An Analysis of Bluetooth Security

An Analysis of Bluetooth Security Jaymin Shah Sushma Kamuni Introduction  Bluetooth ◦ It is an open wireless protocol for exchanging data over short distances from fixed and mobile devices, creating personal area network. ◦ Act as a reliable source of transmission for voice and data Designed to operate in the ISM band  Gaussian Frequency Shift Keying is used  Data rate of 1Mb/sec can be achieved  Class 1 2 Range (meters) 100 10 Max. Power (mW) 100 2.5 3 1 1  Features: Low cost, low power and robustness Bluetooth Security  Authentication: Verifies the identification of the devices that are communicating in the channel.  Confidentiality: Protecting the data from the attacker by allowing only authorized users to access the data.  Authorization: Only authorized users have control over the resources. Security features of Bluetooth   Security Mode 1: Non-Secure Mode Security Mode 2: Service level enforced security mode  Security Mode 3: Link-level enforced security mode Link Key Generation Authentication Authentication Summary Verifier BD_ADDRB AU_RAND Calculates SRES’ SRES Success if match Claimant Authentication Process Parameter Device Address Random Challenge Authentication (SRES) Response Link Key Length 48 Bits 128 Bits 32 Bits 128 Bits Secrecy parameter Public Public Public Secret Confidentiality Confidentiality security service protects the eavesdropping attack on airinterface. Bluetooth Encryption Process   Encryption Mode 1: No encryption is needed. Encryption Mode 2: Encrypted using link key keys.  Encryption Mode 3: All traffic is encrypted. Trust levels, service levels and authentication  Service level 1: Requires authentication and authorization.   Service level 2: Requires only authentication. Service level 3: Open to all bluetooth devices. Problems with the standard Bluetooth Security Security Issue Remarks Strength of the Random Number Generator RNG may produce periodic numbers that (RNG) is unknown. reduces the strength of authentication mechanism. Short PINs are allowed. Such weak PINs are used to generate link and encryption keys that are easily predictable. Encryption key length is negotiable. More robust initialization key generation procedure should be developed. No user authentication exists. As only device authentication is provided, application security and user authentication can be employed. Stream cipher is weak and key length is Robust encryption procedure and minimum negotiable. key length should be decided and passed as an agreement. Security Issue Remarks Privacy can be compromised if the Once the BD_ADDR is associated with a BD_ADDR is captured and associated particular user, that user’s activity can be with a particular user. logged. So, loss of privacy can be compromised. Device authentication is simple shared One-way authentication may be key challenge response. subjected to man-in-middle attacks. Mutual authentication is a good idea to provide verification. Security Threats  Denial of service: Makes the device unusable and drains the mobile device battery.  Fuzzing attacks: Sending malformed messages to the bluetooth device.  Blue jacking: Causes harm when the user sends the data to the other user.  Blue snarfing: Uses IMEI identifier to route all the incoming calls. Man-in-the-middle Future  Broadcast Channel: Adoption of Bluetooth in the mobile phones from the Bluetooth information points.  Topology Management: Configuration should be invisible and the messages to the users in the scatternet.  Quality of Service: Video and audio transmission of data with high quality. References        http://www.bluetooth.com/Bluetooth/Technology/Basics.htm http://en.wikipedia.org/wiki/Bluetooth http://csrc.nist.gov/publications/nistpubs/800-48/NIST_SP_800-48.pdf Software Security Technologies, A programmable approach, By Prof. Richard Sinn. http://www.urel.feec.vutbr.cz/ra2008/archive/ra2006/abstracts/085.pdf http://en.wikipedia.org/wiki/Bluetooth http://csrc.nist.gov/publications/nistpubs/800-121/SP800-121.pdf

Shared by: Fittington Fit
Other docs by Fittington Fit
Credit Application
Views: 156  |  Downloads: 2
Macrovision Corp Ammendments and Bylaws
Views: 186  |  Downloads: 1
giles-all
Views: 509  |  Downloads: 9
Customer Credit Application Denial Letter
Views: 882  |  Downloads: 4
Remedies Table
Views: 334  |  Downloads: 16
Crito
Views: 241  |  Downloads: 0
CorpDocs-Board Resolution Changing Board Size
Views: 164  |  Downloads: 1
Job Performance Feedback Form
Views: 1503  |  Downloads: 51
Related docs
Guide to Bluetooth Security
Views: 75  |  Downloads: 12
What is bluetooth
Views: 7  |  Downloads: 2
Bluetooth Security
Views: 157  |  Downloads: 10
An Analysis of Bluetooth Scatternet Topologies
Views: 43  |  Downloads: 4
Bluetooth Concept
Views: 1363  |  Downloads: 203
bluetooth
Views: 115  |  Downloads: 14
BLUETOOTH SECURITY
Views: 16  |  Downloads: 2
Bluetooth Security
Views: 6  |  Downloads: 3
BLUETOOTH TECHNOLOGY--SECURITY
Views: 5  |  Downloads: 2
Bluetooth_Security
Views: 3  |  Downloads: 0
Final Master Thesis- Bluetooth Positioning
Views: 117  |  Downloads: 21
Bluetooth Keyboard
Views: 25  |  Downloads: 1
Bluetooth Tutorial
Views: 155  |  Downloads: 41