logo

Critical flaw lets hackers track, eavesdrop via Bluetooth audio devices

ID: 29c9fe1f-a69f-592f-a2cf-badaf69fd299

STIX ID: report--29c9fe1f-a69f-592f-a2cf-badaf69fd299

Feed Name: Bleeping Computer

Threat Score
75/100

Date Published: 2026-01-15

Date Updated: 2026-04-20

Author: Sergiu Gatlan

...
...

Security researchers disclosed WhisperPair (CVE-2025-36911), a critical flaw in many vendors' implementations of Google's Fast Pair for Bluetooth audio accessories that allows attackers within ~14 meters to forcibly pair with devices, control audio, eavesdrop via microphones, and potentially track victims via Google Find Hub; vendors have been notified and are releasing firmware patches, but many devices may remain unpatched.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.