A potential security issue has been discovered by cybersecurity researchers that has the capability to affect more than one billion devices.
According to researchers at the cybersecurity firm Tarlogic994 Archives a hidden command has been foundcoded into a bluetooth chip installed in devices around the world. This secret functionality can be weaponized by bad actors and, according to the researchers, used as an exploit into these devices.
Using these commands, hackers could impersonate a trusted device and then connect to smartphones, computers, and other devices in order to access information stored on them. Bad actors can continue to utilize their connection to the device to essentially spy on users.
The bluetooth chip is called ESP32 and is manufactured by the China-based company Espressif. According to researchers, the ESP32 is "a microcontroller that enables WiFi and Bluetooth connection." In 2023, Espressif reported that one billion units of its ESP32 chip had been sold globally. Millions of IoT devices like smart appliances utilize this particular ESP32 chip.
Tarlogic researchers say that this hidden command could be exploited, which would allow "hostile actors to conduct impersonation attacks and permanently infect sensitive devices such as mobile phones, computers, smart locks or medical equipment by bypassing code audit controls." Tarlogic says that these commands are not publicly documented by Espressif.
Researchers with Tarlogic developed a new Bluetooth driver tool in order to aid in Bluetooth-related security research, which enabled the security firm to discover a total of 29 hidden functionalities that could be exploited to impersonate known devices and access confidential information stored on a device.
According to Tarlogic, Espressif sells these bluetooth chips for roughly $2, which explains why so many devices utilize the component over higher costing options.
As BleepingComputerreports, the issue is being tracked as CVE-2025-27840.
Topics Bluetooth Cybersecurity
A Violent EnterpriseWe Decide Our Own FatePlanet BloombergInvitation to a FloggingThe New NeurastheniaForty-Four Thoughts for Cecil TaylorTatar RaspberryRomania MexicalliBad SeedsRevolt of the Super-EmployeesGoing Beyond the LawFresh HellEast Berlin StoriesThe Fifth ShotSexual Rights, Sexual WrongsThe green comet will zip out of the sky soon. You can still catch a glimpse.A Year in the FaceBeautiful LiesQuestions, Questions, QuestionsThe New Neurasthenia iPhone 8 still manages to draw substantial crowd, despite the iPhone X that's coming These terrible episodes of 'Star Trek' are everything we love about 'Star Trek' PSA: Anyone can record and save your snaps forever on iOS 11 Jimmy Kimmel tears apart his critics on health care bill Twitter to testify on Russian bots as politicians take aim at big tech Google's HTC buyout could be the beginning of the end for the iPhone In one day, we saw two very different sides of esports Fireball, the unofficial beverage of regret, is now available in bagel form Google taps the Moto X4 as the first Android One phone for Project Fi 'Overwatch' League to launch in December with 12 teams Here's 27.6 billion reasons why Facebook wants to regulate itself Bose launches new flagship headphones with Google Assistant Now there's a Porsche superyacht because regular yachts are for suckers iOS 11 makes sexting on Snapchat riskier than ever. That's why you need the next update. Looks like Damon Lindelof is full steam ahead on that 'Watchmen' show for HBO A dark 'Sabrina the Teenage Witch' TV show is in the works at The CW Jimmy Kimmel's baby may save healthcare for 30 million people Nest launches a home security system and connected doorbell Big fat Stratolaunch plane tests all six of its engines Marilyn Manson interview goes viral and this journalist deserves a gold medal
2.9902s , 8204.515625 kb
Copyright © 2025 Powered by 【1994 Archives】,Unobstructed Information Network