Info: - Vulnerability Name: HeloMoto - Discovery Date: April 2005 - Discovered By: Adam Laurie - Target Devices: Motorola phones Method: - The attack combines "BlueSnarf attack" and "BlueBug attack." - Exploits incorrect handling of "trusted devices" on Motorola phones. - Masks as an unauthenticated OBEX Push Profile attempting to send a vCard. - Stores the attacker's device in the victim's "list of trusted devices." - Connects to the headset profile without needing authentication. - Uses AT-commands (like in "BlueBug") to control the device. Downloads: - HeloMoto-Maemo: A tool for Nokia 770 Tablet PC, written in Linux using BlueZ. - HeloMoto Tool: Extracts personal information from early Motorola V-Series, also using BlueZ for Linux. People Involved: - Adam Laurie, Chief Security Officer and Director of The Bunker Secure Hosting Ltd. - Industry veteran with experience since the late Seventies, focusing on computer programming and mini-computers.