<?xml version="1.0" encoding="utf-8" standalone="yes"?>
<rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom">
  <channel>
    <title>Hendrik Schmidt on Insinuator.net - Bold Statements</title>
    <link>https://insinuator.net/authors/hendrik-schmidt/</link>
    <description>Recent content in Hendrik Schmidt on Insinuator.net - Bold Statements</description>
    <generator>Hugo</generator>
    <language>en-us</language>
    <lastBuildDate>Wed, 01 Mar 2017 00:00:00 +0000</lastBuildDate>
    <atom:link href="https://insinuator.net/authors/hendrik-schmidt/index.xml" rel="self" type="application/rss+xml" />
    <item>
      <title>Troopers17 GSM Network – How about your own SMPP Service?</title>
      <link>https://insinuator.net/2017/03/troopers17-gsm-network-how-about-your-own-smpp-service/</link>
      <pubDate>Wed, 01 Mar 2017 00:00:00 +0000</pubDate>
      <guid>https://insinuator.net/2017/03/troopers17-gsm-network-how-about-your-own-smpp-service/</guid>
      <description>&lt;p&gt;The event of the events is getting closer and again, we are very optimistic to have a lot of awesome &lt;a href=&#34;https://www.troopers.de/&#34;&gt;trainings, talks, evening events&lt;/a&gt;, and discussions. But we again will also have some “features” and gimmicks for those of you who would like to play with new, old, or just interesting technologies. As you might remember, since some years one of these features is and again will be our own GSM Network. As we are improving &lt;a href=&#34;https://insinuator.net/2016/03/troopers16-gsm-network-2/&#34;&gt;our setup&lt;/a&gt; from year to year, this time we’d like to give you the chance to actively participate with ideas and your own services.&lt;/p&gt;</description>
    </item>
    <item>
      <title>TelcoSecDay 2017 – 2nd Round of Talks</title>
      <link>https://insinuator.net/2017/01/telcosecday-2017-2nd-round-of-talks/</link>
      <pubDate>Tue, 03 Jan 2017 00:00:00 +0000</pubDate>
      <guid>https://insinuator.net/2017/01/telcosecday-2017-2nd-round-of-talks/</guid>
      <description>&lt;p&gt;Hello and a Happy new Year!&lt;/p&gt;&#xA;&lt;p&gt;There are only two and a half months left, so I’d like to publish the next two talks for &lt;a href=&#34;https://www.troopers.de/troopers17/telcosec-day/&#34;&gt;TelcoSecDay 2017&lt;/a&gt;, taking place at 21st of March in Heidelberg. Both talks are about the security of an upcoming technology which importance will raise in near future: 5G Networks.&lt;/p&gt;&#xA;&lt;p&gt;One of the talks will be from an attacker’s point of view, highlighting weaknesses of 2G/3G/4G networks and what we have to fix in 5G, and the other one will give us insights into current developments of the 3GPP standardization group.&lt;/p&gt;</description>
    </item>
    <item>
      <title>TelcoSecDay 2017 – First Talks Published</title>
      <link>https://insinuator.net/2016/12/telcosecday-2017-first-talks-published/</link>
      <pubDate>Thu, 08 Dec 2016 00:00:00 +0000</pubDate>
      <guid>https://insinuator.net/2016/12/telcosecday-2017-first-talks-published/</guid>
      <description>&lt;p&gt;Even if the CFP for TelcoSecDay 2017 is officially closed, I am still getting mails in. First of all: thank you for all your great feedback! As the TelcoSecDay is a complimentary and non-public event with highly specialized topics, it only works by sharing knowledge with each other. But please keep in mind that the speaker-slots are limited and I have to make a decision at some point of time.&lt;br&gt;&#xA;Anyhow, I am looking forward for a great event and I am proud to publish the first accepted talks:&lt;/p&gt;</description>
