Close Menu

    Subscribe to Updates

    Get the latest creative news from FooBar about art, design and business.

    What's Hot

    CrowdStrike warns of increasing Chinese AI cyberattacks on U.S. tech

    June 10, 2026

    Lenovo slides nearly 10% amid reports of price hikes due to memory costs

    June 10, 2026

    Three key vital signs make up the “urban pulse” of a city

    June 10, 2026
    Facebook X (Twitter) Instagram
    Addison Markets
    • Home
    • USA
    • Europe
    • Business
    • Investing
    • Tech
    • Politics
    • Contact Us
    Addison Markets
    Home»Tech»How a USB-connected speaker can infect a PC without ever being touched
    Tech

    How a USB-connected speaker can infect a PC without ever being touched

    franperez66q@protonmail.comBy franperez66q@protonmail.comJune 5, 2026No Comments3 Mins Read
    Facebook Twitter Pinterest Telegram LinkedIn Tumblr WhatsApp Email
    Share
    Facebook Twitter LinkedIn Pinterest Telegram Email


    After successfully replacing the firmware with a replacement image that did nothing more than display the word “patched” on the speaker’s LED display, the researcher got to wondering what else a hacker might do. So he turned his attention to FreeRTOS, the open source operating system that ran the Katana V2X. It contained a set of HID functions for allowing the speaker to act as a human interface device, a classification that includes keyboards, mice, and webcams. The speaker implemented a limited HID that allowed for things like changing the volume and playing or pausing sound, but little else.

    The researcher discovered that he could change the speaker’s USB descriptor set, which is essentially a report that informs devices about the capabilities of a USB- or Bluetooth-connected peripheral. He was able to augment the existing descriptor set with a second one that reported the speaker being a keyboard. Then he used code already included in the firmware to streamline the process of sending keypresses.

    All of this gave Moorats an idea: What if he used his device to send commands to the speaker that used the HID to pass them along to the connected PC? After some trial and error, he found that he could. In a blog post published on Wednesday, he wrote:

    Chaining it all together, I was able to totally remotely, over the air, upload a custom firmware to my speaker which I hadn’t paired with, which would reboot, flash the custom firmware, and after rebooting type in the command echo pwned and execute it.



    In a real attack scenario, I would execute the keystrokes for opening powershell.exe or similar and paste an actually malicious one-liner into that, but as a proof of concept, this was more than enough for me. A real attacker would also likely disable the routine for updating the firmware in both normal and recovery mode, making it impossible to wipe the malicious firmware from the device or patch it in the future.

    This is worsened by the fact that Bluetooth is always on for the speaker, even in sleep mode, with no apparent way to disable it.

    Before the speaker and USB-connected device can interact, they must successfully complete a challenge-and-response authentication procedure. Since the devices perform this handshake automatically each time the software boots, this isn’t usually a problem for the hacker. In certain cases, however, such as when the Katana V2X app isn’t open on the connected device, it’s a requirement.



    Source link

    Share. Facebook Twitter Pinterest LinkedIn Tumblr Email
    franperez66q@protonmail.com
    • Website

    Related Posts

    Three key vital signs make up the “urban pulse” of a city

    June 10, 2026

    Stocks recover from sell-off, but even bulls warn of more volatility

    June 10, 2026

    Locked in heated rivalry with researcher, Microsoft fixes 0-day they disclosed

    June 10, 2026

    How Jim Cramer views Apple on Day 2 of its post-WWDC keynote pullback

    June 10, 2026

    Starlink charges $10 monthly hardware fee in move away from one-time purchases

    June 10, 2026

    Entergy CEO pushes back on fears that AI data centers will drive up electricity bills

    June 9, 2026
    Leave A Reply Cancel Reply

    Top Reviews
    Editors Picks

    CrowdStrike warns of increasing Chinese AI cyberattacks on U.S. tech

    June 10, 2026

    Lenovo slides nearly 10% amid reports of price hikes due to memory costs

    June 10, 2026

    Three key vital signs make up the “urban pulse” of a city

    June 10, 2026

    These dividend stocks have slashed their payments, Morgan Stanley says

    June 10, 2026
    © 2026 All right reserved
    • Privacy Policy
    • Terms & Conditions

    Type above and press Enter to search. Press Esc to cancel.