Pwnd Blaster: Hacking your PC using your speaker without ever touching it
61–70 of 133 posts
Re: Pwnd Blaster: Hacking your PC using your speaker without ever touching it
#62Re: Pwnd Blaster: Hacking your PC using your speaker without ever touching it
#63Re: Pwnd Blaster: Hacking your PC using your speaker without ever touching it
#64>Email from SingCERT stating vendor "do not consider this to be a vulnerability, as it does not present a cybersecurity risk." So wirelessly writing custom firmware to someone else's device that is connected via USB to their computer without even needing to pair is not a security vulnerability. Yea.
Re: Pwnd Blaster: Hacking your PC using your speaker without ever touching it
#65Re: Pwnd Blaster: Hacking your PC using your speaker without ever touching it
#66Re: Pwnd Blaster: Hacking your PC using your speaker without ever touching it
#67Re: Pwnd Blaster: Hacking your PC using your speaker without ever touching it
#68Re: Pwnd Blaster: Hacking your PC using your speaker without ever touching it
#69>Email from SingCERT stating vendor "do not consider this to be a vulnerability, as it does not present a cybersecurity risk." So wirelessly writing custom firmware to someone else's device that is connected via USB to their computer without even needing to pair is not a security vulnerability. Yea.
The reflashing interface being available over Bluetooth is weird but you will need physical access to pair with the speaker AFAIK
Edit: I was wrong, this is a BTLE endpoint that works without pairing. In that case, this is a ridiculous vulnerability. I hope they'll patch it in a way that doesn't take away the ability to run your own software.