Welcome to Esato.com


Pages:
Previous  12


bluejacking and now bluesnarfing


Click to view updated thread with images




Posted by rdnymllnsktr
Well, at least you joined Esato! This is a great place! Oh, by the way, my sig's been different for a while now.


Posted by don_vercetti
I doubt you can tell if a laptop has bluetooth, just by looking. Unless you knew every model that had bluetooth, but then your just a loser. Personally, i'm not that worried about bluesnarfing seeing as i'm not hugely bothered if some weirdo nicks my contacts, as long as i still have them. And surely if he crashes my phone, i can just restart it (like a computer?)

Posted by EastCoastStar
Just wondering, but how does one bluesnarf? I dont want to harm people, and i wont, i just want to know how its done. Thanks all

Posted by shoots
Surely if you are victim to bluesnarfing you could just say your phone was lost and claim on your insurance, as for keeping important stuff on there if you use bluetooth then surely you'll have it backed up to pc anyway

What i'm worried about is peeps bluejacking my PC Is that possible???

~ Bluesnarfing sounds like a character from thundercats

Posted by Retox
Quote:

On 2004-02-10 04:09:01, rdnymllnsktr wrote:
Dude, are you dumb? Nokia's are the EASIEST TO BLUEJACK!!! Nokia's don't have an option to keep the bluetooth on, but not visible. Nokia's can be bluejacked the easiest!


Screenshot from my Nokia, if you miss that option your a moron and deserve to get your phone ruined (well not likely to happend anyway).


Posted by killerkangaroos
how do you bluesnarf?????

Posted by leew347
bluesnafing: stupid name but no way man im gonna ave me soooo much fun

Posted by Aussie Blue Boy
@ ALL:

relax!

If your SE is 'hidden' you get to still use it fully with all your devices and NO-ONE can Bluejack you, Bluesnarf you or Blue-Stuff you!

I've got two bluetooth tablet PC's (see sig. below) and they routinely pop up with all the phones I've come across during the day AND the bluetooth services they support.
Usually though I only look in that window (Bluetooth Manager in Toshiba BT Stack) when it's already too late.

However, the point is: if you can use 'MobileNavigator' or FMA you'll already be aware just HOW MUCH info can be sucked out of a phone - without the phone actually giving a clue.

My experience is that this doesn't happen if the unless the phone is discoverable or paired (hidden state is irrelevant if the devices are paired).

I hadn't cared that my T610 was always visible until I first started seeing the snarfing reports last week;
so, my advice is...
...keep hidden to be on the safe side (because it IS a risk)
...pair all your relevant devices so you can operate easily regardless

P.S. You wouldn't see me coming with my BT PC...

... a Tablet PC looks like a notepad and with pen in hand I could Bluejack or Bluesnarf anyone within range (if I was inclined that way)
- they could stare straight at me, and be none the wiser!

Posted by rdnymllnsktr
Quote:

On 2004-04-14 19:05:00, Retox wrote:
Screenshot from my Nokia, if you miss that option your a moron and deserve to get your phone ruined (well not likely to happend anyway).




I'm not refering to the newer Nokia's, as Nokia is having this burning desire to copy SE. I was talking about the older ones, so don't be an obnoxious d*mb@$$.


Quote:

On 2004-04-15 16:36:20, Aussie Blue Boy wrote:
@ ALL:
relax!

If your SE is 'hidden' you get to still use it fully with all your devices and NO-ONE can Bluejack you, Bluesnarf you or Blue-Stuff you!



Yes, they can. It was stated that it didn't matter if your phone was hidden or visible, your phone can be bluesnarfed. Not bluejacked, but it can be bluesnarfed.

Posted by Retox
Quote:

On 2004-04-15 17:10:03, rdnymllnsktr wrote:
I'm not refering to the newer Nokia's, as Nokia is having this burning desire to copy SE. I was talking about the older ones, so don't be an obnoxious d*mb@$$.


1. Then do me and all the other users on this forum a big favor, write that next time.

2. New? 7650 were released around 18 months ago, and it was one of Nokias first cell phones to have bluetooth if im not wrong.

3. First you say Nokia doesnt have that option and point out how bad that is, but when i say to you that some got that option you accuse Nokia for copying Ericsson. Whats logical in that?

4. "obnoxious d*mb@$$"? Dont know the rules on this forum very well but i dont think thats tolerated, well i hope its not.

Posted by Aussie Blue Boy

"It was stated" by who?

Read ALL the reports carefully.
You'll find some are written by people who have a fraction of the Bluetooth knowledge posted on this site.
NO reference has been made in any snarfing report about a successful link with a 'hidden' BT device.

An experienced BT user are you?

Get your facts straight or get a phone befitting your approach to communications...

