ADVERTISEMENT
  • Home
  • Contact Us
  • Disclaimer
  • Privacy Policy
  • Terms & Conditions
Monday, June 8, 2026
  • Login
Vegas Valley News
  • Home
  • World News
  • Business
  • Sports
  • Health
  • Technology
  • Entertainment
  • Travel
  • Lifestyle
  • Vegas Valley News asks for your consent to use your personal data to:
  • VVN Opt out of the sale or sharing of personal information
No Result
View All Result
  • Home
  • World News
  • Business
  • Sports
  • Health
  • Technology
  • Entertainment
  • Travel
  • Lifestyle
  • Vegas Valley News asks for your consent to use your personal data to:
  • VVN Opt out of the sale or sharing of personal information
No Result
View All Result
Vegas Valley News
No Result
View All Result
Home Technology

How a USB-connected speaker can infect a PC with out ever being touched

by Vegas Valley News
June 8, 2026
in Technology
0
How a USB-connected speaker can infect a PC with out ever being touched
0
SHARES
2
VIEWS
Share on FacebookShare on Twitter


After efficiently changing the firmware with a alternative picture that did nothing greater than show the phrase “patched” on the speaker’s LED show, the researcher bought to questioning what else a hacker would possibly do. So he turned his consideration to FreeRTOS, the open supply working system that ran the Katana V2X. It contained a set of HID capabilities for permitting the speaker to behave as a human interface machine, a classification that features keyboards, mice, and webcams. The speaker carried out a restricted HID that allowed for issues like altering the quantity and enjoying or pausing sound, however little else.

The researcher found that he may change the speaker’s USB descriptor set, which is basically a report that informs gadgets in regards to the capabilities of a USB- or Bluetooth-connected peripheral. He was capable of increase the prevailing descriptor set with a second one which reported the speaker being a keyboard. Then he used code already included within the firmware to streamline the method of sending keypresses.

All of this gave Moorats an thought: What if he used his machine to ship instructions to the speaker that used the HID to go them alongside to the related PC? After some trial and error, he discovered that he may. In a weblog submit revealed on Wednesday, he wrote:

Chaining all of it collectively, I used to be capable of completely remotely, over the air, add a customized firmware to my speaker which I hadn’t paired with, which might reboot, flash the customized firmware, and after rebooting kind within the command echo pwned and execute it.



In an actual assault situation, I might execute the keystrokes for opening powershell.exe or related and paste an truly malicious one-liner into that, however as a proof of idea, this was greater than sufficient for me. An actual attacker would additionally seemingly disable the routine for updating the firmware in each regular and restoration mode, making it unimaginable to wipe the malicious firmware from the machine or patch it sooner or later.

That is worsened by the truth that Bluetooth is at all times on for the speaker, even in sleep mode, with no obvious method to disable it.

Earlier than the speaker and USB-connected machine can work together, they need to efficiently full a challenge-and-response authentication process. For the reason that gadgets carry out this handshake routinely every time the software program boots, this isn’t often an issue for the hacker. In sure circumstances, nonetheless, similar to when the Katana V2X app isn’t open on the related machine, it’s a requirement.

Tags: infectSpeakertouchedUSBconnected
Vegas Valley News

Vegas Valley News

Vegas Valley News Local, Breaking News

Next Post
How will platinum carry out in 2026?

How will platinum carry out in 2026?

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

Recommended

The fifteenth Annual Flickcharters’ Selection Awards Winners!

The fifteenth Annual Flickcharters’ Selection Awards Winners!

3 months ago
Australian Open 2026 | Alex de Minaur vs Carlos Alcaraz end result, video, highlights, Australian evaluation press convention video

Australian Open 2026 | Alex de Minaur vs Carlos Alcaraz end result, video, highlights, Australian evaluation press convention video

4 months ago

Popular News

  • ‘Flesh-Consuming’ Micro organism Circumstances Rising on Gulf Coast: What to Know

    ‘Flesh-Consuming’ Micro organism Circumstances Rising on Gulf Coast: What to Know

    0 shares
    Share 0 Tweet 0
  • James Gunn Nonetheless ‘Working On’ Viola Davis-Led Amanda Waller Sequence

    0 shares
    Share 0 Tweet 0
  • April Taste Information | Life-style Media Group

    0 shares
    Share 0 Tweet 0
  • ‘John Sweet: I Like Me’ trailer — Canadian actor’s life explored in documentary

    0 shares
    Share 0 Tweet 0
  • Keep Vancouver Promotion: As much as $250 Off Vancouver Accommodations!

    0 shares
    Share 0 Tweet 0

About Us

Vegas Valley News, based in Las Vegas, Nevada, is your go-to source for local news and events. Stay updated with the latest happenings in our vibrant community. For advertising opportunities, contact us at sales@vegasvalleynews.com. Your connection to the pulse of Vegas!

Category

  • Business
  • Entertainment
  • Health
  • Lifestyle
  • Sports
  • Technology
  • Travel
  • World

Recent Posts

  • How will platinum carry out in 2026?
  • How a USB-connected speaker can infect a PC with out ever being touched
  • Xi and Kim specific hopes for higher ties between China and North Korea : NPR
  • Home
  • Contact Us
  • Disclaimer
  • Privacy Policy
  • Terms & Conditions

Copyright © 2024 Vegasvalleynews.com | All Rights Reserved.

No Result
View All Result
  • Home
  • World News
  • Business
  • Sports
  • Health
  • Technology
  • Entertainment
  • Travel
  • Lifestyle
  • Vegas Valley News asks for your consent to use your personal data to:
  • VVN Opt out of the sale or sharing of personal information

Copyright © 2024 Vegasvalleynews.com | All Rights Reserved.

Welcome Back!

Login to your account below

Forgotten Password?

Retrieve your password

Please enter your username or email address to reset your password.

Log In
Verified by MonsterInsights