Researchers show how to use mobiles to spy on people

Researchers show how to use mobiles to spy on people

( -- Researchers have demonstrated how it is possible to use GSM (Global System for Mobile communications) data along with a few tools to track down a person’s mobile phone number and their location, and even listen in on calls and voicemail messages.

Independent researcher Nick DePetrillo and security consultant Don Bailey demonstrated their system at the SOURCE Boston security conference earlier this week. Using information from the GSM network they could identify a user’s location, and they showed how they could easily create dossiers on people’s lives and their behavior and business dealings. They also demonstrated how they were able to identify a government contractor for the US through analyzing phone numbers and caller IDs.

Bailey and DePetrillo’s demonstration showed up inherent weaknesses in the way mobile providers expose interfaces to each other to interoperate over the GSM infrastructure. They used the Home Location Registry (HLR) and GSM provider caller ID database, along with some of their own tools and voicemail-hacking techniques.

Their technique was to first obtain their victim’s mobile phone number from the ID database, and they used an open-source PBX program to automate phone calls to themselves, which triggered the system to force a name lookup. They could then associate the name information with the phone number in the caller ID database. Their next step was to match the phone number with the location using HLR, which logs the whereabouts of numbers to allow networks to hand calls off to each other. Individual phones are logged to a register of mobile switching centers within specific geographic regions. DePetrillo said he was even able to watch a phone number moving to a different mobile switching center, regardless of where in the world they were located.

The pair were even able to track a journalist who interviewed an informant in Serbia and then traveled back to Germany, and they also obtained the informant’s phone number. DePetrillo said it was also a simple matter to access voicemail without the phone ringing by making two almost simultaneous calls; the first disconnects before it is picked up, and the second goes into voicemail.

The researchers have not released details of the tools they developed, and have alerted the major GSM carriers about their results. Bailey said the carriers were “very concerned,” but mitigating these sorts of attacks would not be easy. In the meantime there is little mobile phone users can do to protect themselves short of turning off their phones. Indications of an attack might include the phone calling itself, or the phone suddenly calling someone by itself, but most attacks would produce no signs visible to the phone user.

DePetrillo said some of their research scared them, since they were able to track important people who were themselves protected by high security measures by tracking people close to them, such as congressional aides, who were not under high security. He also said the attacks they demonstrated could be made on corporations as well as individuals, and corporations would be well advised to look at the policies they have in place, especially for their executives.

Bailey said their system is not illegal and does not breach the terms of service.

Explore further

Stop Big Brother listening in to your mobile phone conversation

© 2010

Citation: Researchers show how to use mobiles to spy on people (2010, April 22) retrieved 16 September 2019 from
This document is subject to copyright. Apart from any fair dealing for the purpose of private study or research, no part may be reproduced without the written permission. The content is provided for information purposes only.

Feedback to editors

User comments

Apr 22, 2010
So much for any semblance of privacy.

Which will come first, the private companies fixing their system? Or the government mandating by law they do?

Apr 22, 2010
We already trust GSM providers for confidentiality of HLR, don't we ?

[It's their duty to protect users identity]

Even as per GSM standard, sms is sent to all mobile towers and only the intended set receives the message , who's there to blame someone if someone bluntly accepts all sms sent through nearest towers.
Just like promiscuous mode in ethernet card :)

Apr 22, 2010
this is made to be vulnerable - to watch us.

Apr 22, 2010
Yeah to watch you and your malevolent paranoia!

Apr 22, 2010
This isn't new, just an old story revamped.

Apr 22, 2010
You could partially defeat the system by turning off the GPS locator service on your phone. That way they would only be able to tell what cell you were in, but not at what specific location.

Apr 22, 2010
This comment has been removed by a moderator.

Apr 23, 2010
And don't forget to take the battery out
And don't forget to wear aluminium foil on your head so they can't track you by your brainwaves! :)

May 01, 2010
Does it really matter...the government (at least in the US) is already listening in on random cell phone calls....
The privacy you had on your cell phone went away back at the beginning of 2002...

Not random cell phone calls, all calls, in every phone network, using high-speed voice recognition to do keyword searches of interest.

Public security must be maintained. ;-)

Please sign in to add a comment. Registration is free, and takes less than a minute. Read more