Cатсн²² (in)sесuяitу / ChrisJohnRiley

Because we're damned if we do, and we're damned if we don't!

Tag Archives: mobile

DEEPSEC: SMS Fuzzing – SIM Toolkit Attack

SMS Fuzzing – SIM Toolkit Attack Bogdan Alecu SMS is a unique mobile attack vector as it is an always on service. Regardless of wether or not you’re using another application, an SMS can be received by the phone. As SMS is enabled by default on all phones it provides many interesting possibilities. Tools Used PDUSpy [...]

Shmoocon 2011: Attacking 3G and 4G mobile telecommunications networks

Attacking 3G and 4G mobile telecommunications networks Enno Rey, Rene Graf & Daniel Mende   No demos today due to shipping materials and the like. TSA don’t like big electronic devices being shipped after all. Still, that doesn’t mean there was no practical research. Fundamentals Standards In mobile telco world everything is standardized by 3GPP [...]

Shmoocon 2011: TEAM JOCH vs. Android: The Ultimate Showdown

TEAM JOCH vs. Android: The Ultimate Showdown Jon Oberheide and Zach Lanier Android Security Overview Base platform : ARM Core Linux Kernel 2.6.3x Native Libraries Dalvik VM …. TrustZone Security Foundation by ARM ARM11 TrustZone –> Unused! ARM11 Jazelle JVM –> Unused! ARMv6 eXecute-Never (XN)? –> Unused! Mobile ASLR sucks! Exploiting like it’s 1990 Executable [...]

[BruCON] The Monkey Steals the Berries

The Monkey Steals the Berries (Tyler Shields) Why would an attacker target a phone PC’s are becoming smaller and smaller as more data is moved to the mobile platform. Mobile devices are also commonly less protected than desktop systems (like going back in time in some cases). It also allows for very targeted attacks. The [...]

Follow

Get every new post delivered to your Inbox.