ZDNet UK


Skip to Main Content

ZDNet.co.uk - Winner of Best Business Website 2007
  1. Home
  2. News
  3. Blogs
  4. Reviews
  5. Prices
  6. Resources
  7. Community
  8. My ZDNet

 

ZDNet UK RSS Feeds


IT Jobs

Mobile devices Toolkit

IBM report cites mobile phone hacking risks

Published: 08 May 2002 08:57 BST

  • Email
  • Trackback
  • Clip Link
  • Print friendly
  • Post Comment

IBM researchers released a report on Tuesday showing that some cell phones' security cards could be cloned in minutes, letting hackers make calls and route charges to the cloning victim's account.

The hacking technique studied by the researchers, known as a partitioning attack, analyses power fluctuations in a phone's security identification module (SIM) card, allowing an attacker to divine the security codes stored inside.

However, the technique only works on the first-generation of global system for mobile communications (GSM) phones and requires that the attacker have physical access to the phone for at least a minute or two.

"It is not a 'sky is falling' announcement," IBM's Charles Palmer said of the report. "It says that this is a problem." Palmer is IBM's Research department group manager for security, privacy and cryptography.

If such a bypassing technique, or some other hack, were to be used widely, digital thieves could create SIM cards for phones that would route charges to a victim's account.

A game of seven questions
The technique, to be outlined in a paper that will be presented at the IEEE Symposium on Security and Privacy next week, requires a computer, a SIM card reader and the right program. The program asks the target card seven specific "questions", and it analyses the signals from the card to determine how it's processing the queries. By analysing the electromagnetic field changes and power fluctuations, the researchers can divine the card's cryptographic identity.

"Basically, I get to ask the card seven questions, and that is enough to copy the card," Palmer said. "I still have to guess the PIN, but that's easy."

Once a card is cloned, the password, generally a four-digit PIN, is necessary to unlock the information. Yet, a thief could easily try all 10,000 combinations with the newly cloned card.

Just smoke and mirrors?
At least one analyst doesn't think much of the announced security break.

"It's like saying if someone gets your credit card, they can commit credit card fraud," said Roger Entner, program manager for the Yankee Group consultancy. "If you let them disappear with your phone, of course it's going to get cloned."

Entner also pointed out that GSM is not yet widely used in the United States. VoiceStream has released about 7.5 million of the phones, while Cingular and AT&T are building out their GSM networks.

However, GSM is very successful worldwide, accounting for some 70 percent of all phones. And, while many companies are shipping version 2 and 3 of the GSM standard on their SIM cards, the majority of the phones in use today are GSM 1 phones.

In fact, when Palmer and his cohorts went to stores to buy phones with different versions of the GSM specification, only version 1 phones were found.

IBM Research has designed a technical fix to defend against such attacks, but it's not known how IBM intends to license the new technique to manufacturers. For cell phone owners, though, protection is easy: Don't loan your phone to strangers.


For all security-related news, including updates on the latest viruses, hacking exploits and patches, check out ZDNet UK's Viruses and Hacking News Section.

Have your say instantly, and see what others have said. Go to the Security forum.

Let the editors know what you think in the Mailroom.

  • Email
  • Trackback
  • Clip Link
  • Print friendly Print with Dell

Did you find this article useful?
59 out of 94 people found this useful


Full Talkback thread

0 comments

Company/Topic Alerts

Create a new alert from the list below:






Related Jobs

Business Intelligence Developer x 7 - 25,000 - 50,000 Coventry

It would be advantageous to have a background in Finance, Banking, Credit Cards or Credit Risk due to the companies business. Leading Financial ...

SUPPORT ENGINEER - HERTS - c25k - ELECTRONIC FUNDS TRANSFER

Opportunity for a Support Engineer with previous experience of providing 1st line support of Electronic Funds Transfer & Payment Systems / Payment ...

SAS Lead Developer Financial Company Circa 40,000 Northampton

It would be beneficial to have a background in Finance, Banking, Credit Cards or Credit Risk. Top Financial Services Company in the Northampton are ...

Featured Talkback

Put simply, what is the compelling reason to pay ~$200 extra for an Eee with Windows XP? A Windows Eee won't come with any useful applications and you'll have to buy anti-virus software to boot. The truth about low cost computing is that nobody really cares whether the machine is running Windows or Linux as long as its cheap, its easy to use and it works.

By: dogStar

Read full story:
Asus to ship 60 percent of Eee PCs with Windows XP

On The Road Blog

Mobile Security Expert: Your Camera Ph...

Mobile Security Expert: Your Camera Phone Got Hacked Author: Eric Everson, Founder MyMobiSafe.com Have you ever heard someone say “I’d like to be a fly on the wall in that room.”?... More

Post a comment

Eee 1000 + iPhone 3G = the ultimate mo...

Having left the comforting bosom of ZDNet.co.uk to strike out on my own as a freelance journalist recently, I found myself contemplating a shocking truth – I was going to have to shell... More

Post a comment

Think Your Skype Call is Secure? Read...

There is growing, and credible, speculation that Skype has built in a back door to allow monitoring of SKype calls. Heise Online has a good article about it. So, what we have now... More

1 comment

Discussions

keithmv keithmv

Password Deadlock

Saturday 26 July 2008, 12:02 PM

2 comments