Users of non-Bluetooth wireless keyboards are being warned of a potentially serious vulnerability that could allow their typing to be intercepted.
Bastille Networks tested a number of wireless keyboards from vendors including HP, Radio Shack and Toshiba, and found the flaw that it has called KeySniffer.
The problem stems from the fact that a wide range of these wireless keyboards use unencrypted radio communications that can be easily intercepted by a cheap USB radio antenna costing less than $100 (£76).
The researchers were able to intercept user keystrokes and reportedly they could even control the wireless keyboard and insert their own keystrokes. The potential security risk this presents is obvious.
“This means an attacker can see personal and private data such as credit card numbers, usernames, passwords, security question answers and other sensitive or private information all in clear text. The equipment needed to do the attack costs less than $100 putting it in reach of many teenage hackers.”
Even worse, only two keyboard makers, Kensington and General Electric, bothered to issue an response to the discovery of the vulnerability.
Bastille’s list of the affected keyboard models that were tested can be found here. The firm told the BBC that Logitech, Dell and Lenovo used higher-end chips in their wireless keyboards that had stronger security.
The advice therefore for wireless keyboard users is to consider swooping their wireless keyboard for a Bluetooth-enabled device (which encrypts data over the air), or alternatively utilise a traditional hard-wired keyboard.
It should be noted that wireless keyboards are not the only wireless device whose security has been called into question of late.
Last year Trend Micro in partnership with First Base Technologies criticised the security of popular smartwatches.
A previous study by HP Security also found that many smartwatches carry major security flaws, thanks to their increasing connectivity.
Think you know all about cybersecurity? Try our quiz!
Suspended prison sentence for Craig Wright for “flagrant breach” of court order, after his false…
Cash-strapped south American country agrees to sell or discontinue its national Bitcoin wallet after signing…
Google's change will allow advertisers to track customers' digital “fingerprints”, but UK data protection watchdog…
Welcome to Silicon In Focus Podcast: Tech in 2025! Join Steven Webb, UK Chief Technology…
European Commission publishes preliminary instructions to Apple on how to open up iOS to rivals,…
San Francisco jury finds Nima Momeni guilty of second-degree murder of Cash App founder Bob…