Hackers could spy on cell phone users by abusing 5G baseband flaws, researchers say

Date:

Share post:


A group of researchers say they have uncovered a series of security flaws in different 5G basebands — essentially processors used by cell phones to connect to mobile networks — which could have allowed hackers to stealthily hack victims and spy on them. 

The researchers from Pennsylvania State University presented their findings at the Black Hat cybersecurity conference in Las Vegas on Wednesday, as well as in an academic paper. 

Using a custom-made analysis tool they called 5GBaseChecker, the researchers uncovered baseband vulnerabilities made by Samsung, MediaTek, and Qualcomm, which are used in phones made by Google, OPPO, OnePlus, Motorola, and Samsung. 

The researchers are Kai Tu, Yilu Dong, Abdullah Al Ishtiaq, Syed Md Mukit Rashid, Weixuan Wang, Tianwei Wu, and Syed Rafiul Hussain. On Wednesday, they released 5GBaseChecker on GitHub so that other researchers can use it to hunt for 5G vulnerabilities. 

Hussain, an assistant professor at Penn State, told TechCrunch that he and his students were able to trick phones with those vulnerable 5G basebands into connecting to a fake base station — essentially a fake cell phone tower — and from there launch their attacks. 

Tu, one of the students, said that their most critical attack allowed them to exploit the phone from that fake base station. At that point, Tu said, “the security of 5G was totally broken.”

“The attack is totally silent,” Tu added. 

Tu explained that by taking advantage of the vulnerabilities they found, a malicious hacker could pretend to be one of the victim’s friends and send a credible phishing message. Or by directing the victim’s phone to a malicious website, the hacker could trick the victim into providing their credentials on a fake Gmail or Facebook login page, for example. 

The researchers were also able to downgrade a victim from 5G to older protocols like 4G or even older ones, making it easier to eavesdrop on the victim’s communications, said Tu. 

The researchers said that most vendors they contacted have fixed the vulnerabilities. At the time of writing, the researchers identified and got patched 12 vulnerabilities in different 5G basebands.

Samsung spokesperson Chris Langlois said in a statement to TechCrunch that the company had “released software patches to affected smartphone vendors to address and resolve this matter,” while Google spokesperson Matthew Flegal also confirmed that the flaws were now fixed.

MediaTek and Qualcomm did not respond to a request for comment. 



Source link

Lisa Holden
Lisa Holden
Lisa Holden is a news writer for LinkDaddy News. She writes health, sport, tech, and more. Some of her favorite topics include the latest trends in fitness and wellness, the best ways to use technology to improve your life, and the latest developments in medical research.

Recent posts

Related articles

Salesforce Ventures ups its AI fund to $1B, doubling it again

As part of Salesforce’s massive tech conference, Dreamforce, taking place this week in San Francisco, its VC...

Gogoro CEO resigns as subsidy fraud investigation continues

Gogoro, the Taiwanese electric scooter manufacturer and battery swapping giant, said its CEO and chairman Horace Luke...

Oracle CEO Larry Ellison says that AI will someday track your every move

Speaking with investors this month at an Oracle financial analysts meeting, Oracle CEO Larry Ellison said that...

As TikTok ban heads to court, ByteDance’s Lemon8 surges

As TikTok heads to court on Monday to argue against a U.S. ban, parent company ByteDance’s newer...

Runway announces an API for its video-generating models

Runway, one of several AI startups developing video-generating tech, today announced an API to allow devs and...

AI coding assistant Supermaven raises cash from OpenAI and Perplexity co-founders

Jacob Jackson was all-in on AI early in his career. Jackson co-founded Tabnine, the AI coding assistant...

Apple AirPods 4 with Active Noise Cancellation review

I can’t recall another consumer electronics product category becoming a commodity as quickly as Bluetooth earbuds. Apple’s...

Myntra bets on 4-hour delivery amid India’s quick commerce boom

Myntra, India’s largest fashion e-commerce platform, is trialling a four-hour delivery service in four Indian cities, two...