
What you need to know
- A report from SySS GmbH, a German IT brand, indicates that the COROS PACE 3 has "several significant vulnerabilities allowing an unauthenticated attacker within the Bluetooth range" to access your data.
- The PACE 3 and other COROS watches can be forced-paired to another phone using a legacy Bluetooth "Just works" connection.
- With access, the hijacker can see your data, reset or reconfigure your device, read your phone notifications, or even send you fake messages.
- COROS's CEO has acknowledged this is a "system-level issue" and that they intend to begin addressing them before the end of July.