11/08/2020

ToothPicker: Apple Picking in the iOS Bluetooth Stack

Dennis Heinze, Jiska Classen, Matthias Hollick

Keywords:

Abstract: Bluetooth enables basic communication prior to pairing as well as low-energy information exchange with multiple devices. The ecosystem is extensively using Bluetooth for coordination tasks that run in the background and enable seamless device handover. To this end, established proprietary protocols. Since their implementation is closed-source and over-the-air fuzzers are very limited, these protocols are largely unexplored and not publicly tested for security. In this paper, we summarize the current state of 's Bluetooth protocols. Based on this, we build the in-process fuzzer and evaluate the implementation security of these protocols. We find a zero-click Remote Code Execution (RCE) that was fixed in and simple crashes.

 0
 0
 0
 0
This is an embedded video. Talk and the respective paper are published at WOOT 2020 virtual conference. If you are one of the authors of the paper and want to manage your upload, see the question "My papertalk has been externally embedded..." in the FAQ section.

Comments

Post Comment
no comments yet
code of conduct: tbd

Similar Papers