Flaws in how 17 models of headphones and speakers use Google’s one-tap Fast Pair Bluetooth protocol have left devices open to eavesdroppers and stalkers.

Link to see devices impacted: https://whisperpair.eu/

  • fort_burp@feddit.nl
    link
    fedilink
    English
    arrow-up
    20
    arrow-down
    1
    ·
    5 hours ago

    GOOGLE DESIGNED THE wireless protocol known as Fast Pair to optimize for ultra-convenient connections: It lets users connect their Bluetooth gadgets with Android and ChromeOS devices in a single tap.

    Bluetooth pairing is not a difficult process, imagine creating a whole new attack vector for that. And of course security was an afterthought. Capitalism is amazing for wasting resources and getting bad results for it.

    • dance_ninja@lemmy.worldOP
      link
      fedilink
      English
      arrow-up
      1
      ·
      edit-2
      35 minutes ago

      I’d agree security needs more attention when developing protocols and products, and I’d also consider Bluetooth simple. That being said, I know plenty of folks that don’t like the Bluetooth pairing process, especially those without a technical background.

      Fast Pair is really convenient, and I’d say it can open the door for a lot of new experiences, but I do wish the developers put more effort into their TARA.