Skullcandy Dime 3 earbuds expose users to Bluetooth hijacking

Executive Summary

CERT/CC warns that Skullcandy Dime 3 earbuds automatically accept Bluetooth pairing requests from nearby unpaired devices, enabling attackers to hijack connections without user interaction. The vulnerability allows malicious devices to connect and potentially intercept audio or inject commands. Users should disable Bluetooth or update firmware, and manufacturers should enforce pairing authentication.


Intelligence Metadata - Source Publisher: Bleeping Computer - Published Date: 2026-09-09T21:02:14+00:00 - Category: threat-intel

Original Description: The Carnegie Mellon University CERT Coordination Center (CERT/CC) is warning that Skullcandy Dime 3 wireless earbuds accept Bluetooth pairing requests from nearby unpaired devices without requiring user interaction. [...]

"We must become the change we want to see."

— Mahatma Gandhi
Source: Bleeping Computer