    </item>
    <item>
      <title>TelcoSecDay 2017 – CFP Opens</title>
      <link>https://insinuator.net/2016/10/telcosecday-2017-cfp-opens/</link>
      <pubDate>Sat, 29 Oct 2016 00:00:00 +0000</pubDate>
      <guid>https://insinuator.net/2016/10/telcosecday-2017-cfp-opens/</guid>
      <description>&lt;p&gt;For the 6th year in a row, the next TelcoSecDay will take place in 2017 on March 21th. Again, it will be held one day before &lt;a href=&#34;http://www.troopers.de&#34;&gt;Troopers IT-Security Conference&lt;/a&gt; as an invitation-only event. For those of you who don’t know the TSD, it is organized by ERNW and is aimed at bringing researchers and people from the telecommunication industry together to discuss about current security weaknesses, challenges and strategies. To do so, various topics will be presented during the talks and there will surely be enough time to follow-up in extensive discussions.&lt;br&gt;&#xA;To give you an idea, here’s the &lt;a href=&#34;https://insinuator.net/2016/03/telcosecday-2016-final-agenda-and-more/&#34;&gt;TSD 2016 agenda&lt;/a&gt;, and here’s &lt;a href=&#34;https://insinuator.net/2015/03/final-agenda-of-troopers15-telcosecday/&#34;&gt;the one of 2015&lt;/a&gt;.&lt;/p&gt;</description>
    </item>
    <item>
      <title>Attacking BaseStations @Defcon24</title>
      <link>https://insinuator.net/2016/09/attacking-basestations-@defcon24/</link>
      <pubDate>Tue, 20 Sep 2016 00:00:00 +0000</pubDate>
      <guid>https://insinuator.net/2016/09/attacking-basestations-@defcon24/</guid>
      <description>&lt;p&gt;Hello Guys,&lt;br&gt;&#xA;back from my vacation I’d like to give you some impressions about Defcon 24 and our talk “Attacking BaseStations”. Defcon itself had a couple of great talks but was a very crowded location. Anyhow, we had a couple of great discussions with the people before and after our talk.&lt;/p&gt;&#xA;&lt;p&gt;The talk “Attacking BaseStations” focussed on attack vectors we simulated in &lt;a href=&#34;https://www.insinuator.net/2015/05/how-to-get-as-basestation/&#34;&gt;our lab&lt;/a&gt;. Besides attacking a BaseStation via Radio interface, in this talk we focussed on local and remote interfaces as introduced in &lt;a href=&#34;https://www.insinuator.net/2014/10/lte-vs-darwin-hackers-to-hackers-conference-11/&#34;&gt;“LTE vs. Darwin”&lt;/a&gt;. As target of evaluation one of our eNodeB’s came into play, which we purchased on the Internet. Anyhow, the talk covered the following attack scenarios:&lt;/p&gt;</description>
    </item>
    <item>
      <title>VoLTE Security Analysis, part 2</title>
      <link>https://insinuator.net/2016/06/volte-security-analysis-part-2/</link>
      <pubDate>Fri, 24 Jun 2016 00:00:00 +0000</pubDate>
      <guid>https://insinuator.net/2016/06/volte-security-analysis-part-2/</guid>
      <description>&lt;p&gt;In our talk &lt;em&gt;&lt;a href=&#34;https://www.ernw.de/download/telco/ERNW_Area41_IMSecure.pdf&#34;&gt;IMSEcure – Attacking VoLTE&lt;/a&gt;&lt;/em&gt; Brian and me presented some theoretical and practical attacks against IP Multimedia Subsystems (IMS). Some of the attacks already have been introduced in a former &lt;a href=&#34;https://www.insinuator.net/2016/01/security-analysis-of-volte-part-1/&#34;&gt;blogpost&lt;/a&gt; and Ahmad &lt;a href=&#34;https://www.insinuator.net/2016/02/denial-of-service-attacks-on-volte/&#34;&gt;continued&lt;/a&gt; with a deeper analysis of the Flooding and targeted DoS scenario. But still, there are some open topics I’d like to continue with now. The methods I am demonstrating here also help to get a better understanding of VoLTE/IMS and how it is implemented on modern smartphones.&lt;/p&gt;</description>
