Researchers have figured out that they can remotely manipulate Amazon’s Echo smart device via its own speakers. The discovery was made by researchers at the University of London and the University of Catania. The flaw stems from what is referred to as a command self-issue vulnerability, meaning that pre-recorded messages played over a 3rd or 4th generation Echo speaker causes the speaker to perform actions on itself. Therefore, as smart speakers lay dormant during the day they could be activated when an audio file produced by the device itself contains a voice command. Although certain actions require confirmation for certain actions, the adversary has about six seconds to respond with “yes” to ensure success. An attacker would need a smartphone or laptop within Bluetooth pairing range, however, to launch the attack. Unlike internet-based attacks, this one requires proximity to the Echo speaker being targeted. Researchers noted that Bluetooth devices can connect and disconnect from the Echo without needing to perform the pairing process again when it has been completed once. Therefore, an attack could happen several days after the pairing. Additionally, an attacker could use an internet radio station and target Echo like a command-and-control server.
The research prompted Amazon to patch the command self-issue vulnerability, which is the benefit of having a robust threat-hunting culture.
Link:
Cookie | Duration | Description |
---|---|---|
cookielawinfo-checkbox-analytics | 11 months | This cookie is set by GDPR Cookie Consent plugin. The cookie is used to store the user consent for the cookies in the category "Analytics". |
cookielawinfo-checkbox-functional | 11 months | The cookie is set by GDPR cookie consent to record the user consent for the cookies in the category "Functional". |
cookielawinfo-checkbox-necessary | 11 months | This cookie is set by GDPR Cookie Consent plugin. The cookies is used to store the user consent for the cookies in the category "Necessary". |
cookielawinfo-checkbox-others | 11 months | This cookie is set by GDPR Cookie Consent plugin. The cookie is used to store the user consent for the cookies in the category "Other. |
cookielawinfo-checkbox-performance | 11 months | This cookie is set by GDPR Cookie Consent plugin. The cookie is used to store the user consent for the cookies in the category "Performance". |
viewed_cookie_policy | 11 months | The cookie is set by the GDPR Cookie Consent plugin and is used to store whether or not user has consented to the use of cookies. It does not store any personal data. |