ycliper

Популярное

Музыка Кино и Анимация Автомобили Животные Спорт Путешествия Игры Юмор

Интересные видео

2025 Сериалы Трейлеры Новости Как сделать Видеоуроки Diy своими руками

Топ запросов

смотреть а4 schoolboy runaway турецкий сериал смотреть мультфильмы эдисон
Скачать

#HITB2016AMS

Автор: Hack In The Box Security Conference

Загружено: 2016-06-22

Просмотров: 13621

Описание: LTE is a more advanced mobile network but not absolutely secure.

In this presentation, we will introduce a method which jointly exploits the vulnerabilities in tracking area update procedure, attach procedure, and RRC redirection procedure in LTE networks resulting in the ability to force a targeted LTE cellphone to downgrade into a malicious GSM network where an attacker can subsequently eavesdrop its voice calls and GPRS data.

We used LTE software plus USRP to verify this attack. Some open source projects, such as OpenLTE and Open Air Interface, can be modified to realize this attack. In this presentation, we will:

1.) Introduce the vulnerabilities in LTE RRC and NAS signaling

2.) Discuss the tricks in EMM cause setting

3.) Demonstrate the attack to the audience by video

4.) Present some defense proposals.

This attack is not a simple DoS attack. We can select the targeted cellphone by filtering the IMSI number, so it will not influence the other cellphones and keep them still in the real network. We can force the cellphone into the malicious network and it has no chance to choose other secure network.

======

Lin Huang is a wireless security researcher, from Unicorn Team of Qihoo 360, China. Before entering this team, she worked for telecom operator Orange, for 9 years, as a wireless researcher. Her interests include the security issues in wireless communication, especially the cellular network security, and also other problems in ADS-B, GPS, Bluetooth, Wifi, and automotive electronics.

She is one of the earliest users of USRP in China, and keeps active in SDR/USRP research and development since 2006. She contributed to several UMTS/LTE soft base station projects, e.g. Open Air Interface. In 2009, She wrote one free e-book for GNU Radio training, which is very popular in China. She was the speaker of DEFCON 23, giving a presentation of ‘Low-cost GPS simulator – GPS spoofing by SDR’.

Не удается загрузить Youtube-плеер. Проверьте блокировку Youtube в вашей сети.
Повторяем попытку...
#HITB2016AMS

Поделиться в:

Доступные форматы для скачивания:

Скачать видео

  • Информация по загрузке:

Скачать аудио

Похожие видео

Автоматизация взлома оборудования с помощью кода Клода

Автоматизация взлома оборудования с помощью кода Клода

LTESniffer: An Open-source LTE Downlink/Uplink Eavesdropper

LTESniffer: An Open-source LTE Downlink/Uplink Eavesdropper

DEF CON 18 - Chris Paget - Practical Cellphone Spying

DEF CON 18 - Chris Paget - Practical Cellphone Spying

Does This Hack Mean You Can Listen To POLICE Radio?

Does This Hack Mean You Can Listen To POLICE Radio?

Первый P2P‑менеджер паролей без облака от Tether (USDT): PearPass обзор

Первый P2P‑менеджер паролей без облака от Tether (USDT): PearPass обзор

#HITBGSEC D2: 4G LTE Man In The Middle Attacks With A Hacked Femtocell - Xiaodong Zou

#HITBGSEC D2: 4G LTE Man In The Middle Attacks With A Hacked Femtocell - Xiaodong Zou

BlackHat 2013 - Traffic Interception & Remote Mobile Phone Cloning with a Compromised CDMA Femtocell

BlackHat 2013 - Traffic Interception & Remote Mobile Phone Cloning with a Compromised CDMA Femtocell

#HITB2016AMS D1T2 - Adaptive Android Kernel Live Patching - Tim Xia and Yulong Zhang

#HITB2016AMS D1T2 - Adaptive Android Kernel Live Patching - Tim Xia and Yulong Zhang

WiFi-Based IMSI Catcher

WiFi-Based IMSI Catcher

DEF CON 25 - Yuwue Zheng, Lin Huang - Ghost Telephonist Impersonates You Through LTE CSF

DEF CON 25 - Yuwue Zheng, Lin Huang - Ghost Telephonist Impersonates You Through LTE CSF

Подробная настройка базовой станции DragonOS Focal 4G LTE (srsLTE, bladeRF xA4, USRP b205 mini-i)

Подробная настройка базовой станции DragonOS Focal 4G LTE (srsLTE, bladeRF xA4, USRP b205 mini-i)

Поиск UART и получение root-оболочки на маршрутизаторе Linux

Поиск UART и получение root-оболочки на маршрутизаторе Linux

DragonOS FocalX Cellular Security Research + IMSI Capture w/ LTESniffer (X310, srsRAN) part 3

DragonOS FocalX Cellular Security Research + IMSI Capture w/ LTESniffer (X310, srsRAN) part 3

GreedyBTS: Hacking Adventures in GSM - Presented By Hacker Fantastic

GreedyBTS: Hacking Adventures in GSM - Presented By Hacker Fantastic

A passive IMSI catcher or low level analysis tool for LTE

A passive IMSI catcher or low level analysis tool for LTE

Сисадмины больше не нужны? Gemini настраивает Linux сервер и устанавливает cтек N8N. ЭТО ЗАКОННО?

Сисадмины больше не нужны? Gemini настраивает Linux сервер и устанавливает cтек N8N. ЭТО ЗАКОННО?

Введение в программно-определяемую радиосвязь | Какую SDR-систему купить? | Выберите подходящую д...

Введение в программно-определяемую радиосвязь | Какую SDR-систему купить? | Выберите подходящую д...

Cell Spy Catcher: IMSI Catcher (Stingray) Defense App

Cell Spy Catcher: IMSI Catcher (Stingray) Defense App

LTE And IMSI Catchers: Then And Now | Altaf Shaik | nullcon Goa 2019

LTE And IMSI Catchers: Then And Now | Altaf Shaik | nullcon Goa 2019

Software Radio / OpenBTS - The Well Tempered Hacker Ep 4

Software Radio / OpenBTS - The Well Tempered Hacker Ep 4

© 2025 ycliper. Все права защищены.



  • Контакты
  • О нас
  • Политика конфиденциальности



Контакты для правообладателей: [email protected]