You have any questions?
During this class, we will demonstrate in practice several attacks that could be performed especially on User Equipment, but will also cover the topic of attacking the core network.
This courses will make use of Software-Defined Radio mostly to cover the maximum of attacks that could be appplied to: mobile phones, IoT modules, connected cars, and other infrastructures.
With this class students will learn how to hunt for vulnerability in mobile radio-communications and core networks:
Day 1 will introduce the mobile network, it’s evolution, and will compare security features of 2G, 3G, 4G, and 5G. During this day, attendees will see how to make testbeds with Software-Defined Radio for the different cellular technologies, and be able to analyze communications. We will learn how to observe the signaling and the data exchanged between devices and the mobile network and how to perform tests on devices connected/IoT devices for example.
Additionally, participants will also get advice and see the limitations circumvent when using an SDR device as a mobile station.
Days 2 and 3 will focus on attacking mobile devices in a Blackbox context, without physical access to devices. This will lead to basic and smart-jamming attacks to downgrade communications and be able to intercept a device. We will also see ways to perform fuzzing tests on mobile protocol stacks to find vulnerabilities over-the-air but also other ways to optimize bugs hunting.
Note that a new training dedicated to 5G-NR and 5GNC will be released in March 2022 at Advanced Security Training first. Nevertheless, you can also order a private training focusing only on 5G by contacting us here
Content of private trainings can be arranged depending of your needs. We also provide additional content as follows:
Security researcher at Trend Micro and is also the founder of the PentHertz consulting company which specializes in wireless and hardware security.
If you need to send us a mail regarding the course, please write to us at trainings@penthertz.com for more information.
3-day remote live training, including a Full-duplex TX/RX SDR kit (bladeRF 2.0 micro xA4), slides, Docker container, scripts/tools and captures. The content can be customized depending on the means and required days for the training.
An extra discount can be negotiated depending on the number of attendees.
Content can be fully tailored depending on your needs.