Replay attacks and sniffing in Bluetooth low energy communications with mobile phone
Juan Sebastian Orozco Duran, Edith Paola Estupiñan Cuesta, Juan Carlos Martínez Quintero
Abstract
This article analyzes vulnerabilities in Bluetooth low energy (BLE) connections in smartphones against replay and tracking attacks using software defined radio (SDR), evaluating four scenarios with BLE headsets and smartphones from different manufacturers through HackRF one, GNU radio, and Wireshark. In scenario 1, the advertising message ADV_NONCONN_IND was captured and retransmitted, generating persistent and deceptive pairing pop ups on smartphones. In scenario 2, fake pairing request signals were replicated to simulate a connection attempt, causing interface errors and deceptive notifications for the user. In scenario 3, complete pairing sequences were captured and replayed, producing false connection alerts and fabricated information such as battery level indicators from non existent devices. In scenario 4, passive tracking enabled the extraction of sensitive data during the pairing process, including ADV_IND packets, media access control (MAC) addresses, frequencies, manufacturer identifiers, and transmission power levels. A total of 93 successful and 123 failed attacks were recorded, with abnormal behaviors observed such as false pairing requests and manipulated device data, exposing users to risks of identity spoofing, denial of service (DoS) attacks, or targeted interference. The results highlight BLE protocol weaknesses against radio frequency (RF) based attacks and demonstrate the potential of SDR tools as powerful instruments for wireless protocol validation and cybersecurity research.
Keywords
Bluetooth; Bluetooth low energy; Replay attack; Security; Sniffing; Software defined radio
DOI:
https://doi.org/10.11591/eei.v14i5.10040
Refbacks
There are currently no refbacks.
This work is licensed under a
Creative Commons Attribution-ShareAlike 4.0 International License .
<div class="statcounter"><a title="hit counter" href="http://statcounter.com/free-hit-counter/" target="_blank"><img class="statcounter" src="http://c.statcounter.com/10241695/0/5a758c6a/0/" alt="hit counter"></a></div>
Bulletin of EEI Stats
Bulletin of Electrical Engineering and Informatics (BEEI) ISSN: 2089-3191 , e-ISSN: 2302-9285 This journal is published by the Institute of Advanced Engineering and Science (IAES) in collaboration with Intelektual Pustaka Media Utama (IPMU) .