#OpenSynergy
Yes, it‘s already patched!

Is #OpenSynergy aware? Yes, we reported all the findings to OpenSynergy May, 2024. They acknowledged, rolled out patches to the customers of #BlueSDK in September, 2024. It was decided to wait until all of OpenSynergy customers applied the patches before this publication.
July 11, 2025 at 7:02 PM
PerfektBlue Bluetooth attack allows hacking infotainment systems of Mercedes, Volkswagen, and Skoda
PerfektBlue Bluetooth attack allows hacking infotainment systems of Mercedes, Volkswagen, and Skoda
Researchers found critical PerfektBlue flaws in OpenSynergy BlueSDK, allowing remote code execution to hack millions of vehicles' systems.
securityaffairs.com
July 10, 2025 at 7:36 PM
#PerfektBlue — #Cybersecurity researchers have discovered four security flaws in #OpenSynergy #BlueSDK #Bluetooth stack that could allow #remote code execution on millions of #transport #vehicles from different vendors.

thehackernews.com/2025/07/perf...

perfektblue.pcacybersecurity.com
PerfektBlue Bluetooth Vulnerabilities Expose Millions of Vehicles to Remote Code Execution
Researchers uncover PerfektBlue flaws in OpenSynergy’s BlueSDK, exposing millions of vehicles to remote code execution
thehackernews.com
July 11, 2025 at 6:58 PM
📢 Opensynergy is #hiring a Brand & Marketing Designer (m/f/d)!

🌎 Berlin, Berlin, Germany

🔗 http://jbs.ink/3toZgxNzYKma

#jobalert #jobsearch #familyofficejobs #marketing #design
August 18, 2026 at 5:12 AM
"The vulnerabilities on testing devices PCA Team used for vulnerability research and verification, were accessible after pairing."

Sounds like that vuln is in the "If you invite someone into your house, someone is in your house" category

pcacybersecurity.com/resources/ad...
Critical Vulnerabilities Blue SDK OpenSynergy | PCA Advisory
PCA Cyber Security researchers identified and announced critical vulnerabilities in the Bluetooth stack of Blue SDK. PCA Researchers name the discovered vulnerability chain PerfektBlue. PerfektBlue - ...
pcacybersecurity.com
April 29, 2026 at 2:49 PM
PerfektBlue Bluetooth flaws impact Mercedes, Volkswagen, Skoda cars
PerfektBlue Bluetooth flaws impact Mercedes, Volkswagen, Skoda cars
Four vulnerabilities dubbed PerfektBlue and affecting the BlueSDK Bluetooth stack from OpenSynergy can be exploited to achieve remote code execution and potentially allow access to critical elements…
buff.ly
July 13, 2025 at 2:12 AM
PerfektBlue Vulnerabilities Put Millions of Vehicles at Risk: What You Need to Know

Bluetooth Exploits in Cars: A Growing Threat A new set of critical Bluetooth security flaws, dubbed PerfektBlue, has exposed millions of vehicles and devices across multiple industries to potential cyberattacks.…
PerfektBlue Vulnerabilities Put Millions of Vehicles at Risk: What You Need to Know
Bluetooth Exploits in Cars: A Growing Threat A new set of critical Bluetooth security flaws, dubbed PerfektBlue, has exposed millions of vehicles and devices across multiple industries to potential cyberattacks. The vulnerabilities, found in the BlueSDK Bluetooth stack from OpenSynergy, can be chained to achieve remote code execution (RCE), offering attackers access to in-car systems through infotainment units. Automakers like Volkswagen, Mercedes-Benz, and Skoda are among those affected, but many others could also be vulnerable without realizing it.
undercodenews.com
July 10, 2025 at 4:40 PM
Milioni di veicoli a rischio di attacchi RCE tramite il bug Bluetooth PerfektBlue
Quattro vulnerabilità, denominate PerfektBlue, interessano lo stack Bluetooth BlueSDK di OpenSynergy. Le vulnerabilità consentono l’esecuzione...
Milioni di veicoli a rischio di attacchi RCE tramite il bug Bluetooth PerfektBlue
www.redhotcyber.com
July 11, 2025 at 2:25 PM
PerfektBlue Bluetooth attack allows hacking infotainment systems of Mercedes, Volkswagen, and Skoda

