Skip to main content

German Researcher Publishes GSM Encryption Crack

apple_iphone_3g-251x300German security research Karsten Nohl, working with other researchers, has published a codebook that significantly reduces the amonut of work necessary to crack 64-bit GSM encryption, used to protect calls placed by more than 4 billion mobile phone users around the world. In theory, the development could make it easier for criminals, fraudsters, and attackers to intercept and decode and eavesdrop on private mobile phone conversations—although the bar for doing so is still fairly high. Nohl insists publishing data necessary to crack GSM encryption is intended to motivate carriers into upgrading their security technology, rather than enabling any sort of attack.

Nohl’s published results are essentially a brute-force attack on the 64-bit A5/1 algorithm that has been used to protect GSM phone calls for over two decades. Normally, GSM handsets thwart call interception by switching quickly over a range of some 80 radio channels: even if attackers manage to snoop in on one channel, the odds of their being able to follow a call across all 80 channels in real time are miniscule. Unless, that is, they are able to ferret out the key that governs the communication: then, in theory, someone could listen in on a call in real time. Nohl’s published tables, in theory, would enable attackers to determine the keys and snoop in on calls. Although the GSM algorithm has long been vulnerable to law enforcement and heavily-financed criminal organizations…but by Nohl’s estimates, his tables lower the bar for real-time call interception down to about $30,000.

Nohl believes that his work is itself legal—and largely builds on knowledge of GSM compromises that were well-known in academic circles—although using that infomation to build a GSM phone intercepter or actually intercepting calls would be illegal in most countries.

A more-robust A5/3 algorithm that uses a 128-bit key is used to secure 3G mobile communications and GPRS. Although A5/3 has been compromised by man-in-the-middle attacks and brute force approaches, no known cipher breaks of A5/3 are currently considered practical.

Editors' Recommendations

Geoff Duncan
Former Digital Trends Contributor
Geoff Duncan writes, programs, edits, plays music, and delights in making software misbehave. He's probably the only member…
How to turn off Activity Status on Instagram
Instagram on an iPhone.

Instagram is a popular social networking site that allows users to communicate through text, photos, and videos. One of its features is the app's Activity Status, which lets users know when someone was last active on the app or if they are currently online.

Read more
Grab a 4-pack of Apple AirTags while they’re on sale
Person holding an Apple AirTag.

If you're one of those people who always keep misplacing their stuff, then you may want to take advantage of Walmart's offer for the Apple AirTag. Four of the Bluetooth trackers, which will make sure that you never lose anything again, are available for just $80, following a $19 discount on the bundle's original price of $99. There's no telling how long this lowered price will last, so if you think you'll find some use for these tracking devices, it's highly recommended that you proceed with the purchase as soon as possible.

Why you should buy the Apple AirTag
The Apple AirTag is highlighted in our roundup of the best Bluetooth trackers as the top choice if you're invested in the iOS ecosystem. In addition to a quick and easy one-tap setup to link the tracking device to your iPhone or iPad, the Apple AirTag uses Apple's Find My network to keep track of your things. Precision Finding with Ultra Wideband technology will lead you to your Apple AirTag, with the help of the millions of devices in the Find My network that will work together to locate your missing item when you activate Lost Mode.

Read more
Huawei’s gorgeous Pura 70 phones just got expanded availability
Huawei Pura 70 pink, green, white, and black colors.

Huawei Pura 70 Huawei

After being announced for China in mid-April, the Huawei Pura 70 series is now confirmed for the EU market. Those in the European market can expect to preorder the Pura 70, Pura 70 Pro, and the top-tier Pura 70 Ultra starting May 2 for 999 euros, 1,199 euros, and 1,499 euros, respectively. This pricing is in line with what we saw in China, with the Ultra coming in at 9,999 yuan ($1,400) and the base Pura 70 at 5,499 yuan ($760).

Read more