Misc

Part II: Sniffing Bluetooth Auracast

A while ago we started researching Bluetooth Auracast security and wrote about some of our insights. Back then we released the Auracast Hacker’s Toolkit that allowed scanning, listing, and dumping Auracast broadcasts. The main goal was to be able to capture over-the-air packets in order to brute-force the Broadcast Code. Along with this blog post we’re releasing an updated version of the toolkit. This time we implemented proper sniffing capabilities. If you’re interested in the details, feel free to read on. If not, grab your nRF52840 USB dongle, flash the firmware, start sniffing, and load the captures in our Auracast Packet Visualizer.

Continue reading Continue reading