|
|
|
|
|
by 20after4
465 days ago
|
|
It sounds like it might be very useful for an attacker who already attained access via some other exploit. Imagine the ESP32 is being used as a wifi/bluetooth "modem" via a serial link to a host system (rather than the ESP32 used as a standalone SOC.) In theory, the attacker could then use the undocumented commands to scan, spoof, or otherwise attack any near by bluetooth devices. Perhaps this could even be achieved without gaining root on the device which is hosting the esp32. |
|