Free Republic
Browse · Search
General/Chat
Topics · Post Article

Skip to comments.

Use a wireless mouse? This $15 hack could compromise your laptop
CNET ^ | 23 February 2016 | Sean Hollister

Posted on 02/25/2016 6:36:42 AM PST by ShadowAce

They broke in like it was nothing. They could have wiped my hard drive, stolen my files, or practically anything nefarious you can do with a computer.

All because I had a wireless mouse dongle plugged into my laptop. And all they needed was a simple antenna that costs as little as $15 at Amazon.

Thankfully, "they" were a pair of security researchers from a company called Bastille, and every company that builds wireless mice and keyboards has already been alerted to the issue. If you have a Logitech Unifying receiver, there's already a fix. (Here is a link to a patch provided to us by Logitech: RQR_012_005_00028.exe.)

But if not, you too might be vulnerable to this technique. They're calling it a "Mousejack."

What Bastille security researcher Marc Newlin discovered was this. If you can send out a wireless signal that pretends to be a wireless mouse, most wireless USB dongles will happily latch onto it -- no questions asked. Then, you can have that fake wireless mouse pretend to be a wireless keyboard -- and start controlling someone else's computer.

logitech-mx-anywhere-2-wireless-mobile-mouse11.jpg

With a laptop and a cheap wireless USB antenna called a Crazyradio, Newlin found he could do that from up to 200 meters away. Of course, you can't easily see someone's laptop screen from that far out, but that doesn't mean the hack isn't dangerous. A sequence of keyboard shortcuts is enough to wipe a hard drive -- or open a browser, navigate to a website, download malware and install it on a computer.

Normally, wireless keyboards send encrypted signals, so hackers can't spoof them and take over your PC. But wireless mouse traffic isn't always encrypted, according to Chris Rouland, CTO and founder of Bastille, because peripheral manufacturers didn't think it was necessary. Many of the tiny USB dongles used to wirelessly connect mice and keyboards are always listening for a new mouse, and they'll transmit whatever Bastille's fake "mouse" tries to send.

According to Bastille, because so many of these dongles use the same wireless chip -- a Nordic Semiconductor part -- there could be millions upon millions of vulnerable devices out there. Many of the dongles that come with mice and keyboards from Logitech, Microsoft, Amazon, Dell, HP, Lenovo and Gigabyte are at risk. Here's a list of the affected devices that Bastille has found so far.

Thankfully, the vulnerability doesn't affect Bluetooth devices, or USB wireless dongles that aren't actively in use. Even if you've got one of these dongles sticking out the side of your laptop, Newlin's antenna and program can't find it unless it can latch onto the wireless signal from your mouse.

Perhaps the worst part of the vulnerability is that many dongles can't be fixed. While Logitech Unifying devices have dongles that can be upgraded -- and Logitech tells us its other Nano dongles aren't affected -- Bastille says that others may be permanently vulnerable. A Lenovo spokesperson told us it believes the issue is limited to its Lenovo 500 wireless keyboards and mice, and while users can't update those themselves, Lenovo is ready to exchange them for ones with a newer, safer firmware version.

Dell tells us that owners of its KM632 and KM714 keyboard and mouse sets should call technical support, and told Forbes that though its KM714 keyboard and mouse will soon be updatable with the same Logitech patch, other devices may need to be swapped out. Microsoft tells us it will investigate the issue and "provide resolution as soon as possible." We also reached out to HP, Amazon and Gigabyte but have yet to receive a reply.

The fact that Logitech Unifying dongles are upgradable could be a mixed blessing, because Rouland believes that hackers could also theoretically use them as transmitters. Hack one dongle, turn it into a transmitter to hack any others it sees. Suddenly, you've got a virus on your hands.

Here's the device that Newlin used to break into my laptop. It costs $12. All he had to do was hook it up to his laptop, write 15 lines of Python code, and wait for me to move my mouse. If you see someone using one of those at your local coffee shop -- or in your workplace -- be warned.

Update, 10:48 p.m. PT: Crazyradio prices on Amazon have jumped significantly in the hours since we published this story.


TOPICS: Computers/Internet
KEYWORDS: amazon; computers; computing; crazyradio; dell; gigabyte; hack; hp; lenovo; logitech; microsoft; mouse; mousejack; nordicsemiconductor; windowspinglist; wireless
Navigation: use the links below to view more comments.
first 1-2021-32 next last

1 posted on 02/25/2016 6:36:42 AM PST by ShadowAce
[ Post Reply | Private Reply | View Replies]

To: rdb3; Calvinist_Dark_Lord; JosephW; Only1choice____Freedom; amigatec; Ernest_at_the_Beach; ...

2 posted on 02/25/2016 6:36:59 AM PST by ShadowAce (Linux - The Ultimate Windows Service Pack)
[ Post Reply | Private Reply | To 1 | View Replies]

To: ShadowAce

I saw this yesterday and downloaded the Logitech firmware patch.


3 posted on 02/25/2016 6:43:21 AM PST by UB355 (Slower traffic keep right)
[ Post Reply | Private Reply | To 2 | View Replies]

To: ShadowAce
That's why I use a wired mouse pointer on my laptop and wired keyboard and mouse pointer on my home desktop computer.
4 posted on 02/25/2016 6:43:49 AM PST by RayChuang88 (FairTax: America's Economic Cure)
[ Post Reply | Private Reply | To 1 | View Replies]

To: ShadowAce

Sure, in theory at least any RF device can be monitored and hacked, by passive monitoring or the “man in the middle” technique. Thinking encryption or security features will prevent this is like thinking a really good lock will prevent someone from breaking into your house. Better locks create a demand for better lockpickers.

