home.social

#imsi — Public Fediverse posts

Live and recent posts from across the Fediverse tagged #imsi, aggregated by home.social.

  1. There's an insane number of IMSI catchers in Taipei. I get GrapheneOS pings almost daily.

    Anyone know what this is about? News mentions SIM card fraud.

    #Stingray #IMSI #privacy #cybersec #infosec

  2. @downey

    Warning! A lot of acronyms ahead! Welcome to Telco land...

    TLDR: Anyone with the "fake cellphone tower" device mentioned can track BOTH your SIMcard, AND your mobile device.

    So you better leave them at home, or bring a burner1 phone with a burner1 SIM.

    IMSI vs IMEI

    The "#IMSI" in #IMSIcatcher is an identifying number tied to your SIM(card).

    But what #IMSIcatchers can also capture is your device's #IMEI 2.

    The supposed purpose of an IMEI is stated clearly in the official documentation:

    "The main objective is to be able to take measures against the use of stolen equipment or against equipment of which the use in the PLMN3 can not or no longer be tolerated for technical reasons."4

    Mobile device manufacturers are obligated to produce device unique IMEI's:

    "The IMEI shall be unique and shall not be changed after the ME’s [Mobile Equipment] final production process. It shall resist tampering, i.e. manipulation and change, by any means (e.g. physical, electrical and software)."4

    IMSIcatcher vendors state their equipment can also capture IMEIs.5 6

    So, every phone in the neighborhood of IMSIcatchers in use by law enforcement, are certainly in a batch of "to be tracked".

    Did I mention law enforcement (through a legal warrant, they'll need help from mobile operators) can track phones based on IMEI alone (so even if you remove the SIM)? Yes, I believe I did.

    PS: a phone connecting to or connected to an IMSIcatcher, is not on the network. Not being able to reach emergency services could lead to physical harm, including death. Just saying.

    1 ssd.eff.org/glossary/burner-ph

    2 International Mobile Station Equipment Identity

    3 Public Land Mobile Network: wireless communication services offered by a specific operator in a specific country.

    4 3gpp.org/ftp/Specs/archive/22_

    5 x-surveillance.com/imsi-stingr

    6 stratign.com/imsi-catcher-syst

  3. @downey

    Warning! A lot of acronyms ahead! Welcome to Telco land...

    TLDR: Anyone with the "fake cellphone tower" device mentioned can track BOTH your SIMcard, AND your mobile device.

    So you better leave them at home, or bring a burner1 phone with a burner1 SIM.

    IMSI vs IMEI

    The "#IMSI" in #IMSIcatcher is an identifying number tied to your SIM(card).

    But what #IMSIcatchers can also capture is your device's #IMEI 2.

    The supposed purpose of an IMEI is stated clearly in the official documentation:

    "The main objective is to be able to take measures against the use of stolen equipment or against equipment of which the use in the PLMN3 can not or no longer be tolerated for technical reasons."4

    Mobile device manufacturers are obligated to produce device unique IMEI's:

    "The IMEI shall be unique and shall not be changed after the ME’s [Mobile Equipment] final production process. It shall resist tampering, i.e. manipulation and change, by any means (e.g. physical, electrical and software)."4

    IMSIcatcher vendors state their equipment can also capture IMEIs.5 6

    So, every phone in the neighborhood of IMSIcatchers in use by law enforcement, are certainly in a batch of "to be tracked".

    Did I mention law enforcement (through a legal warrant, they'll need help from mobile operators) can track phones based on IMEI alone (so even if you remove the SIM)? Yes, I believe I did.

    PS: a phone connecting to or connected to an IMSIcatcher, is not on the network. Not being able to reach emergency services could lead to physical harm, including death. Just saying.

    1 ssd.eff.org/glossary/burner-ph

    2 International Mobile Station Equipment Identity

    3 Public Land Mobile Network: wireless communication services offered by a specific operator in a specific country.

    4 3gpp.org/ftp/Specs/archive/22_

    5 x-surveillance.com/imsi-stingr

    6 stratign.com/imsi-catcher-syst

  4. @downey

    Warning! A lot of acronyms ahead! Welcome to Telco land...

    TLDR: Anyone with the "fake cellphone tower" device mentioned can track BOTH your SIMcard, AND your mobile device.

    So you better leave them at home, or bring a burner1 phone with a burner1 SIM.

    IMSI vs IMEI

    The "#IMSI" in #IMSIcatcher is an identifying number tied to your SIM(card).

