Slashdot Mirror


Tracking Via Anonymous SIM Cards

Noryungi writes "The New York Times reports that Al Qaeda operatives were tracked using the ID of the GSM phone chips sold by a Swiss company named Swisscom. Very interesting."

28 of 426 comments (clear)

  1. Re:Look at how fast they adapted by Anonymous Coward · · Score: 3, Interesting

    There was never any legitimate need to upgrade the infrastructure to allow for tracking any cell user at will.
    And that's why the big brother guys, like the CIA, NSA and FBI really pushed for that type of infrastructure to be developed, right? But... oh wait, it was actually some of the northern states who thought it might be nice to be able to help find people lost in snow storms.

    Oh... just noticed this, you're a kook. TWA 800 shot down? Sure sure... ding! time to take your medicine

  2. Weirdness.. by hookedup · · Score: 4, Interesting

    When I bought my latest phone, I had to get the SIM card activated, the salesman asked me for my name, address, etc.. so I began pulling out my wallet for him to copy my ID down. So instead.. he gives me a scrap piece of paper and a pen to put it down, this really seems weird to me.

    Nothing was stopping me from putting down the wrong info (looking back now, maybe I should have). It just struck me as odd how easy it would have been to fake it all..

    1. Re:Weirdness.. by Beautyon · · Score: 3, Interesting

      In France you cannot buy a pay as you go simcard without showing ID. Its bullshit of course, they will sell you one even if you show someone elses ID.

      These self immolating morons dont know anything about security. If they knew even a little, they would switch SIMS for each call, and then discard the SIM. But even that would be no good, because if they were always calling from one of ten cells to another set of ten always used cells, you can build a pattern up and start moniroting all the relevant calls. This as all Slashdotters know is Traffic Analysis.

      They should be sending messages via a human courrier who memorizes messages. Its slow, but what do they care? They waited years to kill themselvs the first time - anything that reveals their locations is a huge risk...thankfully. What we now have to ask is how many people are they actively monitoring, and if its even one person, why have they not (if they have not) picked these people up?

      GWB has hinted that they are bumping these people off - maybe they are all (ex) GSM users?

      Mu favourite GSM/Combat related story is the one where MOSSAD blew off the head of a top Hammas man, by switching his cellphone for one that had an explosive charge put into it. Aparently, he was able to use his phone normally. It was detonated only when a call came from a specific number and he answered it, presumably with a suitable delay for him to lift up the phone to his ear and say "Hello". Cellphones are being used for this sort of thig more and more. Fascinating.

      --
      ATH0 Bitcoin: 1DnwFLXczVZV8kLJbMYoheUrpqHesjxrSi
  3. Re:Look at how fast they adapted by corebreech · · Score: 0, Interesting

    Here's the cover-up.

    Clinton signed that Executive Order the day after the French periodical Paris Match published the radar transcripts showing that there was something else in the air next to TWA 800 when it exploded.

    Nobody's expecting you to remove your blinders. But maybe if you could just take a peek every now and again at the world outside, you know, a sort of reality check.

  4. Social Mapping of "Anonymous" people by G4from128k · · Score: 4, Interesting

    I would suspect that authorities can learn much about people and groups simply by mapping who talks with whom (using technques discussed hrer). Even if many of the subjects use anonymous SIM chips and phones, their patterns of calling create a map. And if anyone they call is a known party (e.g., know "terrorists" or their family members), then their anyonymity becomes compromised.

    The authorities can probably even deduce leadership structures from the sequence of calls. If A calls B and then B immediately calls C, D, and E, we might suspect that B is a leader of a cell with D, E, and F as members. Add data on physical location (phone towers) and the authorities have even more data to map out a network and assess likely roles of unnamed people.

    --
    Two wrongs don't make a right, but three lefts do.
  5. Qaeda's painful addiction to 'da SIMs... by mynameis+(mother+... · · Score: 5, Interesting
    We all knew they lived in their own fantasy world!

