
@Viss @funnymonkey true but if I(hypothetically) stand behind you in line buying lunch couldn't I have a device in my pocket to read your badge? If I'm not mistaken it's similar to the technology used in car keys which is readable like 6 feet away so should be readable waiting in line at McDonald's or subway.
-
@Viss @funnymonkey true but if I(hypothetically) stand behind you in line buying lunch couldn't I have a device in my pocket to read your badge? If I'm not mistaken it's similar to the technology used in car keys which is readable like 6 feet away so should be readable waiting in line at McDonald's or subway.
@vrek @funnymonkey you are mistaken
-
@vrek @funnymonkey you are mistaken
@Viss @funnymonkey what is the approximate distance? Feet? Inches? I thought badge readers intentionally made it so it had to be close to prevent interference from other cards but with a appropriate reader the distance was farther...
-
@Viss
Huh...I remembers running HA with BT scanning and picking up loads of cars BT earlier this year.
And I also believe that some of them probably also register as audio/phone headset for the in car audio
Same applies to some smartwatches
It's the return of smurfing but with more impact (I know I know, different thing but still, was another prime example of "the S in Bluetooth stands for security")
Wait, that also means BT on HA is affected potentially?

-
@da_667 oh i dont mind at all. some rando telling me they dont like my meal is entertaining to me now :D
-
-
@Viss
Huh...I remembers running HA with BT scanning and picking up loads of cars BT earlier this year.
And I also believe that some of them probably also register as audio/phone headset for the in car audio
Same applies to some smartwatches
It's the return of smurfing but with more impact (I know I know, different thing but still, was another prime example of "the S in Bluetooth stands for security")
Wait, that also means BT on HA is affected potentially?

@Aprazeth depends on the chipset of the raspi!
-
@Aprazeth depends on the chipset of the raspi!
Which one? I use multiple Bluetooth adapters (long story, I needed/wanted/desired more range)
I really should check that talk I suppose for the details. Still, interesting. Thanks for pointing this out!
Didn't those Meta AR glasses also have Bluetooth?
... Oh. Oooooh. This'll be "fun". I wonder how much e-waste this will cause (because why patch it if you can just sell a new version?)
-
Which one? I use multiple Bluetooth adapters (long story, I needed/wanted/desired more range)
I really should check that talk I suppose for the details. Still, interesting. Thanks for pointing this out!
Didn't those Meta AR glasses also have Bluetooth?
... Oh. Oooooh. This'll be "fun". I wonder how much e-waste this will cause (because why patch it if you can just sell a new version?)
@Aprazeth i guess we'll hafta wait for the ccc talk to show up on video somewhere
-
@Viss got a tldr on the chipset(s) affected? mostly curious about sena series, will have to watch the talk when im not traveling.
-
@Viss got a tldr on the chipset(s) affected? mostly curious about sena series, will have to watch the talk when im not traveling.
@reverseics sadly no, i guess we hafta wait for the video of the talk to get posted
-
@Aprazeth i guess we'll hafta wait for the ccc talk to show up on video somewhere
@Viss
Oh, absolutely. Though a writeup/paper/blog would be fine as well IMHOIf it's Qualcomm or NXP, that will really hit a lot of devices. Or Texas Instruments from what I suspect
BTW from quick cursory search, the pi models 3,4,5 all seems to use a rendition of BCM43438 (but take that with a grain of salt, am tired and using phone)
-
@Viss
Oh, absolutely. Though a writeup/paper/blog would be fine as well IMHOIf it's Qualcomm or NXP, that will really hit a lot of devices. Or Texas Instruments from what I suspect
BTW from quick cursory search, the pi models 3,4,5 all seems to use a rendition of BCM43438 (but take that with a grain of salt, am tired and using phone)
@Viss
Found the talk:https://media.ccc.de/v/39c3-bluetooth-headphone-jacking-a-key-to-your-phone
Will watch tomorrow but figured you'd want to see it as well
-
@Viss if my phone's configured to _not_ use the headset for calls, all's good, though?
-
Wow, I had no idea....
Testing next time I go to a restaraunt lol -
Wow, I had no idea....
Testing next time I go to a restaraunt lol@maddad bring your rf kit, cuz this ones not just git clone skid hax