Title :
Taming Mr Hayes: Mitigating signaling based attacks on smartphones
Author :
Mulliner, Collin ; Liebergeld, Steffen ; Lange, Matthias ; Seifert, Jean-Pierre
Author_Institution :
Deutsche Telekom Labs., Tech. Univ. Berlin, Berlin, Germany
Abstract :
Malicious injection of cellular signaling traffic from mobile phones is an emerging security issue. The respective attacks can be performed by hijacked smartphones and by malware resident on mobile phones. Until today there are no protection mechanisms in place to prevent signaling based attacks other than implementing expensive additions to the cellular core network. In this work we present a protection system that resides on the mobile phone. Our solution works by partitioning the phone software stack into the application operating system and the communication partition. The application system is a standard fully featured Android system. On the other side, communication to the cellular network is mediated by a flexible monitoring and enforcement system running on the communication partition. We implemented and evaluated our protection system on a real smartphone. Our evaluation shows that it can mitigate all currently known signaling based attacks and in addition can protect users from cellular Trojans.
Keywords :
cellular radio; invasive software; operating systems (computers); smart phones; telecommunication traffic; Android system; application operating system; cellular Trojans; cellular core network; cellular network; cellular signaling traffic; communication partition; hijacked smartphones; malicious injection; malware; mobile phones; phone software stack partitioning; protection system; signaling based attack mitigation; Androids; Baseband; Hardware; Humanoid robots; Kernel; Modems; Smart phones; Attack Mitigation; Cellular Signaling; Operating Systems; Smartphones; System Virtualization;
Conference_Titel :
Dependable Systems and Networks (DSN), 2012 42nd Annual IEEE/IFIP International Conference on
Conference_Location :
Boston, MA
Print_ISBN :
978-1-4673-1624-8
Electronic_ISBN :
1530-0889
DOI :
10.1109/DSN.2012.6263943