{"id":37142,"date":"2020-09-15T21:27:43","date_gmt":"2020-09-15T21:27:43","guid":{"rendered":"http:\/\/4b9c9c8a-a096-458f-8a16-415d51f5102e"},"modified":"2020-09-15T21:27:43","modified_gmt":"2020-09-15T21:27:43","slug":"billions-of-devices-vulnerable-to-new-blesa-bluetooth-security-flaw","status":"publish","type":"post","link":"https:\/\/www.threatshub.org\/blog\/billions-of-devices-vulnerable-to-new-blesa-bluetooth-security-flaw\/","title":{"rendered":"Billions of devices vulnerable to new &#8216;BLESA&#8217; Bluetooth security flaw"},"content":{"rendered":"<figure class=\"image image-original shortcode-image\"><span class=\"img aspect-set \"><img decoding=\"async\" src=\"https:\/\/zdnet1.cbsistatic.com\/hub\/i\/2020\/09\/15\/1236f7c1-3f7f-46b2-a4b7-d9a1a7b7e8f2\/bluetooth.png\" class alt=\"bluetooth\"><\/span><figcaption><span class=\"caption\"><\/span><span class=\"credit\"> Image: ZDNet <\/span><\/figcaption><\/figure>\n<p>Billions of smartphones, tablets, laptops, and IoT devices are using Bluetooth software stacks that are vulnerable to a new security flaw disclosed over the summer.<\/p>\n<p>Named&nbsp;<strong>BLESA&nbsp;<\/strong>(<strong>B<\/strong>luetooth&nbsp;<strong>L<\/strong>ow&nbsp;<strong>E<\/strong>nergy&nbsp;<strong>S<\/strong>poofing&nbsp;<strong>A<\/strong>ttack), the vulnerability impacts devices running the Bluetooth Low Energy (BLE) protocol.<\/p>\n<p><a href=\"https:\/\/en.wikipedia.org\/wiki\/Bluetooth_Low_Energy\" target=\"_blank\" rel=\"noopener noreferrer\" data-component=\"externalLink\">BLE<\/a>&nbsp;is a slimmer version of the original Bluetooth (Classic) standard but designed to conserve battery power while keeping Bluetooth connections alive as long as possible.<\/p>\n<p>Due to its battery-saving features, BLE has been massively adopted over the past decade, becoming a near-ubiquitous technology across almost all battery-powered devices.<\/p>\n<p>As a result of this broad adoption, security researchers and academics have also repeatedly probed BLE for security flaws across the years,&nbsp;<a href=\"https:\/\/www.zdnet.com\/article\/blurtooth-vulnerability-lets-attackers-overwrite-bluetooth-authentication-keys\/\" target=\"_blank\" rel=\"noopener noreferrer\">often finding major issues<\/a>.<\/p>\n<h3>Academics studied the Bluetooth &#8220;reconnection&#8221; process<\/h3>\n<p>However, the vast majority of all previous research on BLE security issues has almost exclusively focused on the pairing process and ignored large chunks of the BLE protocol.<\/p>\n<p>In a research project at Purdue University, a team of seven academics set out to investigate a section of the BLE protocol that plays a crucial role in day-to-day BLE operations but has rarely been analyzed for security issues.<\/p>\n<section class=\"sharethrough-top\" data-component=\"medusaContentRecommendation\" data-medusa-content-recommendation-options=\"{&quot;promo&quot;:&quot;promo_zd_recommendation_sharethrough_top_in_article_desktop&quot;,&quot;spot&quot;:&quot;dfp-in-article&quot;}\"> <\/section>\n<p>Their work focused on the &#8220;<strong>reconnection<\/strong>&#8221; process. This operation takes place after two BLE devices (the client and server) have authenticated each other during the pairing operation.<\/p>\n<p><em>Reconnections<\/em>&nbsp;take place when Bluetooth devices move out of range and then move back into range again later. Normally, when reconnecting, the two BLE devices should check each other&#8217;s cryptographic keys negotiated during the pairing process, and reconnect and continue exchanging data via BLE.<\/p>\n<p>But the Purdue research team said it found that the official BLE specification didn&#8217;t contain strong-enough language to describe the reconnection process. As a result, two systemic issues have made their way into BLE software implementations, down the software supply-chain:<\/p>\n<ul>\n<li><strong>The authentication<\/strong>&nbsp;during the device reconnection&nbsp;<strong>is optional instead of mandatory<\/strong>.