News / Science & Technology

Researchers Hack Verizon Device, Turn it Into Mobile Spy Station

A cell phone user passes a Verizon store in New York in this April 27, 2006 file photo.
A cell phone user passes a Verizon store in New York in this April 27, 2006 file photo.
Reuters

Two security experts said they have figured out how to spy on Verizon Wireless mobile phone customers by hacking into devices the U.S. carrier sells to boost wireless signals indoors.
 

The finding, which the experts demonstrated to Reuters and will further detail at two hacking conferences this summer, comes at a time of intense global debate about electronic privacy, after top-secret U.S. surveillance programs were leaked by a former National Security Agency contractor, Edward Snowden, last month.

"This is not about how the NSA would attack ordinary people. This is about how ordinary people would attack ordinary people,'' said Tom Ritter, a senior consultant with the security firm iSEC Partners.
 

Verizon said it has updated the software on its signal-boosting devices, known as femtocells or network extenders, to prevent hackers from copying the technique of the two experts.
 

But Ritter said motivated hackers can still find other ways to hack the femtocells of Verizon, as well as those offered by some 30 carriers worldwide to their customers.

Femtocells, which act as tiny cellphone towers, can be purchased directly from Verizon for $250. Used models can be obtained online for about $150.  Ritter and his colleague, Doug DePerry, demonstrated for Reuters how they can eavesdrop on text messages, photos and phone calls made with an Android phone and an iPhone by using a Verizon femtocell that they had previously hacked.
 

They declined to disclose how they had modified the software on the device, saying they do not want to make it any easier for criminals to figure out similar ways to hack femtocells.

   
The two said they plan to give more elaborate demonstrations wo weeks from now at the Black Hat and Def Con hacking conferences in Las Vegas. More than 15,000 security professionals and hackers are expected to attend those conferences, which feature talks on newly found bugs in communications systems, smart TVs, mobile devices and computers that run facilities from factories to oil rigs.

 

Verizon Wireless released a Linux software update in March that prevents its network extenders from being compromised in the manner reported by Ritter and DePerry, according to company spokesman David Samberg.

"The Verizon Wireless Network Extender remains a very secure and effective solution for our customers,'' Samberg said in a statement. He said there have been no reports of customers being impacted by the bug that the researchers had identified. The company is a joint venture between Verizon Communications Inc and Vodafone Group Plc.

 

Samberg said his company uses an internal security team as well as outside firms to look for vulnerabilities in the devices it sells, before and after they are released.

   
Still, the two researchers said they are able to use the hacked femtocell to spy on Verizon phones even after Verizon released that update because they had modified the device before the company pushed out the software fix.


The researchers built their "proof of concept'' system that they will demonstrate in Las Vegas with femtocells manufactured by Samsung Electronics Co and a $50 antenna from Wilson Electronics Inc.
 

They said that with a little more work, they could have weaponized it for stealth attacks by packaging all equipment needed for a surveillance operation into a backpack that could be dropped near a target they wanted to monitor.

   
For example, a group interested in potential mergers might place such a backpack in Manhattan restaurants frequented by investment bankers. Verizon's website said the device has a 40-foot range, but the researchers believe that could be expanded by adding specialized antennas.
 

The iSEC researchers are not the first to warn of vulnerabilities in femtocells, but claim to be the first to hack the femtocells of a U.S. carrier and also the first running on a wireless standard known as CDMA. Other hacking experts have previously uncovered security bugs in femtocells used by carriers in Europe.

   
CTIA, a wireless industry group based in Washington, in February released a report that identified femtocells as a potential point of attack. John Marinho, CTIA's vice president for cybersecurity and Technology, said that the group is more concerned about other potential cyber threats, such as malicious apps. He is not aware of anycase where attacks were launched via femtocells.
 

Still, he said, the industry is monitoring the issue: "Threats change every day.''

 

You May Like

Israelis Quietly Expand Enclave in Palestinian District of Jerusalem

Estimated 500 settlers, armed or protected by paramilitary police, live in Silwan among 50,000 Palestinians More

Video US, Iran Face Similar Challenges in Syrian Fight Against IS

Both Washington, Tehran back fighters battling Islamic State militants in Iraq -- but in Syria they support opposing sides in country’s civil war More

China Boosts Efforts to Help Afghan, Regional Stability

Observers say China’s increased regional involvement are due to concerns that Afghan instability and the presence of anti-China militants in Pakistani border areas could fuel Xinjiang troubles More

Featured Videos

Your JavaScript is turned off or you have an old version of Adobe's Flash Player. Get the latest Flash player.
China Political Meeting Seeks to Improve Rule of Lawi
X
William Ide
October 20, 2014 10:23 AM
China’s communist leaders will host a top level political meeting this week, called the Fourth Plenum, and for the first time in the party’s history, rule of law will be a key item on the agenda. Analysts and Chinese media reports say the meetings could see the approval of long-awaited measures aimed at giving courts more independence and include steps to enhance an already aggressive and high-reaching anti-corruption drive. VOA’s Bill Ide has more from Beijing.
Video

