论文标题

您已经被警告:滥用5G的警告和紧急系统

You have been warned: Abusing 5G's Warning and Emergency Systems

论文作者

Bitsikas, Evangelos, Pöpper, Christina

论文摘要

公共警告系统(PWS)是蜂窝网络和一个国家民事保护的重要组成部分。警告可以通知用户有危险事件(例如洪水,地震)和需要立即关注的重要国家事务。 PWS攻击传播虚假警告或隐藏不稳定的事件可能会造成严重影响,从而造成欺诈,恐慌,身体伤害或受影响地区内部用户的动荡。在这项工作中,我们对5G网络中PWS安全性进行了首次全面调查。我们展示了五项实际攻击,可能会影响基于5G的商业移动警报系统(CMA)的安全性以及地震和海啸警告系统(ETWS)警报。除了识别漏洞外,我们还研究了两个PW欺骗和三个PW抑制攻击,无论有无中间人(MITM)攻击者。我们发现,基于MITM的攻击比其非MITM对应物具有更严重的影响。我们的PWS禁止攻击是消除合法警告信息的有效技术。我们对PWS的漫游方面进行严格分析,包括。它的潜在安全版本,并报告我们对其他紧急功能的攻击的含义(例如911 SIP呼叫)。我们讨论了可能的对策,并注意到消除攻击需要对PWS设计和安全实施进行严格重新评估。

The Public Warning System (PWS) is an essential part of cellular networks and a country's civil protection. Warnings can notify users of hazardous events (e.g., floods, earthquakes) and crucial national matters that require immediate attention. PWS attacks disseminating fake warnings or concealing precarious events can have a serious impact, causing fraud, panic, physical harm, or unrest to users within an affected area. In this work, we conduct the first comprehensive investigation of PWS security in 5G networks. We demonstrate five practical attacks that may impact the security of 5G-based Commercial Mobile Alert System (CMAS) as well as Earthquake and Tsunami Warning System (ETWS) alerts. Additional to identifying the vulnerabilities, we investigate two PWS spoofing and three PWS suppression attacks, with or without a man-in-the-middle (MitM) attacker. We discover that MitM-based attacks have more severe impact than their non-MitM counterparts. Our PWS barring attack is an effective technique to eliminate legitimate warning messages. We perform a rigorous analysis of the roaming aspect of the PWS, incl. its potentially secure version, and report the implications of our attacks on other emergency features (e.g., 911 SIP calls). We discuss possible countermeasures and note that eradicating the attacks necessitates a scrupulous reevaluation of the PWS design and a secure implementation.

扫码加入交流群

加入微信交流群

微信交流群二维码

扫码加入学术交流群,获取更多资源