I Tried Hacking a Bluetooth Speaker... (and failed...)
Вставка
- Опубліковано 9 лют 2025
- NOTE: This video was made for educational purposes only. All activities shown in this video are demonstrated for educational and informative learning.
I finally got around to infecting a bluetooth speaker with Dee Boo Dah. This time I work on building a program or method which allows me to hijack the current bluetooth session and send my own music through the stream. I failed my initial attempt, but was able to force my way into the speaker.
📝 Resources Mentioned:
(Video Idea Inspiration): Bluetooth Speakers flaw lets hackers hijack speakers: www.comparitec...
BlueZ and A2DP Play with PulseAudio Server: variwiki.com/i...
Getting Started with Raspberry Pi 4: crosstalksolut...
PACTL Man Page: linux.die.net/...
BTProxy Open Source Tool: github.com/con...
Internal Blue: github.com/see...
💻 Gear Used:
Raspberry Pi 3B+ Starter Kit: amzn.to/3p2STXG
JBL Flip 4: amzn.to/3muD1eT
❓ Interested in cybersecurity, but don't know where to start? Take a look at this newly released course which helps you get started in cybersecurity: www.cybercadem...
💻 Wondering if Cybersecurity is Right for You? Take the Quiz and Find Out: cybercademy.or...
🐕 Follow Me:
Twitter: / collinsinfosec
Instagram: / collinsinfosec
Cybercademy Discord Server: / discord
🤔 Have questions, concerns, comments?:
Email me: grant@cyberinternacademy.com
🎧 Gear:
Laptop (Lenovo X1 Carbon Ultrabook): amzn.to/2O0UfAM
Monitors (Dell D Series 31.5” D3218HN): amzn.to/2EXlgRF
Keyboard (Velocifire VM01): amzn.to/2TEswfd
Headphones (Audio Technica ATH-M40x): amzn.to/2F4Tvq6
#deeboodah
Stack overflow here we go. Classic and true.
we have the same pfp :D
-Hacker : "How to hack a bluetooth speaker"
-Normal people : just ask the Guy to change the music"
What if the guy is an a**hole?
What if the guy is an a**hole?
Nahh
Social Engineering bro LMAO
Yeah… Trust me, it doesn’t go down well… Normal person approach won’t get you kicked out of a friendship group lol
In high-school I learned how to crack WEB encrypted wifi networks. It was a fun learning experience but WPA had came out and that was much harder that I never succeeded. Kudos to your learning journey
*WEP
*WEP
Creativity at its peak!! Awesome work man:)
hpw can someone hack a bluetooth🤔🤔🤔
okay nvr mind got it took me cuple of minute
@@israelaldaba46 he didnt hacked it just connected
So basically you need a speaker that can connect to 2 or more devices at the same time.
This might work for a time frame of 3 minutes unless the speaker is modified to be in discovery mode indefinitely.
That's not hacking! The pi is already paired with the speaker (when you put it into discovery mode and connected) and also the speaker is capable of multiple Bluetooth connections! paplay is a simple audio streaming tool! Get your facts straight!
@D it isn’t even that deep it’s just a video lool
Bro nice work ... lots of effort u have to put in these kind of t congo
Salute to your creativity and effort.
Finally a way to be in peace when doing a picnic and replace these crappy musics with an og rickroll 😂
Please tell me I’m not the only one who knows this is using the device as intended…
I have a crazy neighbor who often turns on the speaker very loudly at night, and now I can't stand my neighbor anymore
Buy a jammer and a high gain antenna.
I think I didn't get it... but if the speaker has to be in discoverable mode, how am I supposed to connect to a speaker that is already being loud?
Unpopular opinion: You should make 'DEE BOO DAH'.Your slogan ¯\_(ツ)_/¯
your narrative in the beginning is very fun 😁
I am watching this video to get better sleep. loud speaker in India is a biggest problem
That’s exactly what everyone at the party thinks-“horrible music”. Hold my 🍺
Can u give me a download link to this program?
Can you please tell (and if yes, how) if it is possible to do all of this from a rooted android phone running kali nethunter. (I am assuming, that it will work but can't test myself since i dont want to root my main phone)
Hlw grant... Nice work bro... Keep going...❤️
Awesome! The next target is Facebook. Dee buu daah!
Dee Boo DaH gang!
if the bluetooth device isn't in discover mode, it won't be possible? looks very similar to wifi attacks
When I'm on the train and people play their bullshit. Time to troll lmfao
Drink every time he says "go ahead"
I’m dead
"If you cant hack the Bluetooth Speaker, you shall hack the device."-Me
Lol good point 😂
The only problem is that they must be in discoverable mode to find the address. Other than that, well done. If anyone knows how to find the address while the speaker is running (not in discoverable mode), let us know.
