CYBERSECURITYTRACKER
TRACKING6,506 stories in this site build1,309 vulnerability news stories in this site build
Permanent story citation

How a USB-connected speaker can infect a PC without ever being touched

This page keeps the story as Cybersecurity Tracker first published it. If the tracker later corrects it, the correction appears below the original and never replaces it.

Back to newsStory 440

As cited

Copy frozen at (site build).

vulnerabilities

How a USB-connected speaker can infect a PC without ever being touched

A researcher discovered that the Sound Blaster Katana V2X speaker, which connects to PCs via USB or Bluetooth, can be exploited for remote code execution through a proprietary protocol called Creative Transport Protocol (CTP). An attacker within Bluetooth range could potentially infect a connected computer without physical interaction with the device. The vulnerability affects the widely-used speaker sold by Creative Technologies.

Why it matters: This vulnerability allows local code execution on connected PCs through a consumer audio device without requiring physical access, making it relevant for users of this speaker model who should monitor for patches.

Source published
First seen by Cybersecurity Tracker

Source attribution

Glossary