logo

Skullcandy Dime 3 Bluetooth Flaw Lets Nearby Attackers Hijack Audio and Microphone

ID: 5ee7212f-97c7-56a0-88cc-bfa12e3570d6

STIX ID: report--5ee7212f-97c7-56a0-88cc-bfa12e3570d6

Feed Name: GBHackers

Threat Score
50/100

Date Published: 2026-09-10

Date Updated: 2026-09-11

Author: Divya

...
...

Skullcandy Dime 3 (S2DCW) earbuds running firmware 1.0.0.28 contain an unauthenticated Bluetooth Classic pairing flaw (CVE-2025-20701 / VU#859658) that lets nearby attackers silently pair without user interaction, hijack audio streams (A2DP), and potentially capture microphone audio (HFP/HSP); Skullcandy lists firmware 1.0.0.30 as fixed but affected devices cannot be upgraded via the mobile app, leaving users without a practical update path.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.