-
Notifications
You must be signed in to change notification settings - Fork 21
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
sim-jacker update #1
Comments
What do I have? Your repository cause we're in the same kayak on Shit River with no paddle. |
I think Cellebrite is likely the "surveillance vendor" that is mentioned in these articles based on their current capabilities. What I know:
|
@Nic8895
I be waitin' fer that moment!! 🕐 Anyways, thanks fer yer update matey ☠️ |
Hey bro i am from know_where so i am able to access a network tower near my home which basically provides calling, sms services and GPRS Services so what i am asking is, can we add a backdoor to it accessing the whole area network as they use windows server edition pls reply I'll have my eyes on this thread |
hello got this from positive technologies Dear Bastien Baranoff, Good news for Friday the 13th! We've decided to drop a webinar on mitigating the recently uncovered Simjacker vulnerability next Thursday, September 19.
The Positive Technologies team has years of sustained experience with analyzing vulnerabilities of all kinds. Back in 2014, our experts published the report "4G Security: Hacking USB Modem and SIM Card via SMS," in which they stressed the possibility of precisely such attacks and how a hacker could perform them. Even better, our product has already been tested and proven to secure systems from the latest "Simjacker" attacks.
During the webinar, our experts will role-play the attack process, show the must-know details and specifics, and give recommendations on how to prevent your network from being hacked by Simjacker. |
@Aadesh9985 What do you mean by "able to access a network tower" ? What kind of access do you have ? remote, physical or both ? @bbaranoff That's some great news. I'd really love to watch the event. Do they have any plan on live streaming the event ? |
I'm curious as to how they're going to go about mitigating threats to S@T w/o reissuing SIM cards or forcing carrier to block S@T commands OTA, which ain't gonna happen because S@T is used in part of the process of updating Android devices OTA. |
@theapache64 i was invited by mail i have a token but it is personnal maybe by subscribing to positive technologies you will have one |
@bbaranoff I searched for the event here, but they didn't officially listed it there. I've contacted them via twitter and currently waiting for their reply. I'll definitely update their response here. |
@theapache64 maybe try that [email protected] |
@Aadesh9985 you mean that you have made imsi catcher? you want to know if you can access to shell with it i am asking the same... |
@bbaranoff Thank you so much for the link. I appreciate that. @bbaranoff Can I post the link in our reddit thread ? |
@theapache64 yes you can post it to reddit |
Someone got's new informations about simjacker ? I so scary to see the binary code on internet... it's possible? |
@theapache64 i have physical access to it and the person who is in charge is my friend so he will let me in without doubt. What my questions are 1) Can we create a backdoor to windows server 2) What we can do after getting the access to the network tower. |
@Valen3D Everyone's waiting for the binary, or at least a POC |
I have a question. How can use thats? Juste send the message binary ? How the informations can come ( localisation for exemple) by sms ? |
like it is said quote "Disclosed by researchers at AdaptiveMobile Security in new research published today, the vulnerability can be exploited using a |
@theapache64 u are my source to this topic, well i am looking for other things too. I'll inform as soon as i get something valuable |
any one |
made a video of SIMTester https://youtu.be/CTDiT6L46k8 |
would be easy for the carrier to block S@T for everyone else except authorized (whitelisted) numbers/SMS-centers which belong to mobile manufacturers and carriers, who need to OTA update things. |
Hi guys. |
Guys, i gonna found some info about people, were under attack. |
Made a video about loading an STK applet on sim with ShadySim https://youtu.be/F55eJr40CoQ |
@bbaranoff Good work brother |
Look at what i wrote on github, there is links to what you are searching
for.
Le mardi 2 avril 2024, periquillosarniento ***@***.***> a
écrit :
… im back guys sorry had to travel far, lets continue with the stuff please
help fixing it
—
Reply to this email directly, view it on GitHub
<#1 (comment)>,
or unsubscribe
<https://github.com/notifications/unsubscribe-auth/BALQDLRS45WVB3ZJSDGHVQTY3LRTTAVCNFSM4IWJJVGKU5DIOJSWCZC7NNSXTN2JONZXKZKDN5WW2ZLOOQ5TEMBTGI3DCMJTHE4Q>
.