Or brute Force on all addresses
@@niiiiiix even if you know the address...when the speaker exits from discovery mode you cant do anything
so if you already have the mac address it should be this simple?
I mean, if it's possible to break the connection, automatically leading the device back to discovery mode, then it should work....
Sniffer
How would this be possible to connect other Bluetooth while they are using ?
My neighbours will play music and scream like animals most nights, I want to connect somehow to their speakers and play porn or shit music
@@octopusdreams Regardless what music it is, people have work and kids to feed, it's selfish when they keep hard working people up at night. It fucks our whole day up not getting any sleep and can lead to potentially harming yourself
@@octopusdreams What does cars have anything to do with this, the parties and screaming go on for hours and disrupts sleep during hours people need the most, loud cars are only intimate noises and only lasts for 1min-10min max and are only operated during times when people are generally awake like 6am to go to work, those parties that go on past 10pm are actually illegal, they can't make noise around those times. If a vehicle is loud but complies with the decibel limits, and is operated during legal hours then there's nothing you can do, they are doing the right thing. So why did you randomly bring up cars
@@octopusdreams That is an issue for night shift people but if they are making the noise and abides by the law and they have a right to do it then they can, it's when the party goers are past the legal noise limit and breaking the law. It seems like your neighbours have loud cars, did you say something to them
@@octopusdreams I live next to islanders, those big animals scream and blast music from 8pm to 6am, I'm fine with noise up 12am but seriosutly, all the way till morning is fucked
Dee Boo Dah Gang ! I'm in ! Ha Ha Ha!
The first moment you think you are Mr Robot: 0:40 then the next thing : 0:43
I am a prof hacker and I would say that, that is not bad for a beginner
Hi, nice video but isn't this just connecting to the speaker normally just from the command line instead of with a GUI. I don't understand how this is hacking? Could you please explain
Great question. Many limitations to the hack. So JBL allows you to have two audio connections connected to the same speaker. What I did was connected my phone to the JBL, then I also connected my laptop via bluetooth (should have shown that in the video). In this scenario, not sure if it's the version of the speaker, I went ahead turned on the pi and scanned for the speaker, got the Bluetooth address. And then it forced played the audio over the two connections (it disconnected the laptop connection). Like I said many limitations... It's sort of hacking. More so script kiddies styles 😜
@@collinsinfosec so you can only do that if the speaker allows you to have 2 or more connected device at the same time?
@@Indraseptian-t2b yes
it's not hacking. he literally connect to bluetooth via command line. I don't think the creator of the video know what is he doing
@@allexj8203 Okay then lol.
COVID: at this point i dnt have frnds and no one is inviting me into their homes
As i understood 😁 you just connected via terminal and changed music 😂
It doesn't differ from connecting via phone.
I thought you would have interacted without touching.
It's for sure a weak attack. What I did was force connected my way into the speaker with two active connections to the speaker already present.
@@collinsinfosec okay, thx for response
@@collinsinfosec doesn't work used the exact same tools on arch linux and can't connect to the speaker if someone else is already connected is just says "not available"
pretty sure you faked the video, there is no possible way of connecting two devices to one speaker. I used the exact same tools and commands and it just says "not available"
@@jeromejarre4692 Bro may be ur Bluetooth speaker dont allow multiple connections where that JBL flip 4 has.
My friend purchased a Dindinmodern speaker that has lights and loud sound. It seems equally good. I think I will purchase one
I'm thinking your jbl is just able to accept multiple bluetooth clients at the same time. This is not a common feature on all speakers/headphones. What you did was to connect a second device (i.e use the above states functionality). I'm feeling like a gatekeeper but don't use words like "inject" or "hack". There's no hacking in there. It works as intended by the manufacturer
Bro, u didn't hack anything there u just did force pairing vie bluetoothctl service
Very basic functionality on any Unix system
He did hack,he allows something thats computer cant normaly.
Sry for english
You kinda can hack like that
Just do scan in the terminal
Go try abit social engineering on ur Target make them prees the Bluetooth button then bam u got their id of the speaker forever and can do now everyting
@@v-rdays7525 why pc cant if i use normal kali and Bluetooth scanner?
You should read the titleof the video better brother
you can disconnect any phone by...
smashing the phone! :3
Good to see you actually tried but what funny is throughout the video you just connected to the speaker and played a song but using manual commands that you could have done by just simple connecting it and using a music player.
I know right. Overcomplicated this entire project.
hmm instead of speaker how about school P.A system MUAHAHHA
please make a roadmap for how to go about diving into ethical hacking.......
I’m personally not a fan of teaching ppl how to unauthorised accessing anyone’s bt speaker tbh, it’s immature and poses a serious security/property ownership breech imho.
