Apple's MagicPairing for Bluetooth fails to enchant after mischief-making bugs found hiding in the stack

Apple's MagicPairing for Bluetooth fails to enchant after mischief-making bugs found hiding in the stack

Apple's proprietary approach to securing Bluetooth peripherals, known as MagicPairing, has some benefits, but not magical enough to make vulnerabilities vanish.


Researchers from TU Darmstadt in Germany examined the MagicPairing protocol and found that its three implementations – in iOS, macOS, and RTKit – contain ten disclosed flaws between them that have yet to be addressed.


RTKit is the real-time operating system based on the RTKit framework and is used in Apple's AirPods 1, 2, and Pro, Siri Remote 2, Apple Pencil 2, and Smart Keyboard Folio. While not widely known, it's widely distributed, thanks to the popularity of Apple's AirPods, which account for more than half of the global wireless earbud market.


In a paper [PDF] entitled "MagicPairing: Apple’s Take ..

Support the originator by clicking the read the rest link below.