Brought to you as a public service of the Open Spectrum Foundation (Stichting Open Spectrum), Amsterdam - Prague

openspectrum.info logo

NEWS

Bluetooth scanning goes mainstream

by Humphrey Cheung, for TomsNetworking, 31 October:

"In the last week, Network Chemistry and Airmagnet both released free Windows utilities that scan for Bluetooth devices. Several years ago, NetStumbler, a free 802.11 wireless scanning utility, ushered in the 'wardriving' era. With the release of these easy-to-use utilities, are we now on the verge of a 'BlueDriving' age? I interviewed Andrew Lockhart, BlueScanner's author and lead security analyst for Network Chemistry, to find out how he made the program and if we should worry about Bluetooth vulnerabilities.

"...In addition to writing BlueScanner, [Lockhart] has written a white paper on Bluetooth vulnerabilities and was the author of the O'Reilly book Network Security Hacks. He told us that BlueScanner wasn't that hard to write... and most of the Bluetooth scanning [is] handled by Microsoft's Bluetooth API and drivers. He told us that Bluetooth functionality is already there in Windows, adding, 'We just provide the interface to make it more friendly.'

"Bluetooth scanning is nothing new, as Linux scanners have been available for a few years. Earlier in the year, TomsNetworking brought you a two part series on how to build a 'BlueSniper' long-range Bluetooth gun. But this the first time that someone has written a Netstumbler-like program for finding Bluetooth devices with Windows-based systems.

"BlueScanner easily finds Bluetooth devices that have been placed in 'discoverable' mode and displays the device name, physical address, device type (such as cellphone or computer) and available services...

"In inital testing of BlueScanner, Lockhart found Bluetooth devices in places that he expected and some that he didn't, saying, 'I initially didn't expect to find many devices. Sure there were many in the airports, where you have a lot of business people, but I didn't expect them to be in restaurants...'

"I played with BlueScanner in the TG Publishing office and also in the press room of Blizzcon, Blizzard's recent gaming convention focusing on World of Warcraft. In our office, BlueScanner immediately found several devices including my Blackberry and another editor's T610 phone. Surprisingly, it also picked up a hands-free Bluetooth headset in a BMW car parked about 75 feet away. I didn't expect a Bluetooth signal to go that far and penetrate several walls. At Blizzcon, BlueScanner found six devices in thirty seconds.

"So why release such a program to the public? ...Lockhart isn't concerned about ill-intentioned people using BlueScanner, saying, 'We are only here to increase awareness and the nefarious people already knew about this stuff way way long ago.' He also told us that he wants people to realize just how many devices are in the environment.

"Lockhart also said that he has found many Bluetooth devices in conference rooms and around the office. He has even sent messages to people's phones telling them that their Bluetooth is on. Some people were shocked and Lockhart adds, 'They didn't know where this message was coming from. The phone beeps and they pull it out and see something on the screen.'

"What's next for Lockhart? He is pretty tight-lipped about future improvements of BlueScanner, but he has been playing around with a $17,000 Bluetooth sniffer that can pull raw Bluetooth data from the air. While the price tag may seem high, Lockhart told us that he has seen the sniffers sell for as low as $1600 on Ebay. With the sniffer, he has discovered that a popular brand of phone / PDA syncs via Bluetooth in clear text. Lockhart told us the model, but said, 'Please don't tell anyone because I want to call the company first.'

"So is it time to start worrying about Bluetooth? 'The normal person doesn't have to worry much, but it could be a concern for high-profile people,' says Lockhart. He explained that it might be possible to monitor a person by tracking their phone, but the average person is probably OK if they keep the phone in non-discoverable mode. Lockhart summed it up simply by saying, 'If you carry sensitive data, you may want to check if you have Bluetooth in discoverable mode and if you don't need Bluetooth, just turn it off. Just use common sense.' "

[: 31 October 2005]

Click here for the LATEST HEADLINES

Recent News...

China plans "comprehensive management information systems based on RFID" (31 October)

Knysa: "first African town to become fully WiFi connected" (28 October)

Japanese, US research on WLAN airships (27 October)

Infonetics: Voice over WLAN deployments to triple by 2007 (26 October)

"A Whole New Wireless Order" (25 October)

Leading companies support new IEEE 802.11n standard (25 October)

Nikon introducing first digicams with Wi-Fi built in (24 October)

Airships tested for wide-area wireless broadband (20 October)

Free Webcast Series: BlackBerry for WLANs (19 October)

Reality check for RFID (19 October)

Reality check for wireless sensor nets (19 October)

802.11n standard published (18 October)

European Commission presents spectrum strategy (29 September)

Free hotspot service launches in Europe (29 September)

BBC to broadcast WSIS/ICT4D debate (29 September)

India's ICT industry has "mixed feelings" about Bluetooth (29 September)

Scientific American feature on "Smart Wi-Fi" (28 September)

Global hotspot census nearing 100,000 (28 September)

Iranian builds world's largest hotspot, in rural Oregon (26 September]

Wireless auto tire pressure monitoring from Renault (25 September)

Nabaztag says, "I'm a newborn bunny..." (25 September)

Wireless makes endoscopy painless (25 September)

First live demo of a location-aware VoWiFi emergency dial-up solution (22 September)

Indian mesh protocol boosts Wi-fi range, throughput (20 September)

"Mesh Comes to WiMax" (19 September)

"Nano radios" could replace circuit wires (17 September)

Europe moves forward on UWB (15 September)

South Korea: UWB guidelines expected soon (14 September)

Mandate "cognitive" techniques for unlicensed UWB, Ofcom tells CEPT (13 September)

NeighborNode builds community with Wi-Fi sharing (12 September)

Hewlett-Packard Pushing Wireless Convergence of PC and TV (10 September)

Japan releases draft rules for unlicensed UWB (10 September)

"Mobile Users Want Location-Aware Services" (10 September)

"Wireless Device Tracks Teens' Vehicles" (7 September)

ITU consultation on spectrum management for broadband promotion (6 September)

Video of spectrum rights/reforms panel at Aspen Summit now online (6 September)

Bahrain imposes "temporary" Wifi licenses (4 September)

Mexico authorizing "bands of free use" for communication and Internet access (1 September)

Visit our News Archive for additional stories.

To receive the openspectrum.info newsfeed by email, enter your email address:

(Email subscriptions managed by FeedBurner)