DEF CON 31 - Using SIM Tunneling to Travel at Light Speed - Adrian Dabrowski, Gabriel Gegenhuber

  Переглядів 21,534

DEFCONConference

DEFCONConference

День тому

Cellular networks form large complex compounds for roaming purposes. Thus, geographically-spread testbeds for masurements and rapid exploit verification are needed to do justice to the technology's unique structure and global scope. Additionally, such measurements suffer from a combinatorial explosion of operators, mobile plans, and services. To cope with these challenges, we are releasing an open-source framework that geographically decouples the SIM (subscription) from the cellular modem by selectively connecting both remotely. This allows testing any subscriber with any operator at any modem location within seconds without moving parts. The resulting measurement and testbed platform "MobileAtlas" offers a scalable, controlled experimentation environment. It is fully open-sourced and allows other researchers to contribute locations, SIM cards, and measurement scripts.
Using the above framework, our international experiments in commercial networks revealed exploitable inconsistencies in traffic metering, leading to multiple data "phreaking" opportunities ("free-ride"). We also expose problematic IPv6 firewall configurations, hidden SIM card communication to the home network, and fingerprint dial progress tones to track victims across different roaming networks and countries with voice calls.

КОМЕНТАРІ: 18
@jeffcard3623
@jeffcard3623 7 місяців тому
The comedy was over the head of this audience.
@Hukkinen
@Hukkinen 7 місяців тому
38:05 Privacy: Location Tracking with Ringback Tone Fingerpringing - This is quite something. The current country of a person can be determined.
@sabofx
@sabofx 7 місяців тому
Great presentation! Thank you for sorting this out! Mobile providers have profited more than enough from us, bandwidth hungry tourists. It's payback time! 🤭 PS: What's up with the audience at defcon31? They seem barely responsive. (Not just at this talk) Either someone should check them for a pulse 😵, or you need to point at least one 🎤 towards the public.
@zxcvb_bvcxz
@zxcvb_bvcxz 7 місяців тому
From the audio of most of the talks, they had enough trouble getting a clear recording of the speaker. The audience is audible in some talks but it appears to either be gated or attenuated.
@zxcvb_bvcxz
@zxcvb_bvcxz 7 місяців тому
@@dabrams84 a) lol b) the audience noise is gated, you can clearly hear it kicking in in other videos.
@CJ1337HF
@CJ1337HF 7 місяців тому
Yeah I was there and there was plenty of laughs. It's just filtered out
@DonaldDucksRevenge
@DonaldDucksRevenge 5 місяців тому
This the wholesomest hackery since Crunch whistled into a payphone
@IgnatRemizov
@IgnatRemizov 7 місяців тому
I wonder what the cost spread is like. What is the actual $ per GB roaming cost between all the different operators? Which one is the best, based on various factors? I would love to know
@dtriplett03
@dtriplett03 5 місяців тому
Idk yet, but , 🇺🇸 increased 🇬🇧 decreased 😢😮
@vildis.
@vildis. 5 місяців тому
What happened to Spoofify? Mentions about it are gone from the slides and i can't find the project anywhere
@BASSNETIC-MUSIC
@BASSNETIC-MUSIC 6 місяців тому
The jokes were much to smart for this audience 😂 That fingerprinting is wild. Indonesia blocks your foreign device based on IMEI after a while and you need to pay tax to unlock it. Even if you try to circumvent this by putting the SIM in another device and connect through that using a hotspot! Would be nice to not have to deal with such nonsense.
@haczyk84
@haczyk84 5 місяців тому
Polak? Przypominają mi się stare dobre czasy budek telefonicznych.
@M3talr3x
@M3talr3x 7 місяців тому
Is this only applicable for europoors?
@razorednight
@razorednight 6 місяців тому
Defcon!! In future plz mic the audience. This "silent audience" set up is not great.
Что будет с кроссовком?
00:35
Аришнев
Переглядів 2,6 млн
didn't want to let me in #tiktok
00:20
Анастасия Тарасова
Переглядів 5 млн
КИРПИЧ ОБ ГОЛОВУ #shorts
00:24
Паша Осадчий
Переглядів 6 млн
The Truth About SIM Card Cloning
13:04
Janus Cycle
Переглядів 1 млн
DEF CON 31 - Terminally Owned - 60 Years of Escaping - David Leadbeater
47:34
Best OS for programming? Mac vs Windows vs Linux debate settled
8:41
DEF CON 18 - Chris Paget - Practical Cellphone Spying
52:33
DEFCONConference
Переглядів 62 тис.
Have You Been Pwned? - Computerphile
10:59
Computerphile
Переглядів 477 тис.
Радиоприемник из фольги, стаканчика и светодиода с батарейкой?
1:00
3D printed Nintendo Switch Game Carousel
0:14
Bambu Lab
Переглядів 299 тис.
The PA042 SAMSUNG S24 Ultra phone cage turns your phone into a pro camera!
0:24