... a Nokia.

_________________
T610 / T68i / MCA25 / Toshiba Portege M-200 Tablet PC / Toshiba Portege 3500 Tablet PC / HP 450cbi portable printer w Anycom BT compact flash card / Belkin USB BT / Plantronics BT headset
"Livin' Bluetooth -7 devices & counting..."

[ This Message was edited by: Aussie Blue Boy on 2004-04-16 08:38 ]

Posted by masseur
I just watched this weeks click online on bbcworld. Its about the world of WiFi and they covered bluesnarfing with a demonstration using a T610. It seems that a pc with special software is required to do this at the moment but it was an impressive demonstration.

They also had segment on bluejacking with jelliellie chatting for a min or two.

you can view the program, or segments, on the page I linked to above

Posted by don_vercetti
I was waitin for a haircut the other day,and they had a copy of the sun, so i flicked it open and had a browse through. I found an article about bluesnarfing there, and i saw that they had labelled bluejacking and bluesnarfing the same thing, and this totally isn't true! (is it?)
Also
@ Aussie Blue Bay: It's vaguely amusing when people use buying a nokia as an insult.
"
Get your facts straight or get a phone befitting your approach to communications...

... a Nokia. "
It's not the first instance i've seen, but its a bit sad innit? (funny as well though).

Posted by Aussie Blue Boy
@masseur:
Just checked out your click link. Thanks for the post.

As it said right at the end of the video though ( and as my previous post stated) nothing to fear for anyone with Bluetooth in non-discoverable or hidden mode.
...regardless of being turned on for normal operation.

The REAL vulnerability as we all know, is for those h/sets that DON'T have a 'hidden' option.

And we know which brand THAT involves.



Posted by Lundmark
I need a bluesnarfing software for the Symbian UIQ.
I'm not a fan of prank calls, but I truly am a besserwisser from time to time. My friend think's he's so cool when he's using his iPAQ to send contacts to me, calling it "bluejacking". O'boy. Wait 'til I get my hands on his address book!

Posted by Residentevil
"Bluesnarfing", which allows malicious users to connect to Bluetooth-enabled cellular phones and other devices without going through the pairing/authorization process, has become a larger problem, according to Daily Wireless. Several new phones have been found to have vulnerabilities in their Bluetooth software that allow malicious users to gain unauthorized access to a Bluetooth device and access a user's phonebook (including pictures, if any), calendar, realtime clock, and the IMEI number used to uniquely identify the phone. The IMEI number can be used to illegally "clone" a handset.

The Sony Ericsson T610 and Nokia 6310i have now been added to the vulnerable list, bringing the total number of known-affected devices up to five Sony Ericsson and five Nokia handsets. Some have other security problems as well, according to watchdog site BlueStumbler.

Until a fix is released from the manufacturer of the handset, the only recourse is to disable "Discoverable" mode on the affected handsets. BlueStumbler reports that there are known exploits that can work even then, however.


Posted by klinge
You might wanna check out this link, this is about how bluesnarfing can actually be don, if you got some coding skills i guess. And even without the skills there are some very interesting stats here:

http://members.inode.at/g.gri[....]esnarf/BlueSnarf_CeBIT2004.pdf

note: this is a PDF file!

Read this!!

Cya

Posted by ahmadnat
HOW DO U DO IT? IS IT AS EASY AS BLUEJACKING, OR DO U NEEED SPECIAL STUFF?

Posted by Vlammetje
THERE IS NO NEED TO SHOUT!


And yes you need osftware of some or other type to be able to 'steal' data from a phone.. but I guess the more important question is: WHY do you want to do it?

Posted by Shakalakin
Dudes where can i get this software??? hmmm intresting

Posted by etaab
There some available to download on the internet if you know where to look.

But its highly complicated and difficult to use. Dont bother.

Posted by Merovingian
it's surely worth to try

Posted by marceta
snarfing suks, and all the bluesnarfers that think they r cool rnt. u just cant do that!!!

Posted by marlonxp
I would love to do that to some of my friends.

Posted by ironwolf
Hi there guys....I am a new poster and having read the preceding posts it has got me a bit worried.
I currently run a W H Smith notebook with a HB pencil operating system for storing my contacts and important numbers. Does anybody know if this is also susceptible to this Bluesnarfing???....lmao....sorry guys but come on...the easiest way to avoid bluesnarfing is not to store anything digitally that you dont want stolen. Trust me ...I work for Barclays as part of their electronic fraud division. Ultimately you should remember this phrase which I very much believe in..."Anything created by man can, and almost certainly will, be corrupted by man."

Even the best decryption in the world was ultimately designed by a human...all it takes is a cleverer human to counteract it!