    </item>
    <item>
      <title>Area41 Conference 2016</title>
      <link>https://insinuator.net/2016/06/area41-conference-2016/</link>
      <pubDate>Sat, 18 Jun 2016 00:00:00 +0000</pubDate>
      <guid>https://insinuator.net/2016/06/area41-conference-2016/</guid>
      <description>&lt;p&gt;Last Friday, Brian and I were at the  Area41 Security Conference. The conference is a branch of Defcon conference and is more or less a small conference of the Swiss hacker community. Being in a “rock music club”, the speakers presented on a stage where usually the rock stars are performing – which gives the conference a very special flair and an interesting atmosphere. We’ve been at the &lt;a href=&#34;http://area41.io/speakers/#hendrikschmidt&#34;&gt;conference&lt;/a&gt; to present our research about VoLTE technology including some attack scenarios we’ve evaluated in the &lt;a href=&#34;https://www.insinuator.net/2016/01/security-analysis-of-volte-part-1/&#34;&gt;past&lt;/a&gt;. More on this later, let’s first talk about the conference itself.&lt;/p&gt;</description>
    </item>
    <item>
      <title>The ULIN Story</title>
      <link>https://insinuator.net/2016/06/the-ulin-story/</link>
      <pubDate>Fri, 03 Jun 2016 00:00:00 +0000</pubDate>
      <guid>https://insinuator.net/2016/06/the-ulin-story/</guid>
      <description>&lt;p&gt;Some of you might have noticed the &lt;a href=&#34;http://www.forbes.com/sites/thomasbrewster/2016/05/31/ability-unlimited-spy-system-ulin-ss7/&#34;&gt;articles&lt;/a&gt;, or the leaked &lt;a href=&#34;https://www.documentcloud.org/documents/2843200-ULIN-Manual.html&#34;&gt;manual&lt;/a&gt; itself, about a tool called ULIN. ULIN is a “bleeding-edge spy tool” for mobile communication networks. According to the manual, it is aimed to be a surveillance software for agencies (or others with enough money) for tracking and intercepting the Voice Calls and SMS of arbitrary phones. They call this “remote recording and geolocation of mobile handsets using 2G/3G/4G networks”.&lt;/p&gt;</description>
    </item>
    <item>
      <title>Some Notes on Utilizing Telco Networks for Penetration Tests</title>
      <link>https://insinuator.net/2016/05/some-notes-on-utilizing-telco-networks-for-penetration-tests/</link>
      <pubDate>Wed, 25 May 2016 00:00:00 +0000</pubDate>
      <guid>https://insinuator.net/2016/05/some-notes-on-utilizing-telco-networks-for-penetration-tests/</guid>
      <description>&lt;p&gt;After a couple of years in pentesting Telco Networks, I’d like to give you some insight into our pentesting methodology and setup we are using for testing “Mobile and Telecommunication Devices”. I am not talking about pentesting professional providers’ equipment (as in previous blogposts), it is about pentesting of devices that have a modem in place like a lot of IoT devices (you know about the fridge having a GSM Modem, right?) do.&lt;/p&gt;</description>
    </item>
    <item>
      <title>TSD 2016 – Follow Up</title>
      <link>https://insinuator.net/2016/04/tsd-2016-follow-up/</link>
      <pubDate>Thu, 07 Apr 2016 00:00:00 +0000</pubDate>
      <guid>https://insinuator.net/2016/04/tsd-2016-follow-up/</guid>
