How to Block Stingray Devices
oaklandmofo.com
oaklandmofo.com
https://github.com/CellularPrivacy/Android-IMSI-Catcher-Dete...
Detection apps are known to be ineffective. It's mostly because IMSI catchers comply with the standard. Your baseband will fall for that - there's not much useful information to be passed to the operating system - or even an app.
Cellphones internal storage? Seriously?
(this machinery is rather hard to google for and I'm not sure if it has a better name in the official GSM documents)
https://github.com/CellularPrivacy/Android-IMSI-Catcher-Dete...
"To protect the device from vulnerabilities in network processor firmware, network interfaces including Wi-Fi and baseband have limited access to application processor memory. When USB or SDIO is used to interface with the network processor, the network processor can’t initiate Direct Memory Access (DMA) transactions to the application processor. When PCIe is used, each network processor is on its own isolated PCIe bus. An IOMMU on each PCIe bus limits the network processor’s DMA access to pages of memory containing its network packets or control structures."
[1]: https://www.apple.com/business/site/docs/iOS_Security_Guide....
Of course, it's not 100% safe, but the lack of DMA moves the control over safety from the modem firmware to the application processor.
You'll see a targeted advertisement, in place of an untargeted one?
The problem with being spied upon by law enforcement is that it's not you who decides whether or not you're an interesting person. They do.
They also can legally (and do) intercept things like backup replication streams of the big providers (they did this to yahoo years ago, for example).
My rule of thumb is that if any big consumer cloud service has it, then law enforcement does too.
Since the data is gathered using gray-area / illegal techniques, it will never be used in legitimate ways in court, which means it will only ever be used to further violate the rights of private citizens.
Ad targeting profile data isn't typically sold in a way that's particularly useful to LE. It's the most valuable thing the ad networks own. I can't call up Facebook [1], and ask to buy your demographic profile. I can call up Facebook, and ask to buy the ability to show ads to people fitting your demographic profile.
Data from big providers, that ends up in the hands of law enforcement, is gathered through one of two ways:
1. Legitimate requests for access, with a judge signing off on it, an associated paper trail, and some pushback from the companies.
2. NSLs, with a secret judge signing off on it, and nearly no paper trail, and some pushback from the companies.
As far as I'm aware, #1 dwarfs #2 in frequency of access, and is also a completely legal, above-board way for LE to operate.
Stingrays, on the other hand, are much more like #2.
I mean, if you're not going to go through the trouble of protecting yourself from a Stingray, I understand. I occasionally jaywalk, and don't always cook my meat to 'well-done', wear mixed fabrics, and may have played hokey during my last dentist appointment. It's a risk/hazard sort of thing.
But if type #2 LE access is what you're concerned about, then you should probably look into dealing with Stingrays.
[1] Actually, I guess I can, as we discover with the train wreck of a platform partners program. And I am shocked that it is that much of a train wreck. Still, I can't buy your profile from Apple, or Google, or Microsoft.
Should law enforcement order them to relinquish all data about someone wrapped in a gag order, they get all information they need without that someone even noticing.
I disagree, but if we were to accept that premise, then you shouldn't really concern yourself with NSLs, either.
So, besides LE taking an interest in you, what are the actual consequences of FAMG spying on you?
So unless you can verify that only Stingray I is deployed in the vicinity, I think it’s a stretch to say that the Stingray product “doesn’t care” about anything other than 2G.
[1] https://www.blackhat.com/docs/us-17/wednesday/us-17-Borgaonk...
https://play.google.com/store/apps/details?id=kz.galan.antis...
e.g. Settings-Connections-MobileNetworks-NetworkMode
Also, will my phone even bother with 2G if LTE, 4G, or 3G is available?
Meanwhile, setting my Samsung Galaxy S9 to no-2G gives me a warning message that cannot be dismissed: "This setting turns off 2G service. If 2G service is off, some app..." (the remainder can't be viewed).
Sounds like terrific UI design
Maybe it saves a few milliseconds of battery life every charge.
I believe they have a single QA person who is paid minimum wage and whose desk is in a broom closet somewhere, judging from my own experiences...
What am I missing here?
There are good reasons to have security endpoints in the core network instead of the base stations. But it doesn't affect lawful interception at all.
"contains ads"
For an example of location from today's news: https://www.mcclatchydc.com/news/investigations/article21901...
https://www.google.com/search?q=%22paris+in+the+the+spring%2...
Also, how to do it on iOS?