Skip to main content

Researchers track mobile phone locations with cheap hardware and open-source software


While cop shows have shown us that it's easy for service providers to track a person's location via their mobile phone, researchers at the University of Minnesota have revealed it's also an easy task for hackers. Using a cheap phone and open source software, the researchers were able to track the location of mobile phone users without their knowledge on the GSM network, which is estimated to serve 80 percent of the global mobile market.
According to the new research by computer scientists in the University of Minnesota's College of Science and Engineering, a third party could easily track the location of a mobile phone user without their knowledge because cellular mobile phone networks "leak" the locations of mobile phone users.
"Cell phone towers have to track cell phone subscribers to provide service efficiently," Foo Kune explained. "For example, an incoming voice call requires the network to locate that device so it can allocate the appropriate resources to handle the call. Your cell phone network has to at least loosely track your phone within large regions in order to make it easy to find it."
To do this, mobile phone towers will broadcast a page to a user's phone and wait for the phone to respond when they get a call. Hackers would be able to ascertain the general location of the user by forcing those pages to go out and hanging up before the phone rings.
Although the GSM standard assigns a phone a temporary ID to disguise its identity, it is possible to map the phone number to its temporary ID. Just by looking at the broadcast messages sent by the network, the researchers say it is possible to locate the device within an area of 100 square km (38 square miles). But by testing for a user on a single tower allows a user to be tracked to within a geographic area of 1 square km (0.38 square miles) or less.
"It has a low entry barrier," Foo Kune said. "Being attainable through open source projects running on commodity software."
In a field test using an inexpensive mobile phone and open source software and with no direct help from the service provider, the researchers were able to track the location of a test subject within a 10-block area as they traveled across an area of Minneapolis at walking pace.
In their Paper, which was presented at the 19th Annual Network & Distributed System Security Symposium in San Diego, California, the researchers highlight some possible personal safety issues arising from their discovery.
"For example, agents from an oppressive regime may no longer require cooperation from reluctant service providers to determine if dissidents are at a protest location. A second example could be the location test of a prominent figure by a group of insurgents with the intent to cause physical harm for political gain. Yet another example could be thieves testing if a user's cell phone is absent from a specific area and therefore deduce the risk level associated with a physical break-in of the victim's residence."
But it's not all bad news. Foo Kune and his group have identified low-cost techniques to plug the leaks that could be implemented without changing the hardware. They have contacted AT&T and Nokia to inform them of these techniques and are also in the process of drafting responsible disclosure statements for mobile service operators.

Comments

Popular posts from this blog

New type of silicone exhibits both viscous and elastic properties

Looking for a more effective solution to the all-too-common wobbly table dilemma than a folded up bit of cardboard or piece of rubber under the leg, University of Virginia physicist Lou Bloomfield created a new type of silicone rubber called Vistik – it's malleable enough to take on any shape when pressed, but is still resilient enough to offer support, as it  gradually starts to return to its original shape as the pressure is released. The material could have many applications ... beyond just steadying up wobbly tables. Vistik is a viscoelastic material, meaning that it exhibits both viscous and elastic properties. As a result, when compared to something such as conventional silicone rubber, there’s a considerable time lag in its response to continuous pressure. “It seems elastic in response to sudden forces or impacts, denting in proportion to the sudden, brief stress and then returning almost instantly to its earlier shape when that stress is removed,” Prof. Bloomfield ex...

Wired wood: Gizmag's top ten wooden gadgets

We may be surrounded by gadgetry clad in shiny aluminum and gaudy plastic, but there's still a place left in the digital age for the comfort, simplicity and beauty of wood. Perhaps its the trend towards a "green" aesthetic or some deeper drive to get back to nature, but we've noticed a growing number of consumer electronics offerings in recent times that mesh circuit boards and synthetics with the wonders of wood. With this in mind, we've scoured our resources to come up with this list of Gizmag's top ten wooden gadgets. OOOMS Wooden USB Stick OOOMS, a design company based in The Netherlands, has created a  USB stick  that is made of … a stick. The creators literally pick up sticks, based on quality and appearance, and professionally work them into unique USB sticks that can hold from 2 to 16 Gb. Wooden Records Amanda Ghassaei has developed a laser cutting system that can  carve music into a wooden record . After pulling audio from a WAV file with P...

Recycled, solar-powered, boat-roofed wonder wins Shed of the Year

 The crowning glory is a 14-ft boat which has been left whole and inverted to form the roof. A 20-W solar panel powers the creature comforts inside. To create the shed's frame, the boat was fixed atop four telegraph poles plonked judiciously on a hillside amid Wales' Cambrian Mountains. (The views aren't at all bad, either). Aluminum-framed windows were salvaged from a 1940s caravan, and others were "borrowed" from Holland's farmhouse. Walls are a mixture of corrugated metal and, for a taste of the Neolithic, wattle and daub. Inside things take a turn for the high tech. The shed's PV panel feeds a battery which provides power to LED lighting and a 12-V sound system – the only new item in the construction. The shed also boasts a plumbed Belfast sink (the generous, cuboid-shaped ones), and a 19th century wood burning stove for heat fitted with a chimney fashioned from the queen pole of an old circus big top.Where sheds end and (sometimes pretentious) ...