    But what #IMSIcatchers can also capture is your device's #IMEI 2.

    The supposed purpose of an IMEI is stated clearly in the official documentation:

    "The main objective is to be able to take measures against the use of stolen equipment or against equipment of which the use in the PLMN3 can not or no longer be tolerated for technical reasons."4

    Mobile device manufacturers are obligated to produce device unique IMEI's:

    "The IMEI shall be unique and shall not be changed after the ME’s [Mobile Equipment] final production process. It shall resist tampering, i.e. manipulation and change, by any means (e.g. physical, electrical and software)."4

    IMSIcatcher vendors state their equipment can also capture IMEIs.5 6

    So, every phone in the neighborhood of IMSIcatchers in use by law enforcement, are certainly in a batch of "to be tracked".

    Did I mention law enforcement (through a legal warrant, they'll need help from mobile operators) can track phones based on IMEI alone (so even if you remove the SIM)? Yes, I believe I did.

    PS: a phone connecting to or connected to an IMSIcatcher, is not on the network. Not being able to reach emergency services could lead to physical harm, including death. Just saying.

    1 ssd.eff.org/glossary/burner-ph

    2 International Mobile Station Equipment Identity

    3 Public Land Mobile Network: wireless communication services offered by a specific operator in a specific country.

    4 3gpp.org/ftp/Specs/archive/22_

    5 x-surveillance.com/imsi-stingr

    6 stratign.com/imsi-catcher-syst

  5. @downey

    Warning! A lot of acronyms ahead! Welcome to Telco land...

    TLDR: Anyone with the "fake cellphone tower" device mentioned can track BOTH your SIMcard, AND your mobile device.

    So you better leave them at home, or bring a burner1 phone with a burner1 SIM.

    IMSI vs IMEI

    The "#IMSI" in #IMSIcatcher is an identifying number tied to your SIM(card).

    But what #IMSIcatchers can also capture is your device's #IMEI 2.

    The supposed purpose of an IMEI is stated clearly in the official documentation:

    "The main objective is to be able to take measures against the use of stolen equipment or against equipment of which the use in the PLMN3 can not or no longer be tolerated for technical reasons."4

    Mobile device manufacturers are obligated to produce device unique IMEI's:

    "The IMEI shall be unique and shall not be changed after the ME’s [Mobile Equipment] final production process. It shall resist tampering, i.e. manipulation and change, by any means (e.g. physical, electrical and software)."4

    IMSIcatcher vendors state their equipment can also capture IMEIs.5 6

    So, every phone in the neighborhood of IMSIcatchers in use by law enforcement, are certainly in a batch of "to be tracked".

    Did I mention law enforcement (through a legal warrant, they'll need help from mobile operators) can track phones based on IMEI alone (so even if you remove the SIM)? Yes, I believe I did.

    PS: a phone connecting to or connected to an IMSIcatcher, is not on the network. Not being able to reach emergency services could lead to physical harm, including death. Just saying.

    1 ssd.eff.org/glossary/burner-ph

    2 International Mobile Station Equipment Identity

    3 Public Land Mobile Network: wireless communication services offered by a specific operator in a specific country.

    4 3gpp.org/ftp/Specs/archive/22_

    5 x-surveillance.com/imsi-stingr

    6 stratign.com/imsi-catcher-syst

  6. @downey

    Warning! A lot of acronyms ahead! Welcome to Telco land...

    TLDR: Anyone with the "fake cellphone tower" device mentioned can track BOTH your SIMcard, AND your mobile device.

    So you better leave them at home, or bring a burner1 phone with a burner1 SIM.

    IMSI vs IMEI

    The "#IMSI" in #IMSIcatcher is an identifying number tied to your SIM(card).

    But what #IMSIcatchers can also capture is your device's #IMEI 2.

    The supposed purpose of an IMEI is stated clearly in the official documentation:

    "The main objective is to be able to take measures against the use of stolen equipment or against equipment of which the use in the PLMN3 can not or no longer be tolerated for technical reasons."4

    Mobile device manufacturers are obligated to produce device unique IMEI's:

    "The IMEI shall be unique and shall not be changed after the ME’s [Mobile Equipment] final production process. It shall resist tampering, i.e. manipulation and change, by any means (e.g. physical, electrical and software)."4

    IMSIcatcher vendors state their equipment can also capture IMEIs.5 6

    So, every phone in the neighborhood of IMSIcatchers in use by law enforcement, are certainly in a batch of "to be tracked".

    Did I mention law enforcement (through a legal warrant, they'll need help from mobile operators) can track phones based on IMEI alone (so even if you remove the SIM)? Yes, I believe I did.

    PS: a phone connecting to or connected to an IMSIcatcher, is not on the network. Not being able to reach emergency services could lead to physical harm, including death. Just saying.

    1 ssd.eff.org/glossary/burner-ph

    2 International Mobile Station Equipment Identity

    3 Public Land Mobile Network: wireless communication services offered by a specific operator in a specific country.

    4 3gpp.org/ftp/Specs/archive/22_

    5 x-surveillance.com/imsi-stingr

    6 stratign.com/imsi-catcher-syst

  7. #Rayhunter : What We Have Found So Far

    A little over a year ago we released Rayhunter, our #OpenSource tool designed to detect cell-site simulators. We’ve been blown away by the level of community engagement on this project. It has been installed on thousands of devices (or so we estimate, we don’t actually know since Rayhunter doesn’t have any telemetry!). We have received dozens of packet captures, hundreds of improvements, both minor & major…
    #privacy #imsi #stingray

    eff.org/deeplinks/2025/09/rayh

  8. #eff Suspicious requests In Westchester NY headed to NJ around the Mario Cuomo Bridge. Sending PCAPS. #imsi #privacy #opensource

  9. Year 5 of the IMSI Data Science Summer Workshop Series in the books! From one workshop to my favorite tradition - 2 weeks mentoring incredible PhD students as they develop industry-ready skills.

    Stats/Math PhDs: 2026 apps open Fall 2025!

    imsi.institute/internships/

    #imsi #phdstudents #datascience

  10. Starting all the way back on October 3rd, 2022, I used [email protected] as my log-in e-mail for free public WiFi access.

    I don't insert a SIM card in my throw away phone & I connect to free WiFi for non-sensitive communications with a VPN. I understand that IMSI catchers exist too.

    I chronicled this is previous (now deleted) posts. I've amalgamated all the times I've logged in in these posts, and some posts to follow.

    Exhibit Q, R, S, and T:

    #WiFi #VPN #IMSI #Privacy #InfoSec #BloodFart

  11. Meet Rayhunter:
    A New Open Source Tool from EFF to Detect Cellular Spying

    At EFF we spend a lot of time thinking about Street Level Surveillance technologies
    —the technologies used by police and other authorities to spy on you while you are going about your everyday life
    —such as automated license plate readers,
    facial recognition,
    surveillance camera networks,
    and cell-site simulators (. #CSS ).

    Rayhunter is a new open source tool we’ve created that runs off an affordable mobile hotspot that we hope empowers everyone,
    regardless of technical skill,
    to help search out CSS around the world.

    CSS
    (also known as #Stingrays or #IMSI #catchers)
    are devices that masquerade as legitimate cell-phone towers,
    tricking phones within a certain radius into connecting to the device rather than a tower.

    CSS operate by conducting a general search of all cell phones within the device’s radius.

    Law enforcement use CSS to pinpoint the location of phones
    often with greater accuracy than other techniques such as cell site location information (CSLI)
    and without needing to involve the phone company at all.

    CSS can also log International Mobile Subscriber Identifiers (IMSI numbers) unique to each SIM card,
    or hardware serial numbers (IMEIs) of all of the mobile devices within a given area.

    Some CSS may have advanced features allowing law enforcement to intercept communications in some circumstances.

    What makes CSS especially interesting, as compared to other street level surveillance, is that
    so little is known about how commercial CSS work.

    We don’t fully know what capabilities they have
    or what exploits in the phone network they take advantage of to ensnare and spy on our phones, though we have some ideas.

    We also know very little about how cell-site simulators are deployed in the US and around the world.

    There is no strong evidence either way about whether CSS are commonly being used in the US to spy on First Amendment protected activities
    such as protests, communication between journalists and sources, or religious gatherings.

    There is some evidence
    —much of it circumstantial
    —that CSS have been used in the US to spy on protests.

    There is also evidence that CSS are used somewhat extensively by US law enforcement,
    spyware operators, and scammers.

    We know even less about how CSS are being used in other countries,
    though it's a safe bet that in other countries CSS are also used by law enforcement.

    Much of these gaps in our knowledge are due to a lack of solid, empirical evidence about the function and usage of these devices.

    Police departments are resistant to releasing logs of their use,
    even when they are kept.

    The companies that manufacture CSS are unwilling to divulge details of how they work.

    Until now, to detect the presence of CSS, researchers and users have had to either rely on Android apps on rooted phones,
    or sophisticated and expensive software-defined radio rigs.

