Hacker Newsnew | past | comments | ask | show | jobs | submitlogin
Race Toolkit (github.com/auracast-research)
4 points by sva_ 53 days ago | hide | past | favorite | 1 comment


This was just shown at the 39C3. Common (unpached) Bluetooth headsets using Airoha's SoCs can be completely taken over by any unauthenticated bystander with a Linux laptop. (CVE-2025-20700, CVE-2025-20701, CVE-2025-20702)

This includes firmware dumps, user preferences, Bluetooth Classic session keys, current playing track, ...

> Examples of affected vendors and devices are Sony (e.g., WH1000-XM5, WH1000-XM6, WF-1000XM5), Marshall (e.g. Major V, Minor IV), Beyerdynamic (e.g. AMIRON 300), or Jabra (e.g. Elite 8 Active).

It was presented here https://fahrplan.events.ccc.de/congress/2025/fahrplan/event/...

You can watch the pre-recorded talk here:

https://streaming.media.ccc.de/39c3/relive/887fe87e-6ef2-5d9...




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: