Bluetooth flaws could let hackers spy through your microphone
ID: 75849729-fdb9-51f7-9ba8-2a29f5a3409d
STIX ID: report--75849729-fdb9-51f7-9ba8-2a29f5a3409d
Feed Name: Bleeping Computer
Researchers at ERNW disclosed three vulnerabilities in Airoha Bluetooth SoCs affecting 29 products from multiple vendors (earbuds, headphones, speakers, microphones). The flaws (CVE-2025-20700, CVE-2025-20701, CVE-2025-20702) enable actions ranging from reading currently played media to extracting Bluetooth link keys, initiating arbitrary calls via HFP, retrieving contacts/call history, eavesdropping, and potentially rewriting firmware to enable remote code execution; exploitation requires close proximity and advanced technical skill, and vendors are developing patches.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
