What Is Bluesnarfing? How hackers use your Bluetooth-enabled devices to steal data
Bluesnarfing is a type of cyber crime which involves stealing information from Bluetooth-enabled devices such as smartphones, laptops and tablets. The attack exploits vulnerabilities in the device’s security protocols to access confidential data like text messages, emails, passwords and more.
It is an illegal act in many countries, as it is an extreme violation of privacy which needs a proper Internet Crime Investigation.
Marcel Holtmann identified Bluesnarfing in September 2003 while Adam Laurie discovered flaws in authentication or data transfer mechanisms on some Bluetooth-enabled devices later that year. The attacker can use software such as Bluediving for penetration testing of the device’s OBEX protocol with tools like bluebug, blue scarf etc., allowing access to higher-level commands & channels.
To prevent Bluesnarfing attacks users should keep their Bluetooth enabled devices up to date; set it into non discoverable mode when not using; reject pairing requests from unknown sources; enable two factor authentication and change PIN codes every month.