frontpage.
newsnewestaskshowjobs

Made with ♥ by @iamnishanth

Open Source @Github

fp.

Open in hackernews

Bluetooth Headphone Jacking: A Key to Your Phone [video]

https://media.ccc.de/v/39c3-bluetooth-headphone-jacking-a-key-to-your-phone
4•willnix•2h ago

Comments

willnix•2h ago
During our research we discovered three vulnerabilities (CVE-2025-20700, CVE-2025-20701, CVE-2025-20702) in popular Bluetooth audio chips developed by Airoha. These chips are used by many popular device manufacturers in numerous Bluetooth headphones and earbuds.

The identified vulnerabilities may allow a complete device compromise. We demonstrate the immediate impact using a pair of current-generation headphones. We also demonstrate how a compromised Bluetooth peripheral can be abused to attack paired devices, like smartphones, due to their trust relationship with the peripheral.

Examples of affected vendors and devices are Sony (e.g., WH1000-XM5, WH1000-XM6, WF-1000XM5), Marshall (e.g. Major V, Minor IV), Beyerdynamic (e.g. AMIRON 300), or Jabra (e.g. Elite 8 Active).

chasing0entropy•56m ago
I remember tinkering with crafted Bluetooth requests to make a Nokia 8290 zero click dial a toll number. It's surprising how unprotected from a security perspective, the bt stack is.

1. If the bt radio is powered, it is possible to find and identify it even with it's beacon turned off.

2. With the advent of BLE there is no doubt about #1.

3. Both BT and Cell chipsets contain dozens of undocumented vendor specific and ubiquitous but underdocumented modem commands.

You can STILL use Bluetooth pairing spam to force an adversary to either be ddossed by pairing requests or approve pairing. Then use voice activation hooks to open voice typing and take a transcribed stream from an ostensible keyboard input.

Agent Conductor – CLI orchestrator for multi-agent tmux sessions

https://github.com/gaurav-yadav/agent-conductor
1•rainmod•3m ago•0 comments

From mineral resources to oil and nuclear: the twilight of the Industrial Age

https://thehonestsorcerer.substack.com/p/2025-the-year-of-peak-everything
1•ambientenv•3m ago•0 comments

The Málaga virus: The code that haunted Google's security director

https://english.elpais.com/technology/2025-12-23/the-story-of-the-malaga-virus-the-code-that-haun...
1•virgulino•4m ago•0 comments

Graffiti Garden: build a wide variety of custom social apps with front end code

https://graffiti.garden/
1•bryanrasmussen•4m ago•0 comments

How Email Works: Behind the Screen

https://sushantdhiman.substack.com/p/how-email-actually-works-ep-1-behind
1•signa11•5m ago•0 comments

Asus ROG Laptops Are Broken by Design: A Forensic Deep Dive

https://drive.google.com/drive/folders/10V3AQH06WU14AhKAo0fmqk_JjBvXZmSf
1•signa11•7m ago•0 comments

2 in 3 Americans think AI will cause major harm to humans in the next 20 years [pdf]

https://www.pewresearch.org/wp-content/uploads/sites/20/2025/03/pi_2025.04.03_us-public-and-ai-ex...
3•randycupertino•9m ago•0 comments

The Sweet Tooth Trial

https://www.sciencedirect.com/science/article/pii/S0002916525005921
1•PaulHoule•10m ago•0 comments

S6 is a process supervision suite, like daemontools

https://www.skarnet.org/software/s6/overview.html
1•csense•10m ago•0 comments

About St Helena, in the South Atlantic Ocean

https://sainthelenaisland.info/index.htm
2•Redoubts•11m ago•0 comments

Show HN:Lightweight Planning Poker for agile teams (no signup, self-hosted)

https://planningpoker.ninja
1•reza-hoque•11m ago•0 comments

Arctic Active Layers Staying Unfrozen: 40 Years of Thermal-Hydrologic Change

https://essopenarchive.org/doi/full/10.22541/essoar.176677851.17910937/v1
1•bikenaga•12m ago•1 comments

I have no mind's eye. I thought that was normal until I was 53

https://www.thetimes.com/uk/science/article/aphantasia-mental-images-harriet-challis-photographer...
2•bookofjoe•12m ago•2 comments

52 Weeks of Changelogs

https://mattpalmer.io/posts/2025/12/claude-agent-changelog/
1•mattpal•13m ago•0 comments

AI Is Causing Layoffs, Just Not in the Way You Think

https://ericlamb.substack.com/p/ai-is-causing-layoffs-just-not-in
2•ericlamb89•14m ago•0 comments

I Bought a Skyscraper You Decide What's Next [video]

https://www.youtube.com/watch?v=S59k-tITyBU
1•halcdev•14m ago•0 comments

Fox's Laws of Software Development

https://gist.github.com/sleepyfox/b20579302ce05a9ac9f78c6003566989
2•gpi•15m ago•0 comments

Show HN: Aegis Memory v1.2 – We solved "what's worth remembering" for AI agents

https://github.com/quantifylabs/aegis-memory
1•Arulnidhi_k•18m ago•0 comments

How do you secure AI coding agents?

1•peanutlife•18m ago•0 comments

Structural Inequality for Older Women Thwarts Social Progress

https://philanthropywomen.org/feminist-funding/how-structural-inequality-for-older-women-thwarts-...
2•gpi•18m ago•0 comments

Add APIs to Lovable, Base 44, Bolt etc. with a Prompt

https://vibeapis.com/
2•mikiarlo321•18m ago•0 comments

tc-ematch(8) extended matches for use with "basic", "cgroup" or "flow" filters

https://man7.org/linux/man-pages/man8/tc-ematch.8.html
2•hamonrye•20m ago•0 comments

Open Source AI Reclaims the Digital Commons

https://gpt3experiments.substack.com/p/how-open-source-ai-reclaims-the-digital
3•nutanc•20m ago•0 comments

The Rime of the Ancient Maintainer

https://www.joanwestenberg.com/the-rime-of-the-ancient-maintainer/
1•gpi•24m ago•0 comments

A post-American, enshittification-resistant internet – Cory Doctorow 39c3 [video]

https://media.ccc.de/v/39c3-a-post-american-enshittification-resistant-internet
4•manfredz•25m ago•0 comments

Show HN: Listen to Any GitHub README

https://desktop.with.audio/reader/new?github
1•OfflineSergio•29m ago•0 comments

Scientists discover beer bottle in the Mariana Trench (2024)

https://www.unilad.com/news/scientist-beer-bottle-deepest-point-ocean-mariana-trench-667878-20240213
16•thunderbong•34m ago•10 comments

Goodbye SASS

https://www.redblobgames.com/blog/2025-12-27-goodbye-sass/
2•signa11•37m ago•0 comments

When AI Learns to Experiment Like Us, What Future Are We Building Together?

https://comuniq.xyz/post?t=657
1•01-_-•38m ago•0 comments

CSS Wrapped 2025

https://chrome.dev/css-wrapped-2025/
2•Topfi•40m ago•0 comments