<\/li>\n<li><strong>The authentication can potentially be circumvented<\/strong>&nbsp;if the user&#8217;s device fails to enforce the IoT device to authenticate the communicated data.<\/li>\n<\/ul>\n<p>These two issues leave the door open for a BLESA attack \u2014 during which a nearby attacker bypasses reconnection verifications and sends spoofed data to a BLE device with incorrect information, and induce human operators and automated processes into making erroneous decisions. See a trivial demo of a BLESA attack below.<\/p>\n<section class=\"shortcode media-source\">\n<p> <iframe width=\"500\" height=\"282\" frameborder=\"0\" allowfullscreen=\"true\" title=\"YouTube content\" id=\"iframe_youtube\" class=\"optanon-category-3\" data-src=\"https:\/\/www.youtube.com\/embed\/tO9tUl2yfFc\">[embedded content]<\/iframe> <\/p>\n<\/section>\n<h3>Several BLE software stacks impacted<\/h3>\n<p>However, despite the vague language, the issue has not made it into all BLE real-world implementations.<\/p>\n<p>Purdue researchers said they analyzed multiple software stacks that have been used to support BLE communications on various operating systems.<\/p>\n<p>Researchers found that BlueZ (Linux-based IoT devices), Fluoride (Android), and the iOS BLE stack were all vulnerable to BLESA attacks, while the BLE stack in Windows devices was immune.<\/p>\n<p>&#8220;As of June 2020, while Apple has assigned the CVE-2020-9770 to the vulnerability&nbsp;<a href=\"https:\/\/support.apple.com\/en-us\/HT211102\" target=\"_blank\" rel=\"noopener noreferrer nofollow\" data-component=\"externalLink\">and fixed it<\/a>, the Android BLE implementation in our tested device (i.e., Google Pixel XL running Android 10) is still vulnerable,&#8221; researchers said in a paper published last month.<\/p>\n<p>As for Linux-based IoT devices, the BlueZ development team said it would deprecate the part of its code that opens devices to BLESA attacks, and, instead, use code that implements proper BLE reconnection procedures, immune to BLESA.<\/p>\n<h3>Another patching hell<\/h3>\n<p>Sadly, just like with all the previous Bluetooth bugs, patching all vulnerable devices will be a nightmare for system admins, and patching some devices might not be an option.<\/p>\n<p>Some resource-constrained IoT equipment that has been sold over the past decade and already deployed in the field today doesn&#8217;t come with a built-in update mechanism, meaning these devices will remain permanently unpatched.<\/p>\n<p>Defending against most Bluetooth attacks usually means pairing devices in controlled environments, but defending against BLESA is a much harder task, since the attack targets the more often-occurring reconnect operation.<\/p>\n<p>Attackers can use denial-of-service bugs to make Bluetooth connections go offline and trigger a reconnection operation on demand, and then execute a BLESA attack. Safeguarding BLE devices against disconnects and signal drops is impossible.<\/p>\n<p>Making matters worse, based on previous BLE usage statistics, the research team believes that the number of devices using the vulnerable BLE software stacks is in the billions.<\/p>\n<p>All of these devices are now at the mercy of their software suppliers, currently awaiting for a patch.