Users of non-Bluetooth wireless keyboards are being warned of a potentially serious vulnerability that could allow their typing to be intercepted.
Bastille Networks tested a number of wireless keyboards from vendors including HP, Radio Shack and Toshiba, and found the flaw that it has called KeySniffer.
The problem stems from the fact that a wide range of these wireless keyboards use unencrypted radio communications that can be easily intercepted by a cheap USB radio antenna costing less than $100 (£76).
The researchers were able to intercept user keystrokes and reportedly they could even control the wireless keyboard and insert their own keystrokes. The potential security risk this presents is obvious.
“This means an attacker can see personal and private data such as credit card numbers, usernames, passwords, security question answers and other sensitive or private information all in clear text. The equipment needed to do the attack costs less than $100 putting it in reach of many teenage hackers.”
Even worse, only two keyboard makers, Kensington and General Electric, bothered to issue an response to the discovery of the vulnerability.
Bastille’s list of the affected keyboard models that were tested can be found here. The firm told the BBC that Logitech, Dell and Lenovo used higher-end chips in their wireless keyboards that had stronger security.
The advice therefore for wireless keyboard users is to consider swooping their wireless keyboard for a Bluetooth-enabled device (which encrypts data over the air), or alternatively utilise a traditional hard-wired keyboard.
It should be noted that wireless keyboards are not the only wireless device whose security has been called into question of late.
Last year Trend Micro in partnership with First Base Technologies criticised the security of popular smartwatches.
A previous study by HP Security also found that many smartwatches carry major security flaws, thanks to their increasing connectivity.
Think you know all about cybersecurity? Try our quiz!
Thoma Bravo agrees to acquire Darktrace for $5.32 billion in cash, delivering some welcome news…
Customer adoption of AI services embedded in cloud services continues to deliver results for Microsoft,…
TikTok's 'secret source' algorithm is so core to ByteDance, it would rather shut down US…
After relocating from California to Texas in 2020, Oracle's Larry Ellison now reveals plan to…
Share price hit after Meta admits heavy AI spending plans, after posting strong first quarter…
For third time Google delays phase-out of third-party Chrome cookies after pushback from industry and…