News: 1701329525

  ARM Give a man a fire and he's warm for a day, but set fire to him and he's warm for the rest of his life (Terry Pratchett, Jingo)

Weak session keys let snoops take a byte out of your Bluetooth traffic

(2023/11/30)


Multiple Bluetooth chips from major vendors such as Qualcomm, Broadcom, Intel, and Apple are vulnerable to a pair of security flaws that allow a nearby miscreant to impersonate other devices and intercept data.

The weaknesses were identified by Daniele Antonioli, an assistant professor at French graduate school and research center EURECOM's software and system security group. He detailed the attack vectors by which the flaws could be exploited in [1]a paper [PDF] titled "BLUFFS: Bluetooth Forward and Future Secrecy Attacks and Defenses."

Antonioli's [2]explanation states that the flaws exist in versions of the Bluetooth Core Specification from 2014's version 4.2 to the [3]February 2023 [4]version 5.4 .

[5]

BLUFFS – for BLUetooth Forward and Future Secrecy – is a set of six distinct attacks. Forward secrecy protects past sessions against key compromise, while future secrecy does the same thing for future sessions.

[6]

[7]

The attacks force the creation of weak session keys, which are used when paired Bluetooth devices try to establish a secure communication channel. Weak keys can be easily broken, allowing the eavesdropper to hijack sessions and snoop on victims' conversations, data, and activities carried out over Bluetooth.

"Our attacks enable device impersonation and machine-in-the-middle across sessions by only compromising one session key," Antonioli explained in his paper. "The attacks exploit two novel vulnerabilities that we uncover in the Bluetooth standard related to unilateral and repeatable session key derivation."

[8]

Antonioli wrote that since the attacks impact Bluetooth at the architectural level, they work regardless of hardware and software variations. The BLUFFS attacks are said to have been tested successfully on 18 Bluetooth devices from Intel, Broadcom, Apple, Google, Microsoft, CSR, Logitech, Infineon, Bose, Dell, and Xiaomi, which use 17 different chips. And they affect both Bluetooth security modes: Secure Connections (SC) and Legacy Secure Connections (LSC).

Devices found to use chips susceptible to BLUFFS include smartphones and wireless earbuds from Apple and Google, and a Lenovo ThinkPad.

[9]A dirty dozen of Bluetooth bugs threaten to reboot, freeze, or hack your trendy gizmos from close range

[10]Billions of Bluetooth gadgets bothered by 'BLURtooth' miscreant-in-the-middle bug

[11]BrakTooth vulnerabilities put Bluetooth users at risk – and some devices are going unpatched

[12]Zephyr OS Bluetooth vulnerabilities left smart devices open to attack

"The BLUFFS attacks have a severe impact on Bluetooth's security and privacy," Antonioli wrote. "They allow decrypting (sensitive) traffic and injecting authorized messages across sessions by re-using a single session key."

The [13]BLUFFS code repo contains Arm code patches and an attack-checking tool that takes packet capture (pcap) files and isolates Bluetooth sessions to calculate session keys and detect BLUFFS attacks. Antonioli has proposed protocol-level countermeasures involving three extra Link Manager Protocol packets and three extra function calls that vendors can implement while awaiting a Bluetooth specification revision that makes session establishment more secure.

According to Antonioli, the vulnerability was responsibly disclosed in October 2022 to the Bluetooth Special Interest Group (SIG), which in turn coordinated the disclosure of [14]CVE-2023-24023 to multiple vendors.

[15]

Google has categorized BLUFFS as a high-severity vulnerability – worthy of a bug bounty – and is said to be working on a fix. Intel also awarded a bounty but designated BLUFFS medium severity. Apple and Logitech reportedly are aware of the issue and working on fixes, while Qualcomm hasn't yet acknowledged the researchers' disclosure.