<\/p>\n<p>Additional details about the BLESA attack are available in a paper titled &#8220;<em>BLESA: Spoofing Attacks against Reconnections in Bluetooth Low Energy<\/em>&#8221; [<a href=\"https:\/\/friends.cs.purdue.edu\/pubs\/WOOT20.pdf\" target=\"_blank\" rel=\"noopener noreferrer nofollow\" data-component=\"externalLink\">PDF<\/a>,&nbsp;<a href=\"https:\/\/www.usenix.org\/system\/files\/woot20-paper-wu-updated.pdf\" target=\"_blank\" rel=\"noopener noreferrer nofollow\" data-component=\"externalLink\">PDF<\/a>]. The paper was presented at the USENIX WOOT 2020 conference in August. A recording of the Purdue team&#8217;s presentation is embedded below.<\/p>\n<section class=\"shortcode media-source\">\n<p> <iframe width=\"500\" height=\"282\" frameborder=\"0\" allowfullscreen=\"true\" title=\"YouTube content\" id=\"iframe_youtube\" class=\"optanon-category-3\" data-src=\"https:\/\/www.youtube.com\/embed\/wIWZaSZsRc8\">[embedded content]<\/iframe> <\/p>\n<\/section>\n<p> READ MORE <a href=\"https:\/\/www.zdnet.com\/article\/billions-of-devices-vulnerable-to-new-blesa-bluetooth-security-flaw\/#ftag=RSSbaffb68\">HERE<\/a><\/p>\n","protected":false},"excerpt":{"rendered":"<p>New BLESA attack goes after the often ignored Bluetooth reconnection process, unlike previous vulnerabilities, most found in the pairing operation.<br \/>\nREAD MORE HERE&#8230;<\/p>\n","protected":false},"author":2,"featured_media":37143,"comment_status":"closed","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"colormag_page_layout":"default_layout","footnotes":""},"categories":[62],"tags":[],"class_list":["post-37142","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-zdnet-security"],"yoast_head":"<!-- This site is optimized with the Yoast SEO plugin v27.8 - https:\/\/yoast.com\/product\/yoast-seo-wordpress\/ -->\n<title>Billions of devices vulnerable to new &#039;BLESA&#039; Bluetooth security flaw 2026 | ThreatsHub Cybersecurity News<\/title>\n<meta name=\"description\" content=\"ThreatsHub Cybersecurity News | ThreatsHub.org | Cloud Security &amp; Cyber Threats Analysis Hub. 100% Free OSINT Threat Intelligent and Cybersecurity News.\" \/>\n<meta name=\"robots\" content=\"index, follow, max-snippet:-1, max-image-preview:large, max-video-preview:-1\" \/>\n<link rel=\"canonical\" href=\"https:\/\/www.threatshub.org\/blog\/billions-of-devices-vulnerable-to-new-blesa-bluetooth-security-flaw\/\" \/>\n<meta property=\"og:locale\" content=\"en_US\" \/>\n<meta property=\"og:type\" content=\"article\" \/>\n<meta property=\"og:title\" content=\"Billions of devices vulnerable to new &#039;BLESA&#039; Bluetooth security flaw 2026 | ThreatsHub Cybersecurity News\" \/>\n<meta property=\"og:description\" content=\"ThreatsHub Cybersecurity News | ThreatsHub.org | Cloud Security &amp; Cyber Threats Analysis Hub. 100% Free OSINT Threat Intelligent and Cybersecurity News.\" \/>\n<meta property=\"og:url\" content=\"https:\/\/www.threatshub.org\/blog\/billions-of-devices-vulnerable-to-new-blesa-bluetooth-security-flaw\/\" \/>\n<meta property=\"og:site_name\" content=\"ThreatsHub Cybersecurity News\" \/>\n<meta property=\"article:published_time\" content=\"2020-09-15T21:27:43+00:00\" \/>\n<meta property=\"og:image\" content=\"https:\/\/www.threatshub.org\/blog\/coredata\/uploads\/2020\/09\/billions-of-devices-vulnerable-to-new-blesa-bluetooth-security-flaw.png\" \/>\n\t<meta property=\"og:image:width\" content=\"1000\" \/>\n\t<meta property=\"og:image:height\" content=\"500\" \/>\n\t<meta property=\"og:image:type\" content=\"image\/png\" \/>\n<meta name=\"author\" content=\"TH Author\" \/>\n<meta name=\"twitter:card\" content=\"summary_large_image\" \/>\n<meta name=\"twitter:creator\" content=\"@threatshub\" \/>\n<meta name=\"twitter:site\" content=\"@threatshub\" \/>\n<meta name=\"twitter:label1\" content=\"Written by\" \/>\n\t<meta name=\"twitter:data1\" content=\"TH Author\" \/>\n\t<meta name=\"twitter:label2\" content=\"Est. reading time\" \/>\n\t<meta name=\"twitter:data2\" content=\"4 minutes\" \/>\n<script