Skip to main content
institutional access

You are connecting from
Lake Geneva Public Library,
please login or register to take advantage of your institution's Ground News Plan.

Published loading...Updated

Apple Patches Eavesdropping Vulnerability in Beats Studio Buds

The update fixes CVE-2025-20701, which researchers said could let nearby attackers eavesdrop or place calls without pairing.

  • Apple released firmware update 1B211 for Beats Studio Buds on June 16, patching CVE-2025-20701. Apple explained in a Tuesday advisory that the flaw allows attackers within Bluetooth range to listen through the microphone of unpaired devices.
  • The vulnerability exists within the Airoha Bluetooth audio SDK used by the MT2821A chip. Researchers at ERNW GmbH discovered the issue one year ago, which allows attackers in Bluetooth range to establish two-way audio connections without authentication.
  • More than a dozen devices from 10 manufacturers, including Sony and Bose, utilize the same vulnerable chip. Researchers noted that "real attacks are complex to perform" and should likely target only high-value targets due to required technical sophistication and physical proximity.
  • Beats Studio Buds automatically receive the update when paired with an Apple device and placed in the case with the lid closed. Depending on internet connection, the firmware update process can take up to 30 minutes to complete.
  • There are few reports of such Bluetooth vulnerabilities being actively exploited in the wild. People who think they may be targeted should turn off Bluetooth on devices whenever not needed and remain aware of risks when Bluetooth is enabled.
Insights by Ground AI

10 Articles

Think freely.Subscribe and get full access to Ground NewsSubscriptions start at $9.99/yearSubscribe
Father's Day SaleGet 40% off Vantage subscriptions for yourself or a friend.Get Started

Bias Distribution

  • 67% of the sources are Center
67% Center

Factuality Info Icon

To view factuality data please Upgrade to Premium

Ownership

Info Icon

To view ownership data please Upgrade to Vantage

BleepingComputer broke the news in New York, United States on Thursday, June 18, 2026.
Too Big Arrow Icon
Sources are mostly out of (0)

Similar News Topics

News
Feed Dots Icon
For You
Search Icon
Search
Blindspot LogoBlindspotLocal