The Bluetooth SIG, which oversees the short-range wireless specification, has issued [16]a security notice about the vulnerability. The notification advises those implementing Bluetooth to configure their systems to reject connections with weak keys. ®

Get our [17]Tech Resources



[1] https://dl.acm.org/doi/pdf/10.1145/3576915.3623066

[2] https://francozappa.github.io/post/2023/bluffs-ccs23/

[3] https://www.bluetooth.com/press/bluetooth-sig-introduces-wireless-standard-for-electronic-shelf-label-market/

[4] https://www.bluetooth.com/specifications/specs/core-specification-5-4/

[5] https://pubads.g.doubleclick.net/gampad/jump?co=1&iu=/6978/reg_security/research&sz=300x50%7C300x100%7C300x250%7C300x251%7C300x252%7C300x600%7C300x601&tile=2&c=2ZWhrVORC7GQcs@QifcMIdwAAAFE&t=ct%3Dns%26unitnum%3D2%26raptor%3Dcondor%26pos%3Dtop%26test%3D0

[6] https://pubads.g.doubleclick.net/gampad/jump?co=1&iu=/6978/reg_security/research&sz=300x50%7C300x100%7C300x250%7C300x251%7C300x252%7C300x600%7C300x601&tile=4&c=44ZWhrVORC7GQcs@QifcMIdwAAAFE&t=ct%3Dns%26unitnum%3D4%26raptor%3Dfalcon%26pos%3Dmid%26test%3D0

[7] https://pubads.g.doubleclick.net/gampad/jump?co=1&iu=/6978/reg_security/research&sz=300x50%7C300x100%7C300x250%7C300x251%7C300x252%7C300x600%7C300x601&tile=3&c=33ZWhrVORC7GQcs@QifcMIdwAAAFE&t=ct%3Dns%26unitnum%3D3%26raptor%3Deagle%26pos%3Dmid%26test%3D0

[8] https://pubads.g.doubleclick.net/gampad/jump?co=1&iu=/6978/reg_security/research&sz=300x50%7C300x100%7C300x250%7C300x251%7C300x252%7C300x600%7C300x601&tile=4&c=44ZWhrVORC7GQcs@QifcMIdwAAAFE&t=ct%3Dns%26unitnum%3D4%26raptor%3Dfalcon%26pos%3Dmid%26test%3D0

[9] https://www.theregister.com/2020/02/13/dozen_bluetooth_bugs/

[10] https://www.theregister.com/2020/09/11/blurtooth_vulnerability/

[11] https://www.theregister.com/2021/09/01/braktooth_vulnerabilities_put_bluetooth_users/

[12] https://www.theregister.com/2021/06/22/zephyr_os_bluetooth_vulnerabilities/

[13] https://github.com/francozappa/bluffs

[14] https://msrc.microsoft.com/update-guide/vulnerability/CVE-2023-24023

[15] https://pubads.g.doubleclick.net/gampad/jump?co=1&iu=/6978/reg_security/research&sz=300x50%7C300x100%7C300x250%7C300x251%7C300x252%7C300x600%7C300x601&tile=3&c=33ZWhrVORC7GQcs@QifcMIdwAAAFE&t=ct%3Dns%26unitnum%3D3%26raptor%3Deagle%26pos%3Dmid%26test%3D0

[16] https://www.bluetooth.com/learn-about-bluetooth/key-attributes/bluetooth-security/bluffs-vulnerability/

[17] https://whitepapers.theregister.com/



Blutooth security

Pascal Monett

Glad to see that there are people who are keeping the industry on their toes on the matter of security. Unfortunately, automakers are still dragging their feet on that particular question.

So, until Blutooth security is wound up tight enough to force automakers to do it right, I don't see that much will change for consumers.

The specs can be complete and detailed, if the implementation sucks, there will always be vulnerabilities.

Re: Blutooth security

b0llchit

Security is hard, very hard, to do right. And, yes, you must keep all parties on their toes. But, BT security, like most low-level protocol security layers, have always been a problematic proposition (remember the WEP and WPA disasters?). Even with complete detailed specs and compliant implementations, you can have vulnerabilities to be discoverable later on in the specs itself. And the worst is that updating/upgrading/fixing is often an impossible proposition unless you obsolete stuff.

Imagine: "I need to buy a new car. Why? My key got hacked."

The over-reliance on tech is the main vulnerability. Just because it looks and feels nice and comfortable does not mean it is the smart thing to do.

Pfft

W.S.Gosset

>2014

So my XP box is safe !!

Ha harrrrr....

The grave's a fine and private place,
but none, I think, do there embrace.
-- Andrew Marvell