TE
TechEcho
Home24h TopNewestBestAskShowJobs
GitHubTwitter
Home

TechEcho

A tech news platform built with Next.js, providing global tech news and discussions.

GitHubTwitter

Home

HomeNewestBestAskShowJobs

Resources

HackerNews APIOriginal HackerNewsNext.js

© 2025 TechEcho. All rights reserved.

SeaGlass: City-Wide IMSI-Catcher Detection (2017)

196 pointsby karlztover 1 year ago

13 comments

red0pointover 1 year ago
As it turns out, you do not even need cell site simulators &#x2F; false base station to do IMSI catching.<p>In my research, I developed a technique to attack a phone with low power from km away, without being able to be detected at all with traditional tools like SeaGlass or Crocodile Hunter. It‘s published here and works against production LTE networks, no downgrade attacks whatsoever necessary:<p><a href="https:&#x2F;&#x2F;dl.acm.org&#x2F;doi&#x2F;10.1145&#x2F;3495243.3560525" rel="nofollow noreferrer">https:&#x2F;&#x2F;dl.acm.org&#x2F;doi&#x2F;10.1145&#x2F;3495243.3560525</a>
评论 #37246981 未加载
评论 #37245488 未加载
morpheuskafkaover 1 year ago
Here&#x27;s something I&#x27;ve never understood about these: as devices that transmit on FCC-licensed bands, wouldn&#x27;t each use of these require specific permission from the FCC? Especially for state level law enforcement and state courts, they wouldn&#x27;t have the authority to authorize this without the federal government saying it&#x27;s OK.
评论 #37239238 未加载
评论 #37239213 未加载
评论 #37242485 未加载
评论 #37239338 未加载
ncr100over 1 year ago
If I read the results correctly, weird to see a potential cell-catcher at the US Immigration center. Could this reasonably be interpreted as &quot;someone is sniffing immigrant&#x27;s cell traffic&quot; .. gathering intelligence about potential candidates for immigration?
评论 #37240040 未加载
评论 #37244082 未加载
评论 #37242461 未加载
评论 #37247885 未加载
dangover 1 year ago
Related:<p><i>SeaGlass: City-Wide IMSI-Catcher Detection (2017)</i> - <a href="https:&#x2F;&#x2F;news.ycombinator.com&#x2F;item?id=27173717">https:&#x2F;&#x2F;news.ycombinator.com&#x2F;item?id=27173717</a> - May 2021 (55 comments)<p><i>SeaGlass – Enabling City-Wide IMSI-Catcher Detection</i> - <a href="https:&#x2F;&#x2F;news.ycombinator.com&#x2F;item?id=14474956">https:&#x2F;&#x2F;news.ycombinator.com&#x2F;item?id=14474956</a> - June 2017 (36 comments)
fulafelover 1 year ago
Does this still work against current cell networks, is it a downgrade attack to 2g or are there other holes in how the network authenticates itself to the phone?
guwopover 1 year ago
this is from 17&#x27; does anyone know of any updated resources on imsi detection? perhaps some cool papers?
评论 #37242521 未加载
avg_devover 1 year ago
beautiful image at the top of the page. I realize that it is a map, meant to convey some information. but I just like it
Gasp0deover 1 year ago
Why is it using an inverter only to power what seems to be two dc power supplies? That seems unnecessary.
评论 #37254830 未加载
评论 #37273454 未加载
h2odragonover 1 year ago
2017, code link: <a href="https:&#x2F;&#x2F;github.com&#x2F;seaglass-project&#x2F;seaglass">https:&#x2F;&#x2F;github.com&#x2F;seaglass-project&#x2F;seaglass</a><p>Pi connected to a Cell modem, mobile hotspot, and &quot;bait phone&quot; ... and a separate GPS.<p>All powered by wall warts off an inverter to the car&#x27;s 12v system.<p>This makes me feel better about my own systems designs.
评论 #37239089 未加载
评论 #37239575 未加载
评论 #37239164 未加载
评论 #37240545 未加载
abraaeover 1 year ago
&gt; There are some cases where legitimate cell towers will be moved to deal with a temporary increase in demand, like a sporting event, but this is relatively uncommon.<p>My understanding is these are quite commonly used for concerts, sporting events etc., Vodafone called them COWS (Cell site on wheels).<p>Anecdotally when the Vodafone CEO of the time came to visit NZ, some lackeys were charged with staying physically close behind him with a COW so he would always see good reception.
评论 #37244039 未加载
评论 #37244588 未加载
评论 #37242796 未加载
Havocover 1 year ago
Pretty sure it’s possible to catch some imsi 100% passive though during handover
ta8645over 1 year ago
An explanation wasn&#x27;t prominently displayed on that web site, so from <a href="https:&#x2F;&#x2F;en.wikipedia.org&#x2F;wiki&#x2F;IMSI-catcher" rel="nofollow noreferrer">https:&#x2F;&#x2F;en.wikipedia.org&#x2F;wiki&#x2F;IMSI-catcher</a> :<p>An international mobile subscriber identity-catcher, or IMSI-catcher, is a telephone eavesdropping device used for intercepting mobile phone traffic and tracking location data of mobile phone users. Essentially a &quot;fake&quot; mobile tower acting between the target mobile phone and the service provider&#x27;s real towers, it is considered a man-in-the-middle (MITM) attack.
评论 #37242417 未加载
评论 #37240400 未加载
wintermutestwinover 1 year ago
I always figure that the times when I have 3 bars and yet zero internet are when local leo is using a stingray. You would think cell providers would sue over the disruption of their service.<p>&#x2F;i am mostly clue free about this stuff so this post might include erroneous assumptions
评论 #37245932 未加载
评论 #37242304 未加载