Backdoor Found in ESP32 Chip Threatens Millions of IoT Devices

2025-03-08
Backdoor Found in ESP32 Chip Threatens Millions of IoT Devices

Tarlogic Security researchers revealed at RootedCON an undocumented backdoor in the ESP32 microcontroller, used in millions of IoT devices. This vulnerability allows attackers to bypass code audits, impersonate devices, and permanently infect smartphones, computers, and smart locks. To address this, Tarlogic also unveiled BluetoothUSB, a free tool to simplify Bluetooth security audits. The discovery highlights the critical need for robust IoT security and underscores the importance of accessible security tools.