This post is older than 2 years and might not be relevant anymore
More Info: Consider searching for newer posts

MITM attacks

Hello,

We avoid MITM attacks by using a static passkey. Does it mean that the attacker can decrypt the connection if attacker get the passkey? What I transfer or receive data will be captured by the attacker?

Parents Reply
  • That seems to be the intention, but it's not something I know much about yet. Since NFC has a very small range, it seems like it would limit key interception partly by limiting range of transmission. So, my questions are: 1) Is sniffing of NFC possible (even if not usually practical) to retrieve the OOB key? and 2) Which devices (Android, iOS, Windows Phone, etc.) currently support NFC for OOB? (I think the demos I've seen used Android devices)

Children
No Data
Related