meta_pixel
Tapesearch Logo
Log in
CyberWire Daily

Over-the-air 0-day vulnerabilities. [Research Saturday]

CyberWire Daily

N2K Networks, Inc.

Technology, Daily News, News, Tech News

4.81.1K Ratings

🗓️ 5 November 2022

⏱️ 21 minutes

🧾️ Download transcript

Summary

Roya Gordon from Nozomi Networks sits down with Dave to discuss their work "UWB Real Time Locating Systems: How Secure Radio Communications May Fail in Practice." Ultra-wideband (UWB) is a rapidly-growing radio technology that, according to the UWB Alliance, is forecasted to drive sales volumes exceeding one billion devices annually by 2025. In an effort to strengthen the security of devices utilizing UWB, Nozomi Networks Labs conducted a security assessment of two popular UWB RTLS solutions available on the market. Their research reveals 0-day vulnerabilities and other weaknesses that, if exploited, could allow an attacker to gain full access to all sensitive location data exchanged over-the-air. The research can be found here: UWB Real Time Locating Systems: How Secure Radio Communications May Fail in Practice Learn more about your ad choices. Visit megaphone.fm/adchoices

Transcript

Click on a timestamp to play from that location

0:00.0

You're listening to the CyberWire Network, powered by N2K.

0:07.0

Today's episode is sponsored by SRM, your first call for cybersecurity and

0:18.1

investigations. Threats today are evolving faster than ever before and since 2005 SRM has pioneered

0:25.3

tailored security solutions for global corporations and their executives.

0:29.5

Whether it's defending against cyber attacks with their award-winning team of ethical hackers and incident response specialists,

0:36.4

or navigating the murky waters of compliance and ESG challenges,

0:40.9

SRMs, Insight and Straight straightforward advice will help you navigate complex risks

0:46.4

and emerge more resilient.

0:48.4

Their secret, a culture that nurtures the sharpest minds, giving them access to the newest technologies and the freedom

0:55.3

to solve problems in new ways, enabling them to craft simple effective solutions for your

1:01.4

unique cyber challenges.

1:03.7

Search your first call to discover how SRM can help your business. Hello everyone and welcome to the CyberWire's research Saturday.

1:27.0

I'm Dave Bitner and this is our weekly conversation with researchers and analysts tracking down the threats and vulnerabilities

1:34.1

solving some of the hard problems of protecting ourselves in a rapidly

1:38.0

evolving cyberspace.

1:39.8

Thanks for joining us. So we started looking into it because the I-Tripele, they came out with an amended standard.

1:54.0

The standard whole bunch of numbers is like 802.15.4 z.

1:59.0

And it was said to kind of increase security of these devices.

2:04.3

That's Roya Gordon, security research evangelist at Nizomi Networks.

2:09.2

The research we're discussing today is titled UwB real-time locating systems, how secure radio

2:15.5

communications may fail in practice. So, you know, obviously whenever there's new standards, we take a look at it and we notice that there's a little loophole in it where it kind of covers part of the technology or the data transmissions with these devices, but not the other part.

2:41.0

And then digging into it further, we realize, wow, a threat actor could

...

Please login to see the full transcript.

Disclaimer: The podcast and artwork embedded on this page are from N2K Networks, Inc., and are the property of its owner and not affiliated with or endorsed by Tapesearch.

Generated transcripts are the property of N2K Networks, Inc. and are distributed freely under the Fair Use doctrine. Transcripts generated by Tapesearch are not guaranteed to be accurate.

Copyright © Tapesearch 2026.