BlackHat Europe 2026 training
Hacking Bluetooth Low Energy
This intensive two-day training transforms you into a Bluetooth Low Energy security expert through immersive, hands-on hacking of real-world BLE devices. Forget boring lectures—you’ll spend most of your time exploiting vulnerabilities using cutting-edge tools, including the trainer’s revolutionary open-source BLESPlo.it platform.
BLESPlo.it is your new secret weapon: a mobile app paired with an ESP32 device that clones and simulates BLE devices so convincingly they fool official apps. With its physical display, web interface, and dynamic scripting engine, you’ll scan, fingerprint, control, and manipulate BLE communications like never before—often without even touching a keyboard.
You’ll start by mastering BLE fundamentals through hands-on interaction with simulated devices, learning to decode proprietary packets, fingerprint beacons, and take control of unsecured devices. Within hours, you’ll be controlling a “lightbulb” with custom packets and building interfaces that outperform original manufacturer apps. Then dive deeper: intercept BLE traffic using radio-layer sniffing and an ingenious phone-based packet capture method that streams live to Wireshark—no external hardware required.
As the training intensifies, you’ll tackle advanced attacks including wireless relay and machine-in-the-middle scenarios, cracking insecure pairing, and reverse-engineering proprietary protocols. Put your skills to the test with real security assessments: compromise a remotely controlled car by intercepting and replaying packets, breaking encryption, and exploiting vendor-specific commands. Feeling confident? Challenge yourself with the “perfect security” smart lock and other progressively difficult targets.
Beyond the core curriculum, you’ll explore Bluetooth 5 and 6, Bluetooth Mesh, protocol vulnerabilities, connection hijacking, jamming, firmware-over-the-air attacks, and device development. You’ll leave with a complete hardware kit—including preconfigured Android and Linux systems on Raspberry Pi—plus detailed instructions to continue hacking on your own. This isn’t just training; it’s your launchpad into the lucrative world of BLE security research.
Key takeaways
- Gain hands-on expertise with our revolutionary open-source tool that clones, simulates, and manipulates BLE devices using just your phone and ESP32.
- Learn the full spectrum of attacks from passive interception to cracking pairing, reverse-engineering protocols, and exploiting real-world smart locks and connected cars.
- Receive a complete setup with dedicated BLE training devices, preconfigured systems, and detailed instructions to practice long after the course ends
Who should take this course
- Pentesters
- Security professionals
- Red teamers
- Researchers
- BLE device designers
- Developers
- Anyone interested in IoT security!
Audience skill level
Beginner to intermediate
Student requirements
- No prior Bluetooth knowledge required
- Basic Linux command line familiarity
- Basic Python scripting knowledge recommended
- General penetration testing or networking experience is helpful but not required
What students should bring
- Laptop (Windows, Linux or MacOS x86-64 or Arm Apple Silicon) capable of running virtual machine, 40GB disk space, 2x USB type A port (or USB hub), 5GHz wifi. Administrative privileges may be required to allow connecting external USB devices to VM (some corporate laptops may have this feature disabled).
- Optionally a smartphone, preferably Android (not necessarily latest, up to ~8 years old). Several Android phones will be available for students during the session. Moreover, the included Raspberry Pi will also be able to run a preconfigured Android system.
- You are welcome to bring your own BLE device. Having enough time we may be able to test its security.
What students will be provided with
- Course materials in PDFs (over 1000 pages)
- All required additional files: source code, documentation, installation binaries, virtual machine images
- Take-away hardware pack of about 200$ value for hands-on exercises, consisting of sample BLE device and attack tools:
- Raspberry Pi running 2 systems: Linux (stable environment with all the tools preinstalled) and Android (acting as a phone with live packet dump to Wireshark, root, various applications)
- Two Bluetooth sniffers (Nordic, SniffLE)
- BLE training device (simulating/attacking real hardware)
- Bluetooth Low Energy USB dongles
Register here:
https://blackhat.com/europe/training/schedule/index.html#hacking-bluetooth-low-energy-54367
Share this post
Twitter
Google+
Facebook
Reddit
LinkedIn
StumbleUpon
Email