l Red Team Research di TIM rileva un bug 0day su una BBU 5G di Nokia
In telecomunicazioni, una #baseband (o banda base) è un #sistema di comunicazione #wireless che permette di interconnettere uno #smartphone con la #rete #cellulare. Si tratta di quegli #apparati che sono presenti sui tetti dei palazzi che permettono, attraverso le loro antenne, di interconnettere i telefonini alla “core network” mobile.
La core network (o rete centrale) è la parte fondamentale dell’infrastruttura di comunicazione mobile che gestisce il flusso di #dati e il routing delle #informazioni tra gli utenti, i dispositivi mobili e i servizi di rete.
#redhotcyber #informationsecurity #ethicalhacking #dataprotection #hacking #cybersecurity #cybercrime #cybersecuritytraining #cybersecuritynews #privacy #infosecurity
https://www.redhotcyber.com/post/l-red-team-research-di-tim-rileva-un-bug-su-una-bbu-5g-di-nokia/
#baseband #sistema #wireless #smartphone #rete #cellulare #apparati #dati #informazioni #redhotcyber #informationsecurity #ethicalhacking #dataprotection #hacking #cybersecurity #cybercrime #cybersecuritytraining #CyberSecurityNews #privacy #infosecurity
@ReginaMuehlich Mit Glück ist's nur #Premiumdienst - #Malware die tonnenweise gebührenpflichtige SMS-Payments veranlassen oder Wenigerwert-Nummern anrufen...
Gern ist's auch mal #Malware im #Baseband wie die von #Qualcomm...
Soweit ich weiß sind @nitrokey und @GrapheneOS voneinander unabhängig an der Sache dran...
#qualcomm #baseband #Malware #premiumdienst
The discovery of #exynos #baseband vulnerability shouldn't have been taken as endorsement of #iOS or security through obscurity by some. The basebands themselves, including iphones', are closed source obscurity, after all. It should instead be taken as endorsement of #purism #librem approach in separating basebands from SoC; and maybe pile on #microkernel design.
Too bad purism is suffering from accruing supply chain, project management, and budgeting problems.
#exynos #baseband #ios #purism #librem #microkernel
Google tells users of some Android phones: Nuke voice calling to avoid infection - Enlarge / Images of the Samsung Galaxy S21, which runs with an Exynos c... - https://arstechnica.com/?p=1925040 #vulnerabilities #wificalling #baseband #android #samsung #biz #volte
#volte #biz #samsung #android #baseband #wificalling #vulnerabilities
Ars Technica: Google tells users of some Android phones: Nuke voice calling to avoid infection https://arstechnica.com/?p=1925040 #Tech #arstechnica #IT #Technology #vulnerabilities #wificalling #baseband #android #Samsung #Biz&IT #volte
#Tech #arstechnica #it #technology #vulnerabilities #wificalling #baseband #android #samsung #biz #volte
Multiple Internet to #Baseband #RCE Vulnerabilities in #Exynos Modems
https://googleprojectzero.blogspot.com/2023/03/multiple-internet-to-baseband-remote-rce.html
Our next release will override carrier selected SUPL server (usually supl.google.com) with supl.grapheneos.org by default. Similar to connectivity checks, etc. there will be a new Settings toggle for choosing between GrapheneOS proxy, Standard and Disabled for SUPL.
#grapheneos #privacy #security #supl #agnss #gnss #geolocation #location #carrier #baseband #qualcomm #broadcom #google
#grapheneos #privacy #security #supl #agnss #gnss #geolocation #location #carrier #baseband #qualcomm #broadcom #google
A rich #training #offer at BSides Milano we have top-notch trainings, in some case for the first time in #Italy! All #in-person! The #event will be held from 4 to 8 July 2023. From 4 to 7 we will be focus on #learnitall on the 8 we will deep dive in our #amazing #conference. Ticket will be available from tonight for the trainings. We have an early bird rate until 30th April.