type=\"application\/ld+json\" class=\"yoast-schema-graph\">{\"@context\":\"https:\\\/\\\/schema.org\",\"@graph\":[{\"@type\":\"Article\",\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/billions-of-devices-vulnerable-to-new-blesa-bluetooth-security-flaw\\\/#article\",\"isPartOf\":{\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/billions-of-devices-vulnerable-to-new-blesa-bluetooth-security-flaw\\\/\"},\"author\":{\"name\":\"TH Author\",\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/#\\\/schema\\\/person\\\/12e0a8671ff89a863584f193e7062476\"},\"headline\":\"Billions of devices vulnerable to new &#8216;BLESA&#8217; Bluetooth security flaw\",\"datePublished\":\"2020-09-15T21:27:43+00:00\",\"mainEntityOfPage\":{\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/billions-of-devices-vulnerable-to-new-blesa-bluetooth-security-flaw\\\/\"},\"wordCount\":790,\"publisher\":{\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/#organization\"},\"image\":{\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/billions-of-devices-vulnerable-to-new-blesa-bluetooth-security-flaw\\\/#primaryimage\"},\"thumbnailUrl\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/wp-content\\\/uploads\\\/2020\\\/09\\\/billions-of-devices-vulnerable-to-new-blesa-bluetooth-security-flaw.png\",\"articleSection\":[\"ZDNet | Security\"],\"inLanguage\":\"en-US\"},{\"@type\":\"WebPage\",\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/billions-of-devices-vulnerable-to-new-blesa-bluetooth-security-flaw\\\/\",\"url\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/billions-of-devices-vulnerable-to-new-blesa-bluetooth-security-flaw\\\/\",\"name\":\"Billions of devices vulnerable to new 'BLESA' Bluetooth security flaw 2026 | ThreatsHub Cybersecurity News\",\"isPartOf\":{\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/#website\"},\"primaryImageOfPage\":{\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/billions-of-devices-vulnerable-to-new-blesa-bluetooth-security-flaw\\\/#primaryimage\"},\"image\":{\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/billions-of-devices-vulnerable-to-new-blesa-bluetooth-security-flaw\\\/#primaryimage\"},\"thumbnailUrl\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/wp-content\\\/uploads\\\/2020\\\/09\\\/billions-of-devices-vulnerable-to-new-blesa-bluetooth-security-flaw.png\",\"datePublished\":\"2020-09-15T21:27:43+00:00\",\"description\":\"ThreatsHub Cybersecurity News | ThreatsHub.org | Cloud Security & Cyber Threats Analysis Hub. 100% Free OSINT Threat Intelligent and Cybersecurity News.\",\"breadcrumb\":{\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/billions-of-devices-vulnerable-to-new-blesa-bluetooth-security-flaw\\\/#breadcrumb\"},\"inLanguage\":\"en-US\",\"potentialAction\":[{\"@type\":\"ReadAction\",\"target\":[\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/billions-of-devices-vulnerable-to-new-blesa-bluetooth-security-flaw\\\/\"]}]},{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/billions-of-devices-vulnerable-to-new-blesa-bluetooth-security-flaw\\\/#primaryimage\",\"url\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/wp-content\\\/uploads\\\/2020\\\/09\\\/billions-of-devices-vulnerable-to-new-blesa-bluetooth-security-flaw.png\",\"contentUrl\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/wp-content\\\/uploads\\\/2020\\\/09\\\/billions-of-devices-vulnerable-to-new-blesa-bluetooth-security-flaw.png\",\"width\":1000,\"height\":500},{\"@type\":\"BreadcrumbList\",\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/billions-of-devices-vulnerable-to-new-blesa-bluetooth-security-flaw\\\/#breadcrumb\",\"itemListElement\":[{\"@type\":\"ListItem\",\"position\":1,\"name\":\"Home\",\"item\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/\"},{\"@type\":\"ListItem\",\"position\":2,\"name\":\"Billions of devices vulnerable to new &#8216;BLESA&#8217; Bluetooth security flaw\"}]},{\"@type\":\"WebSite\",\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/#website\",\"url\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/\",\"name\":\"ThreatsHub Cybersecurity News\",\"description\":\"%%focuskw%% Threat Intel \u2013 Threat Intel Services \u2013 CyberIntelligence \u2013 Cyber Threat Intelligence - Threat Intelligence Feeds - Threat Intelligence Reports - CyberSecurity Report \u2013 Cyber Security PDF \u2013 Cybersecurity Trends - Cloud Sandbox \u2013- Threat IntelligencePortal \u2013 Incident Response \u2013 Threat Hunting \u2013 IOC - Yara - Security Operations Center \u2013 SecurityOperation Center \u2013 Security SOC \u2013 SOC Services - Advanced Threat - Threat Detection - TargetedAttack \u2013 APT \u2013 Anti-APT \u2013 Advanced Protection \u2013 Cyber Security Services \u2013 Cybersecurity Services -Threat Intelligence Platform\",\"publisher\":{\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/#organization\"},\"alternateName\":\"Threatshub.org\",\"potentialAction\":[{\"@type\":\"SearchAction\",\"target\":{\"@type\":\"EntryPoint\",\"urlTemplate\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/?s={search_term_string}\"},\"query-input\":{\"@type\":\"PropertyValueSpecification\",\"valueRequired\":true,\"valueName\":\"search_term_string\"}}],\"inLanguage\":\"en-US\"},{\"@type\":\"Organization\",\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/#organization\",\"name\":\"ThreatsHub.org\",\"alternateName\":\"Threatshub.org\",\"url\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/\",\"logo\":{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/#\\\/schema\\\/logo\\\/image\\\/\",\"url\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/wp-content\\\/uploads\\\/2025\\\/05\\\/Threatshub_Favicon1.jpg\",\"contentUrl\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/wp-content\\\/uploads\\\/2025\\\/05\\\/Threatshub_Favicon1.jpg\",\"width\":432,\"height\":435,\"caption\":\"ThreatsHub.org\"},\"image\":{\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/#\\\/schema\\\/logo\\\/image\\\/\"},\"sameAs\":[\"https:\\\/\\\/x.com\\\/threatshub\"]},{\"@type\":\"Person\",\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/#\\\/schema\\\/person\\\/12e0a8671ff89a863584f193e7062476\",\"name\":\"TH Author\",\"image\":{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\\\/\\\/secure.gravatar.com\\\/avatar\\\/066276f086d5155df79c850206a779ad368418a844da0182ce43f9cd5b506c3d?s=96&d=mm&r=g\",\"url\":\"https:\\\/\\\/secure.gravatar.com\\\/avatar\\\/066276f086d5155df79c850206a779ad368418a844da0182ce43f9cd5b506c3d?s=96&d=mm&r=g\",\"contentUrl\":\"https:\\\/\\\/secure.gravatar.com\\\/avatar\\\/066276f086d5155df79c850206a779ad368418a844da0182ce43f9cd5b506c3d?s=96&d=mm&r=g\",\"caption\":\"TH Author\"}}]}<\/script>\n<!-- \/ Yoast SEO plugin. -->","yoast_head_json":{"title":"Billions of devices vulnerable to new 'BLESA' Bluetooth security flaw 2026 | ThreatsHub Cybersecurity News","description":"ThreatsHub Cybersecurity News | ThreatsHub.org | Cloud Security & Cyber Threats Analysis Hub. 100% Free OSINT Threat Intelligent and Cybersecurity News.","robots":{"index":"index","follow":"follow","max-snippet":"max-snippet:-1","max-image-preview":"max-image-preview:large","max-video-preview":"max-video-preview:-1"},"canonical":"https:\/\/www.threatshub.org\/blog\/billions-of-devices-vulnerable-to-new-blesa-bluetooth-security-flaw\/","og_locale":"en_US","og_type":"article","og_title":"Billions of devices vulnerable to new 'BLESA' Bluetooth security flaw 2026 | ThreatsHub Cybersecurity News","og_description":"ThreatsHub Cybersecurity News | ThreatsHub.org | Cloud Security & Cyber Threats Analysis Hub. 100% Free OSINT Threat Intelligent and Cybersecurity