Your Devices May Be Vulnerable to BIAS Bluetooth Attack: Report

BIAS Bluetooth attack can let an attacker connect to a target device without needing any authentication.

Advertisement
By Vineet Washington | Updated: 20 May 2020 18:59 IST
Highlights
  • BIAS attack exploits vulnerability in Bluetooth standard
  • All Bluetooth devices are vulnerable to this attack
  • Bluetooth SIG was made aware of this in December 2019

BIAS exploits Bluetooth Classic to gain access to another device

A Bluetooth flaw could leave your phone at risk and all devices appear to have this vulnerability. Researchers found a vulnerability they named Bluetooth Impersonation AttackS (BIAS) that can allow someone to gain access to a target device (such as a smartphone or laptop) by impersonating the identity of a previously paired device. The researchers found the vulnerability in December 2019, and informed the Bluetooth Special Interest Group (Bluetooth SIG) — the standards organisation that that oversees Bluetooth — about this. However, the issue has not been fully remedied as Bluetooth SIG has so far “encouraged” fixes from manufacturers, and recommended that users get the latest updates for their devices.

The research team said that the attack was tested against a wide range of devices, including smartphones from manufacturers like Apple, Samsung, Google, Nokia, LG, and Motorola, laptops from HP, Lenovo the Apple MacBook, headphones from Philips and Sennheiser, as well as iPads. They tried a BIAS attack on 31 Bluetooth devices with 28 unique Bluetooth chips from Apple, Qualcomm, Intel, Cypress, Broadcom, and others. All of the 31 attacks were successful. “Our attacks allow to impersonate Bluetooth master and slave devices and establish secure connections without knowing the long term key shared between the victim and the impersonated device,” the researchers stated. They added that this attack exploits lack of integrity protection, encryption, and mutual authentication in the Bluetooth standard.

What is BIAS?

Researchers Daniele Antonioli, Kasper Rasmussen, and Nils Ole Tippenhauer have noted that BIAS is a vulnerability found in the Bluetooth Basic Rate Extended Data Rate (BR/EDR) wireless technology, also called Bluetooth Classic. This technology is the standard for a wireless personal area network. A Bluetooth connection usually involves a connection between a host and a client device. When two devices are paired for the first time, a key or address is generated, which allows following Bluetooth connections between the two devices to be seamless. Even though the Bluetooth standard provides security features to protect against eavesdropping and/or manipulation of information, a BIAS attack can impersonate this key or address, and connect to a device without the need of authentication, since it would appear as if it had been previously paired.

Advertisement

Once connected, the attacker can gain access to a target device over a Bluetooth connection. This in turn can open up a number of possibilities for any kind of malicious attack on the device that has been targeted by BIAS. Additionally, the researchers noted that since the attack is standard compliant, it is effective against Legacy Secure Connections and Secure Connections, meaning all devices are vulnerable to this attack.

Advertisement

However, for this attack to be successful, an attacking device would need to be within wireless range of a vulnerable Bluetooth device that has previously established a BR/EDR bonding with a remote device with a Bluetooth address known to the attacker, Bluetooth SIG noted.

What can users do?

As per the Github page of the BIAS attack, this vulnerability was pointed out to Bluetooth Special Interest Group (Bluetooth SIG) – the organisation that oversees the development of Bluetooth standard, in December 2019. However, at the time of disclosure, the research team tested chips from Cypress, Qualcomm, Apple, Intel, Samsung, and CSR. It was found that all these devices were vulnerable to the BIAS attack. The researchers stated that some vendors might have implemented workarounds on their devices so if a user's device was not updated after December 2019, it may be vulnerable.

Advertisement

Bluetooth SIG also gave a statement in response to this vulnerability and said that it is working on a remedy. Bluetooth SIG is updating the Bluetooth Core Specification to clarify when role switches are permitted, to require mutual authentication in legacy authentication and to recommend checks for encryption-type to avoid a downgrade of secure connections to legacy encryption. These changes will be introduced into a future specification revision, it said.

It added, "The Bluetooth SIG is also broadly communicating details on this vulnerability and its remedies to our member companies and is encouraging them to rapidly integrate any necessary patches. As always, Bluetooth users should ensure they have installed the latest recommended updates from device and operating system manufacturers."


Which is the bestselling Vivo smartphone in India? Why has Vivo not been making premium phones? We interviewed Vivo's director of brand strategy Nipun Marya to find out, and to talk about the company's strategy in India going forward. We discussed this on Orbital, our weekly technology podcast, which you can subscribe to via Apple Podcasts or RSS, download the episode, or just hit the play button below.

 

For the latest tech news and reviews, follow Gadgets 360 on X, Facebook, WhatsApp, Threads and Google News. For the latest videos on gadgets and tech, subscribe to our YouTube channel. If you want to know everything about top influencers, follow our in-house Who'sThat360 on Instagram and YouTube.

Advertisement

Related Stories

Popular Mobile Brands
  1. Amazon Sale 2025: OnePlus 13s, OnePlus Nord 5 Deals Revealed
  2. iPhone 16 Pro, iPhone 16 Pro Max Offers Listed Ahead of Flipkart Sale
  3. OnePlus 13 Gets Big Price Cut at Amazon Great Indian Festival Sale
  4. Amazon Sale: iPhone 15 Price to Drop Below Rs. 45,000
  5. Samsung Galaxy S24 Ultra Deal Revealed Ahead of Amazon GIF Sale
  6. Meta's Ray-Ban Display Smart Glasses Get a Screen, Brings New Features
  7. Redmi 15R 5G With MediaTek Dimensity 6300 SoC, 6,000mAh Battery Launched
  8. CMF Headphone Pro India Launch Set for This Date
  9. iPhone 17 Series, iPhone Air Pre-Order Discounts Announced by Retailers in India
  10. Demon Slayer: Infinity Castle OTT Release: Know When and Where to Watch it Online?
  1. Samsung Galaxy S24 Ultra to Be Available at Its Lowest Price During Amazon Sale
  2. How to Buy the iPhone 15 for Under Rs. 45,000 in This Amazon Great Indian Festival 2025 sale
  3. Meta Ray-Ban Display Smart Glasses Launched With a Screen and Meta Neural Band
  4. Ray-Ban Meta Gen 2 Smart Glasses Launched With 2X Battery Life, 3K Ultra HD Camera
  5. Oakley Meta Vanguard Smart Glasses With a Centrally-Placed Camera Launched, Aimed at Athletes
  6. NASA’s Artemis Prepares Crews for Future Mars Missions
  7. JWST Identifies Compact, Metal-Poor Star-Forming Region Tracing Back to Early Universe
  8. Researchers Develop Method to Predict Rare Green Auroral Events on Mars
  9. Kanyakumari Now Streaming on This OTT Platform: Know Everything About This Telugu Romance Drama
  10. Demon Slayer: Infinity Castle OTT Release: Know When and Where to Watch it Online?
Gadgets 360 is available in
Download Our Apps
Available in Hindi
© Copyright Red Pixels Ventures Limited 2025. All rights reserved.