In a practical sense, someone would be lucky to get into my Logitech Unifying Recerver from TWO feet away at times much less twenty. The distance of these things sucks.


5 posted on 02/25/2016 6:44:48 AM PST by bigbob ("Victorious warriors win first and then go to war" Sun Tzu.)
[ Post Reply | Private Reply | To 1 | View Replies]

To: ShadowAce

Oh no.
Someone might steal copies of all my superhero novels and early twentieth century detective stories.

All my ebooks are belong to them.


6 posted on 02/25/2016 6:48:54 AM PST by MrEdd (Heck? Geewhiz Cripes, thats the place where people who don't believe in Gosh think they aint going.)
[ Post Reply | Private Reply | To 1 | View Replies]

To: ShadowAce

I’d be more worried about someone hacking the Bluetooth keyboard signal and logging all of the keystrokes than I would be about someone spoofing a keyboard or mouse.


7 posted on 02/25/2016 6:54:17 AM PST by Yo-Yo (Is the /sarc tag really necessary?)
[ Post Reply | Private Reply | To 1 | View Replies]

To: ShadowAce

bookmark


8 posted on 02/25/2016 7:04:40 AM PST by Sans-Culotte ('''Political correctness is communist propaganda writ small''~ Theodore Dalrymple)
[ Post Reply | Private Reply | To 1 | View Replies]

To: ShadowAce

Saved


9 posted on 02/25/2016 7:05:00 AM PST by moovova
[ Post Reply | Private Reply | To 1 | View Replies]

To: RayChuang88

My wireless keyboard has military spec encryption.

My mouse is Bluetooth.

I’m covered.


10 posted on 02/25/2016 7:09:44 AM PST by BBB333 (Q: Which is grammatically correct? Joe Biden IS or Joe Biden ARE an idiot?)
[ Post Reply | Private Reply | To 4 | View Replies]

To: MrEdd

Yes, and you need some better titles. Just saying.


11 posted on 02/25/2016 7:11:08 AM PST by Larry Lucido
[ Post Reply | Private Reply | To 6 | View Replies]

To: ShadowAce

Bkmrk.


12 posted on 02/25/2016 7:19:02 AM PST by RushIsMyTeddyBear
[ Post Reply | Private Reply | To 1 | View Replies]

To: ShadowAce

Any chance of it affecting Linux? (They changed the name Logitech to Logicool a few years ago here, but same company, as far as I know..)

Shouldn’t be too much a worry anyway, I switch the mouse off when I’m not too active on it to save battery.


13 posted on 02/25/2016 7:28:57 AM PST by Bikkuri ((...))
[ Post Reply | Private Reply | To 1 | View Replies]

To: ShadowAce

bfl


14 posted on 02/25/2016 7:30:03 AM PST by Fester Chugabrew (Diversity is Hillary Clinton and Barack Obama sharing the same jail cell.)
[ Post Reply | Private Reply | To 1 | View Replies]

To: Bikkuri
Any chance of it affecting Linux?

It looks like they are attacking the driver/firmware of the USB dongle--not anything in the OS. They are thus connecting to your laptop/computer without having to login or other attack vectors.

So--this would be OS-independent, and all are vulnerable if you use a wireless mouse.

15 posted on 02/25/2016 7:32:57 AM PST by ShadowAce (Linux - The Ultimate Windows Service Pack)
[ Post Reply | Private Reply | To 13 | View Replies]

To: ShadowAce

Wires, wires, wires. Keyboard, mouse, Ethernet cable.

If you’re paranoid, you can store your mouse and keyboard in a safe when not in use.


16 posted on 02/25/2016 7:34:37 AM PST by proxy_user
[ Post Reply | Private Reply | To 1 | View Replies]

To: ShadowAce

Your mouse is probably assumed to be the logged in user. If you are logged into Linux with an unprivileged account, it probably couldn’t do much damage.


17 posted on 02/25/2016 7:35:52 AM PST by proxy_user
[ Post Reply | Private Reply | To 15 | View Replies]

To: ShadowAce

This stuff never ends. There will always be security threats as long as there are high tech criminals. The problem is that all of the methods used to deal with this are defensive. What I want are some offensive options that attack and destroy the system that is attempting to break into my system.


18 posted on 02/25/2016 7:47:29 AM PST by Kirkwood (Zombie Hunter)
[ Post Reply | Private Reply | To 1 | View Replies]

To: ShadowAce

Ping to check out later.


19 posted on 02/25/2016 7:58:39 AM PST by Kommodor (Terrorist, Journalist or Democrat? I can't tell the difference.)
[ Post Reply | Private Reply | To 1 | View Replies]

To: ShadowAce

I’ve got Logitech and I’ve done the patch... great post.


20 posted on 02/25/2016 7:59:41 AM PST by GOPJ (GOPe Milquetoast Mitty's stick their feet out to trip Trump ... then fall flat on their faces..)
[ Post Reply | Private Reply | To 1 | View Replies]


Navigation: use the links below to view more comments.
first 1-2021-32 next last

Disclaimer: Opinions posted on Free Republic are those of the individual posters and do not necessarily represent the opinion of Free Republic or its management. All materials posted herein are protected by copyright law and the exemption for fair use of copyrighted works.

Free Republic
Browse · Search
General/Chat
Topics · Post Article

FreeRepublic, LLC, PO BOX 9771, FRESNO, CA 93794
FreeRepublic.com is powered by software copyright 2000-2008 John Robinson