Security flaw discovered in Bluetooth chip used by a billion devices worldwide

The ESP32 is an extremely popular low-cost chip from Chinese manufacturer Espressif, which is estimated to be used in over 1 billion devices worldwide by 2023, and contains an undocumented "backdoor" that can be exploited for attacks.

These undocumented commands allow for impersonation of trusted devices, unauthorized access to data, redirection to other devices on the network, and the ability to establish persistence.

The discovery was made public by Spanish cybersecurity researchers Miguel Tarascó Acuña and Antonio Vázquez Blanco from the Tarlogic Security team. Speaking at the RootedCON conference in Madrid, they said:

Tarlogic Security has discovered a backdoor in the ESP32, a family of WiFi and Bluetooth-enabled microcontrollers found in millions of IoT devices on the market. Exploiting this backdoor would allow malicious actors to launch spoofing attacks and permanently infect sensitive devices such as mobile phones, computers, smart locks, or medical devices by bypassing code checks.

Security flaw discovered in Bluetooth chip used by a billion devices worldwide

The ESP32 is one of the most widely used chips in the world for Wi-Fi + Bluetooth connectivity in IoT (Internet of Things) devices, so the risk of any backdoors existing is huge.

Backdoor in ESP32

In a presentation at RootedCON, Tarlogic researchers explained that interest in Bluetooth security research has declined, but not because the protocol or its implementations have become more secure.

Instead, most of the attacks presented last year had no working tools, were incompatible with mainstream hardware, and used outdated or unmaintained tools that are largely incompatible with modern systems.

Tarlogic has developed a new C-based, hardware-independent and cross-platform USB Bluetooth driver that allows direct access to the hardware without relying on operating system specific APIs.

Armed with this new tool, which allows raw access to Bluetooth traffic, Tarlogic discovered hidden vendor-specific commands (Opcode 0x3F) in the ESP32 Bluetooth firmware, allowing low-level control of Bluetooth functions.

Security flaw discovered in Bluetooth chip used by a billion devices worldwide
ESP32 Memory Diagram

In total, they found 29 undocumented commands, collectively described as a “backdoor,” that can be abused for memory manipulation (read/write RAM and Flash), MAC address spoofing (device spoofing), and LMP/LLCP packet injection. The issue is currently tracked under the identifier CVE-2025-27840.

Security flaw discovered in Bluetooth chip used by a billion devices worldwide
HCI command issuance script

Potential risks

Risks arising from these commands include malicious deployment at the OEM level and supply chain attacks.

Depending on how the Bluetooth stack handles HCI commands on the device, remote backdoor exploitation may be possible via malicious firmware or a spoofed Bluetooth connection.

This is especially true if the attacker already has root access, installs malware, or pushes a malicious update to the device, opening up low-level access.

However, in general, having physical access to a device's USB or UART interface is much more dangerous and a more realistic attack scenario.

" In a scenario where you can compromise an IoT device running an ESP32 chip, you would be able to hide an APT (Advanced Persistent Threat) in the ESP memory and perform Bluetooth (or Wi-Fi) attacks against other devices, while also controlling the device over Wi-Fi/Bluetooth ," the team explains. " Our discovery would allow full control of the ESP32 chip and maintain persistence in the chip through commands that allow modification of RAM and Flash. Additionally, with persistence in the chip, it would be possible to spread to other devices because ESP32 allows for advanced Bluetooth attacks . "

WebTech360 will continue to update information on this issue, please pay attention.

Leave a Comment

Fixing Microsoft Teams Download Failed Due to Unexpected Error

Fixing Microsoft Teams Download Failed Due to Unexpected Error

Tired of the frustrating Microsoft Teams download failed due to unexpected error? Discover quick, step-by-step fixes to resolve it fast and download Teams smoothly on Windows, Mac, or web. No tech skills needed!

How to Fix Microsoft Teams Network Error: Check Your Connection

How to Fix Microsoft Teams Network Error: Check Your Connection

Struggling with Microsoft Teams network error: Check Your Connection? Discover proven step-by-step fixes to restore seamless video calls, chats, and meetings. Quick troubleshooting for instant results.

