Showing posts with label hardware. Show all posts
Showing posts with label hardware. Show all posts

Thursday, January 19, 2017

Investigating AKA - USIM MILENAGE Attack

For the last two years Chapter 18, Smith et al have been studying AKA (authentication and key agreement). One candidate for AKA is MILENAGE which, in 2014 & published 2015, was hacked using DPA (a side channel attack).

Having spent 2016 researching through a huge range of document, presentation, test data and scripts etc., it was noted there had been nothing written as to what to look for and how practitioners could handle this information. It is hoped with the discussion, embedded links and those willing to learn this presentation goes some way to help in that regard.

fcord-2016-USIM-MILENAGE-0x48.pdf

Saturday, March 19, 2016

Exploration - missing the micro-evidence

If you are new to or have all but forgotten the humble (U)SIM Card now maybe as good time as any to refresh on the physical state of (U)SIM Card, in particular the hardware, so to speak.

To assist that refresh process, below are links to previously published materials that investigators and examiners might find useful:

http://trewmte.blogspot.co.uk/2013/09/usim-examination-physical-pt1.html
http://trewmte.blogspot.co.uk/2013/09/usim-examination-physical-pt2.html

It has been noted that such is the sophistication of attackers skillsets in areas, e.g. in-card listening devices, the skillsets applied borders on high-academic results that to the untrained eye could miss a forgery. [Images courtesy of Houda Ferradi, Rémi Gérau d, David Naccache, and Assia Tria: When Organized Crime Applies Academic Results. A Forensic Analysis of an In-Card Listening Device]

 
 
Hope this helps

Monday, January 14, 2013

Programming Mobile Parameters - the new area of mobile forensics

Programming Mobile Parameters - the new area of mobile forensics

Shortly I shall be running a course at the LinkedIn MTEB Subgroup 'ForensicMobex' identifying parameters programming for mobile phones. The purpose of the course is in support of the discussion at http://trewmte.blogspot.co.uk/2012/10/mobile-examination-hw-sw-considerations_29.html that access to evidential data goes beyond the common selection and choice of data extracted and harvested by mobile phone forensic tools.

The material for this course originates from of the MTEB mobile phone programming course.

The image (see weblink below) shows many parameters involved in programming a mobile phone and the image represents just one of the many pages, each of which shall be explored and discussed:

http://tinyurl.com/bjd4az8

The second image (see weblink below) in the top left hand corner identifies the radio transmissions technologies that can be discussed dependent on the interest of the group:

http://tinyurl.com/byvgl9q

To join the course requires participation from each stakeholder joining and those who have already joined this group.

Monday, July 16, 2007

Cellphone Transformer

Cellphone Transformer

Some people shout on the mobile telephone whilst on the train, annoying all the passengers. With Parkoz Hardware's new cellphone tranformer I can use the mobile and entertain the passengers at the same time.

Photo Sharing and Video Hosting at Photobucket