You are receiving this because you commented.Message ID:
***@***.***>
|
So Y'all can tell me from what to what our chat became? have we finally got sim jacking? |
i have the code but stopped working from my country(if send from telco local), still working from diferent countrys. help fixing? |
What Youre using? twillio? |
Finally, I've been able to send Binary PDU Messages and i have identified a network over which they aren't blocked yet. So Now comming over to the question, How to exploit it further? 0041000B912143658709F07FF63802700000330D0000000050534800000000000042230121020744382E3130353105160604313035312D0C1003830607912143658709F02B00 2143658709F0 means the phone number is (123) 45678900 It flashed on the target phone with Invalide Incomming Message! |
ok wanna get in contact to change the code to get further stuff? any email? or private chat? i got the codes and know how to change them |
Sure. I've emailed you on this for further collaboration. I'm lacking simtrace actually which is restricting me from further testing. |
I have created a community on Discord for this. Everyone can join in so that a compiled form of efforts results in benefit to everyone on the open source community! |
Hi Everyone! I find simjacker to be fascinating. This is a great project. I was hoping to join you on both here and on discord if invites are still possible. Thank you! |
Of course you can join us on discord
…On Fri, Jun 7, 2024, 06:14 everydaze ***@***.***> wrote:
Hi Everyone! I find simjacker to be fascinating. This is a great project.
I was hoping to join you on both here and on discord if invites are still
possible.
Thank you!
—
Reply to this email directly, view it on GitHub
<#1 (comment)>,
or unsubscribe
<https://github.com/notifications/unsubscribe-auth/AKAEPK7CP4HBXVVRKBXCMILZGE6UNAVCNFSM4IWJJVGKU5DIOJSWCZC7NNSXTN2JONZXKZKDN5WW2ZLOOQ5TEMJVGQYDGOJTGQZQ>
.
You are receiving this because you were mentioned.Message ID:
***@***.***>
|
Thank you so much! May I have a new invite for discord please?
The one listed has expired.
Thank you!
Sent from [Proton Mail](https://proton.me/mail/home) for iOS
…On Fri, Jun 7, 2024 at 4:56 AM, Ilori-Jaiyeola ***@***.***(mailto:On Fri, Jun 7, 2024 at 4:56 AM, Ilori-Jaiyeola <<a href=)> wrote:
Of course you can join us on discord
On Fri, Jun 7, 2024, 06:14 everydaze ***@***.***> wrote:
> Hi Everyone! I find simjacker to be fascinating. This is a great project.
> I was hoping to join you on both here and on discord if invites are still
> possible.
>
> Thank you!
>
> —
> Reply to this email directly, view it on GitHub
> <#1 (comment)>,
> or unsubscribe
> <https://github.com/notifications/unsubscribe-auth/AKAEPK7CP4HBXVVRKBXCMILZGE6UNAVCNFSM4IWJJVGKU5DIOJSWCZC7NNSXTN2JONZXKZKDN5WW2ZLOOQ5TEMJVGQYDGOJTGQZQ>
> .
> You are receiving this because you were mentioned.Message ID:
> ***@***.***>
>
—
Reply to this email directly, [view it on GitHub](#1 (comment)), or [unsubscribe](https://github.com/notifications/unsubscribe-auth/BELMNDCOIOF6WQFGWXLS44DZGFYUTAVCNFSM4IWJJVGKU5DIOJSWCZC7NNSXTN2JONZXKZKDN5WW2ZLOOQ5TEMJVGQZTSNZVG44Q).
You are receiving this because you commented.Message ID: ***@***.***>
|
Any chance someone can send me a current discord invite please? I'd like to join the group and share whatever I can contribute. Thank you |
Is this still active? OR where the regular discussion is going on? |
Hello, could you resend the link to the discord server? |
Hi Guys, the invite link has expired. If anyone can open up discord and create a new link and paste it here I would appreciate it.
