File Download

There are no files associated with this item.

  • Find it @ UNIST can give you direct access to the published full text of this article. (UNISTARs only)
Related Researcher

임영빈

Im, Youngbin
Next-generation Networks and Systems Lab.
Read More

Views & Downloads

Detailed Information

Cited time in webofscience Cited time in scopus
Metadata Downloads

This is your president speaking: Spoofing alerts in 4G LTE networks

Author(s)
Lee, GyuhongLee, JihoonLee, JinsungIm, YoungbinHollingsworth, MaxWustrow, EricGrunwald, DirkHa, Sangtae
Issued Date
2019-06-17
DOI
10.1145/3307334.3326082
URI
https://scholarworks.unist.ac.kr/handle/201301/79671
Fulltext
https://dl.acm.org/citation.cfm?doid=3307334.3326082
Citation
17th ACM International Conference on Mobile Systems, Applications, and Services, MobiSys 2019, pp.404 - 416
Abstract
Modern cell phones are required to receive and display alerts via the Wireless Emergency Alert (WEA) program, under the mandate of the Warning, Alert, and Response Act of 2006. These alerts include AMBER alerts, severe weather alerts, and (unblockable) Presidential Alerts, intended to inform the public of imminent threats. Recently, a test Presidential Alert was sent to all capable phones in the United States, prompting concerns about how the underlying WEA protocol could be misused or attacked. In this paper, we investigate the details of this system, and develop and demonstrate the first practical spoofing attack on Presidential Alerts, using both commercially available hardware as well as modified open source software. Our attack can be performed using a commercially-available software defined radio, and our modifications to the open source NextEPC and srsLTE software libraries. We find that with only four malicious portable base stations of a single Watt of transmit power each, almost all of a 50,000-seat stadium can be attacked with a 90% success rate. The true impact of such an attack would of course depend on the density of cell phones in range; fake alerts in crowded cities or stadiums could potentially result in cascades of panic. Fixing this problem will require a large collaborative effort between carriers, government stakeholders, and cell phone manufacturers. To seed this effort, we also discuss several defenses to address this threat in both the short and long term.
Publisher
Association for Computing Machinery, Inc
ISSN
0000-0000

qrcode

Items in Repository are protected by copyright, with all rights reserved, unless otherwise indicated.