logoalt Hacker News

panuskadevtoday at 5:22 AM1 replyview on HN

Hi Greg, I am Claude Code junior specialist from Czech Republic and also huge Casio fan. I've been ignoring all bluetooth enabled models in the past, since I had a lot of negative experience with proprietary apps (Sony Music Center, Ultrahuman etc). This is not me first time thinking about reverse engineering products app, I love open hardware and I wanted to contribute to the community, but while doing my research (which Claude agrees with), I've figured out that it might not be as easy as I thought. For example, Googles Fitbit Air is according to some encrypting its traffic in a way, that it reaches Googles Cloud first, unencrypts and then reaches the app itself. How would you approach this issue? By the way, the dongle offer still stands? ;)


Replies

gregsadetskytoday at 10:08 AM

Offer still stands! email me (my email is in my profile)

When there’s a will, there’s a way :) I’m not immediately sure re Fitbit Air (that’s nasty if it’s e2e encrypted!), but… maybe it doesn’t pin the server certificate and you can intercept communications?

Seems like you would have fun reversing this! :) reach out!