News.","og_url":"https:\/\/www.threatshub.org\/blog\/billions-of-devices-vulnerable-to-new-blesa-bluetooth-security-flaw\/","og_site_name":"ThreatsHub Cybersecurity News","article_published_time":"2020-09-15T21:27:43+00:00","og_image":[{"width":1000,"height":500,"url":"https:\/\/www.threatshub.org\/blog\/coredata\/uploads\/2020\/09\/billions-of-devices-vulnerable-to-new-blesa-bluetooth-security-flaw.png","type":"image\/png"}],"author":"TH Author","twitter_card":"summary_large_image","twitter_creator":"@threatshub","twitter_site":"@threatshub","twitter_misc":{"Written by":"TH Author","Est. reading time":"4 minutes"},"schema":{"@context":"https:\/\/schema.org","@graph":[{"@type":"Article","@id":"https:\/\/www.threatshub.org\/blog\/billions-of-devices-vulnerable-to-new-blesa-bluetooth-security-flaw\/#article","isPartOf":{"@id":"https:\/\/www.threatshub.org\/blog\/billions-of-devices-vulnerable-to-new-blesa-bluetooth-security-flaw\/"},"author":{"name":"TH Author","@id":"https:\/\/www.threatshub.org\/blog\/#\/schema\/person\/12e0a8671ff89a863584f193e7062476"},"headline":"Billions of devices vulnerable to new &#8216;BLESA&#8217; Bluetooth security flaw","datePublished":"2020-09-15T21:27:43+00:00","mainEntityOfPage":{"@id":"https:\/\/www.threatshub.org\/blog\/billions-of-devices-vulnerable-to-new-blesa-bluetooth-security-flaw\/"},"wordCount":790,"publisher":{"@id":"https:\/\/www.threatshub.org\/blog\/#organization"},"image":{"@id":"https:\/\/www.threatshub.org\/blog\/billions-of-devices-vulnerable-to-new-blesa-bluetooth-security-flaw\/#primaryimage"},"thumbnailUrl":"https:\/\/www.threatshub.org\/blog\/coredata\/uploads\/2020\/09\/billions-of-devices-vulnerable-to-new-blesa-bluetooth-security-flaw.png","articleSection":["ZDNet | Security"],"inLanguage":"en-US"},{"@type":"WebPage","@id":"https:\/\/www.threatshub.org\/blog\/billions-of-devices-vulnerable-to-new-blesa-bluetooth-security-flaw\/","url":"https:\/\/www.threatshub.org\/blog\/billions-of-devices-vulnerable-to-new-blesa-bluetooth-security-flaw\/","name":"Billions of devices vulnerable to new 'BLESA' Bluetooth security flaw 2026 | ThreatsHub Cybersecurity News","isPartOf":{"@id":"https:\/\/www.threatshub.org\/blog\/#website"},"primaryImageOfPage":{"@id":"https:\/\/www.threatshub.org\/blog\/billions-of-devices-vulnerable-to-new-blesa-bluetooth-security-flaw\/#primaryimage"},"image":{"@id":"https:\/\/www.threatshub.org\/blog\/billions-of-devices-vulnerable-to-new-blesa-bluetooth-security-flaw\/#primaryimage"},"thumbnailUrl":"https:\/\/www.threatshub.org\/blog\/coredata\/uploads\/2020\/09\/billions-of-devices-vulnerable-to-new-blesa-bluetooth-security-flaw.png","datePublished":"2020-09-15T21:27:43+00:00","description":"ThreatsHub Cybersecurity News | ThreatsHub.org | Cloud Security & Cyber Threats Analysis Hub. 100% Free OSINT Threat Intelligent and Cybersecurity News.","breadcrumb":{"@id":"https:\/\/www.threatshub.org\/blog\/billions-of-devices-vulnerable-to-new-blesa-bluetooth-security-flaw\/#breadcrumb"},"inLanguage":"en-US","potentialAction":[{"@type":"ReadAction","target":["https:\/\/www.threatshub.org\/blog\/billions-of-devices-vulnerable-to-new-blesa-bluetooth-security-flaw\/"]}]},{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/www.threatshub.org\/blog\/billions-of-devices-vulnerable-to-new-blesa-bluetooth-security-flaw\/#primaryimage","url":"https:\/\/www.threatshub.org\/blog\/coredata\/uploads\/2020\/09\/billions-of-devices-vulnerable-to-new-blesa-bluetooth-security-flaw.png","contentUrl":"https:\/\/www.threatshub.org\/blog\/coredata\/uploads\/2020\/09\/billions-of-devices-vulnerable-to-new-blesa-bluetooth-security-flaw.png","width":1000,"height":500},{"@type":"BreadcrumbList","@id":"https:\/\/www.threatshub.org\/blog\/billions-of-devices-vulnerable-to-new-blesa-bluetooth-security-flaw\/#breadcrumb","itemListElement":[{"@type":"ListItem","position":1,"name":"Home","item":"https:\/\/www.threatshub.org\/blog\/"},{"@type":"ListItem","position":2,"name":"Billions