跳至内容
Advertisement

受到高度评价的扬声器可以通过无线方式被黑客攻击以感染连接的设备

Sound Blaster Katana V2X 的卖家并不认为该行为是漏洞。

schedule 21:00 visibility 14 浏览
受到高度评价的扬声器可以通过无线方式被黑客攻击以感染连接的设备
来源: Ars Technica

Operating system makers take many steps to prevent their wares from accepting commands from remote devices. The safeguards, designed to thwart malicious attacks, typically require hackers to jump through all kinds of hoops to bypass the measures. But what if remote code execution were as simple as being within Bluetooth range of a speaker connected to the targeted device?

It turns out it can, at least when the speaker is a Sound Blaster Katana V2X sold by Singapore-based Creative Technologies. The speaker, which sells for $280, is widely acclaimed with numerous reviews showering praise on its sound and performance.

A PC-pwning proxy

Researcher Rasmus Moorats stumbled on the hack by accident, after he purchased a Katana V2X, a soundbar that connects to PCs, Macs, and Linux devices over USB or Bluetooth. Moorats was curious if he could create a Linux tool that communicated with his speaker. He discovered he could do so through CTP, a proprietary mechanism he guesses is short for Creative Transport Protocol.

Read full article

Comments

newspaper

原文发布于

Ars Technica

open_in_new 阅读全文