Security Flaw in Bluetooth Headphones: Sony, Bose, JBL and Other Brands Affected
German security researchers have discovered significant vulnerabilities in Bluetooth headphones that allow eavesdropping on conversations or initiating calls without prior pairing. Devices from numerous well-known manufacturers are affected, yet many users are likely unaware of these risks.
This involves a security vulnerability in chips from a well-known manufacturer, which are used in many Bluetooth headphones from popular brands such as Sony, Bose, JBL, Jabra, and Marshall. The discovered weaknesses allow attackers to take control of headphones remotely without needing a prior connection. Sensitive actions like eavesdropping on conversations or initiating calls are also possible under certain conditions.
Researchers from the Heidelberg-based IT security company Enno Rey Netzwerke GmbH (ERNW) have identified several security vulnerabilities in Bluetooth chips from the Taiwanese manufacturer Airoha. The researchers presented their findings at the Troopers security conference in Heidelberg. The vulnerabilities affect several SoCs (systems-on-a-chip) from Airoha, which are used in true wireless headphones, among other devices.
Through specially programmed protocols, attackers can access the working and flash memory of the devices. It is sufficient to be within Bluetooth range–about ten meters away. Although Airoha has already provided a software update, users are still waiting in vain for firmware updates from the manufacturers.
The attack requires neither prior pairing nor authentication. It allows, among other things, the reading of current media titles, the capture of contact data, or the manipulation of existing trust relationships with paired smartphones. In practice, the researchers demonstrated how a call on the smartphone can be triggered using the read connection data–a potential gateway for eavesdropping attacks via the built-in microphone.
Read also: Critical Chip Security Flaws Endanger Numerous Smartphones
According to ERNW, the security vulnerabilities have been confirmed in 29 Bluetooth headphones, but far more models are likely affected. The list includes models such as Sony WH-1000XM4 to WH-1000XM6, JBL Live Buds 3, Bose QuietComfort Earbuds, Jabra Elite 8 Active, and various Marshall devices like Major V and Stanmore III. Brands like Teufel, Jlab, Xiaomi, and others are also affected.
The researchers estimate that more than 100 different models could be vulnerable–and many manufacturers are not even aware that Airoha chips are used in their products.
Airoha provided manufacturers with an updated version of its software on June 4. However, this must be passed on to end users by the device manufacturers in the form of a firmware update. So far, no newer firmware versions have appeared on affected devices that were created after the patch date. Users should therefore regularly check the manufacturers' apps for updates or contact customer support.
The experts emphasize that real attacks are complex and technically demanding. They require immediate physical proximity to the target device and specialized knowledge. An attack is also not possible over the internet. Therefore, the warning is primarily directed at particularly vulnerable individuals such as journalists, diplomats, activists, or employees in security-relevant industries. For private everyday use, the risk is currently low.
The post Security Flaw in Bluetooth Headphones: Sony, Bose, JBL and Other Brands Affected appeared first on TECHBOOK.

Try Our AI Features
Explore what Daily8 AI can do for you:
Comments
No comments yet...
