9To5Mac Critical Bluetooth Vulnerability in Beats Earbuds Allows Eavesdropping
Article Content
- •A Bluetooth vulnerability in Beats Studio Buds allows eavesdropping via the microphone.
- •The flaw is tracked as CVE-2025-20701 and was discovered by ERNW GmbH researchers.
- •Apple has released firmware version 1B211 to fix the vulnerability, which users must manually ensure is installed.
A serious security vulnerability has been discovered in Apple's Beats Studio Buds, allowing attackers within Bluetooth range to eavesdrop through the device's microphone. The flaw, identified as CVE-2025-20701, is linked to an open-source Airoha Bluetooth Audio SDK used in the earbuds. For exploitation, the earbuds must be unpaired and actively searching for connections. Apple has released firmware version 1B211 to address this issue, which was reported by security researchers Dennis Heinze and Frieder Steinmetz from ERNW GmbH. The vulnerability was known since mid-2025 but was only patched in June 2026. Users are advised to ensure their devices are updated to the latest firmware to mitigate the risk. The vulnerability also affects other earbuds using the same SDK, not just Beats products.
Ask AI about this cluster
Answers cite the sources they use
Timeline
More articles in this cluster (27)
Following this threat?
Track ERNW and CVE-2025-20700 in your own feed — you're alerted when they show up in new reporting, leak sites or exploitation.
Free account · no card needed
Continue Reading
Critical Zero-Day Vulnerability in Cisco Secure Email Gateway Exploited On September 14, 2026, Cisco disclosed a critical SQL injection vulnerability (CVE-2026-76461) in its Secure Email Gateway, allowing unauthenticated remote attackers to execute arbitrary commands with root privileges. This vulnerability arises from insufficient validation in the email parsing logic. Cisco confirmed…
Critical WSO2 API Manager Vulnerability Under Active Exploitation A critical vulnerability (CVE-2026-5430) in WSO2 API Manager is being actively exploited, allowing unauthenticated attackers to forge admin tokens via JWT authentication bypass. This flaw, which has a CVSS score of 10.0, affects multiple WSO2 products including API Manager, Universal Gateway, Traffic Manager, and API…