Researchers found critical PerfektBlue flaws in OpenSynergy BlueSDK, allowing remote code execution to hack millions of vehicles’ systems. Researchers at PCA Cyber Security identi…

#hackernews #news
PerfektBlue Bluetooth attack allows hacking infotainment systems of Mercedes, Volkswagen, and Skoda
Researchers found critical PerfektBlue flaws in OpenSynergy BlueSDK, allowing remote code execution to hack millions of vehicles’ systems. Researchers at PCA Cyber Security identified a set of critical vulnerabilities, collectively tracked as PerfektBlue, in OpenSynergy BlueSDK Bluetooth stack. The exploitation of the flaws potentially allows remote code execution in millions of vehicles. These flaws could […]
securityaffairs.com
July 11, 2025 at 9:19 PM
PerfektBlue Bluetooth flaws impact Mercedes, Volkswagen, Skoda cars

Four vulnerabilities dubbed PerfektBlue and affecting the BlueSDK Bluetooth stack from OpenSynergy can be exploited to achieve remote code execution and potentially allow access to critical elements in vehicles …

#hackernews #news
PerfektBlue Bluetooth flaws impact Mercedes, Volkswagen, Skoda cars
Four vulnerabilities dubbed PerfektBlue and affecting the BlueSDK Bluetooth stack from OpenSynergy can be exploited to achieve remote code execution and potentially allow access to critical elements in vehicles from multiple vendors, including Mercedes-Benz AG, Volkswagen, and Skoda. [...]
www.bleepingcomputer.com
July 11, 2025 at 7:15 PM
Feed: "Geek Feed"
By: geekfeed on Sunday, July 13, 2025
PerfektBlue Bluetooth flaws impact Mercedes, Volkswagen, Skoda cars
Four vulnerabilities dubbed PerfektBlue and affecting the BlueSDK Bluetooth stack from OpenSynergy can be exploited to achieve remote code execution and potentially allow access to critical elements i...
geekfeed.net
July 14, 2025 at 1:36 AM
CVE-2024-45434 - OpenSynergy BlueSDK Bluetooth Stack Use-After-Free Vulnerability
CVE ID : CVE-2024-45434

Published : Sept. 12, 2025, 5:15 p.m. | 1 hour, 29 minutes ago

Description : OpenSynergy BlueSDK (aka Blue SDK) through 6.x has a Use-After-Free. The specific flaw e...
CVE-2024-45434 - OpenSynergy BlueSDK Bluetooth Stack Use-After-Free Vulnerability
OpenSynergy BlueSDK (aka Blue SDK) through 6.x has a Use-After-Free. The specific flaw exists within the BlueSDK Bluetooth stack. The issue results from the lack of validating the existence of an object before performing operations on the object (aka use after free). An attacker can leverage this to achieve remote …
cvefeed.io
September 12, 2025 at 7:05 PM
CVE-2024-45433 - OpenSynergy BlueSDK Incorrect Control Flow Scoping Vulnerability
CVE ID : CVE-2024-45433

Published : Sept. 12, 2025, 5:15 p.m. | 1 hour, 29 minutes ago

Description : OpenSynergy BlueSDK (aka Blue SDK) through 6.x has Incorrect Control Flow Scoping. The s...
CVE-2024-45433 - OpenSynergy BlueSDK Incorrect Control Flow Scoping Vulnerability
OpenSynergy BlueSDK (aka Blue SDK) through 6.x has Incorrect Control Flow Scoping. The specific flaw exists within the BlueSDK Bluetooth stack. The issue results from the lack of proper return control flow after detecting an unusual condition. An attacker can leverage this to bypass a security validation and make the …
cvefeed.io
September 12, 2025 at 6:52 PM
(NYSE : #OWLT)
#OwletBabycare partnered with OpenSynergy to integrate Blue SDK Bluetooth technology into its new Dream Sight baby monitor, delivering secure, reliable connectivity, seamless smartphone interoperability, and faster product innovation for families.
prismmarketview.com/owlet-partne...
Owlet Partners with OpenSynergy to Boost Connectivity in New Dream Sight Baby Monitor
Owlet (NYSE OWLT) has announced a partnership with OpenSynergy to integrate the company’s BlueSDK Bluetooth® software stack into Owlet’s next-generation Dr
prismmarketview.com
November 25, 2025 at 4:13 PM