Related Articles
Yahoo
28 minutes ago
- Yahoo
Astonishing new data reveals rapidly changing attitude toward Tesla vehicles — here's what you need to know
A once-dominant Tesla has endured a rocky sales year in 2025, and new data out of Europe hints at a sustained slump, per Reuters. For years, Tesla functionally represented the entire EV market worldwide — while it never reached "generic trademark" status like Kleenex or Xerox, its name was nearly interchangeable with "electric vehicle." As the embattled automaker struggled to regain its foothold and EV competitors surged, the brand scrambled to reignite interest in Tesla's fleet. Based on new data, that hasn't gotten the brand back into the good graces of European drivers. Tesla May sales plummeted a staggering 27.9% in Europe, compared to the company's sales the previous year. That statistic alone is troubling for the brand's fortunes — more so considering that "fully-electric vehicle sales in the region jumped 27.2%" in the same period. Overall, Tesla sales in Europe have declined steadily over the past five months. Reuters attributed the sustained sales slump to CEO Elon Musk's controversial actions and statements, as well as robust competition and more affordable offerings from innovative Chinese EV makers. Per CNBC, Chinese automaker BYD "registered nearly as many vehicles as Tesla in May after outselling Musk's company for the first time in April." Consequently, Tesla's stock has fallen 18% to date in 2025. There's no question that sales figures are a pain point for Tesla right now, as the brand continues to try and entice new customers with novel incentives — and surprisingly, China is one EV market where the brand has been met with less resistance. Although Tesla's woes have had an unfortunate impact on drivers looking to sell their cars, the market for used Teslas could be more favorable for those looking to make their next car an EV. Electric vehicles remain a huge money saver in terms of gas, and coupled with solar panels, an EV can bring energy costs down significantly. Installing home solar drastically reduces the cost to own and operate an EV. Solar energy is clean, abundant, and extremely affordable, reducing reliance on the grid and pricier public charging stations. EnergySage provides potential solar customers with competitive quotes from vetted local installers, and can save consumers up to $10,000 on new installations. New solar installations are an investment, and there are options for those who want to save on clean energy without a sizeable upfront outlay. Palmetto's LightReach solar leasing program requires no money down, enabling solar customers to take advantage of the technology with fewer barriers and to lock in lower energy costs. If you were going to purchase an EV, which of these factors would be most important to you? Cost Battery range Power and speed The way it looks Click your choice to see results and speak your mind. Join our free newsletter for good news and useful tips, and don't miss this cool list of easy ways to help yourself while helping the planet.
Yahoo
35 minutes ago
- Yahoo
CATL Expands Globally After $5.2 Billion IPO, Targeting Europe With Battery-Swapping Push
Contemporary Amperex Technology Co. Ltd., the world's largest electric vehicle battery maker, is accelerating its global push following a $5.2 billion public listing in Hong Kongthe largest IPO of 2025 so far. CATL commands about 38% of the EV battery market and supplies major global automakers including Tesla (TSLA, Financials), Volkswagen (VWAGY, Financials), BMW (BMWYY, Financials), and Stellantis (STLA, Financials). The company plans to deploy 90% of its IPO proceeds to support expansion, including its 7.6 billion ($8.2 billion) battery plant in Hungary, which is expected to begin production later this year. CATL already operates a facility in Germany and recently announced a new plant in Spain through a joint venture with Stellantis. It's also part of an integrated EV battery project in Indonesia, expected to start production in 2026. As domestic margins face pressure from overcapacity and price warsespecially with rival BYDCATL is shifting more focus to Europe, where the regulatory and market landscape is seen as more favorable. The company is also planning to introduce battery-swapping and recycling technology in the region, a system popular in China but still nascent in Europe. Analysts say CATL's capital strength and partnerships give it a strong chance to establish a foothold in this emerging infrastructure segment. This article first appeared on GuruFocus. Error in retrieving data Sign in to access your portfolio Error in retrieving data Error in retrieving data Error in retrieving data Error in retrieving data
Yahoo
an hour ago
- Yahoo
CATL Expands Globally After $5.2 Billion IPO, Targeting Europe With Battery-Swapping Push
Contemporary Amperex Technology Co. Ltd., the world's largest electric vehicle battery maker, is accelerating its global push following a $5.2 billion public listing in Hong Kongthe largest IPO of 2025 so far. CATL commands about 38% of the EV battery market and supplies major global automakers including Tesla (TSLA, Financials), Volkswagen (VWAGY, Financials), BMW (BMWYY, Financials), and Stellantis (STLA, Financials). The company plans to deploy 90% of its IPO proceeds to support expansion, including its 7.6 billion ($8.2 billion) battery plant in Hungary, which is expected to begin production later this year. CATL already operates a facility in Germany and recently announced a new plant in Spain through a joint venture with Stellantis. It's also part of an integrated EV battery project in Indonesia, expected to start production in 2026. As domestic margins face pressure from overcapacity and price warsespecially with rival BYDCATL is shifting more focus to Europe, where the regulatory and market landscape is seen as more favorable. The company is also planning to introduce battery-swapping and recycling technology in the region, a system popular in China but still nascent in Europe. Analysts say CATL's capital strength and partnerships give it a strong chance to establish a foothold in this emerging infrastructure segment. This article first appeared on GuruFocus.