Exploiting open functionality in SMS-capable cellular networks

  • Authors:
  • Patrick Traynor;William Enck;Patrick Mcdaniel;Thomas La Porta

  • Affiliations:
  • Corresponding author: P. Traynor, 344 IST/CSE Building, University Park, PA 16802, USA. Tel.: 814 865 6245/ Fax: 814 865 3176/ E-mail: traynor@cse.psu.edu;-;-;Systems and Internet Infrastructure Security Laboratory, Department of Computer Science and Engineering, The Pennsylvania State University, University Park, PA 16802, USA. E-mail: {traynor, enck, ...

  • Venue:
  • Journal of Computer Security
  • Year:
  • 2008

Quantified Score

Hi-index 0.00

Visualization

Abstract

Cellular networks are a critical component of the economic and social infrastructures in which we live. In addition to voice services, these networks deliver alphanumeric text messages to the vast majority of wireless subscribers. To encourage the expansion of this new service, telecommunications companies offer connections between their networks and the Internet. The ramifications of such connections, however, have not been fully recognized. In this paper, we evaluate the security impact of the SMS interface on the availability of the cellular phone network. Specifically, we describe the ability to deny voice service to cities the size of Washington DC and Manhattan with little more than a cable modem. Moreover, attacks targeting the entire United States are feasible with resources available to medium-sized zombie networks. This analysis begins with an exploration of the structure of cellular networks. We then characterize network behavior and explore a number of reconnaissance techniques aimed at effectively targeting attacks on these systems. We conclude by discussing countermeasures that mitigate or eliminate the threats introduced by these attacks.