DEFCON: BtleJuice MitM Hacks Bluetooth (and belittles Bluetooth Padlock security) | Internet News

DEFCON: BtleJuice MitM Hacks Bluetooth (and belittles Bluetooth Padlock security)

Aug 6, 2016
1 minute read

LAS VEGAS – Hacking Bluetooth to date has been about buying an Uberone and sniffer the air. A new tool and method was first publicly demonstrated today at DEFCON that creates bluetooth robota Man In The Middle Attack for Bluetooth Smart enabled devices.

“Sniffing is so hard and it really sucks,” security researcher, Damien Cauquil said.

So rather than sniffing, what the BtleJuice Framework tool does is it looks for open bluetooth connections and attempts to connect to the device, it then creates a dummy device with the same services and characteristics. Finally BtleJuice waits for new connections, which it then takes over, as the Man in The Middle, enabling an attacker to inject new commands.

Cauquil has a number of interesting use cases for BtlJuice and demonstrated a live attack against a Bluetooth controlled robot. Additionally he noted that he has tested the attack against Bluetooth smart locks with a very high degree of success.
 
The project is entirely open-source and available today on Github at: https://github.com/DigitalSecurity/BtleJuice

Sean Michael Kerner is a senior editor at nternetNews.com. Follow him on Twitter @TechJournalist

Internet News Logo

InternetNews is a source of industry news and intelligence for IT professionals from all branches of the technology world. InternetNews focuses on helping professionals grow their knowledge base and authority in their field with the top news and trends in Software, IT Management, Networking & Communications, and Small Business.

Property of TechnologyAdvice. © 2026 TechnologyAdvice. All Rights Reserved

Advertiser Disclosure: Some of the products that appear on this site are from companies from which TechnologyAdvice receives compensation. This compensation may impact how and where products appear on this site including, for example, the order in which they appear. TechnologyAdvice does not include all companies or all types of products available in the marketplace.