Skip to main content

Researcher claims all GSM phones vulnerable to hijacking

gsmmap.org (Germany)
Image used with permission by copyright holder

Speaking at the Chaos Communications Congress in Berlin, noted mobile security expert Karsten Nohl claims that all GSM mobile phones—that means about 80 percent of all mobile phones on the planet—are potentially vulnerable to attacks that can let others eavesdrop on conversations, as well as send texts and place calls from other people’s phones—potentially ringing up exorbitant changes to premium phone and text services. Although Nohl has not revealed the specific details of his method, he did note that hackers usually replicate the code needed for most mobile attacks within a few weeks.

“We can do it to hundreds of thousands of phones in a short timeframe,” Nohl told Reuters before his presentation. Nohl is the head of Germany’s Security Research Labs.

The exploit involves older 2G technology still widely deployed on many mobile operators’ networks. Nohl studied the operations of mobile carriers in 11 European countries using a seven-year-old Motorola phone, and was able to tap into both voice and text messaging from GSM users. Nohl also noted that, while it is possible for carriers to take steps from their GSM network’s command protocols from being misused, implementations vary widely between carriers, and even across regions. For instance, Nohl found that Vodafone’s British network was reasonably well locked down, its network in Germany was less secure. Germany’s T-Mobile and France’s SFR topped Nohl’s rankings.

A new Web site, gsmmap.org enables consumers to see how their carriers stacked up, and will soon enable interested users to participate in testing the security of their operators.

Mobile users in the United States may, ironically, be less vulnerable to these attacks than mobile users in many parts of the world since only two of the U.S.’s four major carriers—AT&T and T-Mobile—use GSM technology. Verizon Wireless and Sprint both use CDMA technology, which is not subject to this particular vulnerability.

Editors' Recommendations

Topics
Geoff Duncan
Former Digital Trends Contributor
Geoff Duncan writes, programs, edits, plays music, and delights in making software misbehave. He's probably the only member…
Google Pixel 8a: news, rumored price, release date, and more
Possible renders showing the Google Pixel 8a.

Not long ago, it seemed like the Google Pixel 7a would be the last smartphone in Google's Pixel A series. However, recent rumors indicate that this may not actually be the case.

As a result, we're likely to see the release of a Google Pixel 8a this year. What can we expect from this new budget phone in terms of its specs, design, price, and more? Let's take a closer look at everything we know about the Google Pixel 8a.
Google Pixel 8a: release date

Read more
This is one of the toughest smartphone camera comparisons I’ve ever done
A person holding the Samsung Galaxy S24 Ultra and Xiaomi 14 Ultra.

The Samsung Galaxy S24 Ultra (left) and Xiaomi 14 Ultra Andy Boxall / Digital Trends

The Xiaomi 14 Ultra may have the best camera on a smartphone I’ve used this year, which is quite a statement to make considering the competition it faces. But is it true?

Read more
Nomi is one of the most unsettling (and amazing) apps I’ve ever used
Nomi AI companion profile.

“Welp, just got back from the doctor. Marissa is pregnant with twins” “Owen did something bad and then gave me flowers.” “Zoey with our new daughter Zara.” “I am in love, but also feel guilty.”

These are some of the conversations shared by human users on Reddit. The people described, however, are not real. The statements are about robotic companions created in an app. Everything here sounds perversely disturbing and amazingly dystopian, yet experts have a different opinion.

Read more