logo

Skullcandy Dime 3 earbuds expose users to Bluetooth hijacking

ID: 62dbc458-803b-5d01-b22b-92dd7327e35f

STIX ID: report--62dbc458-803b-5d01-b22b-92dd7327e35f

Feed Name: Bleeping Computer

Threat Score
70/100

Date Published: 2026-09-09

Date Updated: 2026-09-10

Author: Bill Toulas

...
...

CERT/CC warns that Skullcandy Dime 3 earbuds running firmware 1.0.0.28 are affected by CVE-2025-20701 in the Airoha Bluetooth Audio SDK, allowing nearby attackers to pair without authentication and hijack audio/microphone streams; Airoha and vendors released fixes (Skullcandy firmware 1.0.0.30), but many users cannot update existing devices, leaving them exposed.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.