Security Aspects and Vulnerabilities in Authentication Process WiFi Calling – RF measurements

Cristian Capotă, Simona Viorica Halunga, Octavian Fratu, Eugen Stancu, Popescu Madalin · 2021

The rapid development of the telecommunication standards, which are getting close to the implementation of the 5th generation now (5G) leads to us to discover new ways to provide network services in the areas that are not covered with radio network services. Such a service is Wi-Fi Calling, which is provided in our country by Orange, Vodafone and DigiMobile. This service extends the network coverage especially indoor places or in not covered signal areas, by redirecting traffic from traditional networks to networks whom works in WIFI standard. Wi-Fi Calling present greater security risks than LTE networks. In this paper, we explore the WiFi calling security specifications, that can be exploited by an attacker, in revealing the location of users, technical parameters of the devices, access to private data and DoS attacks. We set up a rogue Access Point (AP) in the real AP environment, so we can notice in Linux terminal (AirCrack-NG) the same parameters from both AP. We test the protocols vulnerabilities for quite o lot of DoS attacks, concluding with some practical countermeasures to avoid or minimize the effect of the attacks. The practical aspects presented in this paper revealing RF measurements are made in laboratory conditions with fine control of the equipment.

Read the paper · More papers on PaperTik