3 ms·
Huawei hasn't updated OpenSSL in their cellular basestation firmware, despite promises to do so in 2012 & 2018: https://hmgstrategy.com/resource-center/articles
by metildaa 7y ago
Huawei hasn't updated OpenSSL in their cellular basestation firmware, despite promises to do so in 2012 & 2018: https://hmgstrategy.com/resource-center/articles/2019/04/04/uk-flunks-huawei https://hmgstrategy.com/resource-center/articles/2019/04/04/...
These really basic maintenance tasks aren't happening, leaving cell networks vulnerable to anyone who can be bothered to look up a CVE and run the provided demo exploit code. Hard to maintain a network you can't secure :c
- 8note 7y agoI think there's a misplaced assumption here, that you should trust a network to keep your traffic safe. it's reasonable to think that regardless of their SSL implementation, you should assume that the network owner is going to try and spy on your traffic and sell it to the highest bidder
- watwatinthewat 7y agoI don't see what part of that means the network operator shouldn't do their best to try to keep it safe.
- metildaa 7y agoThe cellular network being totally insecure is much worse than passive surveillance. Calls and texts can be rerouted and altered in transit, and mobile identities (eg: your SIM) can be impersonated on a whim.
- fulafel 7y agoThis is obviously not good, but is there evidence that they are broadly worse than the competition? I always thought telco internal networks were full of stuff like this (out of date and misconfigured crap everywhere, with heavy reliance on firewalls/vpns).
- metildaa 7y agoVPNs and firewalls can't help when the cellular basestation is the issue. How would you prevent a malicious LTE client fron running these exploits? Telcom security is a mess, but the frontline gear is usually the saving grace of the network.
- fulafel 7y agoIs there really SSL communication between terminals and base station in the LTE protocol? This seems unlikely because it's below the IP layer. They could of course use openssl for the crypto primitives in implementing LTE but are there vulnerabilities in those primitives that would be fixed by updating openssl? There could be TLS involved in higher level protocols like IMS though. Or not. Does anyone know if eg VoLTE relies on the network for security or does it run SIP over DTLS or something?