    Some of my favorite quotes:
    From both the mental image and funny-long-names-of-stuff-in-Germany file:

    1. "If you beat terrorists over the head enough, they learn," said Col. Nick Pratt, a counterterrorism expert and professor at the George C. Marshall European Center for Security Studies in Garmisch-Partenkirchen, Germany.
    And the enjoying-that-feeling-of-absolute-superiority-over -those-you-deem-less-palatable-then-santorum file:
    1. One senior official said the authorities were grateful that Qaeda members were so loyal to Swisscom.
      Another official agreed: "They'd switch phones but use the same cards. The people were stupid enough to use the same cards all of the time. It was a very good thing for us."

    And I'm sure this one has already been posted, but...
    From both the kill-joy and tinfoil-hat/nuking-new-$20s files:
    1. "They thought these phones protected their anonymity, but they didn't," said a senior intelligence official based in Europe. Even without personal information, the authorities were able to conduct routine monitoring of phone conversations."
    Sigh...
  6. Some precisions by Max+von+H. · · Score: 5, Interesting

    This isn't new at all - we've heard about it a couple of years ago here in Switzerland. BTW, Swisscom happens to be the not-so-former telecom monopoly here, pretty big stuff, not just some random company exploiting a legal loophole. Thing is it's been possible to buy totally anonymous GSM cards here for ages (8 years or so), effectively providing you pre-paid phone number to use in any GSM phone, in and outside of Switzerland.

    For about $50 you get a SIM card that you can put in you GSM mobile. You now have a phone number and some initial credit. You can buy credit (a card with a hidden number to dial) from any news stand anytime. Never in the process does your name appear anywhere. You can even buy the cards in supermarkets.

    The question of such anonymity was raised several times, but ultimately the decision was that it wasn't possible to require personal information for such items. Since there's no contract and no bills in the system, there's no reason to ask for your name, address, etc. And there's millions of them in use already.

    Note that all operators offer such cards. It's a bit more expensive than regular price plans but damn useful if you're a traveler, want to control expenses or can't get a regular plan because of bad credit. To my knowledge, many other european countries offer such prepaid cards now... We just happened to be the first.

    --
    -- It's always darker before it goes pitch black.
    1. Re:Some precisions by Max+von+H. · · Score: 2, Interesting

      I don't dismiss the trackability of GSM phones at all, but on the practical side how does it change things for anyone who wants to remain anonymous? It doesn't, and here's why :

      - Buy your phone cash, no price plan attached, or second hand (GSM phone aren't simlocked, ie. tied to an operator/price plan, for the most part here except those sold with... a prepaid card for cheap). Anyway, your name isn't attached to the phone in any way.

      - Use a prepaid card, change it often. Each time a new phone number nobody knows about.

      Now you can call anyone totally anonymously. If you block your ID from the phone, your correspondent won't even get your number. How much more anonymous can you get? Should anyone want to eavesdrop on you, they'd lack any kind of info to begin with. The phone number? It could be any 7-digit combination for each mobile prefix (3 of them so far), with unused numbers being re-assigned after 18 months (the prepaid cards now "self destruct" if not used for 6 months). That's a lot to listen to and analyze. Oh, don't forget you can transmit data as well on those buggers and they can easily be used as modems.

      Where do you start if all parties involved, say various members of a terrorist cell, swap phone number and phone regularly, and use them in locations packed with cellphone users? Good luck :) Unless some phreaking and/or direct bugging of the person is done, I don't see how they could be traced phone-wise.

      --
      -- It's always darker before it goes pitch black.
  7. Echelon monitoring? by Wingchild · · Score: 4, Interesting

    Is this kind of thing routine?