Are you ready? We are!! join our group SecurityBsidesItalia #linkedin or on #discord https://lnkd.in/dBu7wkJG for detailed info! #cyber #threatintelligence #threatintel #cloud #redteaming #redteam #blueteam #threathunting #exploitation #secureboot #TTE #multicloud #hybridcloud #voip #Linux #Windows #LTE #baseband #deception #detection #evasion #edr #BSML23 #AWS #Azure #AzureAD #GCP #devops #cicd #RTOS #FalseFlag #HoneyNet #IDAPro #Python #reverseengineering #Ghidra #network #MITRE #TTPs #persistence #commandandcontrol #lateralmovement #osint #obfuscation #malware #malwareanalysis .
Reserve your your spot!! https://lnkd.in/dZf-yyPv
#training #offer #italy #in #event #learnitall #amazing #conference #linkedin #discord #cyber #threatintelligence #threatintel #cloud #redteaming #redteam #blueteam #threathunting #exploitation #secureboot #tte #multicloud #hybridcloud #voip #linux #windows #lte #baseband #deception #detection #evasion #edr #bsml23 #aws #azure #azuread #gcp #devops #cicd #rtos #falseflag #honeynet #idapro #python #reverseengineering #ghidra #network #mitre #ttps #persistence #commandandcontrol #lateralmovement #osint #obfuscation #malware #malwareanalysis
@BSidesMilano #Training #Spotlight #reverseengineering #rtos #arm #Python #3gpp #BTS #Baseband #Exploitation #CyberAttack #CyberSecurity #hacker #infosec Check out the website for more Insight!!
#training #spotlight #reverseengineering #rtos #arm #python #3gpp #bts #baseband #exploitation #cyberattack #cybersecurity #hacker #infosec
:twitter: finally seems to be flat-lining, trying out this new mastodon thing...
#introduction, for anyone I haven't met prior via my bird app handle @ntpopgetdope. I'm a vulnerability researcher that's been working in industry professionally for >4yrs.
My background stems from an obsession with #windowsinternals & the vastly underrated 'HAL.dll'. These days I'm into baseband vuln research working on obscure hardware, architectures & attacks. Love chatting about all things:
#fpga #uefi #baseband #faultinjection #openhardware #embeddedelectronics #pcbdesign
Currently with the @InterruptLabs crew, a boutique vulnerability research & exploit development firm in the UK.
#introduction #windowsinternals #fpga #uefi #baseband #faultinjection #openhardware #embeddedelectronics #pcbdesign
I’ve heard that the #GSM standard enables carriers to push #baseband updates to users’ devices, and that devices simply trust all towers to have this control. So my theory is that the carrier pushed an update that bricked the GSM modem. Is that possible? I heard from an unreliable source that it’s no longer possible for towers to push updates. Is there a more likely scenario?
Le communisme et le capitalisme se rejoignent sur l'autorité et la surveillance.
Il n'y a donc aucune différence entre les deux.
Aucune.
L'autorité reste l'idéologie face à laquelle résister.
Aujourd'hui, elle est vicieuse cette autorité.
Elle est dans la poche et dans les « besoins » quotidiens de plusieurs milliards d'humain·e·s.
#smalltech #baseband #nomobilenumber #noimei #nomail #noeid #web0
#smalltech #baseband #nomobilenumber #noimei #NoMail #noeid #web0
@etraces Déjà que le smartbidule son #gps, son #micro, sa #webcam, son lecteur d'empreintes, sa dépendance à des boîtes pourries comme #Apple ou #Google et leurs #CLUF de merde … ça ne m'a jamais séduit … mais il restait encore le #mobile, son #baseband, sa #géolocalisation, ses textos, son micro...
Vais-je me débarrasser de mon mobile bientôt ?
Et en plus, le #RGPD … la bonne excuse pour que la #surveillance se face « dans l'intérêt général ».
#gps #micro #webcam #apple #google #cluf #mobile #baseband #géolocalisation #rgpd #surveillance #surveillancecapitalism
Popular Android phones can be tricked into snooping on their owners https://techcrunch.com/2019/11/08/android-baseband-flaws/ #Baseband #Android #Vulnerabilities #Security
#android #security #baseband #vulnerabilities