of devices vulnerable to new &#8216;BLESA&#8217; Bluetooth security flaw"}]},{"@type":"WebSite","@id":"https:\/\/www.threatshub.org\/blog\/#website","url":"https:\/\/www.threatshub.org\/blog\/","name":"ThreatsHub Cybersecurity News","description":"%%focuskw%% Threat Intel \u2013 Threat Intel Services \u2013 CyberIntelligence \u2013 Cyber Threat Intelligence - Threat Intelligence Feeds - Threat Intelligence Reports - CyberSecurity Report \u2013 Cyber Security PDF \u2013 Cybersecurity Trends - Cloud Sandbox \u2013- Threat IntelligencePortal \u2013 Incident Response \u2013 Threat Hunting \u2013 IOC - Yara - Security Operations Center \u2013 SecurityOperation Center \u2013 Security SOC \u2013 SOC Services - Advanced Threat - Threat Detection - TargetedAttack \u2013 APT \u2013 Anti-APT \u2013 Advanced Protection \u2013 Cyber Security Services \u2013 Cybersecurity Services -Threat Intelligence Platform","publisher":{"@id":"https:\/\/www.threatshub.org\/blog\/#organization"},"alternateName":"Threatshub.org","potentialAction":[{"@type":"SearchAction","target":{"@type":"EntryPoint","urlTemplate":"https:\/\/www.threatshub.org\/blog\/?s={search_term_string}"},"query-input":{"@type":"PropertyValueSpecification","valueRequired":true,"valueName":"search_term_string"}}],"inLanguage":"en-US"},{"@type":"Organization","@id":"https:\/\/www.threatshub.org\/blog\/#organization","name":"ThreatsHub.org","alternateName":"Threatshub.org","url":"https:\/\/www.threatshub.org\/blog\/","logo":{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/www.threatshub.org\/blog\/#\/schema\/logo\/image\/","url":"https:\/\/www.threatshub.org\/blog\/coredata\/uploads\/2025\/05\/Threatshub_Favicon1.jpg","contentUrl":"https:\/\/www.threatshub.org\/blog\/coredata\/uploads\/2025\/05\/Threatshub_Favicon1.jpg","width":432,"height":435,"caption":"ThreatsHub.org"},"image":{"@id":"https:\/\/www.threatshub.org\/blog\/#\/schema\/logo\/image\/"},"sameAs":["https:\/\/x.com\/threatshub"]},{"@type":"Person","@id":"https:\/\/www.threatshub.org\/blog\/#\/schema\/person\/12e0a8671ff89a863584f193e7062476","name":"TH Author","image":{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/secure.gravatar.com\/avatar\/066276f086d5155df79c850206a779ad368418a844da0182ce43f9cd5b506c3d?s=96&d=mm&r=g","url":"https:\/\/secure.gravatar.com\/avatar\/066276f086d5155df79c850206a779ad368418a844da0182ce43f9cd5b506c3d?s=96&d=mm&r=g","contentUrl":"https:\/\/secure.gravatar.com\/avatar\/066276f086d5155df79c850206a779ad368418a844da0182ce43f9cd5b506c3d?s=96&d=mm&r=g","caption":"TH Author"}}]}},"_links":{"self":[{"href":"https:\/\/www.threatshub.org\/blog\/wp-json\/wp\/v2\/posts\/37142","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/www.threatshub.org\/blog\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www.threatshub.org\/blog\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www.threatshub.org\/blog\/wp-json\/wp\/v2\/users\/2"}],"replies":[{"embeddable":true,"href":"https:\/\/www.threatshub.org\/blog\/wp-json\/wp\/v2\/comments?post=37142"}],"version-history":[{"count":0,"href":"https:\/\/www.threatshub.org\/blog\/wp-json\/wp\/v2\/posts\/37142\/revisions"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/www.threatshub.org\/blog\/wp-json\/wp\/v2\/media\/37143"}],"wp:attachment":[{"href":"https:\/\/www.threatshub.org\/blog\/wp-json\/wp\/v2\/media?parent=37142"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www.threatshub.org\/blog\/wp-json\/wp\/v2\/categories?post=37142"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www.threatshub.org\/blog\/wp-json\/wp\/v2\/tags?post=37142"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}