us

216.73.216.172

New ultrasonic hack can manipulate your digital assistant

ultrasonic

Researchers are advising consumers about a new type of hack that has recently emerged. It involves the use of smart digital assistants like Google’s Alexa or Apple’s Siri. The hack called a “SurfingAttack” involves the use of ultrasonic guided waves that are unnoticeable to the human ear to communicate with the voice assistant using a device. It could target Ring services with door deadbolts attached or move the temperature dial on your thermostat.

The hack enables interactions between the hacker and a voice-controlled device over long distances, even if the device is not in sight. The signals could even be transmitted through a solid surface, such as a table.

 

“Humans cannot hear anything, but the voice assistants will interpret these ultrasonic sounds as a voice command, and conduct certain operations because of it,” said Qiben Yan, an assistant professor at Michigan State University’s Secure and Intelligent Things Lab and a key investigator on the project. “Sending the commands to the voice assistance, we can basically control the voice assistant. There’s a lot of opportunities for this when people put their phones down on a table and leave them unattended.”

Yan stated that hackers could initiate conversations with the victim’s contacts, and if their devices are connected, possibly control home devices, lock or unlock doors and alter the thermostat. Such attacks could also affect two-factor authentication, by reading the security code sent through text message back to the hacker. 

 

Using a $5 off-the-shelf PZT transducer, a type of electroacoustic transducer, the researchers were able to successfully compromise a wide range of devices such as iPhone X, iPhone 6+, iPhone 5, Samsung S9, Samsung S7, Google Pixel 3, Google Pixel 2, among many others. It is believed that more devices could be at risk, including phones protected by silicone rubber phone cases.

 

There are a number of steps people can take in order to prevent such attacks from taking place. Disabling the voice assistance when your phone is locked, or ensuring your phone is on a covering such as a tablecloth, can stop the ultrasonic ways from affecting it. Using phone cases of uncommon materials like wood can also help.

Related Posts

News

Dutch online bank joins the queue of fines imposition drive of Europe for AML compliance failure, fined €2.6 million

Dutch online bank joins the queue of fines imposition drive of Europe for AML compliance failure, fined €2.6 million

Explore More

News

Safra Sarasin, private Swiss bank, fined, as they failed to stop laundering of illicit funds

Safra Sarasin, private Swiss bank, fined, as they failed to stop laundering of illicit funds

Explore More

News

JP Morgan agreed to pay $330 million to Malaysia to settle 1MDB case, additional $3 million implied in fines by Switzerland

JP Morgan agreed to pay $330 million to Malaysia to settle 1MDB case, additional $3 million implied in fines by Switzerland

Explore More

News

The Gambling Commission of the UK announced a £1 million fine on ProgressPlay Limited due to compliance failure

The Gambling Commission of the UK announced a £1 million fine on ProgressPlay Limited due to compliance failure

Explore More

News

UAE Central Bank hit Financial Firms with fines due to compliance failures

UAE Central Bank hit Financial Firms with fines due to compliance failures

Explore More

News

Rising Bank fraud and Money Mule Networks should be a national security threat, warns a UK-based Think Tank

Rising Bank fraud and Money Mule Networks should be a national security threat, warns a UK-based Think Tank

Explore More

News

Singapore Hits Law Firms With $200,000 in Fines Amid Ongoing AML Investigation

Singapore Hits Law Firms With $200,000 in Fines Amid Ongoing AML Investigation

Explore More

News

Dutch online bank joins the queue of fines imposition drive of Europe for AML compliance failure, fined €2.6 million

Dutch online bank joins the queue of fines imposition drive of Europe for AML compliance failure, fined €2.6 million

Explore More

News

Safra Sarasin, private Swiss bank, fined, as they failed to stop laundering of illicit funds

Safra Sarasin, private Swiss bank, fined, as they failed to stop laundering of illicit funds

Explore More

News

JP Morgan agreed to pay $330 million to Malaysia to settle 1MDB case, additional $3 million implied in fines by Switzerland

JP Morgan agreed to pay $330 million to Malaysia to settle 1MDB case, additional $3 million implied in fines by Switzerland

Explore More

News

The Gambling Commission of the UK announced a £1 million fine on ProgressPlay Limited due to compliance failure

The Gambling Commission of the UK announced a £1 million fine on ProgressPlay Limited due to compliance failure

Explore More

News

UAE Central Bank hit Financial Firms with fines due to compliance failures

UAE Central Bank hit Financial Firms with fines due to compliance failures

Explore More

News

Rising Bank fraud and Money Mule Networks should be a national security threat, warns a UK-based Think Tank

Rising Bank fraud and Money Mule Networks should be a national security threat, warns a UK-based Think Tank

Explore More

News

Singapore Hits Law Firms With $200,000 in Fines Amid Ongoing AML Investigation

Singapore Hits Law Firms With $200,000 in Fines Amid Ongoing AML Investigation

Explore More

Take the next steps to better security.

Contact us

Get in touch with our experts. We'll help you find the perfect solution for your compliance and security needs.

Contact us

Request demo

Get free access to our platform and try our products today.

Get started