New 5G flaws can track phone locations and spoof emergency alerts
techcrunch.com
techcrunch.com
Interesting how the GSMA claim that these vulnerabilities are "judged as nil or low-impact in practice". It doesn't sound like low-impact if used to target specific people.
The GSMA is an industry body for coordinating interoperating standards. You couldn’t even say it has been “compromised” because it doesn’t really have any social mandate.
3GPP makes the spec and sends it for ITU for ratification. 3GPP has 7 organizational partners: USA represented by ATIS, ETSI for EU and CCSA for China. GSMA is one of the 17 invited market representation partners who can provide advice and participate in consensus decision making but have no vote.
I think the folks who would be most likely to be be using these exploits are the last people who would ever face fail time for it: folks working for some three letter agency. They're not going to go to jail for their government-sanctioned abuse of these flaws.
I've really been debating the idea if there's any point of trying to help at all at this point, and my current conclusion is: we're already wayyyy down the dystopia line. The only hope at this point is AI which will either save us or (hopefully) bring the great filter sooner (which means less suffering). But I no longer believe in protest.
Why blame only the Chinese when "3-letter agency" might be as happy to have possibility to snoop on 5G traffic?
I also tend to think the evidence suggests being wary of nation-state intelligence influence on networking systems - the only ones who haven't done it are the ones who lack the capabilities.
Cisco's apparent inability to stop its code base from constantly regrowing backdoors will compromise you just as quickly as whatever Huawei may be up to.
What's your basis for the claim "Chinese vendors" did it?
I'm pretty sure I first read about that on HN, and was immediately reminded of the govt plan to cover the country in wireless transmitters.