Note: Discord change some settings and the invites now expire after 7 days. Here is a 90 second video showing the update:
https://youtu.be/MCKX4mrD_jI
Sent with [Proton Mail](https://proton.me/) secure email.
…On Thursday, August 1st, 2024 at 12:37 AM, Murilo ***@***.***> wrote:
>> ok wanna get in contact to change the code to get further stuff? any email? or private chat? i got the codes and know how to change them
>
> I have created a community on Discord for this. Everyone can join in so that a compiled form of efforts results in benefit to everyone on the open source community!
>
> https://discord.gg/XS2s4NUW
Hello, could you resend the link to the discord server?
—
Reply to this email directly, [view it on GitHub](#1 (comment)), or [unsubscribe](https://github.com/notifications/unsubscribe-auth/BELMNDBV4Y4WXOTSTXLO3R3ZPG3QJAVCNFSM4IWJJVGKU5DIOJSWCZC7NNSXTN2JONZXKZKDN5WW2ZLOOQ5TEMRWGIYDCMRVGAZA).
You are receiving this because you commented.Message ID: ***@***.***>
|
Let me see if I can create a link
…On Fri, Aug 2, 2024, 02:40 everydaze ***@***.***> wrote:
Hi Guys, the invite link has expired. If anyone can open up discord and
create a new link and paste it here I would appreciate it.
Note: Discord change some settings and the invites now expire after 7
days. Here is a 90 second video showing the update:
https://youtu.be/MCKX4mrD_jI
Sent with [Proton Mail](https://proton.me/) secure email.
On Thursday, August 1st, 2024 at 12:37 AM, Murilo ***@***.***> wrote:
>>> ok wanna get in contact to change the code to get further stuff? any
email? or private chat? i got the codes and know how to change them
>>
>> I have created a community on Discord for this. Everyone can join in so
that a compiled form of efforts results in benefit to everyone on the open
source community!
>>
>> https://discord.gg/XS2s4NUW
>
> Hello, could you resend the link to the discord server?
>
> —
> Reply to this email directly, [view it on GitHub](
#1 (comment)),
or [unsubscribe](
https://github.com/notifications/unsubscribe-auth/BELMNDBV4Y4WXOTSTXLO3R3ZPG3QJAVCNFSM4IWJJVGKU5DIOJSWCZC7NNSXTN2JONZXKZKDN5WW2ZLOOQ5TEMRWGIYDCMRVGAZA
).
> You are receiving this because you commented.Message ID: ***@***.***>
—
Reply to this email directly, view it on GitHub
<#1 (comment)>,
or unsubscribe
<https://github.com/notifications/unsubscribe-auth/AKAEPK3EF5IUFGFJ3UBESHDZPLPP3AVCNFSM4IWJJVGKU5DIOJSWCZC7NNSXTN2JONZXKZKDN5WW2ZLOOQ5TEMRWGQZTEOJTGQ4Q>
.
You are receiving this because you were mentioned.Message ID:
***@***.***>
|
That's great great news. As you can see it's a Saturday night and I don't have much else to do: )
I would love to get involved
Thank you so much!
…On Friday, August 2nd, 2024 at 3:39 AM, Ilori-Jaiyeola ***@***.***> wrote:
Let me see if I can create a link
On Fri, Aug 2, 2024, 02:40 everydaze ***@***.***> wrote:
> Hi Guys, the invite link has expired. If anyone can open up discord and
> create a new link and paste it here I would appreciate it.
>
> Note: Discord change some settings and the invites now expire after 7
> days. Here is a 90 second video showing the update:
>
> https://youtu.be/MCKX4mrD_jI
>
> Sent with [Proton Mail](https://proton.me/) secure email.
