Skip to main content

Researchers track mobile phone locations with cheap hardware and open-source software


While cop shows have shown us that it's easy for service providers to track a person's location via their mobile phone, researchers at the University of Minnesota have revealed it's also an easy task for hackers. Using a cheap phone and open source software, the researchers were able to track the location of mobile phone users without their knowledge on the GSM network, which is estimated to serve 80 percent of the global mobile market.
According to the new research by computer scientists in the University of Minnesota's College of Science and Engineering, a third party could easily track the location of a mobile phone user without their knowledge because cellular mobile phone networks "leak" the locations of mobile phone users.
"Cell phone towers have to track cell phone subscribers to provide service efficiently," Foo Kune explained. "For example, an incoming voice call requires the network to locate that device so it can allocate the appropriate resources to handle the call. Your cell phone network has to at least loosely track your phone within large regions in order to make it easy to find it."
To do this, mobile phone towers will broadcast a page to a user's phone and wait for the phone to respond when they get a call. Hackers would be able to ascertain the general location of the user by forcing those pages to go out and hanging up before the phone rings.
Although the GSM standard assigns a phone a temporary ID to disguise its identity, it is possible to map the phone number to its temporary ID. Just by looking at the broadcast messages sent by the network, the researchers say it is possible to locate the device within an area of 100 square km (38 square miles). But by testing for a user on a single tower allows a user to be tracked to within a geographic area of 1 square km (0.38 square miles) or less.
"It has a low entry barrier," Foo Kune said. "Being attainable through open source projects running on commodity software."
In a field test using an inexpensive mobile phone and open source software and with no direct help from the service provider, the researchers were able to track the location of a test subject within a 10-block area as they traveled across an area of Minneapolis at walking pace.
In their Paper, which was presented at the 19th Annual Network & Distributed System Security Symposium in San Diego, California, the researchers highlight some possible personal safety issues arising from their discovery.
"For example, agents from an oppressive regime may no longer require cooperation from reluctant service providers to determine if dissidents are at a protest location. A second example could be the location test of a prominent figure by a group of insurgents with the intent to cause physical harm for political gain. Yet another example could be thieves testing if a user's cell phone is absent from a specific area and therefore deduce the risk level associated with a physical break-in of the victim's residence."
But it's not all bad news. Foo Kune and his group have identified low-cost techniques to plug the leaks that could be implemented without changing the hardware. They have contacted AT&T and Nokia to inform them of these techniques and are also in the process of drafting responsible disclosure statements for mobile service operators.

Comments

Popular posts from this blog

Google to build green-roof California HQ

An image has been released of what looks set to become Google's new California HQ. Named Bay View, the nine-building campus is designed to maximize the likelihood of innovation-friendly chance encounters between the workforce. "You can't schedule innovation," Google's David Radcliffe tells  Vanity Fair . "We want to create opportunities for people to have ideas and be able to turn to others right there and say, 'What do you think of this?'" This philosophy has fostered the design's angular office blocks, arranged back to back like nodding clergy. Despite the 1.1 million sq ft (102,000 sq m), employees will be a maximum of a 2.5-minute walk away from one another, Vanity Fair  reports. Perhaps most remarkable is that this is Google's first build. In its 15-year history, Google has only ever occupied buildings previously used by others. "We've been the world's best hermit crabs: we've found other people's shell...

Nerf Vulcan Sentry Gun tracks targets and avoids friendly fire

Anyone who plays video games will know that few things protect an area like a well-placed sentry gun. In the real world, though, even a person's bedroom or office could use a little protection sometimes, which is why one designer has built the Nerf Vulcan Sentry Gun. Using a custom program and some servos, the sentry can automatically locate targets and unleash a stream of foam darts at over seven times the usual speed, while keeping its owner out of the crosshairs. Britt Liv Ulrike Michelsen, a chemical and biological engineering student from Germany, designed and constructed the sentry using mostly basic electronics and some plywood. This isn't the first time she's modified a Nerf gun, but building this robotic turret is arguably her most ambitious project to date. Luckily, the Nerf Vulcan already operates using an electric motor, so controlling the actual firing mechanism through a computer was just a matter of connecting it directly to an Arduino Uno and a laptop. ...

Wired wood: Gizmag's top ten wooden gadgets

We may be surrounded by gadgetry clad in shiny aluminum and gaudy plastic, but there's still a place left in the digital age for the comfort, simplicity and beauty of wood. Perhaps its the trend towards a "green" aesthetic or some deeper drive to get back to nature, but we've noticed a growing number of consumer electronics offerings in recent times that mesh circuit boards and synthetics with the wonders of wood. With this in mind, we've scoured our resources to come up with this list of Gizmag's top ten wooden gadgets. OOOMS Wooden USB Stick OOOMS, a design company based in The Netherlands, has created a  USB stick  that is made of … a stick. The creators literally pick up sticks, based on quality and appearance, and professionally work them into unique USB sticks that can hold from 2 to 16 Gb. Wooden Records Amanda Ghassaei has developed a laser cutting system that can  carve music into a wooden record . After pulling audio from a WAV file with P...