    Previous solutions have also focused on attacks on the legacy 2G cellular network, which is almost entirely shut down in the U.S.

    Seeking to learn from and improve on previous techniques for CSS detection we have developed a better, cheaper alternative that works natively on the modern 4G network.

    eff.org/deeplinks/2025/03/meet

  12. Meet #Rayhunter: A New #OpenSource Tool from @eff to Detect Cellular #Spying

    #CSS (also known as #Stingrays or #IMSIcatchers) are devices that masquerade as legitimate cell-phone towers, tricking #phones within a certain radius into connecting to the device rather than a tower.
    #privacy #security #surveillance #imsi #cellphones #celltower

    eff.org/deeplinks/2025/03/meet

  13. Starting all the way back on October 3rd, 2022, I used [email protected] as my log-in e-mail for free public WiFi access.

    I don't insert a SIM card in my throw away phone & I connect to free WiFi for non-sensitive communications with a VPN. I understand that IMSI catchers exist too.

    I chronicled this is previous (now deleted) posts. I've amalgamated all the times I've logged in in these posts, and some posts to follow.

    Exhibit M, N, O, and P:

    #WiFi #VPN #IMSI #Privacy #InfoSec #BloodFart

  14. Backyard #Privacy in the Age of #Drones

    In addition to high-resolution photographic and video cameras, police drones may be equipped with myriad #spying payloads, such as live-video transmitters, thermal imaging, heat sensors, mapping technology, automated license plate readers, cell site simulators, cell phone signal interceptors and other technologies.
    #alpr #imsi #stingray

    eff.org/deeplinks/2024/08/back

  15. #eBay Removes Listing for #StingRay #Cellphone #Spying Tech
    StingRay listed at $100,000 before being removed for violating the platform’s policy on not #surveillance equipment. Listed as “Harris Stingray Cellular Phone Surveillance w/ Power Cord & Rolling Case - USED.
    This StingRay may not be able to spy on modern phones. StingRays, and more broadly #IMSI-catchers, of which StingRay is a specific model, have been used by #lawenforcement in #US to track cell phones.
    404media.co/ebay-removes-listi

  16. The Next Generation of #Cell-Site Simulators (CSS) is Here. Here’s What We Know.
    CSS, also known as #IMSI catchers, are among #lawenforcement’s most closely-guarded secret #surveillance tools. They act like real #cellphone towers, “tricking” mobile devices into connecting to them, designed to intercept the information that #phones send and receive, like the location of the user and metadata for #phone calls, text messages, and other app traffic.
    eff.org/deeplinks/2024/06/next #privacy #EFF

  17. Cell Site Simulators ( #CSS ), also known as #IMSI catchers,
    are among law enforcement’s most closely-guarded secret surveillance tools.

    They act like real cell phone towers,
    🔸“tricking” mobile devices into connecting to them,
    🔸designed to intercept the information that phones send and receive,
    🔸like the location of the user and metadata for phone calls, text messages, and other app traffic.

    CSS are highly invasive and are used covertly.

    In the past, law enforcement used a technique called
    “parallel construction”
    —collecting evidence in a different way to reach an existing conclusion
    💥in order to avoid disclosing how law enforcement originally collected it💥
    —. 👉to circumvent public disclosure of location findings made through CSS. 👈

    This technology is like a dragging fishing net, rather than a focused single hook in the water.

    Every phone in the vicinity connects with the device;
    🔥even people completely unrelated to an investigation get wrapped up in the surveillance. 🔥

    CSS, like other surveillance technologies, subjects civilians to widespread data collection,
    even those who have not been involved with a crime,
    and has been used against protestors and other protected groups, undermining their civil liberties.

    ⭐️Their adoption should require public disclosure,
    ⭐️but this rarely occurs.

    In Massachusetts, agencies are expected to get a #warrant before conducting any cell-based location tracking.
    The City of Boston is known to own a CSS. 

    Dozens of policing agencies are currently using cell-site simulators (CSS) by #Jacobs #Technology and its Engineering Integration Group (EIG), according to newly-available documents on how that company provides CSS capabilities to local law enforcement.

    A proposal document from Jacobs Technology,
    provided to the Massachusetts State Police (MSP) and first spotted by the Boston Institute for Nonprofit Journalism (BINJ),
    outlines elements of the company’s CSS services, which include discreet integration of the CSS system into a Chevrolet Silverado and lifetime technical support .