>
> On Thursday, August 1st, 2024 at 12:37 AM, Murilo ***@***.***> wrote:
>
> >>> ok wanna get in contact to change the code to get further stuff? any
> email? or private chat? i got the codes and know how to change them
> >>
> >> I have created a community on Discord for this. Everyone can join in so
> that a compiled form of efforts results in benefit to everyone on the open
> source community!
> >>
> >> https://discord.gg/XS2s4NUW
> >
> > Hello, could you resend the link to the discord server?
> >
> > —
> > Reply to this email directly, [view it on GitHub](
> #1 (comment)),
> or [unsubscribe](
> https://github.com/notifications/unsubscribe-auth/BELMNDBV4Y4WXOTSTXLO3R3ZPG3QJAVCNFSM4IWJJVGKU5DIOJSWCZC7NNSXTN2JONZXKZKDN5WW2ZLOOQ5TEMRWGIYDCMRVGAZA
> ).
> > You are receiving this because you commented.Message ID: ***@***.***>
>
> —
> Reply to this email directly, view it on GitHub
> <#1 (comment)>,
> or unsubscribe
> <https://github.com/notifications/unsubscribe-auth/AKAEPK3EF5IUFGFJ3UBESHDZPLPP3AVCNFSM4IWJJVGKU5DIOJSWCZC7NNSXTN2JONZXKZKDN5WW2ZLOOQ5TEMRWGQZTEOJTGQ4Q>
> .
> You are receiving this because you were mentioned.Message ID:
> ***@***.***>
>
—
Reply to this email directly, [view it on GitHub](#1 (comment)), or [unsubscribe](https://github.com/notifications/unsubscribe-auth/BELMNDEVALHSPX6VTIV7YG3ZPMZTZAVCNFSM4IWJJVGKU5DIOJSWCZC7NNSXTN2JONZXKZKDN5WW2ZLOOQ5TEMRWGQ3TMOBRGA2Q).
You are receiving this because you commented.Message ID: ***@***.***>
|
You can join the group via this link
https://discord.gg/hN6XEHYw
…On Sun, Aug 4, 2024, 04:59 everydaze ***@***.***> wrote:
That's great great news. As you can see it's a Saturday night and I don't
have much else to do: )
I would love to get involved
Thank you so much!
On Friday, August 2nd, 2024 at 3:39 AM, Ilori-Jaiyeola ***@***.***> wrote:
> Let me see if I can create a link
>
> On Fri, Aug 2, 2024, 02:40 everydaze ***@***.***> wrote:
>
>> Hi Guys, the invite link has expired. If anyone can open up discord and
>> create a new link and paste it here I would appreciate it.
>>
>> Note: Discord change some settings and the invites now expire after 7
>> days. Here is a 90 second video showing the update:
>>
>> https://youtu.be/MCKX4mrD_jI
>>
>> Sent with [Proton Mail](https://proton.me/) secure email.
>>
>> On Thursday, August 1st, 2024 at 12:37 AM, Murilo ***@***.***> wrote:
>>
>> >>> ok wanna get in contact to change the code to get further stuff? any
>> email? or private chat? i got the codes and know how to change them
>> >>
>> >> I have created a community on Discord for this. Everyone can join in
so
>> that a compiled form of efforts results in benefit to everyone on the
open
>> source community!
>> >>
>> >> https://discord.gg/XS2s4NUW
>> >
>> > Hello, could you resend the link to the discord server?
>> >
>> > —
>> > Reply to this email directly, [view it on GitHub](
>>
#1 (comment)
),
>> or [unsubscribe](
>>
https://github.com/notifications/unsubscribe-auth/BELMNDBV4Y4WXOTSTXLO3R3ZPG3QJAVCNFSM4IWJJVGKU5DIOJSWCZC7NNSXTN2JONZXKZKDN5WW2ZLOOQ5TEMRWGIYDCMRVGAZA
>> ).
