Skip to content
  • Home
  • Cyber Map
  • About Us – Contact
  • Disclaimer
  • Terms and Rules
  • Privacy Policy
Cyber Web Spider Blog – News

Cyber Web Spider Blog – News

Globe Threat Map provides a real-time, interactive 3D visualization of global cyber threats. Monitor DDoS attacks, malware, and hacking attempts with geo-located arcs on a rotating globe. Stay informed with live logs and archive stats.

  • Home
  • Cyber Map
  • Cyber Security News
  • Security Week News
  • The Hacker News
  • How To?
  • Toggle search form
Apple Fixes Eavesdropping Flaw in Beats Studio Buds

Apple Fixes Eavesdropping Flaw in Beats Studio Buds

Posted on June 19, 2026 By CWS

Apple has rolled out an update for its Beats Studio Buds wireless earbuds to address a critical vulnerability that was susceptible to exploitation by nearby attackers. The flaw, identified as CVE-2025-20701, held a high severity score of 8.8 on the CVSS scale, highlighting its potential impact on users.

Understanding the Security Flaw

This particular vulnerability stemmed from an incorrect authorization issue within the Airoha Bluetooth audio SDK. It allowed unauthorized pairing of Bluetooth audio devices without user consent. The flaw could lead to remote privilege escalation without requiring additional permissions or user interaction. Apple resolved this issue through the release of Beats Firmware Update 1B211.

In an advisory, Apple explained that attackers within Bluetooth range could potentially use the microphone of a device that was not yet paired, especially if it was actively seeking pair requests. This vulnerability was initially reported in June 2025 by ERNW GmbH researchers at the TROOPERS security conference in Germany. Similar vulnerabilities were addressed by Jabra in December 2025.

Potential Risks and Implications

The researchers noted that these vulnerabilities could let attackers fully control the headphones via Bluetooth, without needing authentication or pairing. The attack could be initiated through Bluetooth BR/EDR or Bluetooth Low Energy (BLE), with the only requirement being proximity to the Bluetooth range. Attackers could read and write the device’s RAM and flash, hijacking established trust relationships with other devices like smartphones paired with the headphones.

These capabilities opened up several attack scenarios, emphasizing the need for robust security measures in Bluetooth-enabled devices. This incident underscores the importance of timely firmware updates to mitigate emerging threats.

New Exploit in Apple’s A12 and A13 Chips

Concurrently, a new exploit named usbliter8 has been unveiled by Paradigm Shift, targeting Apple’s A12 and A13 chips. This exploit affects the SecureROM and is facilitated by a hardware bug in the USB controller, coupled with a specific firmware configuration flaw. As the vulnerability exists in immutable code, affected users are encouraged to upgrade to newer hardware models for effective mitigation.

Paradigm Shift’s revelation highlighted that the flaw allows for malicious code injection by exploiting a buffer underflow in the USB controller. This issue appears to be hardware-rooted, as the A11 chip is unaffected, whereas A12 and A13 are vulnerable. The usbliter8 exploit mirrors the functionality of the well-known checkm8 exploit impacting earlier iOS devices.

Overall, these discoveries point to the critical nature of SecureROM security, as vulnerabilities at this level can compromise entire device integrity. While usbliter8 doesn’t directly affect SEP, it widens attack vectors against the Secure Enclave, emphasizing ongoing vigilance in device security.

The Hacker News Tags:Airoha SDK, Apple, Beats Studio Buds, Bluetooth, Bluetooth hacking, CVE-2025-20701, Cybersecurity, eavesdropping, firmware update, mobile security, Paradigm Shift, security patch, usbliter8, Vulnerability, wireless earbuds

Post navigation

Previous Post: AI Surveillance and Biometric Data Raise Global Monitoring Concerns
Next Post: Cisco Acquires WideField to Enhance Splunk’s SOC

Related Posts

Hackers Leverage Microsoft Teams to Spread Matanbuchus 3.0 Malware to Targeted Firms Hackers Leverage Microsoft Teams to Spread Matanbuchus 3.0 Malware to Targeted Firms The Hacker News
How to Protect the Invisible Identity Access How to Protect the Invisible Identity Access The Hacker News
Hidden Comment Flaw in Azure DevOps Risks AI Exploitation Hidden Comment Flaw in Azure DevOps Risks AI Exploitation The Hacker News
Agentic AI’s Role in Defense Hinges on Secure Infrastructure Agentic AI’s Role in Defense Hinges on Secure Infrastructure The Hacker News
How Ineffective Triage Heightens Business Risks How Ineffective Triage Heightens Business Risks The Hacker News
New ‘Curly COMrades’ APT Using NGEN COM Hijacking in Georgia, Moldova Attacks New ‘Curly COMrades’ APT Using NGEN COM Hijacking in Georgia, Moldova Attacks The Hacker News

Categories

  • Cyber Security News
  • How To?
  • Security Week News
  • The Hacker News

Recent Posts

  • Android RAT Threat Poses as Emergency App
  • Critical VeloCloud Vulnerability Actively Exploited
  • Critical Rails Vulnerability Threatens Cloud Security
  • Malicious npm Packages Target Alibaba Users with RAT
  • Malware Exploits Google Passkey Vulnerabilities

Pages

  • About Us – Contact
  • Disclaimer
  • Privacy Policy
  • Terms and Rules

Archives

  • August 2026
  • July 2026
  • June 2026
  • May 2026
  • April 2026
  • March 2026
  • February 2026
  • January 2026
  • December 2025
  • November 2025
  • October 2025
  • September 2025
  • August 2025
  • July 2025
  • June 2025
  • May 2025

Recent Posts

  • Android RAT Threat Poses as Emergency App
  • Critical VeloCloud Vulnerability Actively Exploited
  • Critical Rails Vulnerability Threatens Cloud Security
  • Malicious npm Packages Target Alibaba Users with RAT
  • Malware Exploits Google Passkey Vulnerabilities

Pages

  • About Us – Contact
  • Disclaimer
  • Privacy Policy
  • Terms and Rules

Categories

  • Cyber Security News
  • How To?
  • Security Week News
  • The Hacker News

Copyright © 2026 Cyber Web Spider Blog – News.

Powered by PressBook Masonry Dark