The weird BLE-Lock

Wrote a Blog Post
My knowledge in Bluetooth LE Communication got quite rusty over time and I wanted to refresh it with an easy target the other day. I wanted to open up the lock with a simple Bluetooth command, but ended up having access to their entire backend database with countless unique users across their entire product lineup.