      <description>&lt;p&gt;Thanks again for all the great talks and fruitful discussions &lt;a href=&#34;https://www.troopers.de/events/troopers16/580_telcosecday_2016_invitation_only/&#34;&gt;@TSD 2016&lt;/a&gt;! I hope everybody had a safe trip home and enjoyed Troopers as we did. In the meantime I contacted all speakers to talk about publication of their slidesets. Some of them agreed (or already published them on their own) so I’d like to share these with you:&lt;/p&gt;&#xA;&lt;p&gt;&lt;a href=&#34;https://www.ernw.de/download/TSD2016_Assaulting_diameter_IPX_network.pdf&#34;&gt;&lt;strong&gt;Alexandre De Oliveira&lt;/strong&gt; – &lt;em&gt;Assaulting IPX Diameter roaming network&lt;/em&gt;&lt;/a&gt;&lt;a href=&#34;https://www.ernw.de/download/TSD2016_Known_Unknowns_of_SS7.pdf&#34;&gt;&lt;br&gt;&#xA;&lt;strong&gt;Siddharth Rao&lt;/strong&gt; – &lt;em&gt;The known unknowns of SS7 and beyond.&lt;/em&gt;&lt;/a&gt;&lt;br&gt;&#xA;&lt;a href=&#34;https://www.ernw.de/download/TSD2016_rucki_zucki.pdf&#34;&gt;&lt;strong&gt;Joao Collier de Mendonca&lt;/strong&gt; – &lt;em&gt;“rucki zucki” scanning tool&lt;/em&gt;&lt;/a&gt;&lt;br&gt;&#xA;&lt;a href=&#34;http://git.gnumonks.org/index.html/laforge-slides/plain/2016/telcosecday/foss-gsm.html&#34;&gt;&lt;strong&gt;Harald Welte&lt;/strong&gt; – &lt;em&gt;Open Source Network Elements for Security Analysis of Mobile Networks&lt;/em&gt;&lt;/a&gt;&lt;br&gt;&#xA;&lt;a href=&#34;https://www.ernw.de/download/TSD2016_Ravi-Altaf.pdf&#34;&gt;&lt;strong&gt;Ravi &amp;amp; Altaf Shaik&lt;/strong&gt; – &lt;em&gt;Don’t connect to my 4G base station: investigating info leaks in 4G basebands&lt;/em&gt;&lt;/a&gt;&lt;/p&gt;</description>
    </item>
    <item>
      <title>Troopers16 – GSM Network</title>
      <link>https://insinuator.net/2016/03/troopers16-gsm-network/</link>
      <pubDate>Wed, 16 Mar 2016 00:00:00 +0000</pubDate>
      <guid>https://insinuator.net/2016/03/troopers16-gsm-network/</guid>
      <description>&lt;p&gt;Hello Troopers!&lt;/p&gt;&#xA;&lt;p&gt;only a few seconds left! As a short reminder, there is a GSM network running on Troopers 2016. It should be available in the whole building. To attend the network you need to&lt;/p&gt;&#xA;&lt;ul&gt;&#xA;&lt;li&gt;Get a SIM Card @Troopers_Desk&lt;/li&gt;&#xA;&lt;li&gt;Put it in your phone&lt;/li&gt;&#xA;&lt;li&gt;Start the phone&lt;/li&gt;&#xA;&lt;/ul&gt;&#xA;&lt;p&gt;That’s it!&lt;/p&gt;&#xA;&lt;p&gt;You can always dial &lt;strong&gt;*#100#&lt;/strong&gt; to get your phone number. All further information (and a phonebook) you’ll find on gsm.troopers.de, but here again a brief summary:&lt;/p&gt;</description>
    </item>
    <item>
      <title>TelcoSecDay 2016 – Final Agenda and more</title>
      <link>https://insinuator.net/2016/03/telcosecday-2016-final-agenda-and-more/</link>
      <pubDate>Thu, 10 Mar 2016 00:00:00 +0000</pubDate>
      <guid>https://insinuator.net/2016/03/telcosecday-2016-final-agenda-and-more/</guid>
      <description>&lt;p&gt;Only a few days left until Troopers! I’d like to use this chance to publish the final agenda of &lt;a href=&#34;https://www.troopers.de/events/troopers16/580_telcosecday_2016_invitation_only/&#34;&gt;TelcoSecDay 2016&lt;/a&gt;. We will start around 8:30am and will finish at about 6:15pm. After this, we will have a shared dinner in the historic center of Heidelberg. The exact location will be announced during the TSD.&lt;/p&gt;&#xA;&lt;p&gt;8:30: Opening Remarks&lt;br&gt;&#xA;9:00: &lt;a href=&#34;https://www.troopers.de/events/troopers16/606_telcosecday_new_age_phreacking_magic_tricks_for_wholesale_fraud/&#34;&gt;David Batanero – New Age Phreaking: Magic tricks for wholesale fraud&lt;/a&gt;&lt;br&gt;&#xA;9:45: &lt;a href=&#34;https://www.troopers.de/events/troopers16/657_towards_carrier_based_imsi_catcher_detection/&#34;&gt;Adrian Dabrowski – Towards Carrier Based IMSI Catcher Detection&lt;/a&gt;&lt;br&gt;&#xA;10:30: Break&lt;br&gt;&#xA;11:00: &lt;a