TE
科技回声
首页24小时热榜最新最佳问答展示工作
GitHubTwitter
首页

科技回声

基于 Next.js 构建的科技新闻平台,提供全球科技新闻和讨论内容。

GitHubTwitter

首页

首页最新最佳问答展示工作

资源链接

HackerNews API原版 HackerNewsNext.js

© 2025 科技回声. 版权所有。

GoIP-1 GSM gateway could be harnessed for phone fraud by hackers

43 点作者 ValtteriL超过 3 年前

3 条评论

kuroguro超过 3 年前
I played around with a GoIP-4 a few years ago.<p>Btw the old dbladm backdoor still worked IIRC at the end of 2020 but needed some re (I suspect it still does) - you can dump the code from firmware updates.<p>They mark new challenge types with a letter in front of the numbers when you try to log in. I got the original (no prefix) and S, H, N type challenges working.<p>Also possible to extract and reassemble custom firmware updates (if you want to run custom code) after you get admin rights - the package is only protected by an md5 in the header. Be sure to have a jtag ready, you&#x27;ll need it the first few tries.<p>Here&#x27;s some old notes on the PKG format: <a href="https:&#x2F;&#x2F;gist.github.com&#x2F;tostercx&#x2F;3f2f2776736fbdaf9b8fa77c2037b7f1" rel="nofollow">https:&#x2F;&#x2F;gist.github.com&#x2F;tostercx&#x2F;3f2f2776736fbdaf9b8fa77c203...</a><p>The FS is either cramfs or squashfs.
denton-scratch超过 3 年前
I used to own a GSM modem. It could in principle be hooked-up to a microphone and speaker to make voice calls; I used it only for SMS. It accepted AT commands from a serial port. You had to put a SIM in it.<p>Apart from all the funky web-interfaces (with their security defects), isn&#x27;t that basically what this GoIP-1 device is? Like, you can use it to send SMS; but it&#x27;s not <i>free</i>, it&#x27;s charged to the SIM account, right?<p>So if you&#x27;re stupid enough to put the web interface for this thing on the big, bad internet, then strangers can use your SIM card to send &quot;free&quot; text messages. But much the same would happen if you left your phone on a park bench.
pabl0rg超过 3 年前
Are there any non-chinese suppliers of gsm gateways?
评论 #30384570 未加载
评论 #30387519 未加载