    The proposal document from Jacobs provides some of the most comprehensive information about modern CSS that the public has had access to in years.

    It confirms that law enforcement has access to CSS
    ♦️capable of operating on 5G
    ♦️as well as older cellular standards.

    It also gives us our first look at modern CSS hardware.

    The Jacobs system runs on at least nine software-defined radios that simulate cellular network protocols on multiple frequencies
    and can also gather #wifi intelligence.

    As these documents describe, these CSS are meant to be concealed within a common vehicle.

    Antennas are hidden under a false roof so nothing can be seen outside the vehicles,
    which is a shift from the more visible antennas and cargo van-sized deployments we’ve seen before.

    The system also comes with a TRACHEA2+ and JUGULAR2+ for 🔹direction finding and 🔹mobile direction finding.

    Important to the MSP contract is the modification of a Chevrolet Silverado with the CSS system.

    This includes both the surreptitious installment of the CSS hardware into the truck and the integration of its software user interface into the navigational system of the vehicle.

    According to Jacobs, this is the kind of installation with which they have a lot of experience.

    Jacobs has built its CSS project on military and intelligence community relationships,
    which are now informing development of a tool used in domestic communities,
    not foreign warzones.

    #Harris #Corporation, later #L3Harris #Technologies, Inc.,
    was the largest provider of CSS technology to domestic law enforcement
    but stopped selling to non-federal agencies in 2020.

    Once Harris stopped selling to local law enforcement the market was open to several competitors,
    one of the largest of which was #KeyW #Corporation.

    Following👉 Jacobs’s 2019 acquisition of The KeyW Corporation 👈and its Engineering Integration Group (EIG),
    Jacobs is now a leading provider of CSS to police,
    and it claims to have
    🌟more than 300 current CSS deployments globally. 🌟

    eff.org/deeplinks/2024/06/next

  18. The Next Generation of Cell-Site Simulators is Here. Here’s What We Know.

    CSS, also known as #IMSI catchers, are among law enforcement’s most closely-guarded secret #surveillance tools. They act like real cell phone towers, “tricking” mobile devices into connecting to them
    #privacy #celltower #cellphone #cellsitesimulator

    eff.org/deeplinks/2024/06/next

  19. I had a fantastic time over the past two weeks leading my fourth summer workshop series on data science with the IMSI Summer Internship Program!

    Are you a Statistics or Mathematics PhD student seeking a summer internship for 2025? Keep an eye out for an announcement in Fall 2024 regarding applications at:

    imsi.institute/internships/

    #imsi #phdstudents #datascience

  20. I'll be leading my 4th (!!) summer workshop series on data science with Institute for Mathematical and Statistical Innovation (IMSI) Summer Internship Program!

    It's a great program for Statistics and Mathematics PhD students to pick up some internship experience. More details at:

    imsi.institute/internships/

    #imsi #phdstudents #datascience

  21. Как собрать LTE-модем на базе SDR

    Приветствую всех! Пожалуй, самой закрытой технологией в пользовательском сегменте является сотовая связь. Очень немногие знают о том, как на самом деле работают телефоны и модемы, отчего им часто приписывают всякие мифические свойства. Как насчёт попробовать запустить полностью открытую реализацию модема стандарта 4G? Именно этим я и предлагаю заняться. Итак, в сегодняшней статье поговорим о том, как взаимодействовать с мобильной сетью при помощи SDR. Попутно узнаем, какой софт для этого существует, и соберём самый дорогой 4G-модем в истории. Традиционно будет много интересного.

    habr.com/ru/companies/timeweb/

    #timeweb_статьи #4g #модем #lte #опсос #сотовые_сети #смарткарты #pcsc #sim #gsm #imei #imsi #ki #opc #dragonos #srsran #srsue

  22. #iOS 17 and #macOS 14 #LockdownMode improvements

    #Wireless connectivity - Your device won't automatically join non-secure #WiFi networks (#WPA etc) and will disconnect from a non-secure Wi-Fi network when you turn on Lockdown Mode. 2G #cellular support is turned off.

    2G being disabled by default is an evolution of #LDM -- attempting to better protect from other classes of physical attacks, like #IMSI catchers or fraudulent cell towers performing #MitM attacks

  23. Docs Show #FBI Pressures Cops to Keep Phone #Surveillance Secrets.

    Newly released documents highlight the bureau's continued secrecy around cell-site simulators—spying tech that everyone already assumes exists.
    #privacy #imsi #imsicatcher #stingrays #cellsitesimulators #spying

    wired.com/story/fbi-cell-site-