For the last two years Chapter 18, Smith et al have been studying AKA (authentication and key agreement). One candidate for AKA is MILENAGE which, in 2014 & published 2015, was hacked using DPA (a side channel attack).
Having spent 2016 researching through a huge range of document, presentation, test data and scripts etc., it was noted there had been nothing written as to what to look for and how practitioners could handle this information. It is hoped with the discussion, embedded links and those willing to learn this presentation goes some way to help in that regard.
fcord-2016-USIM-MILENAGE-0x48.pdf
Investigations, Practices and Procedures: Seizure-Forensic Examination-Evidence. Cellular and Satellite Telephones, Call Records-Billing Data, Cell Site Analysis. Telecomms. Computer and Network Analysis. GPS devices & Jammers, Cyber, IoT forensics.
Showing posts with label hardware. Show all posts
Showing posts with label hardware. Show all posts
Thursday, January 19, 2017
Saturday, March 19, 2016
Exploration - missing the micro-evidence
If you are new to or have all but forgotten the humble (U)SIM Card now maybe as good time as any to refresh on the physical state of (U)SIM Card, in particular the hardware, so to speak.
To assist that refresh process, below are links to previously published materials that investigators and examiners might find useful:
http://trewmte.blogspot.co.uk/2013/09/usim-examination-physical-pt1.html
http://trewmte.blogspot.co.uk/2013/09/usim-examination-physical-pt2.html
It has been noted that such is the sophistication of attackers skillsets in areas, e.g. in-card listening devices, the skillsets applied borders on high-academic results that to the untrained eye could miss a forgery. [Images courtesy of Houda Ferradi, Rémi Gérau d, David Naccache, and Assia Tria: When Organized Crime Applies Academic Results. A Forensic Analysis of an In-Card Listening Device]
To assist that refresh process, below are links to previously published materials that investigators and examiners might find useful:
http://trewmte.blogspot.co.uk/2013/09/usim-examination-physical-pt1.html
http://trewmte.blogspot.co.uk/2013/09/usim-examination-physical-pt2.html
It has been noted that such is the sophistication of attackers skillsets in areas, e.g. in-card listening devices, the skillsets applied borders on high-academic results that to the untrained eye could miss a forgery. [Images courtesy of Houda Ferradi, Rémi Gérau d, David Naccache, and Assia Tria: When Organized Crime Applies Academic Results. A Forensic Analysis of an In-Card Listening Device]
Hope this helps
Monday, January 14, 2013
Programming Mobile Parameters - the new area of mobile forensics
Programming Mobile Parameters - the new area of mobile forensics
Shortly I shall be running a course at the LinkedIn MTEB Subgroup 'ForensicMobex' identifying parameters programming for mobile phones. The purpose of the course is in support of the discussion at http://trewmte.blogspot.co.uk/2012/10/mobile-examination-hw-sw-considerations_29.html that access to evidential data goes beyond the common selection and choice of data extracted and harvested by mobile phone forensic tools.
The material for this course originates from of the MTEB mobile phone programming course.
The image (see weblink below) shows many parameters involved in programming a mobile phone and the image represents just one of the many pages, each of which shall be explored and discussed:
http://tinyurl.com/bjd4az8
The second image (see weblink below) in the top left hand corner identifies the radio transmissions technologies that can be discussed dependent on the interest of the group:
http://tinyurl.com/byvgl9q
To join the course requires participation from each stakeholder joining and those who have already joined this group.
Shortly I shall be running a course at the LinkedIn MTEB Subgroup 'ForensicMobex' identifying parameters programming for mobile phones. The purpose of the course is in support of the discussion at http://trewmte.blogspot.co.uk/2012/10/mobile-examination-hw-sw-considerations_29.html that access to evidential data goes beyond the common selection and choice of data extracted and harvested by mobile phone forensic tools.
The material for this course originates from of the MTEB mobile phone programming course.
The image (see weblink below) shows many parameters involved in programming a mobile phone and the image represents just one of the many pages, each of which shall be explored and discussed:
http://tinyurl.com/bjd4az8
The second image (see weblink below) in the top left hand corner identifies the radio transmissions technologies that can be discussed dependent on the interest of the group:
http://tinyurl.com/byvgl9q
To join the course requires participation from each stakeholder joining and those who have already joined this group.
Monday, July 16, 2007
Cellphone Transformer
Subscribe to:
Posts (Atom)