href=&#34;https://www.troopers.de/events/troopers16/653_assaulting_ipx_diameter_roaming_network/&#34;&gt;Alexandre De Oliveira – Assaulting IPX Diameter roaming networks&lt;/a&gt;&lt;br&gt;&#xA;11:45: &lt;a href=&#34;https://www.troopers.de/events/troopers16/654_the_known_unknowns_of_ss7_and_beyond/&#34;&gt;Rao Siddharth – The known and unknowns of SS7 and beyond&lt;/a&gt;&lt;br&gt;&#xA;12:30: &lt;a href=&#34;https://www.troopers.de/events/troopers16/652_rucki_zucki_scanning_tool/&#34;&gt;Joao Collier de Mendonca – “rucki zucki” scanning tool&lt;/a&gt;&lt;br&gt;&#xA;13:00: Lunch&lt;br&gt;&#xA;14:00: &lt;a href=&#34;https://www.troopers.de/events/troopers16/658_open_source_network_elements_for_security_analysis_of_mobile_networks/&#34;&gt;Harald Welte – Open Source Network Elements for Security Analysis of Mobile Networks&lt;/a&gt;&lt;br&gt;&#xA;14:45: &lt;a href=&#34;https://www.troopers.de/events/troopers16/659_advance_apt_attribution_for_researchers/&#34;&gt;Rahul Sasi – Advance APT Attribution for researchers&lt;/a&gt;&lt;br&gt;&#xA;15:30: Break&lt;br&gt;&#xA;16:00: &lt;a href=&#34;https://www.troopers.de/events/troopers16/660_dont_connect_to_my_4g_base_station_investigating_info_leaks_in_4g_basebands/&#34;&gt;Ravi and Altaf Shaik – Don’t connect to my 4G base station: investigating info leaks in 4G basebands&lt;/a&gt;&lt;br&gt;&#xA;16:45: Talk from some guy with interest in telco sec&lt;br&gt;&#xA;17:15: Break&lt;br&gt;&#xA;17:30: &lt;a href=&#34;https://www.troopers.de/events/troopers16/662_observations_on_mobile_communication_platforms/&#34;&gt;Dieter Spaar – Observations on mobile communication platforms&lt;/a&gt;&lt;/p&gt;</description>
    </item>
    <item>
      <title>Troopers16 – GSM Network</title>
      <link>https://insinuator.net/2016/03/troopers16-gsm-network/</link>
      <pubDate>Thu, 03 Mar 2016 00:00:00 +0000</pubDate>
      <guid>https://insinuator.net/2016/03/troopers16-gsm-network/</guid>
      <description>&lt;p&gt;Same as &lt;a href=&#34;https://www.insinuator.net/2015/03/gsmtroopers/&#34;&gt;last year&lt;/a&gt;, we will have a GSM based telephony network running at Troopers 2016. The network will be a closed network, which means it only can be used with Troopers SIM cards and between Troopers attendees only. You can use the network for&lt;/p&gt;&#xA;&lt;ul&gt;&#xA;&lt;li&gt;doing Voice Calls&lt;/li&gt;&#xA;&lt;li&gt;send Short Messages (SMS)&lt;/li&gt;&#xA;&lt;li&gt;have Internet Access&lt;/li&gt;&#xA;&lt;li&gt;submit Challenge Tokens (see below)&lt;/li&gt;&#xA;&lt;/ul&gt;&#xA;&lt;p&gt;In contrast to last year, you will need a Troopers SIM card to attend the network with your cellphone. The SIM cards will be handed out at the registration desk; if you have questions you always can contact me or Kevin Redon (thanks again for assisting us).&lt;/p&gt;</description>
    </item>
    <item>
      <title>TelcoSecDay 2016 – Second Round of Talks</title>
      <link>https://insinuator.net/2016/02/telcosecday-2016-second-round-of-talks/</link>
      <pubDate>Wed, 03 Feb 2016 00:00:00 +0000</pubDate>
      <guid>https://insinuator.net/2016/02/telcosecday-2016-second-round-of-talks/</guid>
      <description>&lt;p&gt;I am very happy to announce the second round of talks for the &lt;a href=&#34;https://www.troopers.de/events/troopers16/580_telcosecday_2016_invitation_only/&#34;&gt;TelcoSecDay 2016&lt;/a&gt;. As mentioned in my &lt;a href=&#34;https://www.insinuator.net/2016/01/telcosecday-first-round-of-talks/&#34;&gt;previous post&lt;/a&gt; it will take place on March 15th. All invitations should be out by now; if you think you can contribute to the group and you are willing to join us – please let me know (&lt;a href=&#34;mailto:hschmidt@ernw.de&#34;&gt;hschmidt@ernw.de&lt;/a&gt;).&lt;/p&gt;&#xA;&lt;p&gt;Still, not all talks are confirmed but the newly published talks will provide an idea about TSD 2016 and its discussions.&lt;/p&gt;</description>
