Bluetooth LE

This module is responsible for Bluetooth Low Energy devices discovery, services enumeration and characteristic writing for unauthenticated devices.

This module is not supported on Microsoft Windows and Apple macOS due to this bug.

Commands

ble.recon on

Start Bluetooth Low Energy devices discovery.

ble.recon off

Stop Bluetooth Low Energy devices discovery.

ble.clear

Clear all devices collected by the BLE discovery module.

ble.show

Show discovered Bluetooth Low Energy devices.

ble.enum MAC

Enumerate services and characteristics for the given BLE device.

ble.write MAC UUID HEX_DATA

Write the HEX_DATA buffer to the BLE device with the specified MAC address, to the characteristics with the given UUID. |

Parameters

parameterdefaultdescription
ble.device-1Index of the HCI device to use, -1 to autodetect.
ble.show.filterDefines a regular expression filter for ble.show.
ble.show.sortrssi ascDefines sorting field (rssi, mac, or seen) and direction (asc or desc) for ble.show.
ble.show.limit0If greater than zero, defines limit for ble.show.

Examples

Connect, enumerate and read characteristics from the BLE device 04:52:de:ad:be:ef (requires ble.recon on first):

  1. > ble.enum 04:52:de:ad:be:ef

Write the bytes ff ff ff ff ff ff ff ff to the BLE device 04:52:de:ad:be:ef on its characteristics with UUID 234bfbd5e3b34536a3fe723620d4b78d (requires ble.recon on first):

  1. > ble.write 04:52:de:ad:be:ef 234bfbd5e3b34536a3fe723620d4b78d ffffffffffffffff

Hacking a Loccess smartlock using bettercap: