Free Republic
Browse · Search
Bloggers & Personal
Topics · Post Article

Skip to comments.

Hacker Builds $1,500 Cell Phone Tapping Device
Slashdot ^ | July 31, 2010 | Soulskill

Posted on 08/01/2010 4:08:56 PM PDT by PugetSoundSoldier

"A security researcher created a $1,500 cell phone base station kit (including a laptop and two RF antennas) that tricks cell phones into routing their outbound calls through his device, allowing someone to intercept even encrypted calls in the clear. Most of the price is for the laptop he used to operate the system. The device tricks the phones into disabling encryption and records call details and content before they are routed on their proper way through voice-over-IP. The low-cost, home-brewed device ... mimics more expensive devices already used by intelligence and law enforcement agencies — called IMSI catchers — that can capture phone ID data and content. The devices essentially spoof a legitimate GSM tower and entice cell phones to send them data by emitting a signal that's stronger than legitimate towers in the area. Encrypted calls are not protected from interception because the rogue tower can simply turn it off. Although the GSM specifications say that a phone should pop up a warning when it connects to a station that does not have encryption, SIM cards disable that setting so that alerts are not displayed. Even though the GSM spec requires it, this is a deliberate choice on the cell phone makers, Paget said."

(Excerpt) Read more at mobile.slashdot.org ...


TOPICS: Computers/Internet; Miscellaneous
KEYWORDS: att; gsm; hacker; tmobile
Navigation: use the links below to view more comments.
first 1-2021-23 next last
NOTE: Hacker shows that $1500 can intercept and record all your cell phone calls, if made over GSM here in the US. Have AT&T or T-Mobile as your providers? You're exposed.

The network vendors disable the GSM warning to show you're not encrypted, so you don't even know you're going through a bogus/spoofed cell.

IT folks - carefully consider the implications of this on corporate security! A competitor parked in front of your offices with a few of these $1500 cobbled-together microcells in the back of his Suburban could capture and record the conversations of your employees, including senior management, if they use GSM phones!

As usual, read the comments at Slashdot - lots of great information and additional details contained therein.

1 posted on 08/01/2010 4:09:02 PM PDT by PugetSoundSoldier
[ Post Reply | Private Reply | View Replies]

To: PugetSoundSoldier; for-q-clinton; driftdiver; TomServo; dayglored; Swordmaker

Phone people ping - serious breach of phone privacy! Someone alert the Tech Ping as well...


2 posted on 08/01/2010 4:10:12 PM PDT by PugetSoundSoldier (Indignation over the Sting of Truth is the defense of the indefensible)
[ Post Reply | Private Reply | To 1 | View Replies]

To: PugetSoundSoldier

IMSI catchers just act like a really strong cell base station and thus intercept the traffic aka “man in the middle” type of intercept. Been around for a long time.


3 posted on 08/01/2010 4:16:54 PM PDT by bigbob
[ Post Reply | Private Reply | To 1 | View Replies]

To: ShadowAce

tech ping please.

Can’t believe this wasnt’ done earlier. Of course there are ways to capture individual phones. Just install a phone logger and then have it ftp or send the messages to a server that you have access to. The more and more phones are data enabled the easier it is to get their phone calls. of course this has the ability to intercept without needing access to the phone to install the software.


4 posted on 08/01/2010 4:19:04 PM PDT by for-q-clinton (If at first you don't succeed keep on sucking until you do succeed)
[ Post Reply | Private Reply | To 2 | View Replies]

To: PugetSoundSoldier

They used one of these in The Girl Who Kicked the Hornet’s Nest book.


5 posted on 08/01/2010 4:19:50 PM PDT by UB355 (Slower traffic keep right)
[ Post Reply | Private Reply | To 1 | View Replies]

To: PugetSoundSoldier

This was documented on hak5 at shmoocon this year.


6 posted on 08/01/2010 4:23:37 PM PDT by downwdims (It does not take a majority to prevail... but rather an irate, tireless minority)
[ Post Reply | Private Reply | To 1 | View Replies]

To: UB355
The trilogy are the top three books on Amazon
7 posted on 08/01/2010 4:25:42 PM PDT by Perdogg (Nancy Pelosi did more damage to America on 03/21 than Al Qaeda did on 09/11)
[ Post Reply | Private Reply | To 5 | View Replies]

To: PugetSoundSoldier

Good. Ask them where my pizza is that I ordered an hour ago.


8 posted on 08/01/2010 4:30:31 PM PDT by donhunt (Where does this totalitarian ashwipe get off telling me I can't chose for myself?)
[ Post Reply | Private Reply | To 1 | View Replies]

To: donhunt

Pizza was good, next time order with extra cheese. please


9 posted on 08/01/2010 4:36:40 PM PDT by driftdiver (I could eat it raw, but why do that when I have a fire.)
[ Post Reply | Private Reply | To 8 | View Replies]

To: PugetSoundSoldier; hiredhand

Obama knows he sucks....no need to listen to me telling everyone I know....:o)

This was done using a frequency counter an a AOR hacked (cut the green wire) scanner.


10 posted on 08/01/2010 4:44:46 PM PDT by Squantos (Be polite. Be professional. But have a plan to kill everyone you meet)
[ Post Reply | Private Reply | To 1 | View Replies]

To: bigbob

Yep, except IMSI catchers cost a few hundred thousand dollars. Now you can make your own for under $1500 (probably under $500, if you own a decent laptop).


11 posted on 08/01/2010 4:57:23 PM PDT by PugetSoundSoldier (Indignation over the Sting of Truth is the defense of the indefensible)
[ Post Reply | Private Reply | To 3 | View Replies]

To: driftdiver; donhunt

LOL! That’s there is funny, I don’t care who you are!


12 posted on 08/01/2010 4:58:17 PM PDT by PugetSoundSoldier (Indignation over the Sting of Truth is the defense of the indefensible)
[ Post Reply | Private Reply | To 9 | View Replies]

CDMA carriers don’t have this issue to contend with. :)


13 posted on 08/01/2010 5:00:57 PM PDT by Keith in Iowa
[ Post Reply | Private Reply | To 1 | View Replies]

To: PugetSoundSoldier
Hi Puget,

Thanks for the ping. Holy sh*t. Like you said: "IT folks - carefully consider the implications of this on corporate security!"

Indeed.

Rust never sleeps...

14 posted on 08/01/2010 5:24:42 PM PDT by dayglored (Listen, strange women lying in ponds distributing swords is no basis for a system of government!)
[ Post Reply | Private Reply | To 2 | View Replies]

To: dayglored

Note that CDMA is largely invulnerable to this type of cheap snooping - it’s a lot harder to break into CDMA channels, which makes that technology (Verizon uses it) a lot more secure for corporate purposes.

I can see lots of mid-sized sedans or small SUVs parked in front of corporate offices all over the nation, snooping on the latest business secrets...

Security isn’t just the phone, it’s the network as well!


15 posted on 08/01/2010 5:44:50 PM PDT by PugetSoundSoldier (Indignation over the Sting of Truth is the defense of the indefensible)
[ Post Reply | Private Reply | To 14 | View Replies]

To: PugetSoundSoldier; ~Kim4VRWC's~; 1234; 50mm; Abundy; Action-America; acoulterfan; AFreeBird; ...
Hacker builds cell phone intercepter device for $1500 that can spoof your cell phone calls into decrypting voice calls. PING!

Thanks to PugetSoundSoldier for the heads up.

This apparently hits AT&T and T-Mobile most seriously.

Please!
No Flame Wars allowed!
Discuss hardware.
Don't attack people!


Cell Phone Security Ping!

If you want on or off the Mac Ping List, Freepmail me.

16 posted on 08/01/2010 6:36:40 PM PDT by Swordmaker (This tag line is a Microsoft product "insult" free zone!)
[ Post Reply | Private Reply | To 2 | View Replies]

To: Swordmaker

I can’t think of anything I’d pay $1500 to listen to.


17 posted on 08/01/2010 7:17:05 PM PDT by SunkenCiv ("Fools learn from experience. I prefer to learn from the experience of others." -- Otto von Bismarck)
[ Post Reply | Private Reply | To 16 | View Replies]

To: SunkenCiv
> I can’t think of anything I’d pay $1500 to listen to.

But some people would.

Besides, a good percentage of that $1500 is the laptop, meaning that if you already have a suitable laptop, you can get the antennas and whatever other hardware you need for a lot less than $1500.

That said, yeah, Sturgeon's Law undoubtedly applies ("90% of everything is crud").

18 posted on 08/01/2010 7:33:22 PM PDT by dayglored (Listen, strange women lying in ponds distributing swords is no basis for a system of government!)
[ Post Reply | Private Reply | To 17 | View Replies]

To: Swordmaker

What’s the over/under on how long it takes for “iPhone” to appear in a headline about this vulnerability?


19 posted on 08/01/2010 8:07:05 PM PDT by ReignOfError
[ Post Reply | Private Reply | To 16 | View Replies]

To: PugetSoundSoldier

Indeed, true. This is one of the reasons why we’re not going to AT&T when our Alltel (CDMA) contract expires. Most of Alltel’s areas were bought up by Verizon, and will continue to be CDMA, but here in Wyoming and in western MT, AT&T got the remains of Alltel because the DOJ/DOC ruled that Verizon getting these areas would amount to a ‘monopoly.’

In about six months, AT&T will be forcing their customers onto GSM phones, whether iPhones or something else (eg, a GSM Blackberry). We’re not going there to GSM.

And besides, AT&T sucks at servicing rural areas. I’ve had enough of their crap 10 years ago, and I’m not paying one thin dime to put up with their crap ever again.


20 posted on 08/01/2010 9:10:01 PM PDT by NVDave
[ Post Reply | Private Reply | To 15 | View Replies]


Navigation: use the links below to view more comments.
first 1-2021-23 next last

Disclaimer: Opinions posted on Free Republic are those of the individual posters and do not necessarily represent the opinion of Free Republic or its management. All materials posted herein are protected by copyright law and the exemption for fair use of copyrighted works.

Free Republic
Browse · Search
Bloggers & Personal
Topics · Post Article

FreeRepublic, LLC, PO BOX 9771, FRESNO, CA 93794
FreeRepublic.com is powered by software copyright 2000-2008 John Robinson