    </item>
    <item>
      <title>TelcoSecDay – First Round of Talks</title>
      <link>https://insinuator.net/2016/01/telcosecday-first-round-of-talks/</link>
      <pubDate>Sat, 16 Jan 2016 00:00:00 +0000</pubDate>
      <guid>https://insinuator.net/2016/01/telcosecday-first-round-of-talks/</guid>
      <description>&lt;p&gt;Dear all,&lt;br&gt;&#xA;This year the &lt;a href=&#34;https://www.troopers.de/events/troopers16/580_telcosecday_2016_invitation_only/&#34;&gt;TelcoSecDay&lt;/a&gt; will take place on March 15th. For those of you who does not know about: the TelcoSecDay it is a sub-event of &lt;a href=&#34;http://www.troopers.de&#34;&gt;Troopers&lt;/a&gt; bringing together researchers, vendors and practitioners from the telecommunication / mobile security field.&lt;/p&gt;&#xA;&lt;p&gt;The event is celebrating its 5th anniversary now, that’s why I’d like to say “thank you” to everybody taking part at this very great discussion round in the last few years. We always had a lot of very good feedback and interesting discussions and the increasing participation list of operators from year to year says (almost) everything!&lt;/p&gt;</description>
    </item>
    <item>
      <title>Security Analysis of VoLTE, Part 1</title>
      <link>https://insinuator.net/2016/01/security-analysis-of-volte-part-1/</link>
      <pubDate>Wed, 06 Jan 2016 00:00:00 +0000</pubDate>
      <guid>https://insinuator.net/2016/01/security-analysis-of-volte-part-1/</guid>
      <description>&lt;p&gt;Hello everybody,&lt;br&gt;&#xA;this time I’d like to share some thoughts and results about our telco research last year. We gathered a lot of information out of some projects we’d like to share and discuss with you. The following sections also provide an idea of the upcoming Telecommunication Security Workshop I will give with Kevin Redon at Troopers (&lt;a href=&#34;https://www.troopers.de/events/troopers16/573_telco_network_security/&#34;&gt;click&lt;/a&gt;). The workshop will be about Radio Network Security (covered by Kevin) and security aspects of the Core Network (covered by myself), mainly focusing on Voice over LTE (VoLTE). That’s also the topic of today’s post.&lt;/p&gt;</description>
    </item>
    <item>
      <title>How to Get a BaseStation</title>
      <link>https://insinuator.net/2015/05/how-to-get-a-basestation/</link>
      <pubDate>Sun, 17 May 2015 00:00:00 +0000</pubDate>
      <guid>https://insinuator.net/2015/05/how-to-get-a-basestation/</guid>
      <description>&lt;p&gt;In our &lt;a href=&#34;http://www.insinuator.net/2014/10/lte-vs-darwin-hackers-to-hackers-conference-11/&#34;&gt;talks&lt;/a&gt; in the past we showed what might be possible if an attacker gets access to backhaul and/or core network of a telecommunication provider. In a security analysts perspective this is really disgusting, but provider always will argument that those attack scenarios are not realistic.&lt;/p&gt;&#xA;&lt;p&gt; Because of legal restrictions we are not able to demonstrate this in practice (e.g. by breaking in into a BTS environment somewhere in the woods) but what we can do is this: building a lab.&lt;br&gt;&#xA;Sometimes it is really shocking what you can buy on Ebay, right? Here we got one very interesting component: a Huawei BBU3900 BaseStation which is used by a couple of providers. Okay, it is for GSM-Rail, but the technology behind is very equal. And for 100 dollars (plus shipping) you don’t ask further questions…&lt;/p&gt;</description>