But since most Bluetooth wireless speakers are fundamentally flawed and they allow anyone to just hijack them due to the lack of bluetooth’s security implementation.
This is my one’s biggest gripe to all modern bt speakers especially JBL models in the market rn.
Their constantly and randomly dropping out their connection and stupidly allows anyone access to it despite actual authority from its owner/actual user.
A simple pairing code would help massively in this situation but since bt security doesn’t seem to be an importance to most wireless bt speaker manufacturers, this is it’s greatest Achilles heels unfortunately.
ehh although a youtube video will encourage immaturity, its still best for people to at least know about it so people can protect themselves against it, since if someone really wanted to perform something like this, they're gonna figure out anyways
@@oldcracker3383 I see your pov and appreciate the clarity since I completely missed it in the description and such tbh.
Funny enough, when my neighbours 14yo son hijacked my jbl boombox 2 while i was listening to some tunes on stereo pair mode on several occasions amidst one fine summer arvo.
He’s exact excuse to his mother and I when I informed he’s mother about those incidents was that he learnt how to do it here on UA-cam. idk which one since he didn’t specify exactly and there are a number of vids here now which achieves somewhat similar results give it take.
The kid was apparently just simply curious on how loud it can really go since the times he did manage to do it, all he rly did was pump up the volume to it’s absolute maximum and giggled like most kid would after which.
Thankfully other than some really annoyed people and other neighbours near by that witnessed it when those incidents happened to me, luckily for me the kid knew better and didn’t play over something more sinister whist he was in those short control over said devices.
Fortunately in my case, it was merely a curious kid that was going stir crazy during our lockdown stay at home mandates on my neck of the woods but a quick research online really shines a light on how serious this matter could potentially be on more sinister hands.
I honestly didn’t even notice your disclaimer in the description until just now, but with that clearly said and done. You’re aight 👌🏼 in my books.
I just wouldn’t be surprised if there are more victims out there that has had more serious consequences than what I had experienced which wouldn’t appreciate someone freely teaching folks on how to achieve just that is all.
I also do understand that there are those with insanely loud speaker setups which has little to no regards to those around them and insist on blasting crazy loud & obnoxious so called music which can benefit from a DIY solution like you show here so long as they use some common sense aka no other nefarious agenda(s) other than you have stated.
I just hope mine is an isolated event but realistically, I wouldn’t be surprised if it happens again in the future since like I said earlier. This issue needs to be sorted ASAP by the manufacturers who sells these things in massive quantities worldwide but seems to have overlooked a crucial fundamental flaw.
To be clear, I’m not hating here. I was merely a little confused on your angle here but now I completely see that your not adding fuel to the fire here as I initially had thought but the complete opposite so yeah 👍🏼 We’re gucci here
Yes, it was for educational and testing purposes only. As you saw, I wasn't super successful in getting my "hack" to work. Fun little experiment though.
No it isn't. Without revealing too much, my Thinkpad, by default will discover all local Bluetooth connections. OK. Now that your playing that obnoxiously loud music into my condo, it's time for a shut down. I already can see your device. Now all I need to do is monitor and capture your address and yes their is a program that will sniff for it. I didn't do anything besides shutting down your obnoxious music on calm Sunday afternoon. Don't effing disturb me again.
@@jonathannocon knowledge tools and weapons are free and cannot truly be regulated. Morality is up to the operator.
Just an idea, but you can't connect to most speakers, when they are already connected to a phone for example. But what if you make a dos attack not to the speaker, but to the phone, so that the box get's confused, exposes its mac address. Now the 200 iq part would be to just spoof the mac adress of the phone and maybe even the bluetooth class and then you could connect with another bluetooth adapter, while the first one is still doing the dos attack.
will this work? I am doing this to live my life peacefully and sleep at night, my noisy neighbours made my life hell
@@Viralvlogvideos
You can try but it's extemely theoretical.
You'd need multiple Bluetooth adapters of a very high quality, but I think you have a better chance of just telling the police about it xD
imagine hacking into those big bluetooth speakers and play some stupid songs 😂
It'd be impressive if you could write a script to handle bluetoothctl; It's fine I guess, thanks for all the sources in the description.
its Tyler Joseph giving us hacking tutorial
Im a product developer and if you want to start selling these preprogramed raspberries Im in.
De Boo Da
.wav is pronounced "wave" because it's soundwaves.
I wish there was an easier way to do this 😕 I'm in a bus and the music is blasted
Which language u r using in the video
And which language will be best for hacking
could you make a full length tutorial?
Can it be done in Arduino?
It can be done with anything. It's not really a complete "hack."
@@collinsinfosec deeboodah also thx for the quick response
Can this be used to sniff bluetooth audio and decode whatever music is being played?
