Wherever I May Roam: Stealthy Interception and Injection Attacks Through Roaming Agreements


연구 분야: Infrastructure



학회: European Symposium on Research in Computer Security


초록

Cellular network users can be attacked through Rogue Base Stations (RBSes). 3G introduced network authentication as a mitigation. However, roaming partnerships between network operators allow requesting authentication vectors. This feature opens doors for state-sponsored attackers with access to roaming infrastructure, allowing the operation of stealthy RBSes anywhere in the world. This by far exceeds what lawful interception interfaces were designed for but provides attackers with similar capabilities, such as network traffic interception, manipulation, and injecting management frames towards a user’s device. Updated 5G roaming procedures do not prevent this issue. We demonstrate that modern smartphones effectively cannot indicate such attacks to end-users.


Author Profile
Swantje Lange

Secure Mobile Networking Lab (SEEMOO) Department of Computer Science TU Darmstadt Darmstadt Germany

Germany
Author Profile
Francesco Gringoli

Cybersecurity – Mobile and Wireless Hasso Plattner Institute University of Potsdam Potsdam Germany

Andorra
Author Profile
Matthias Hollick

University of Brescia/CNIT Brescia Italy

Italy

📄 논문 정보

발행 연도 2024년
인용수 0
출판 국가 Germany, Italy, Andorra
사이트 Springer
좋아요 수 0

연관 논문 목록 (74건)