Vulnerability In The Ctkd Of Devices Supporting Both Bluetooth Br Edr And Le Cybers Guards
Dubbed BLURtooth, researchers at the École Polytechnique Fédérale de Lausanne (EPFL) in Switzerland and Purdue University had defined the problem independently. The vulnerability is related to CTKD in implementations where the Bluetooth Standards 4.0 through 5.0 allow pairing and encryption for both Low Energy (LE) and Basic Rate / Enhanced Data Rate (BR / EDR) Implementing CTKD in older versions of the specification “can allow access escalation between the two transports with non-authenticated encryption keys that replace authenticated keys or weaker encryption keys that replace stronger encryption keys,” explains the Bluetooth Special Interest Group (SIG)....