Earlier quoted context omitted.
It really annoys me that changing an IMEI is a crime in many countries. The mobile stack has tracing built in a low level, and is genuinely impossible to use anonymously.
Does it matter that you can't change the IMEI? Your IMSI identifies you anyway.
Student tracks Bluetooth headset wearers by wardriving around Oslo on a bicycle
11–20 of 36 posts
Re: Student tracks Bluetooth headset wearers by wardriving around Oslo on a bicycle
#12Wow, lots of maps in there. He also recorded WiFi SSIDs and mapped which one were still on WEP, or even unencrypted (although my guess is these are public ones like in a coffee shop)
Re: Student tracks Bluetooth headset wearers by wardriving around Oslo on a bicycle
#13In Houston, TX, USA, I noticed antennas placed over individual highway lanes. It turns out they track the Bluetooth signals from cars to determine traffic. They even have a message on their website saying people should be more worried about license plate tracking. https://www.houstontranstar.org/faq/traffictech.aspx On the OEM infotainment center in my vehicle, I can't even find a way to turn off Bluetooth.
Re: Student tracks Bluetooth headset wearers by wardriving around Oslo on a bicycle
#14What's his gdpr policy?
Re: Student tracks Bluetooth headset wearers by wardriving around Oslo on a bicycle
#15Earlier quoted context omitted.
As far as I know the way Bluetooth is implemented in many devices prevents it from working if you change the MAC address all the time. I've experienced this reliance on MAC addresses by trying to use Bluetooth headphones in a dual boot system. Every time I switch operating systems, I need to repair. Same with phones that have been factory reset. Peripherals seem to assume that a device (MAC address) uuniquely identif…
The Bluetooth classic, the variant which is typically used for audio and handsfree use cases, does not support address randomization. However, Bluetooth classic device does not necessarily need to be in discoverable mode for paired device to be able to connect. Typically they are discoverable only when they are set to some kind of pairing mode. Bluetooth LE, which is used for wearables like smart watches etc, support…
Were the headsets all in "discoverable" mode ? Are headsets announcing their MACs even when not in discoverable mode ? Or do they broadcast their MACs in plain text even during a paired&encrypted connection ?
Re: Student tracks Bluetooth headset wearers by wardriving around Oslo on a bicycle
#16In Houston, TX, USA, I noticed antennas placed over individual highway lanes. It turns out they track the Bluetooth signals from cars to determine traffic. They even have a message on their website saying people should be more worried about license plate tracking. https://www.houstontranstar.org/faq/traffictech.aspx On the OEM infotainment center in my vehicle, I can't even find a way to turn off Bluetooth.
It’s not any more, but all it did was ping for MAC addresses at both ends of the stretch. I suppose the data could prove your presence, but it’s the presence of your car really. At least with Apple the MAC gets cycled now.
Re: Student tracks Bluetooth headset wearers by wardriving around Oslo on a bicycle
#17Re: Student tracks Bluetooth headset wearers by wardriving around Oslo on a bicycle
#18Actual paper as a web page: https://www.hegnes.tech/2021/09/01/location-tracking-of-wifi... Wow, lots of maps in there. He also recorded WiFi SSIDs and mapped which one were still on WEP, or even unencrypted (although my guess is these are public ones like in a coffee shop)
Even unencrypted? I am biased here having run an open wifi since they were commercially avilable.
In the beginning, there was this huge concern that wifi would hurt the last mile ISP business. Many started outright forbidding guests using the connection in their terms of service. That didn't work out very well. Calling them insecure and having papers write about how to check that other people couldn't connect to work network worked much better.
My concern is that letting the commercial ISPs set the discourse around encryption, which is better suited for the endpoints than the transmission layer, set us back several years of deploying encryption everywhere. It also made for in my opinion unnecessary concerns around real world implementations of mesh networking.
Note that there are security concerns with running unencrypted wifi as compared to having a shared secret publicly available. An SSL-only world mostly mitigates this, and encrypted DNS is a piece to this story. End user systems could easily have had a no plain text-option among their firewall settings to help get this going. Language matters. Commercial interests are obvious here, the lay persons focus on transmission encryption made this transition harder, and every time someone speaks of insecure last mile transmission we are reminded of it.
Re: Student tracks Bluetooth headset wearers by wardriving around Oslo on a bicycle
#19In Houston, TX, USA, I noticed antennas placed over individual highway lanes. It turns out they track the Bluetooth signals from cars to determine traffic. They even have a message on their website saying people should be more worried about license plate tracking. https://www.houstontranstar.org/faq/traffictech.aspx On the OEM infotainment center in my vehicle, I can't even find a way to turn off Bluetooth.
Re: Student tracks Bluetooth headset wearers by wardriving around Oslo on a bicycle
#20In Houston, TX, USA, I noticed antennas placed over individual highway lanes. It turns out they track the Bluetooth signals from cars to determine traffic. They even have a message on their website saying people should be more worried about license plate tracking. https://www.houstontranstar.org/faq/traffictech.aspx On the OEM infotainment center in my vehicle, I can't even find a way to turn off Bluetooth.
I just removed the bluetooth module from my car.