Beats Studio Buds: patch closes eavesdropping; SecureROM in A12/A13

Colleagues, note two important Apple-related vulnerability reports.
What happened:
- Apple released Beats firmware 1B211, fixing CVE‑2025‑20701 in the Airoha Bluetooth SDK — which could allow spontaneous pairing and mic eavesdropping.
- ERNW earlier disclosed related Airoha SoC bugs enabling memory overwrite and earbud takeover.
- Paradigm Shift published PoC 'usbliter8': a SecureROM flaw in A12/A13 caused by a USB controller hardware defect; as SecureROM is immutable, the primary mitigation is migration to new silicon.
Why it matters: These flaws undermine trusted devices and demand immediate patching and a review of Bluetooth usage policies.
What steps will you take to protect devices?
#cybersecurity #Bluetooth #firmware #security