Solving Microsoft Teams Video Error: Black Screen in Meetings

Solving Microsoft Teams Video Error: Black Screen in Meetings

Tired of Microsoft Teams black screen in meetings? Get proven, step-by-step solutions to solve the video error instantly. From quick fixes to advanced tweaks—regain seamless video calls today!

Troubleshooting Microsoft Teams DLL Error Missing File

Troubleshooting Microsoft Teams DLL Error Missing File

Tired of Microsoft Teams crashing with DLL Error? Discover proven troubleshooting steps for missing DLL files like VCRUNTIME140.dll. Get Teams running smoothly in minutes—no tech skills needed!

Microsoft Teams vs Zoom: Comparing Features for Webinars

Microsoft Teams vs Zoom: Comparing Features for Webinars

Discover Microsoft Teams vs Zoom webinar features head-to-head: capacity, interactivity, security, pricing & more. Find the best platform for your next big webinar in this detailed comparison.

Solving Microsoft Teams Chat Not Working on Mobile

Solving Microsoft Teams Chat Not Working on Mobile

Struggling with Microsoft Teams chat not working on mobile? Discover quick, proven fixes for Android & iOS to get your chats flowing again. Step-by-step guide with troubleshooting tips.

How to Fix Microsoft Teams Register Account Error

How to Fix Microsoft Teams Register Account Error

Tired of the frustrating Microsoft Teams "Register" Account Error blocking your work? Discover proven, step-by-step fixes like clearing cache, resetting the app, and network tweaks. Get seamless collaboration back online today—no tech expertise needed!

How to Fix Microsoft Teams Hard Error (2026 Registry Fix)

How to Fix Microsoft Teams Hard Error (2026 Registry Fix)

Tired of Microsoft Teams crashing with "Hard Error"? Get the proven 2026 registry fix that resolves it in minutes. Step-by-step guide, screenshots, and tips for permanent relief. Works on latest versions!

Troubleshooting Microsoft Teams Webhook Integration Error

Troubleshooting Microsoft Teams Webhook Integration Error

Stuck with Microsoft Teams webhook integration errors? Discover proven troubleshooting steps, common error codes, and quick fixes to restore seamless notifications in Teams. Updated with the latest best practices.

How to Use Microsoft Teams Copilot for AI-Powered Productivity

How to Use Microsoft Teams Copilot for AI-Powered Productivity

Discover how to use Microsoft Teams Copilot to boost AI-powered productivity. Step-by-step guide, key features, and tips to transform meetings, chats, and tasks effortlessly. Unlock smarter collaboration today!

Troubleshooting Microsoft Teams Error D Files

Troubleshooting Microsoft Teams Error D Files

Tired of Microsoft Teams "Error D" files blocking your workflow? Get instant fixes for upload/download errors with this step-by-step troubleshooting guide. Resolve issues fast and boost productivity.

How to Fix Microsoft Teams Error Z Zone

How to Fix Microsoft Teams Error Z Zone

Tired of Microsoft Teams "Error Z" Zone crashing your meetings? Follow our expert, step-by-step guide to fix it quickly with the latest methods. Regain seamless teamwork now!

How to Fix Microsoft Teams Check Version Error

How to Fix Microsoft Teams Check Version Error

Tired of the frustrating Microsoft Teams "Check Version" error blocking your meetings? Follow our proven, step-by-step fixes to resolve it fast and restore smooth teamwork. Works on latest versions!

How to Remove and Change a Microsoft Teams Account on Windows 11

How to Remove and Change a Microsoft Teams Account on Windows 11

Struggling with the wrong Microsoft Teams account on Windows 11? Discover simple, step-by-step instructions to remove and change your Microsoft Teams account effortlessly. Perfect for managing work and personal profiles!

How to Fix Microsoft Teams Guide Tutorial Error

How to Fix Microsoft Teams Guide Tutorial Error

Struggling with Microsoft Teams "Guide" Tutorial Error? Discover simple, step-by-step fixes to resolve it quickly. Clear cache, update, and more for seamless teamwork. Updated for latest versions!