VIRTUALISATION
You can help break GSM encryption | You can help break GSM encryption |
|
| by David Heath | |
| Wednesday, 02 September 2009 | |
|
There is a project underway to employ distributed computers to compute rainbow tables for GSM decryption. Download the code and join in, if you're interested!
Featured Whitepaper
5 Best Practices for Smartphone Support
At the recent Hacking at Random conference in mid-August, security researcher Karsten Nohl from Virginia Tech outlined a new project to harness as many computing resources around the world to calculate "Rainbow Tables" allowing a quick lookup of the plaintext, given an encrypted text fragment. This is a drastic simplification, but I'm sure you'll get the gist – instead of having to attempt to decrypt the material, it can simply be used to look into a reverse-translation table. For Nohl's project, the Rainbow table will be huge – estimated at 128 Petabytes; clearly this will need to be distributed across a large number of computers around the world. Interviewed recently on CNET, Nohl said "We're not creating a vulnerability but publicizing a flaw that's already being exploited widely. Clearly we are making the attack more practical and much cheaper, and of course there's a moral question of whether we should do that." So, assuming you'd like to be involved, what do you need? Simple – any modern PC with a NVIDIA video card which supports the CUDA development environment. If you fit the bill, head to the project website and download the code (still currently in alpha). What will this mean? Obviously, that any call (or data connection) can be accessed and decrypted. Also, this rather hurts some of the payment services based on GSM standards – Gpay for instance.
I wonder if this will FINALLY spur the telcos and the GSM organisation to actually create a viable encryption protocol. |
| < Next story in category | Previous story in the category > |
|---|





Tags