>> > You are receiving this because you commented.Message ID: ***@***.***>
>>
>> —
>> Reply to this email directly, view it on GitHub
>> <
#1 (comment)
>,
>> or unsubscribe
>> <
https://github.com/notifications/unsubscribe-auth/AKAEPK3EF5IUFGFJ3UBESHDZPLPP3AVCNFSM4IWJJVGKU5DIOJSWCZC7NNSXTN2JONZXKZKDN5WW2ZLOOQ5TEMRWGQZTEOJTGQ4Q
>
>> .
>> You are receiving this because you were mentioned.Message ID:
>> ***@***.***>
>>
>
> —
> Reply to this email directly, [view it on GitHub](
#1 (comment)),
or [unsubscribe](
https://github.com/notifications/unsubscribe-auth/BELMNDEVALHSPX6VTIV7YG3ZPMZTZAVCNFSM4IWJJVGKU5DIOJSWCZC7NNSXTN2JONZXKZKDN5WW2ZLOOQ5TEMRWGQ3TMOBRGA2Q
).
> You are receiving this because you commented.Message ID: ***@***.***>
—
Reply to this email directly, view it on GitHub
<#1 (comment)>,
or unsubscribe
<https://github.com/notifications/unsubscribe-auth/AKAEPK3DRZHPP3DQBZL7TXDZPWRIZAVCNFSM4IWJJVGKU5DIOJSWCZC7NNSXTN2JONZXKZKDN5WW2ZLOOQ5TEMRWG4ZDQOJXGM4A>
.
You are receiving this because you were mentioned.Message ID:
***@***.***>
|
Thank you so much, I’ll read through and catch up
Sent from [Proton Mail](https://proton.me/mail/home) for iOS
…On Sun, Aug 4, 2024 at 3:44 AM, Ilori-Jaiyeola ***@***.***(mailto:On Sun, Aug 4, 2024 at 3:44 AM, Ilori-Jaiyeola <<a href=)> wrote:
You can join the group via this link
https://discord.gg/hN6XEHYw
On Sun, Aug 4, 2024, 04:59 everydaze ***@***.***> wrote:
> That's great great news. As you can see it's a Saturday night and I don't
> have much else to do: )
>
> I would love to get involved
>
> Thank you so much!
> On Friday, August 2nd, 2024 at 3:39 AM, Ilori-Jaiyeola ***@***.***> wrote:
>
> > Let me see if I can create a link
> >
> > On Fri, Aug 2, 2024, 02:40 everydaze ***@***.***> wrote:
> >
> >> Hi Guys, the invite link has expired. If anyone can open up discord and
> >> create a new link and paste it here I would appreciate it.
> >>
> >> Note: Discord change some settings and the invites now expire after 7
> >> days. Here is a 90 second video showing the update:
> >>
> >> https://youtu.be/MCKX4mrD_jI
> >>
> >> Sent with [Proton Mail](https://proton.me/) secure email.
> >>
> >> On Thursday, August 1st, 2024 at 12:37 AM, Murilo ***@***.***> wrote:
> >>
> >> >>> ok wanna get in contact to change the code to get further stuff? any
> >> email? or private chat? i got the codes and know how to change them
> >> >>
> >> >> I have created a community on Discord for this. Everyone can join in
> so
> >> that a compiled form of efforts results in benefit to everyone on the
> open
> >> source community!
> >> >>
> >> >> https://discord.gg/XS2s4NUW
> >> >
> >> > Hello, could you resend the link to the discord server?
> >> >
> >> > —
> >> > Reply to this email directly, [view it on GitHub](
> >>
> #1 (comment)
> ),
> >> or [unsubscribe](
> >>
> https://github.com/notifications/unsubscribe-auth/BELMNDBV4Y4WXOTSTXLO3R3ZPG3QJAVCNFSM4IWJJVGKU5DIOJSWCZC7NNSXTN2JONZXKZKDN5WW2ZLOOQ5TEMRWGIYDCMRVGAZA
> >> ).