Video China Political Meeting Seeks to Improve Rule of Law

China’s communist leaders will host a top level political meeting this week, called the Fourth Plenum, and for the first time in the party’s history, rule of law will be a key item on the agenda. Analysts and Chinese media reports say the meetings could see the approval of long-awaited measures aimed at giving courts more independence and include steps to enhance an already aggressive and high-reaching anti-corruption drive. VOA’s Bill Ide has more from Beijing.
Video

Video Ebola Orphanage Opens in Sierra Leone

Sierra Leone's first Ebola orphanage has opened in the Kailahun district. Hundreds of children orphaned since the beginning of the Ebola outbreak face stigma and rejection with nobody to care for them. Adam Bailes reports for VOA about a new interim care center that's aimed at helping the growing number of children affected by Ebola.
Video

Video Latinas Converting to Islam for Identity, Structure

Latinos are one of the fastest growing groups in the Muslim religion. According to the Pew Research Center, about 6 percent of American Muslims are Latino. And a little more than half of new converts are female. VOA’s Carolyn Presutti travelled to Miami, Florida -- where two out of every three residents is Hispanic -- to learn more.
Video

Video Nigeria Agrees to Cease-Fire With Boko Haram

Islamist militant group Boko Haram and the Nigerian government have agreed to a cease-fire. The Nigerian government issued an order Friday, telling all military chiefs "to comply with the cease-fire agreement in all theaters of operations. Why now and the significance of the agreement are questions on some people’s minds. VOA's Mariama Diallo reports.
Video

Video Kobani Fighting Sends 400,000 Refugees to Turkey

The offensive by Islamic State militants against the northern Syrian city of Kobani has caused hundreds of thousands of residents to flee to Turkey. They receive help from Turkish authorities and individuals, but say much more is needed. VOA’s Scott Bobb reports from the town of Suruc a few kilometers from the border.
Video

Video Exclusive: American Joins Kurds' Anti-IS Fight

The United States and other Western nations have expressed alarm about their citizens joining Islamic State forces in Syria and Iraq. In a rare counterpoint to the phenomenon, an American has taken up arms with the militants' Syrian Kurdish opponents. Elizabeth Arrott has more in this exclusive profile by VOA Kurdish reporter Zana Omer in Ras al Ayn, Syria.
Video

Video South Korea Confronts Violence Within Military Ranks

Every able-bodied South Korean male between 18 and 35 must serve for 21 to 36 months in the country’s armed forces, depending upon the specific branch. For many, service is a rite of passage to manhood. But there are growing concerns that bullying and violence come along with the tradition. Reporter Jason Strother has more from Seoul.
Video

Video Comanche People Maintain Pride in Their Heritage

The Comanche (Indian nation) once were called the “Lords of the Plains,” with an empire that included half the land area of current day Texas, large parts of Oklahoma, New Mexico, Kansas and Colorado.The fierceness and battle prowess of these warriors on horseback delayed the settlement of most of West Texas for four decades. VOA’s Greg Flakus reports from Lawton, Oklahoma, that while their warrior days are over, the 15,000 members of the Comanche Nation remain a proud people.
Video

Video Turkey Campus Attacks Raise Islamic Radicalization Fears

Concerns are growing in Turkey of Islamic radicalization at some universities, after clashes between supporters of the jihadist group Islamic State (IS) or ISIS, and those opposed to the extremists. Pro-jihadist literature is on sale openly on the streets of Istanbul. Critics accuse the government of turning a blind eye to radicalism at home, while Kurds accuse the president of supporting IS - a charge strongly denied. Henry Ridgwell reports from London.
Video

Video Syrian Defector Leaks Shocking Photos of Torture Victims

Shocking photographs purporting to show Syrian torture victims are on display at the U.S. Holocaust Memorial Museum in Washington. The museum says the graphic images are among thousands of photographs recently smuggled out of Syria by a military policeman-turned-defector. As VOA reporter Julie Taboh reports, the museum says the photos provide further evidence of atrocities committed by the government of Syrian President Bashar al-Assad against its own people.
Video

Video Drought-Stricken California Considers Upgrading Water System

A three-year drought in California is causing a water shortage that is being felt on farms and cities throughout the state. As VOA's Mike O’Sullivan reports, water experts, consumers and farmers say California needs to make changes to cope with an uncertain future.
Video

Video TechShop Puts High-tech Dreams Within Reach

Square, a business app and card reader, makes it possible to do credit card transactions through cell phones. But what made Square possible? VOA’s Adrianna Zhang and Enming Liu have the answer.

All About America

AppleAndroid