Smartphone security is heading for ‘apocalypse’

This idea is known as the “baseband apocalypse,” and it is nothing new. At last year’s Black Hat DC Conference, security researcher Ralf-Philipp Weinmann presented the vulnerabilityand warned that new open source tools for establishing mobile base stations will make smartphones easier to exploit than in the past, when the code for base stations was retained by the service providers that managed them.

What’s scarier, though, is that smartphone developers since have focused on features like user interface and screen resolution, as opposed to fixing a fundamental vulnerability that has been public knowledge for at least the past 16 months, Auerbach says. The Global System for Mobile Communications (GSM) standard for 3G cellphones still employs the A5/1 encryption algorithm, which Auerbach says is “incredibly broken” and “basically worthless.” Indeed, the industry has been aware of an attack against A5/1 that can intercept voice and text communications since 2009.

“So, in light of that, controlling the base station and the network elements really does give you access to users’ communications,” Auerbach says.

Link

 

India gets Israeli tech to scan BlackBerry data

Israel has agreed to arm India with cryptography and crypto-analysis know-how that will allow security establishment to intercept encrypted or coded messages and data transfers done through dedicated networks.

As a first step, Tel Aviv-based RSA, part of technology major and multi-billion EMC proposes to set up a base in India to develop specialised solutions to enable Indian security agencies access to encrypted or coded messages.

http://www.mydigitalfc.com/knowledge/india-gets-israeli-tech-scan-blackberry-data-055

Gold Lock PBX (Spanish)


Sweden Paradise Lost – Part 1: General Wiretapping

at any time, and for no other cause than it wanting to do so, the Swedish Government can and will wiretap all your communications. They do so in bulk, and are restricted – if that is the appropriate word – to wiretapping no more than about two million households at a time.

Link