> >> > You are receiving this because you commented.Message ID: ***@***.***>
> >>
> >> —
> >> Reply to this email directly, view it on GitHub
> >> <
> #1 (comment)
> >,
> >> or unsubscribe
> >> <
> https://github.com/notifications/unsubscribe-auth/AKAEPK3EF5IUFGFJ3UBESHDZPLPP3AVCNFSM4IWJJVGKU5DIOJSWCZC7NNSXTN2JONZXKZKDN5WW2ZLOOQ5TEMRWGQZTEOJTGQ4Q
> >
> >> .
> >> You are receiving this because you were mentioned.Message ID:
> >> ***@***.***>
> >>
> >
> > —
> > Reply to this email directly, [view it on GitHub](
> #1 (comment)),
> or [unsubscribe](
> https://github.com/notifications/unsubscribe-auth/BELMNDEVALHSPX6VTIV7YG3ZPMZTZAVCNFSM4IWJJVGKU5DIOJSWCZC7NNSXTN2JONZXKZKDN5WW2ZLOOQ5TEMRWGQ3TMOBRGA2Q
> ).
> > You are receiving this because you commented.Message ID: ***@***.***>
>
> —
> Reply to this email directly, view it on GitHub
> <#1 (comment)>,
> or unsubscribe
> <https://github.com/notifications/unsubscribe-auth/AKAEPK3DRZHPP3DQBZL7TXDZPWRIZAVCNFSM4IWJJVGKU5DIOJSWCZC7NNSXTN2JONZXKZKDN5WW2ZLOOQ5TEMRWG4ZDQOJXGM4A>
> .
> You are receiving this because you were mentioned.Message ID:
> ***@***.***>
>
—
Reply to this email directly, [view it on GitHub](#1 (comment)), or [unsubscribe](https://github.com/notifications/unsubscribe-auth/BELMNDH76T743X2EVI5F46TZPXLXHAVCNFSM4IWJJVGKU5DIOJSWCZC7NNSXTN2JONZXKZKDN5WW2ZLOOQ5TEMRWG42DAMJVGUYA).
You are receiving this because you commented.Message ID: ***@***.***>
|
@Ilori-Jaiyeola, Discord link has expired again, kindly drop another? |
Thanks, @bbaranoff, this give some ideas of what we can do with this capability. The ambigious thing is how to send the shady SMS, witch will obviously be blocked by the provider. Luckily, @smfai200 found a network wher they aren't blocked on yet and i am very happy for you that you found the way. But i don't know in what consist this network and how to send SMS on it. Maybe this solution is on the discord server ? I don't know, i didn't saw there is that and all invitation links are invalid. Could i have a valid Discord server invitation link so i can join, please ? |
@psmitty7373 may also be happy of that. |
|
… On Thu, Nov 7, 2024, 17:50 trufa10008000 ***@***.***> wrote:
@Ilori-Jaiyeola <https://github.com/Ilori-Jaiyeola>, Discord link has
expired again, kindly drop another?
@psmitty7373 <https://github.com/psmitty7373> may also be happy of that.
https://discord.gg/RysfH9uG
—
Reply to this email directly, view it on GitHub
<#1 (comment)>,
or unsubscribe
<https://github.com/notifications/unsubscribe-auth/AKAEPK2DDZQ6RCDHYJ7GAVDZ7OK3PAVCNFSM4IWJJVGKU5DIOJSWCZC7NNSXTN2JONZXKZKDN5WW2ZLOOQ5TENBWGI3TINBQGQZQ>
.
You are receiving this because you were mentioned.Message ID:
***@***.***>
|
hey Ilory goto discord this weekend i have something we need to test it |
https://github.com/mnemonic-no/ScapySMS i think we should took a look |
@anyoneoruser I just saw your reply sorry to not be firewalled you may do this with an IMSI catcher or simply try with the firewall some telcos shall have a bad fw |
Website: https://simjacker.com 🌐
News : https://thehackernews.com/2019/09/simjacker-mobile-hacking.html 📰
Reddit : https://www.reddit.com/r/simjacking
What do you have ?
The text was updated successfully, but these errors were encountered: