Skip to content
  • Categories
  • Recent
  • Tags
  • Popular
  • World
  • Users
  • Groups
Skins
  • Light
  • Cerulean
  • Cosmo
  • Flatly
  • Journal
  • Litera
  • Lumen
  • Lux
  • Materia
  • Minty
  • Morph
  • Pulse
  • Sandstone
  • Simplex
  • Sketchy
  • Spacelab
  • United
  • Yeti
  • Zephyr
  • Dark
  • Cyborg
  • Darkly
  • Quartz
  • Slate
  • Solar
  • Superhero
  • Vapor

  • Default (No Skin)
  • No Skin
Collapse
Brand Logo

agnos.is Forums

  1. Home
  2. Privacy
  3. [Discussion] Veritasiums: Exposing the flaw in our phone system.

[Discussion] Veritasiums: Exposing the flaw in our phone system.

Scheduled Pinned Locked Moved Privacy
privacy
6 Posts 5 Posters 0 Views
  • Oldest to Newest
  • Newest to Oldest
  • Most Votes
Reply
  • Reply as topic
Log in to reply
This topic has been deleted. Only users with topic management privileges can see it.
  • N This user is from outside of this forum
    N This user is from outside of this forum
    [email protected]
    wrote on last edited by
    #1

    YouTube link: https://youtu.be/wVyu7NB7W6Y


    I dunno if it has already been posted/discussed here but this kinda blew my mind ! Sorry there's a lot of clickbait but the general subject is interesting...

    I never heard of SS7 and have actually no idea how the whole phone system communication system works but that's kinda scary...

    Yes we are probably not the first target with this "hack" nor is it as easy as exposed in this video and nor do we have 14k $ to spend on this, but that's not out of reach for some people. I mean it's not as expensive as Pegasus and people with the mean and some good stable income can probably misuse this system for targeting specific vulnerable people (example in the video).

    V drwho@beehaw.orgD P 3 Replies Last reply
    1
    0
    • System shared this topic on
    • N [email protected]

      YouTube link: https://youtu.be/wVyu7NB7W6Y


      I dunno if it has already been posted/discussed here but this kinda blew my mind ! Sorry there's a lot of clickbait but the general subject is interesting...

      I never heard of SS7 and have actually no idea how the whole phone system communication system works but that's kinda scary...

      Yes we are probably not the first target with this "hack" nor is it as easy as exposed in this video and nor do we have 14k $ to spend on this, but that's not out of reach for some people. I mean it's not as expensive as Pegasus and people with the mean and some good stable income can probably misuse this system for targeting specific vulnerable people (example in the video).

      V This user is from outside of this forum
      V This user is from outside of this forum
      [email protected]
      wrote on last edited by
      #2

      I’m not an expert in this field, so other people might have something else to add, but my takeaway is mostly - do not rely on phone services. Don’t use MFA via SMS, etc. Most of the issues described, you can avoid if you’re careful, except the geolocation issue.

      T 1 Reply Last reply
      0
      • N [email protected]

        YouTube link: https://youtu.be/wVyu7NB7W6Y


        I dunno if it has already been posted/discussed here but this kinda blew my mind ! Sorry there's a lot of clickbait but the general subject is interesting...

        I never heard of SS7 and have actually no idea how the whole phone system communication system works but that's kinda scary...

        Yes we are probably not the first target with this "hack" nor is it as easy as exposed in this video and nor do we have 14k $ to spend on this, but that's not out of reach for some people. I mean it's not as expensive as Pegasus and people with the mean and some good stable income can probably misuse this system for targeting specific vulnerable people (example in the video).

        drwho@beehaw.orgD This user is from outside of this forum
        drwho@beehaw.orgD This user is from outside of this forum
        [email protected]
        wrote on last edited by
        #3

        I never heard of SS7 and have actually no idea how the whole phone system communication works but that’s kinda scary…

        SS7 and 1ESS are terribly insecure and were even before CALEA compliance was required. Folks compromising telephony routing systems was a thing back in the early 1990's.

        Story time. I worked as a telecom engineer for a while. One of ourasks was, whenever the telco would get a warrant a small team of us at the office were tasked with turning up the surveillance features of our infra (dupe all CDR logs off to another system for chain of custody, log all of the SIP traffic from the specified subscribers to a separate set of logs on the same box for the same reason, basically trap-and-trace and pen register functionality updated for the early 00's (we had the capability of tapping and recording RTP traffic in realtime by abusing three way calling but were not asked to do it while I worked there)). About half the time we'd go into our back-end, and find taps already in place. A few times we took it to management, who kicked it up the food chain and were told flat out "Shut up, write up how you would have done it yourself, and just copy the data coming from what you found." So, we did. Never did find out who did it and why.

        1 Reply Last reply
        0
        • V [email protected]

          I’m not an expert in this field, so other people might have something else to add, but my takeaway is mostly - do not rely on phone services. Don’t use MFA via SMS, etc. Most of the issues described, you can avoid if you’re careful, except the geolocation issue.

          T This user is from outside of this forum
          T This user is from outside of this forum
          [email protected]
          wrote on last edited by
          #4

          If only we could convince US banks not to use MFA only via SMS

          V 1 Reply Last reply
          0
          • N [email protected]

            YouTube link: https://youtu.be/wVyu7NB7W6Y


            I dunno if it has already been posted/discussed here but this kinda blew my mind ! Sorry there's a lot of clickbait but the general subject is interesting...

            I never heard of SS7 and have actually no idea how the whole phone system communication system works but that's kinda scary...

            Yes we are probably not the first target with this "hack" nor is it as easy as exposed in this video and nor do we have 14k $ to spend on this, but that's not out of reach for some people. I mean it's not as expensive as Pegasus and people with the mean and some good stable income can probably misuse this system for targeting specific vulnerable people (example in the video).

            P This user is from outside of this forum
            P This user is from outside of this forum
            [email protected]
            wrote on last edited by
            #5

            If you are interested in a subject, a video is the worst way to learn about it.

            1 Reply Last reply
            0
            • T [email protected]

              If only we could convince US banks not to use MFA only via SMS

              V This user is from outside of this forum
              V This user is from outside of this forum
              [email protected]
              wrote on last edited by
              #6

              Honestly it didn’t even occur to me that this could be a problem somewhere in this day and age. I don’t even remember when was the last time my bank sent me an SMS for MFA, but it’s a good point for people in US.

              1 Reply Last reply
              0
              • System shared this topic on
              Reply
              • Reply as topic
              Log in to reply
              • Oldest to Newest
              • Newest to Oldest
              • Most Votes


              • Login

              • Login or register to search.
              • First post
                Last post
              0
              • Categories
              • Recent
              • Tags
              • Popular
              • World
              • Users
              • Groups