“The ubiquitous ESP32 microchip made by Chinese manufacturer Espressif and used by over 1 billion units as of 2023 contains undocumented commands that could be leveraged for attacks.”
Researchers found 29 undocumented Bluetooth commands in the ESP32, a chip in over a billion devices. They allow memory writes and MAC spoofing. Using them requires code already running on the chip. The URL still says backdoor and the headline had to walk it back.