Exploit found in Realtek chips can listen through a pair of headphones

Enrique, 22 November 2016

A group of researchers at Ben Gurion University in Israel have developed a piece of software titled: SPEAKER(a)R that can switch a pair of headphones from listening to recording mode. This, in turn, could theoretically allow anyone with the intent to eavesdrop on a victim.

Just to reiterate, this exploit was created by researchers and developers for two reasons: for fun, and to prove that most of today’s PCs and laptops are susceptible to this sort of thing. There is a full abstract, complete with the intentions of the experiment and their findings.

The idea was sparked from the fact that speakers work very similarly to microphones: a diaphragm vibrates in a mic to create signals that a computer can understand. Likewise, a computer can reproduce these sounds by vibrating a diaphragm. In fact, you can plug any old pair of headphones into a ‘line-in’ jack (used for microphones) and the left can or earbud would act as a make-shift mic.

Realtek audio codec chips are found in PCs, Macs, and many laptops. A feature that’s built into these chips is the ability to switch a headphone jack from ‘audio out’ to ‘line in’, even if there is no microphone channel on the plug.

Check out the exploit in the video above. You can also check out the full research report here.

Via 1 | Via 2


Related

Reader comments

  • AnonD-4254
  • 02 Dec 2016
  • XNw

Mic-Headphone concept was already known before... But I still think the app has potential, if it actually reaches us. As of now, I would say somewhat of a good (yawn...) research... or something/

  • Deviant
  • 23 Nov 2016
  • dVS

As already said before, using earphones as mic is a known thing for a long time, just connect them to mic input instead of earphones input and start talking. This is not new, recorded music like that at home 20 years ago :).

  • AnonD-308243
  • 23 Nov 2016
  • fjR

so what has been known for decades is now a threat? how about the smartphones that are constantly monitored by intelligence agencies to monitor us without our consent is that a threat and or a violation of our privacy. that is just my opinion.

Popular articles

More

Popular devices

Electric Vehicles

More