    </item>
    <item>
      <title>GSM@Troopers</title>
      <link>https://insinuator.net/2015/03/gsm@troopers/</link>
      <pubDate>Wed, 18 Mar 2015 00:00:00 +0000</pubDate>
      <guid>https://insinuator.net/2015/03/gsm@troopers/</guid>
      <description>&lt;p&gt;Additionally to Wifi, Troopers is also offering a GSM network.&lt;br&gt;&#xA;If you want to use it, simply ask your phone to scan for available mobile networks. There you should see the usual T-Mobile D, Vodafone.de, E-Plus, O2-de operators, but also the unusual D 23 or 262 23. Just select this one, and your are done. You also can use the Troopers SIMs which you get on the welcome desk on the ground floor.&lt;/p&gt;</description>
    </item>
    <item>
      <title>Telco Research 2015</title>
      <link>https://insinuator.net/2015/01/telco-research-2015/</link>
      <pubDate>Fri, 02 Jan 2015 00:00:00 +0000</pubDate>
      <guid>https://insinuator.net/2015/01/telco-research-2015/</guid>
      <description>&lt;p&gt;Hello and a happy new year 2015 to everybody!&lt;/p&gt;&#xA;&lt;p&gt;As follow up of our 2014 talk &lt;a href=&#34;http://www.insinuator.net/2014/10/lte-vs-darwin-hackers-to-hackers-conference-11/&#34;&gt;“LTE vs. Darwin&lt;/a&gt;” I want to inform you about our telco research in 2015. We are currently dealing with the so called IP Multimedia Subsystem (IMS), which handles the call and media logic of 4G telecommunication networks. This network part provides functions like VoIP (or VoLTE) and takes care of the interconnection to other call or media related networks.&lt;/p&gt;</description>
    </item>
    <item>
      <title>Hackito Ergo Sum 2014</title>
      <link>https://insinuator.net/2014/05/hackito-ergo-sum-2014/</link>
      <pubDate>Fri, 02 May 2014 00:00:00 +0000</pubDate>
      <guid>https://insinuator.net/2014/05/hackito-ergo-sum-2014/</guid>
      <description>&lt;p&gt;Greetings from Heidelberg to Paris,&lt;/p&gt;&#xA;&lt;p&gt;and thanks for a great time at &lt;a href=&#34;http://2014.hackitoergosum.org/&#34;&gt;HES14&lt;/a&gt;! A nice venue (&lt;a href=&#34;http://www.cite-sciences.fr/fr/accueil/&#34;&gt;a museum&lt;/a&gt;), sweet talks and stacks of spirit carried us through the three day con. It all set off with a keynote byTROOPERs veteran Edmond ‘bigezy’ Rogers, who stuck to a quite simple principle: “People do stupid things” and I guess every single one of you has quite a few examples for that on offer. Next to every speaker referenced that statement at some point during her/his talk. Furthermore we presented an updated version of our talk &lt;a href=&#34;http://2014.hackitoergosum.org/slides/day1_ERNW_LTEvsDarwin_HES.pdf&#34;&gt;LTE vs. Darwin&lt;/a&gt;, covering our research of security in LTE networks and potential upcoming problems.&lt;/p&gt;</description>
    </item>
    <item>
      <title>LTE@ShmooCon, a Summary</title>
      <link>https://insinuator.net/2014/01/lte@shmoocon-a-summary/</link>
      <pubDate>Tue, 28 Jan 2014 00:00:00 +0000</pubDate>
      <guid>https://insinuator.net/2014/01/lte@shmoocon-a-summary/</guid>
