Penetration Testing mailing list archives

@stake tool announcement: redfang - the bluetooth device hunter


From: "Ollie Whitehouse" <ollie () atstake com>
Date: Sun, 8 Jun 2003 11:26:03 +0100

All,

http://www.atstake.com/research/tools/info_gathering/#redfang

.intro
fang is a small proof-of-concept application to find non discoverable
bluetooth devices. This is done by brute forcing the last six (6) bytes of 
the bluetooth address of the device and doing a read_remote_name().

currently to reduce the address space this will only scan the TDK 
manufacturer assigned space although this is very easy to change.

also due to the design of the bluez implementation of the bluetooth stack
under linux and the design of this application it is very easy to modify
the application to use multiple bluetooth devices (i.e. 4 threads 
simultaneously scanning).

Rgds

Ollie
---
Ollie Whitehouse
Director of Security Architecture
Atstake, UK

---------------------------------------------------------------------------
----------------------------------------------------------------------------


Current thread: