Chevron icon It indicates an expandable section or menu, or sometimes previous / next navigation options. HOMEPAGE

7 major fitness trackers just failed a basic security test

jawbone up
Kazuhiro Keino / Flickr

Snoops might be able to track your movements using the Bluetooth signal from your fitness tracker, according to a new report.

Advertisement

The research group Open Effect studied eight popular fitness wearables: the Apple Watch, the Basis Peak, the Fitbit Charge HR, the Garmin Vivosmart, the Jawbone UP 2, the Mio Fuse, the Withings Pulse O2, and the Xiaomi Mi Band.

Only the Apple Watch passed a simple security test.

When you walk around with a wearable device like a smartwatch, it emits a Bluetooth signal. It uses that signal to constantly chat with your smartphone, passing information back and forth. Usually, that data is encrypted so hackers can't listen in. But even if they can't understand the conversation between your phone and wearable, snoops can recognize the MAC address – or unique voice with which the device speaks. With that information, they can track you as you move from place to place.

A secure wearable would change its MAC address periodically to confuse snoops. The Basis Peak, the Fitbit Charge HR, the Garmin Vivosmart, the Jawbone UP 2, the Mio Fuse, the Withings Pulse O2, and the Xiaomi Mi Band failed to do that.

Advertisement

Open Effect's researchers suggest lots of different people, from shopping center employees to law enforcement personnel, could use that data to learn details about your movements that you'd probably prefer stay private.

Even more alarming for some users, the researchers found that Withings and Garmin fail to encrypt their data, allowing hackers to listen in.

The researchers also found they could insert fake information into the Jawbone and Withings device feeds, which might enable users to falsify medical data promised to health insurance companies.

We've reached out to the implicated wearable brands for comment, and will update if we hear back.

Advertisement

Check out Open Effect's full report here.

Fitbit Fitness Tracker Apple Watch
Advertisement
Close icon Two crossed lines that form an 'X'. It indicates a way to close an interaction, or dismiss a notification.

Jump to

  1. Main content
  2. Search
  3. Account