Skip to main content

Here’s why it’s highly unlikely your Bluetooth headphones will be hacked

We’ve seen a bumper crop of scary-sounding headlines these past few days, including, “Bluetooth is bad and you should stop using it,” “Turn off your Bluetooth, experts warn amid ‘profound security risk,'” and “Critical Bluetooth flaw leaves millions open to attack.”

Based purely on the content of these statements, you might think that Bluetooth has suddenly become a wide-open door on your devices, through which anyone with ill intent could walk and cause irreparable harm, or steal all of your personal info. But the truth is that while these newly discovered threats are real, the odds of your Bluetooth devices being hacked are low — and lower still if you’re only using Bluetooth with your headphones. Here’s what’s really going on.

Recommended Videos

Beware the KNOB

It was revealed on August 13 that older Bluetooth chips and communication protocols are able to be forced into accepting unwanted connections — and that those connections can be used with nefarious intent. Little panic ensued at the time, and fixes for the exploit were already being issued by major manufacturers. Then suddenly, on August 23, entities like Mashable and Fox News started warning everyone to turn off Bluetooth. We don’t know why these sources decided to ring the alarm now, but here’s a quick recap of the problem.

The exploit in question is known, somewhat hilariously, as KNOB: Key Negotiation of Bluetooth. Without getting too technical, it uses a recently discovered weakness in the way Bluetooth devices ask for and receive permission to exchange data. That weakness means that a receiving device could be tricked into accepting a much lower level of security — one that could be easily outfoxed by a hacker — for these data exchange connections. From there, we are led to believe, all kinds of nasty things could be done to the targeted device, from unintended operations (sudden volume changes) to the theft of personal information.

Am I at risk?

In order for a hacker to successfully exploit this weakness, they would need the right gear (not exactly off-the-shelf hardware at your local Best Buy), be near a set of Bluetooth devices that had not already been patched against the vulnerability, and intercept the communication between the two devices at precisely the right moment. In other words, the odds of it happening to you when sitting in a bar, restaurant, bus, or another public place are low — very low. If you’re at home, the odds are lower still.

What could happen?

Let’s say you suffered from extremely bad luck and just happened to sit down next to someone with all of the right gear and the ability to use it, and you were using Bluetooth to listen to Spotify on your phone via wireless headphones. What could happen? Worst-case scenario, your musical guilty pleasure — that Nickelback playlist you hit when you think no one is listening — just made itself known to a complete stranger. OK, they might also be able to turn the volume up or down or skip tracks (maybe that’s not such a bad thing), but the bottom line is, the threat isn’t horrible.

So why the ruckus?

We don’t want to underplay the severity of the exploit that was discovered. It’s a potential nightmare under specific circumstances, which is why every major company that uses Bluetooth technology rushed to issue software patches right away.

If you’re running the latest version of Android, iOS, macOS, Windows, etc., and you’re staying on top of your security updates, you have little to fear. Perhaps the biggest takeaway from this event — and really every other exploit that gets discovered — is that you’re never 100% safe from security risks when using modern technology. But if you’re vigilant when it comes to software updates on ALL of your devices, you’ve taken the most important step toward keeping yourself safe.

Now, we can’t really fault some of the other publications for telling people to turn Bluetooth off. It’s not bad advice. If you’re not using it, you should turn Bluetooth off. It sucks battery life, and in some retail environments, it can be used to acquire tracking info about your device. But we don’t think the average person using wireless headphones or earbuds needs to worry about becoming a victim while listening to their favorite tunes.

Simon Cohen
Simon Cohen is a contributing editor to Digital Trends' Audio/Video section, where he obsesses over the latest wireless…
Grado honors its legendary Signature HP1 headphones with the HP100 SE
Grado Signature HP100 SE.

Grado's latest wired, open-back headphones are both a nod to the company's past as well as a signal of what to expect in the future. The Signature HP100 SE are an homage to founder, Joe Grado, in the lead-up to what would have been his 100th birthday (Joe died in 2015), and they take their sound and design inspiration from Joe's HP1 -- the first headphones Grado ever made.

Like the HP1, which was followed by the HP2 and HP3, the Signature HP100 SE's housings are individually machined from specially treated aluminum with the product name neatly engraved on the face. Joe Grado originally selected aluminum for the HP1 for its anti-resonance qualities.

Read more
Loop Switch 2 earplugs aid your ears when Bluetooth buds won’t do
The Loop Switch 2 earplugs.

We spend a lot of time here on various headphones and earbuds and how they're able to block out the noise while still letting in the sounds you need to hear. Sometimes it's noise cancellation as a matter of clarity, with a side effect being better hearing health.

Perhaps more important — and certainly with a lighter hit on the wallet — is noise reduction in the form of earplugs. In fact, one of my favorite quality-of-life decisions in recent years has been when I started wearing earplugs at concerts. (Yes, something I should have done years ago, before I could tell my hearing was taking a hit. Oh, to be young again.) And today Loop — you've undoubtedly seen its work on Instagram by now — has unveiled the Loop Switch 2 earbuds. And I'm using that term on purpose because they indeed look and feel more like something you use to listen to music than you do to keep your hearing from being damaged, even if Loop itself uses the word "earplugs," which puts these in a decidedly different category than something that would include the best wireless earbuds.

Read more
Sony updates its best buds and headphones to support Google’s Find My network
The Sony WH-1000XM5 headphones with the new Sony Sound Connect app.

If you have either of Sony's top-tier earbuds and headphones — that'd be the similarly named WF-1000XM5 or WH-1000XM5 — you've got an update waiting for you in the new Sony Sound Connect app. (That's the rebuilt and rebranded Headphones Connect app that was released earlier this week.)

Before we say anything else, though, know this: The update process takes a while. Like, 40 minutes if you're on an Android device, and up to an hour if you're using an iPhone. Sony's not kidding about that, so set aside a little time. And it's not quite set it and forget it — you'll have to pay a little attention, if only so you don't wander out of range while the update is transferring.

Read more