logo

WPair Scanner Released to Detect WhisperPair Flaw in Google’s Fast Pair Protocol

ID: 5cecabfd-9fe5-5b3c-ab69-024a5de0df62

STIX ID: report--5cecabfd-9fe5-5b3c-ab69-024a5de0df62

Feed Name: GBHackers

Threat Score
78/100

Date Published: 2026-01-20

Date Updated: 2026-04-22

Author: Divya

...
...

This report documents CVE-2025-36911 (WhisperPair), a critical authentication-bypass in Google Fast Pair that enables unauthorized pairing, persistent Account Key installation, microphone eavesdropping and location tracking on millions of Bluetooth audio devices; it describes the WPair Android toolkit that can scan for, test, and demonstrate exploitation of vulnerable devices and calls for urgent vendor firmware updates and user patching.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.