WPair Scanner Released to Detect WhisperPair Flaw in Google’s Fast Pair Protocol
ID: 5cecabfd-9fe5-5b3c-ab69-024a5de0df62
STIX ID: report--5cecabfd-9fe5-5b3c-ab69-024a5de0df62
Feed Name: GBHackers
Threat Score
This report documents CVE-2025-36911 (WhisperPair), a critical authentication-bypass in Google Fast Pair that enables unauthorized pairing, persistent Account Key installation, microphone eavesdropping and location tracking on millions of Bluetooth audio devices; it describes the WPair Android toolkit that can scan for, test, and demonstrate exploitation of vulnerable devices and calls for urgent vendor firmware updates and user patching.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
