Discover ANY AI to make more online for less.

select between over 22,900 AI Tool and 17,900 AI News Posts.


Flaw in 17 Google Fast Pair audio devices could let hackers eavesdrop
Flaw in 17 Google Fast Pair audio devices could let hackers eavesdrop

Now would be a good time to update all your Bluetooth audio devices. On Thursday, Wired reported on a security flaw in 17 headphone and speaker models that could allow hackers to access your devices, including their microphones. The vulnerability stems from a faulty implementation of Google's one-tap (Fast Pair) protocol.Security researchers at Belgium's KU Leuven University Computer Security and Industrial Cryptography group, who discovered the security hole, named the flaw WhisperPair. They say a hacker within Bluetooth range would only require the accessory's (easily attainable) device model number and a few seconds."You're walking down the street with your headphones on, you're listening to some music. In less than 15 seconds, we can hijack your device," KU Leuven researcher Sayon Duttagupta told Wired. "Which means that I can turn on the microphone and listen to your ambient sound. I can inject audio. I can track your location." The researchers notified Google about WhisperPair in August, and the company has been working with them since then.Fast Pair is supposed to only allow new connections while the audio device is in pairing mode. (A proper implementation of this would have prevented this flaw.) But a Google spokesperson told Engadget that the vulnerability stemmed from an improper implementation of Fast Pair by some of its hardware partners. This could then allow a hacker's device to pair with your headphones or speaker after it's already paired with your device."We appreciate collaborating with security researchers through our Vulnerability Rewards Program, which helps keep our users safe," a Google spokesperson wrote in a statement sent to Engadget. "We worked with these researchers to fix these vulnerabilities, and we have not seen evidence of any exploitation outside of this report's lab setting. As a best security practice, we recommend users check their headphones for the latest firmware updates. We are constantly evaluating and enhancing Fast Pair and Find Hub security."The researchers created the video below to demonstrate how the flaw worksIn an email to Engadget, Google said the steps required to access the device’s microphone or audio are complex and involve multiple stages. The attackers would also need to remain within Bluetooth range. The company added that it provided its OEM partners with recommended fixes in September. Google also updated its Validator certification tool and its certification requirements.The researchers say that, in some cases, the risk applies even to those who don't use Android phones. For example, if the audio accessory has never been paired with a Google account, a hacker could use WhisperPair to not only pair with the audio device but also link it to their own Google account. They could then use Google's Find Hub tool to track the device's (and therefore your) location.Google said it rolled out a fix to its Find Hub network to address that particular scenario. However, the researchers told Wired that, within hours of the patch’s rollout, they found a workaround.The 17 affected devices are made by 10 different companies, all of which received Google Fast Pair certification. They include Sony, Jabra, JBL, Marshall, Xiaomi, Nothing, OnePlus, Soundcore, Logitech and Google. (Google says its affected Pixel Buds are already patched and protected.) The researchers posted a search tool that lets you see if your audio accessories are vulnerable.In a statement sent to Engadget, OnePlus said it's investigating the issue and "will take appropriate action to protect our users' security and privacy." We also contacted the other accessory makers and will update this story if we hear back.The researchers recommend updating your audio devices regularly. However, one of their concerns is that many people will never install the third-party manufacturer's app (required for updates), leaving their devices vulnerable.The full report from Wired has much more detail and is worth a read.This article originally appeared on Engadget at https://www.engadget.com/cybersecurity/flaw-in-17-google-fast-pair-audio-devices-could-let-hackers-eavesdrop-194613456.html?src=rss

Rating

Innovation

Pricing

Technology

Usability

We have discovered similar tools to what you are looking for. Check out our suggestions for similar AI tools.

The best fast chargers for 2025
The best fast chargers for 2025

<p>These days, phone charging isn’t just about plugging in and waiting — it’s about speed, efficiency and convenience. With so many devices supporting fast charging, the right accessories [...]

Match Score: 63.37

Google I/O 2025 recap: AI updates, Android XR, Google Beam and everything else announced at the annual keynote
Google I/O 2025 recap: AI updates, Android XR, Google Beam and everything e

<p>Today is one of the most important days on the tech calendar as Google kicked off its I/O developer event with its annual keynote. As ever, the company had many updates for a wide range of pr [...]

Match Score: 59.65

How to pair AirPods with any device
How to pair AirPods with any device

<p>AirPods work most smoothly with Apple hardware, but they also connect reliably to Android phones, Windows laptops and other Bluetooth devices. The pairing process depends on the platform in u [...]

Match Score: 58.54

venturebeat
Grok 4.1 Fast's compelling dev access and Agent Tools API overshadowed

<p>Elon Musk&#x27;s frontier generative AI startup xAI<a href="https://x.ai/news/grok-4-1-fast"> formally opened developer access to its Grok 4.1 Fast models</a> last n [...]

Match Score: 56.17

Engadget Podcast: iPhone 16e review and Amazon's AI-powered Alexa+
Engadget Podcast: iPhone 16e review and Amazon's AI-powered Alexa+

<p>The keyword for the <a data-i13n="cpos:1;pos:1" href="https://www.engadget.com/mobile/smartphones/iphone-16e-review-whats-your-acceptable-compromise-020016288.html"> [...]

Match Score: 52.21

Everything announced at the Made by Google Pixel event, including the Pixel 10 lineup
Everything announced at the Made by Google Pixel event, including the Pixel

<p>Google is kicking off the fall tech event season (albeit in late summer) today with its <a data-i13n="cpos:1;pos:1" href="https://www.engadget.com/google-pixel-10-event-live [...]

Match Score: 47.33

The best earbuds for Android devices in 2025
The best earbuds for Android devices in 2025

<p>Justified or not, Apple’s AirPods have become the default choice for most iPhone owners in the market for new <a data-i13n="cpos:1;pos:1" href="https://www.engadget.com/be [...]

Match Score: 46.46

All the tech and gadgets announced at CES 2026
All the tech and gadgets announced at CES 2026

<p>It&#39;s the first week of a new year and there&#39;s no time for the tech world to slowly ease back into things following the holidays. That&#39;s because <a target="_bla [...]

Match Score: 44.67

10 Pixels in, the purpose of a Google-made smartphone remains the same
10 Pixels in, the purpose of a Google-made smartphone remains the same

<p>Google didn&#39;t need to make its own smartphone. Even though the company spent several years having other manufacturers build phones it could slap its &quot;Nexus&quot; branding [...]

Match Score: 44.64