That being said...I consider these forums to be a valuable and needed resource for people who may not have the knowledge of others...well done chaps...keep it up and apologies for the almost shakespearean length of this post...I dont get out enough....muahahahaah

toodles for now folks

Posted by Bammers
Hi guys,
I'm also new to all this and am a little confused!! Can someone briefly explain how you do this bluejacking etc!


Posted by PhantomTa2
Quote:

On 2005-01-04 22:33:40, Bammers wrote:
Hi guys,
I'm also new to all this and am a little confused!! Can someone briefly explain how you do this bluejacking etc!



Basically, you just search for other bluetooth enabled devices, and then send them a message, something that could be taken as funny is best, but don't carry on if they look angry or upset by the message.

Posted by EastCoastStar
but remember, you dont know who the person is, unless you look around and look at the people. if the device is named by the phone name, its easier for you to tell who got th emessage.

Posted by shortkid21
BTW, i have a 6600 and i can turn on my BT but be hidden and yes there is a bluetooth virus too, it sends via BT, not sure what it does though, check S60 forum at prodigits.co.uk on wap. Also, blue snarfin is cool, i can read my mates messages and look at their pics etc. and with blooover you can make their phone ring people and change their call divert and add phonebook entries. Aparently you can also use BT to make their phone send texts too, (saving your money ). Neat hey?

Posted by blayv
So you've done bluesnarfing from your phone?

Posted by renxiangster
One friend of mine tried bluesnarfing my k700i and he failed! Coz K700i had a alert and a option to access the contents, so maybe it affects the older phones only! lol!

Posted by TeenInvader
Ya I think new phone don't just accept.

I try some bluejacking at the cinema, I could see be phones but I could send anything to any of them. It kept failing.

I think people are more alert about this blue scam now.

Posted by renxiangster
WHen i bluesnarfed my friend's ppc, i can simply access all teh items after adding him! No alert!

Posted by Leviath
Quote:

On 2004-07-25 15:11:07, Shakalakin wrote:
Dudes where can i get this software??? hmmm intresting



In other words I dont see a link or proof...

Posted by EastCoastStar
bluesnarfing is illigal... so we wouldnt be allowed to post the link here anyway...

but if anyone knows where to get this app (or any bluesnarfing app)... preferably for a PPC, PM me

Posted by Leviath
well anyone using google knows it's illegal and certainly wont find such software in a common site....

Posted by oc.gfx
I've just downloaded and installed Blooover a Bluesnarfing software on my P910. I tried to blue-hack my other phone T610 ... surprise, it didn't work, got the message:

"The audited device does not seem to be exploitable by the BlueBug attack."

This would be all 'bout my Bluesnarfing experience ... magnific !!!

_________________
3210.M 35.T 610.P 910

[ This Message was edited by: oc.gfx on 2005-12-06 07:46 ]

Posted by bulti48
I found this:

Adam Laurie and Martin Herfurt have provided full disclosure on the Bluesnarf and Bluebug attacks at the recent 21C3 conference in Berlin (slides can be downloaded from the trifinite blog). They have also made available for download the Bloover, a proof of concept bluesnarfing application. (http://trifinite.org/trifinite_stuff_bluebug.html)

Just to highlight the disclaimer from their website:
Disclaimer

The Blooover application is a Proof-of-Concept auditing tool that is not intended to exploit eventual victims financially. Therefore, it is not possible to send SMS messages and it is only possible to initiate calls and do call forwards to numbers that are free of charge to the calling device



_________________


[ This Message was edited by: bulti48 on 2005-12-06 10:31 ]

Posted by flag
I think that you'll are talking about the wrong problem.

I don't care if a 15 years old boy wants my contacts. I don't care if there
s a guy on a train station with a notebook with a bluetooh!

The real problem is.. what can be stolen?!
My personal phone is personal.. theres nothing important. But what if I work fot FEDEX and i'm using a pocket phone with all datas about the costumers! The delivers dates! The address, names, and telephones.

This is the smallest problem.. I don't even want to imagine what can they do with this information.

Posted by 2K6Martin2K6
Bloover only seems to work on the old phones such as the t610 and some old nokias so unless you have them old phones you cant get bluesnarfed as far as im concerned.

Posted by JK
Quote:

On 2006-09-18 15:49:36, 2K6Martin2K6 wrote:
Bloover only seems to work on the old phones such as the t610 and some old nokias so unless you have them old phones you cant get bluesnarfed as far as im concerned.




The Samsung D600, D820 and others can...

Posted by tommya
get Bluesnarfing and bluejacking software www.bluespy.tahosting.co.uk


Pages:
Previous  12
Click to view updated thread with images


© Esato.com - From the Esato mobile phone discussion forum