Apple's Find My Network Flaw Enables Silent AirTag-Like Tracking of Any Bluetooth Device

A fix for the 'nRootTag' vulnerability could take years to be implemented, according to researchers.

Advertisement
Written by David Delima | Updated: 27 February 2025 13:58 IST
Highlights
  • Researchers have found a flaw in Apple's Find My network
  • It allows hackers to track the location of several Bluetooth devices
  • Apple has yet to roll out a fix for the Find My network vulnerability

The researchers reached out to Apple to inform the company about the flaw in July 2024

Photo Credit: Apple

Apple's Find My network can be used by hackers to track any device with Bluetooth connectivity by turning them into homing beacons like the company's AirTag, according to researchers. A malicious user could trick Apple's Find My network into tracking a smartphone, laptop, or any internet of things (IoT) device using its Bluetooth address, by tricking the network into thinking it is an AirTag. The exploit can be used to pinpoint the location of a device, or track it as it moves across a specific area.

Tricking the Find My Network Into Tracking Ordinary Bluetooth Devices

According to George Mason University researcher Junming Chen, the Apple's Find My network contains a Bluetooth vulnerability that would allow a hacker to silently track a device by using its Bluetooth address. Dubbed 'nRootTag', this attack tricks the Find My network into thinking that a device is a lost AirTag.

A team of four researchers led by Chen discovered that the nRootTag attack could be used to identify the location of a Bluetooth connected device with an accuracy of 10 feet (3.05 metres). It could also be used to locate a larger object, such as an e-bike, and track it as it moved around a city. The team also highlighted that the flaw could also be misused to identify the location of smart locks that have been hacked, enabling attackers to easily find them.

Advertisement

While Apple protects user privacy on an AirTag by changing its Bluetooth address using a cryptographic key, this process requires elevated privileges. In order to circumvent this, the researchers used hundreds of GPUs to identify a key that is compatible with the Bluetooth address of a device, and making it adapt to the address.

Advertisement

The use of several rented GPUs offers an affordable method to quickly identify the location of a device "within minutes". nRootTag has a 90 percent success rate, according to the researchers, who say that advertising companies could avoid the use of GPS and track or profile users with this technique.

While Apple's network was designed to track the company's own devices, the researchers were able to use nRootTag to track mobile devices, laptops, IoT devices, smart TVs, and even virtual reality (VR) headsets. They will present these findings at the USENIX Security Symposium in August.

Advertisement

The researchers contacted Apple about the security flaw in July 2024, and the company acknowledged their contribution in the release notes for iOS 18.2, which was released in December (see the Proximity section).

However, a proper fix for the issue — whenever it is released by Apple — would likely require an update to the Find My network, and might be delayed by users who defer the installation of software updates on their devices. The researchers state that the vulnerability in the Find My network could exist for years, until these outdated devices slowly "die out".

Advertisement

Users can take some precautions to keep their devices safe from tracking, such as being judicious while granting apps access to the Bluetooth permission or making sure that their devices are up-to-date. The researchers also recommend the use of privacy focused operating systems that could potentially protect user privacy.

 

Get your daily dose of tech news, reviews, and insights, in under 80 characters on Gadgets 360 Turbo. Connect with fellow tech lovers on our Forum. Follow us on X, Facebook, WhatsApp, Threads and Google News for instant updates. Catch all the action on our YouTube channel.

Advertisement

Related Stories

Popular Mobile Brands
  1. Top OTT Releases of the Week: Kantara Chapter 1, Lokah Chapter 1, Idli Kadai, and More
  2. iQOO 15 Indian Variant Allegedly Surfaces on Geekbench Ahead of Launch
  3. Vivo X300 Series With 200-Megapixel Zeiss Camera Launched Globally
  4. Gemini vs Perplexity vs ChatGPT: Which Free AI Plan Is Best For You
  5. Samsung Galaxy Book 6 Pro Allegedly Listed on Geekbench With These Specs
  6. Vivo X300 Could be Available in This India-Exclusive Colourway
  7. Realme GT 8 Pro Display Specifications Teased Ahead of India Launch
  8. Realme GT 8 Pro India Launch Date Leaked: Here's When It Might Arrive
  1. OpenAI Upgrades Sora App With Character Cameos, Video Stitching and Leaderboard
  2. Samsung's AI-Powered Priority Notifications Spotted in New One UI 8.5 Leak
  3. Samsung Galaxy S26 Series Could Feature Model Slimmer Than Galaxy S25 Edge With New Name
  4. iQOO 15 Colour Options Confirmed Ahead of November 26 India Launch: Here’s What We Know So Far
  5. Vivo X300 to Be Available in India-Exclusive Red Colourway, Tipster Claims
  6. OpenAI Introduces Aardvark, an Agentic Security Researcher That Can Find and Fix Vulnerabilities
  7. Xiaomi 17, Poco F8 Series and Redmi Note 15 Listed on IMDA Certification Website Hinting at Imminent Global Launch
  8. CERT-In Warns Google Chrome Users of High-Risk Flaws on Windows, macOS, and Linux
  9. Kantara: A Legend Chapter 1 Now Streaming Online: Know Everything About Plot, Streaming, Cast, and More
  10. MediaTek Dimensity 8500 SoC Architecture, Specifications Leaked; Could Launch Soon
Gadgets 360 is available in
Download Our Apps
Available in Hindi
© Copyright Red Pixels Ventures Limited 2025. All rights reserved.