You're a Patriots fan you should know about cheating lol
Cash in bro.
Do a vid on how to jam Apple’s AirTags, and your channel will explode. Many non-sheep are wondering about their privacy now.
Jammers (especially a small personal sized one, that can be tossed in a backpack, or keychain) is pretty much the only thing that can protect Android users, and unsuspecting iOS users, from being surveilled with Apple’s new toy.
Just found your channel, while doing some research. Good vids. Subbed 👍
Put it in a faraday cage
Is it possible to use pi zero w for this method if it is please make a video......
May I please ask? What are you computer specs ???
POV: you go to hack something then just Use it In the way it was intended,but through CLI, Still great video tho
Good research bro ❣️❣️
Thanks Akash!
@@collinsinfosec ❤️
what if he doesn't use bluetooth ,like a usb stick
I live in a terrace house and my neighbour is blasting the music ridiculously high through his laptop on his speaker, and hes not allowing other connections, help me out how do I hack him
Ur keylogger script isn't working
Kek
JBL be like: why us... why why! 🤣😂🤣
Hope you dont get a breach notice from JBL
hey mate
you stated earlier that you can actually change the song but seeing the whole video , I think it is a little bit lame concept because of availabilty of a laptop or pc nearby..... otherwise the video was fantastic /..... keep up the good work....
Hey! Bluetooth has to be a nearby attack, since bluetooth relies on the range of a device, you won't be able to attack from 5 miles away for example. Thanks for the comments though!
@@collinsinfosec pretty much understandable ... Thanks for taking time and replying my comment❤️❤️
Hii,I'm getting Stream error: Invalid argument
Please share any kinda of solution for this..
Are you using Kali linux?
hi grant !how to save google chrome browsing histort for future reference before deleting it for creating space in my pc?
Is this patch yet ?
pulseaudio is one o many sound servers on Linux but great explanations
Bro only one device connects to the speaker at a time any solutions?
The fact you're on Windows is already a red flag.
Valid. I used my Raspberry Pi as my "hacking device." Even though it really wasn't truly a hack
did he just put it in discoverable mode to find the mac address or was that needed to connect as well?
I did have to put it in discoverable mode to find the Bluetooth address. Then I was able to force connect by using the bluetooth address.
Nice work bro 👍🏻💪🏻💪🏻💪🏻💪🏻💪🏻
so you don't have any android program to kill the neighbors loud Bluetooth speakers?..this is in an other country where 3 to 5 people in the same block blast their speakers all day and night, no noise laws here.
Nice!
Did thou go to Rutgers Camden?
can i have that discarded computer you have against the wall with the monitor on it?...
Can this program run inside a app?
Can I do it without raspberry
Can this work without rasberry pie
Awesome intro
doesn't work. keeps saying device not available when trying to connect.
Grant, where do you work or are you only still a student
I am a senior. Right now I sort of work for myself as I finish up university.
Oh nice nice
Where exactly do you work grant
I support you and your effort.
Bro,should be possible to jam the all are network in locality area .All the frequency
Like call, talk to someone else and also bluetooth.
Should possible💭💭💭💭
isn’t there just a way to block the stream form the victim to the speaker with a bluetooth jammer ?
Same thing just came to my mind. Just jam the bt signal.
I'm sure that's possible, but it's better to have terrible music at a party, than none at all.
But is 2.4ghz
Cool idea but I have a sound core flare 2 would love to be able to hack the speaker os to change the lighting options the options kinda boring that be the shit!
I tried :
2.4ghz Jammer -> Illegal
Brute Force the bluetooth pin -> idk if it works
I think you literally just connected two devices to a speaker that supports that by design. Oh but now that I'm re-reading the title it does say "(sort of)" lol
Yes, this experiment was, well... mostly a fail.
i also want to try because my neighbor speaker is to loud for people around
i want to get access into it then watching porn with max volume as loud af
I want this in hindi
Thats cool im not that good at hacking but i got the idea the problem is do we still need a device since we are using smart phones now? Like in short anyone made a program for this kind of hacking method cause we got a noisy old neighbor guy that always blast his music..
But what if the bluetooth has a password?
So turn up to the party with a bunch of tech yeah that will do it
8:08 " you can see" :(
yeah i can
gee seems hard
IRONY: We can connect to a bluetooth speaker the same way don't use any of these commands/ComputerBoard just turn on discoverable mode on and then connect using your PHONE
PS : Salute to your efforts
I sort of failed this one :( Thanks though.
This is not hacking if you want to hack bluetooth speaker first dos the connection of the target device and if the connection stop stop the dos and connect to the speaker
Bro someone just did this to me and it’s 5 am plz help
I can get a rashberry pie
Any other means
I am using a dindinmodern bluetooth speaker, which I think is very good at the price I bought.