27.04.2014 Views

day1_Hacking-telco-equipment-The-HLR-HSS-Laurent-Ghigonis-p1sec

day1_Hacking-telco-equipment-The-HLR-HSS-Laurent-Ghigonis-p1sec

day1_Hacking-telco-equipment-The-HLR-HSS-Laurent-Ghigonis-p1sec

SHOW MORE
SHOW LESS

You also want an ePaper? Increase the reach of your titles

YUMPU automatically turns print PDFs into web optimized ePapers that Google loves.

Fuzzing SS7: SCCP<br />

• Example result: 1 specific MSU repeated 2 times<br />

causes DoS of all Signaling Interconnections<br />

– <strong>HLR</strong> is down during 2 minutes<br />

– Total Denial of Service of the network<br />

– Nobody can receive calls in the whole country<br />

core 'core.xxx' of 15477:<br />

01 msu_processing ()<br />

02 msg_distribution ()<br />

03 main ()<br />

04 _start ()<br />

/export/home/xxx<br />

– If the attack is repeated, the DoS is permanent during<br />

the attack<br />

2014, Hackito Ergo Sum - Security Conference<br />

So long for the critical infrastructure …

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!