Man-In-The-Middle Attack Using Bluetooth In A WLAN Interworking Environnment
3 Feb. 2004
Summary
A Bluetooth link between peripheral devices does not require integrity protection/validation. This in turn opens the door for a man-in-the-middle type of attack on the bluetooth link in a WLAN internetworking environment - by luring the victim to connect to a malicious WLAN access point the attacker is not required to know the Bluetooth link key. The attacker can repeat this attack on the same victim many times in any WLAN network.
The paper by Eric Gauthier describes the assumptions and attack on the bluetooth link and details what is vulnerable and why. It presents a discussion about the requirements and the conditions in which such an attack can take place, how it is performed and the consequences of compromising the bluetooth link.