      <description>&lt;p&gt;Hey guys,&lt;br&gt;&#xA;as some of you may have noticed, just recently at ShmooCon we gave our talk “LTE vs. Darwin” (Slides &lt;a href=&#34;http://www.insinuator.net/wp-content/uploads/2014/01/ERNW_LTEvsDarwin.pdf&#34;&gt;here&lt;/a&gt;). There we presented some results of our research in 4G telco network security. Some of those originate from our research contribution to &lt;a href=&#34;www.asmonia.de&#34;&gt;ASMONIA&lt;/a&gt;, but we expanded the scope and also took a look at the air interface. Both the air interface and the backend links &amp;amp; protocols must be secured appropriately; otherwise communication may be eavesdropped or sensitive information may be compromised. In the following we want to provide an overview of LTE main components and potential attack vectors.&lt;/p&gt;</description>
    </item>
    <item>
      <title>ShmooCon 2014</title>
      <link>https://insinuator.net/2014/01/shmoocon-2014/</link>
      <pubDate>Sun, 26 Jan 2014 00:00:00 +0000</pubDate>
      <guid>https://insinuator.net/2014/01/shmoocon-2014/</guid>
      <description>&lt;p&gt;Last weekend, from 17 to 19 January, &lt;a href=&#34;http://www.shmoocon.org/&#34;&gt;ShmooCon&lt;/a&gt; was held in Washington, DC. A number of different topics was covered in great talks and we want to give you a short overview of the conference. In the following our favorite talks are briefly summarized.&lt;/p&gt;&#xA;&lt;p&gt;&lt;strong&gt;Privacy Online: What Now?&lt;/strong&gt;&lt;br&gt;&#xA;Ian Goldberg, one of the designers of the &lt;a href=&#34;http://en.wikipedia.org/wiki/Off-the-Record_Messaging&#34;&gt;OTR Protocol&lt;/a&gt;, gave the keynote on the first day. His talk was quite interesting and he presented some really nice approaches, one of those being an attack against PGP. He described the attack as follows: an attacker could copy a key server by downloading all the stored keys. If this is done it is possible to create new key pairs with exactly the same settings as the keys downloaded. The third step is to create all the signing links between the keys as they exist on the real key server. Finally, the attacker uploads these new keys including the signing links to the original key server.&lt;br&gt;&#xA;Now, in case Alice wants to retrieve the public key of Bob, Alice would find two keys with seemingly identical properties. If choosing the wrong key for encryption the message will be decipherable by the attacker and in case of MitM situation be accessed. Furthermore, if Alice then signs the “mirror key”, the cloned keys and the original would merge, resulting in further problems.&lt;br&gt;&#xA;This was just one consideration discussed in Goldberg’s talk. For the full content, watch the recording, available soon on ShmooCon page.&lt;/p&gt;</description>
    </item>
    <item>
      <title>Some notes on 30C3</title>
      <link>https://insinuator.net/2014/01/some-notes-on-30c3/</link>
      <pubDate>Wed, 08 Jan 2014 00:00:00 +0000</pubDate>
      <guid>https://insinuator.net/2014/01/some-notes-on-30c3/</guid>
      <description>&lt;p&gt;We wish you a happy new year and a good start to 2014. A new year has begun and, just before that, 30C3 took place. I think almost all of you have heard about the congress and its topics. In particukar there was Glenn Greenwald’s &lt;a href=&#34;https://events.ccc.de/congress/2013/Fahrplan/events/5622.html&#34;&gt;keynote&lt;/a&gt; or there were new &lt;a href=&#34;https://events.ccc.de/congress/2013/Fahrplan/events/5713.html&#34;&gt;publications/revelations&lt;/a&gt; by Jacob Appelbaum, which you will probably have heard about from main media.&lt;br&gt;&#xA;But besides of all that, there were really a lot of other interesting talks we want to give you a short introduction to. Overall it was a really good conference this year and a lot of awesome talks. But, like always, it is not possible to see all of them, so here is a short summary of some of our favorites:&lt;/p&gt;</description>
    </item>
  </channel>
</rss>
