Handoff All Your Privacy: A Review of Apple's Bluetooth Low Energy Continuity Protocol
April 24, 2019 ยท The Cartographer ยท ๐ Proceedings on Privacy Enhancing Technologies
"No code URL or promise found in abstract"
"Title-pattern auto-detect: Handoff All Your Privacy: A Review of Apple's Bluetooth Low Energy Continuity Protocol"
Evidence collected by the PWNC Scanner
Authors
Jeremy Martin, Douglas Alpuche, Kristina Bodeman, Lamont Brown, Ellis Fenske, Lucas Foppe, Travis Mayberry, Erik C. Rye, Brandon Sipes, Sam Teplov
arXiv ID
1904.10600
Category
cs.NI: Networking & Internet
Cross-listed
cs.CR
Citations
61
Venue
Proceedings on Privacy Enhancing Technologies
Last Checked
1 day ago
Abstract
We investigate Apple's Bluetooth Low Energy (BLE) Continuity protocol, designed to support interoperability and communication between iOS and macOS devices, and show that the price for this seamless experience is leakage of identifying information and behavioral data to passive adversaries. First, we reverse engineer numerous Continuity protocol message types and identify data fields that are transmitted unencrypted. We show that Continuity messages are broadcast over BLE in response to actions such as locking and unlocking a device's screen, copying and pasting information, making and accepting phone calls, and tapping the screen while it is unlocked. Laboratory experiments reveal a significant flaw in the most recent versions of macOS that defeats BLE Media Access Control (MAC) address randomization entirely by causing the public MAC address to be broadcast. We demonstrate that the format and content of Continuity messages can be used to fingerprint the type and Operating System (OS) version of a device, as well as behaviorally profile users. Finally, we show that predictable sequence numbers in these frames can allow an adversary to track Apple devices across space and time, defeating existing anti-tracking techniques such as MAC address randomization.
Community Contributions
Found the code? Know the venue? Think something is wrong? Let us know!
๐ Similar Papers
In the same crypt โ Networking & Internet
R.I.P.
๐ป
Ghosted
๐
๐
The Cartographer
Federated Learning in Mobile Edge Networks: A Comprehensive Survey
๐
๐
The Cartographer
A Survey of Indoor Localization Systems and Technologies
R.I.P.
๐ป
Ghosted
Survey of Important Issues in UAV Communication Networks
๐
๐
The Cartographer
Network Function Virtualization: State-of-the-art and Research Challenges
๐
๐
The Cartographer