Wednesday, January 23, 2008

Hacking Wireless Headsets

It is good to see other security consultants are beginning to spread the message, too. The following is a cautionary tale and a friendly reminder from an article by Secure Network Technologies)

Those cool wireless headsets keep your hands free – and give hackers the ability to eavesdrop on your conversations...

In offices all over the world, users are becomingly increasingly enamored with those wireless "hands-free" headsets that allow the speaker to move around the office while continuing a conversation on the phone. But have you ever wondered how secure those headsets are?

We purchased a commercially available radio scanner. These devices are available at any local electronics retailer at prices ranging from $80 to several thousand dollars. We chose a scanner capable of monitoring frequencies from 900-928 Mhz and the 1.2 Ghz ranges, which is where many of the popular hands-free headsets operate.

We took a position across the street from the facility and started up the scanner. Within seconds of turning on the device we were able to listen to conversations that appeared to be coming from our client's employees. Several of these conversations discussed the business in detail, as well as very sensitive topics. After some careful listening, we determined that the conversations were indeed coming from our customer. (more)

Official Spybuster's solution for increased privacy...
Purchase wireless headsets which use digital transmission in the 1.9 GHz, 2.4 GHz or 5.8 GHz frequency ranges. Avoid headsets using Bluetooth transmission (here's why)

Product Suggestions...

GN Netcom GN9300 GN9120
Plantronics CS70N CS55