If I pair my Android phone and my laptop, I can share files over Bluetooth from the phone to the laptop. I’ve started finding this a really convenient method for me to send files to a Linux laptop without needing to install a separate app on either the phone or my laptop. Especially when I’m away from my home network (I use SFTP at home).

How secure is this? Is there encryption by default and could someone else nearby with a receiver potentially decode the file you’re sending?

  • @catloaf@lemm.ee
    link
    fedilink
    English
    124 months ago

    It is extremely unlikely that there would be a motivated enough attacker to target you. And if someone is not targeting you, but just attacking everyone in range, it’s unlikely the files you are transferring are of any value to them.

      • @SkyezOpen@lemmy.world
        link
        fedilink
        104 months ago

        Nobody sane is transferring legendary pepes unencrypted over Bluetooth. I use an encrypted USB delivered by courier with key provided upon proof of receipt (and payment, of course). Other than that they stay on an airgapped machine or cold storage.

  • @ArbiterXero@lemmy.world
    link
    fedilink
    114 months ago

    It’s actually entirely horse shit.

    Only the very newest products that are on the latest standard are secure.

    It all look secure and sounds secure and feels secure with all the encryption….

    But about 2 years ago there was a downgrade attack that was proven to affect basically everything.

    Bluetooth security might as well be a flashing neon sign of your data.

    Now it’s not quite that simple and some people have updated their devices etc……

    But almost nobody actually has done that because Bluetooth devices are “fire and forget”

    I mean when’s the last time you updated the firmware on your headphones or keyboard?

    Mostly “never”

  • Natanael
    link
    fedilink
    74 months ago

    It is encrypted, but the security of the encryption varies between implementations (some have been found to generate keys insecurely or screw up session management, etc). For most modern devices it’s decent, as long as you’re not actively targeted by some kind of intel agency

  • @lorty@lemmygrad.ml
    link
    fedilink
    14 months ago

    It’s alright but if you really want it to be private, specially when in a public space, you should use a cable. It would be faster too.