Coros Pace 3, Other Models Affected by Flaw That Lets Malicious Users Access Data, Snoop on Notifications

Coros says that iOS users are fully protected, but some Android users will be at risk in certain situations until patches are rolled out

Advertisement
Written by David Delima | Updated: 2 July 2025 12:42 IST
Highlights
  • Coros has acknowledged security flaws that affect several smartwatches
  • The Bluetooth security flaw allows hackers to view personal data
  • Coros will begin rolling out security updates later this month

Coros Pace 3 (pictured) and other models are affected by the vulnerability

Photo Credit: Coros

Several Coros smartwatch models have a Bluetooth vulnerability that allows a malicious user within range of the wearable to view personal data, read all smartphone notifications, or even reset the device. The security flaws were discovered by a German IT firm, when the Coros Watch 3 was paired with an Android smartphone. The company has acknowledged the issue and says that it is working on rolling out updates to resolve the security flaws, and the first updates will roll out to newer models by the end of July.

Coros Responds to Security Flaws Affecting Multiple Smartwatch Models

A blog post by SySS GmbH, the firm that discovered the flaws affecting the Coros Pace 3, provides a detailed explanation of the Bluetooth security flaw affecting the smartwatch. It allows an unauthenticated user who was within range of a Coros watch to take control of an unpatched wearable, access private information on the device, and even "send" fake notifications to the smartwatch.

Injecting notifications on a Coros Pace 3
Photo Credit: SySS GmbH

Advertisement

 

As long as the attacker is within Bluetooth range (around 10m for most devices), they would be able to access all data on a user's Coros account on an Android handset. They would also be able to spy on a user's smartphone notifications, which are received and displayed on the smartwatch.

Advertisement

A malicious user would also be able to modify the configuration of the smartwatch, factory reset it (in the middle of a workout), cause it to crash, or causing data loss during an ongoing running activity.

Advertisement

The firm found that all of the security flaws mentioned above can be exploited when Coros smartwatches are connected to some Android phones. However, iPhone users are protected as iOS encrypts the Bluetooth connection by default.

Coros published a support article that acknowledged the issue, and said that users should pair their device to their Android handset in a "non-public setting". Users should also force-quit the Coros app after using it, according to the company.

Advertisement

Software fixes for this security flaw will roll out to the Pace 3, Pace Pro, Apex 2, Apex 2 Pro, Vertix 2, Vertix 2S, and Dura by the end of July. Meanwhile, the Coros Pace 2, Apex (42mm, 46mm) \m ad\bd Vertix 1 will also be updated "shortly after", but there's no word on these fixess will be released to the public.

 

Get your daily dose of tech news, reviews, and insights, in under 80 characters on Gadgets 360 Turbo. Connect with fellow tech lovers on our Forum. Follow us on X, Facebook, WhatsApp, Threads and Google News for instant updates. Catch all the action on our YouTube channel.

Advertisement
Popular Mobile Brands
  1. Starlink Will Offer Unlimited Satellite Internet in India at This Price
  2. OnePlus 15R Roundup: Price in India, Specs and Everything We Know So Far
  3. OnePlus Pad Go 2 First Impressions
  4. Vivo S50, Vivo S50 Pro Mini Set to Launch on This Date
  5. Xiaomi 17 Listed on Geekbench, Here's When It Might Launch in India
  6. Migration Tools and AI Push May Help Chinese Brands Win iPhone Users
  7. Battlefield 6's Next Season 1 Update Arrives This Week: All You Need to Know
  8. The Boys Season 5 OTT Release Date: When and Where to Watch the Final Season Online?
  1. Scientists Unveil Screen That Produces Touchable 3D Images Using Light-Activated Pixels
  2. SpaceX Expands Starlink Network With 29-Satellite Falcon 9 Launch
  3. Nancy Grace Roman Space Telescope Fully Assembled, Launch Planned for 2026–2027
  4. Hell’s Paradise Season 2 OTT Release Date: When and Where to Watch it Online?
  5. Francis Lawrence’s The Long Walk (2025) Now Available for Rent on Prime Video and Apple TV
  6. Nicolas Cage Starrer Spider-Noir Set to Release on Prime Video in 2026
  7. Devi Chowdhurani OTT Release Date: When and Where to Watch Srabanti Chatterjee’s Period Drama Online?
  8. OnePlus Pad Go 2 Key Specifications and Sale Date Revealed; Will Feature Dimensity 7300-Ultra SoC
  9. OpenAI Claims Increased Enterprise Usage Amid CEO’s Code Red Declaration
  10. Samsung's One UI 8.5 Beta Update Rolls Out to Galaxy S25 Series in Multiple Regions
Gadgets 360 is available in
Download Our Apps
Available in Hindi
© Copyright Red Pixels Ventures Limited 2025. All rights reserved.