Video yükleniyor...

Video Yüklenemedi

Ana Sayfaya Dön

PoC to takeover Android using another Android by exploiting critical Bluetooth vulnerability to install #Metasploit payload without proper Bluetooth pairing (CVE-2023-45866) It still affects Android 10 and bellow #NetHunter

109,001 görüntüleme • 2 yıl önce •via X (Twitter)

11 Yorum

Mobile Hacker profil fotoğrafı
Mobile Hacker2 yıl önce

In a different 0-click exploit scenario: It is also possible to lock-out user from its smartphone by brute-forcing a lock-screen passcodes in a loop to trigger 30 seconds and then 60 seconds timeout. Injected key-presses are typed way faster then user taps to unlock the device.

Mobile Hacker profil fotoğrafı
Mobile Hacker2 yıl önce

How to prevent becoming a victim: 1) For Android 10 and below, the security patch is not available - so, turn off Bluetooth if not used 2) Android 11 and above, install 2023-12-05 security patch (if OEM already pushed it) 3) Don't start Discoverable Mode to disclose MAC address

Youssef (s3c) profil fotoğrafı
Youssef (s3c)2 yıl önce

Is victim interaction required for accept the bluetooth connect with the attacker device?

Mobile Hacker profil fotoğrafı
Mobile Hacker2 yıl önce

No. The exploit enforces the Bluetooth pairing without any victim interaction

Hackhunting profil fotoğrafı
Hackhunting2 yıl önce

Keep up the good work! Hope to see a new PoC video on macOS, iOS and Windows ;)

oufi profil fotoğrafı
oufi2 yıl önce

can you share the script to inject the metasploit payload? thanks

Mobile Hacker profil fotoğrafı
Mobile Hacker2 yıl önce

Since many of Android devices are still vulnerable without option to patch this issue, I decided not to share the PoC script to inject the metasploit payload. I hope you understand my concerns.

Rubayet Hassan - MR_Prey3r profil fotoğrafı
Rubayet Hassan - MR_Prey3r2 yıl önce

🔥

Rumato Estorsky profil fotoğrafı
Rumato Estorsky2 yıl önce

How to detect is metasplpot was installed or not?

moreese profil fotoğrafı
moreese2 yıl önce

🔥 But Target device rooted ?

Mobile Hacker profil fotoğrafı
Mobile Hacker2 yıl önce

It doesn't matter if target is rooted or not. It affects Bluetooth protocol of devices running Android version 10 and below

Benzer Videolar

Beta Blocker just got a big update on Windows and Android. Buckle in 🐾 🎨 New Censor Styles Windows gets a full new lineup of effects: Static, Glitch, RGB Shift, Terminal and lot's more. Android gets also gets most of them too! 🎭 Preset Styles Windows now has themed preset styles, letting you swap between complete censor looks instantly instead of tuning every setting by hand. 🔄 Reverse Censor Reverse Censor is now available on Android, with a new Reverse Strength slider to choose your strength. There’s also a setup popup when enabling it, plus stronger One App coverage through Android Accessibility. On Windows, Reverse Censor is now more consistent across live mode, exports, recording, and virtual cam. 🎯 Per-Detection Overrides Windows now supports per-detection customization, so different detections can have their own style, text, and image instead of all sharing one global setup. 🧹 Fixes & Polish Fixed heavy cursor flickering during active blocking, improved performance for animated effects and larger boxes, and cleaned up several parts of the UI. This update also brings better language access, smoother scrolling, cleaner style controls, updated Android device targeting, support for the new Android settings in packs, cleaner overlay behaviour, and a smoother install/update experience. Oh, and the pack creator program was also updated to support all of the new features, and got a major cleanup, so this is essentially 3 programs getting major updates at the same time 🤗 Enjoy 💕

Isla

71,124 görüntüleme • 1 ay önce