    Given the first +5 Informative FUD troll on this thread it's clear we're in full conspiracy theory mode, so let's trot out Echelon again. :)

    It's theorized that there exists a gigantic electronic SIGINT monitoring network, known as Echelon, which is operated across the Sort Of Free World by the United States, the United Kingdom, and other allies. The system is supposed to be powerful enough to monitor every phonecall, every email, every satellite communication, and handle *all of it simultaneously*. Pattern matching and keyword analysis are done by computers in realtime. Echelon can also make toast, predict stock market trends, and runs it's own psychic hotline.

    On a more serious note, how routine that kind of thing might be requires a more careful analysis of the laws of the United Kingdom, which are not the same as the laws of the United States. I don't know what the rules are over there governing the implicit privacy of information.

  8. Unlocked SIM cards and you... by Anonymous Coward · · Score: 4, Interesting
    The secure card IDs are registered to G. Bush, B. Bunny, and
    The modded firmware of some phones can Jam and hop Ids randomly to leech airtime. This is a real problem in some countries with mature cell nets.


    Node logs are not perfect.


    As every drug dealer busted can tell you that buying your phones in bulk and dropping them (Or purposely losing them in a public place) every 24h removes the chance of getting a tap put on in time.


    To live in Fear and Ignorance, only teaches one paranoia.

  9. Re:No need for tin foil hats here! by happyfrogcow · · Score: 2, Interesting

    to add to the details, it seems they were initially monitoring someone's phone which led them to the arrest of Khalid Shaikh Mohammed. A search of Mohammed's place yeilded "hundereds" of numbers. Tracing those hundreds of numbers "led investigators to as many as 6,000 phone numbers, which amounted to a virtual road map of Al Qaeda's operations"

  10. You are who you call by Anonymous Coward · · Score: 3, Interesting

    AT&T uses such patterns to look for deadbeats who sign up new calling plans to flee old debt.

  11. Re:Look at how fast they adapted by Anonymous Coward · · Score: 5, Interesting

    Bullshit.

    I have had the 911 tracking save a frieds leg before. We were on a motorcycle trip and the bike burst into flames. It was abou t11pm and I had no idea where I was. I call 911 from my cell. I told them I didn't know where I was but my friend was burned really bad. They said not to worry an ambulance and fire truck was on the way and they could get a good idea of my location from my cell phone. I told them that when they got close we would be the two guys standing about 50 yards from the burnign motorcycle. We laughed, my friend go taway without skin grafts, and insurance paid for my motorcycle. Now, lets get rid of that because you think you are important enough for our goverment to track.

  12. Follow the money... (somewhat OT) by Embedded+Geek · · Score: 4, Interesting
    I recall a TV movie years ago about the prosecution of Nazi war crimes, specifically about (*SPOILER ALERT*) the murders of Allied P.O.W.s by the Gestapo depicted in the movie "The Great Escape."

    One of the big problems after the war was that a lot of SS/Gestapo officers destroyed their records in an effort to claim that they'd served with other units, had had lower ranks, or hadn't even served (a similar thing that is being seen with senior Baathists in Iraq today). In the end, the prosecutors wound up proving the service histories of their suspects by finding that all of them had filled out their government pension paperwork when they'd joined their units or received promotions.

    Again, it was simple greed (or stinginess) that led to their downfall.

    --

    "Prepare for the worst - hope for the best."

    1. Re:Follow the money... (somewhat OT) by LostCluster · · Score: 2, Interesting

      If you're trying to completely throw away an identity, you have to leave behind your old accounts. Otherwise, there's a nice clear link that can be traced...

  13. Re:Look at how fast they adapted by Anonymous Coward · · Score: 1, Interesting
    There are presently two groups of conspiracy theorists. One - group A - cries that (1) X is full of evil and lies; (2) X is responsible for most bad things in this world; and (3) Y stands to protect you from this. The other - group B - cries that (1) Y is full of evil and lies; (2) Y is responsible for most bad things in this world; and (3) X stands to protect you from this.


    Let X be the US government, and Y be "the terrorists". Presently, group A are considered worthy of medication, while group B are laudable patriots. If we study most countries' histories, and generalise the term "terrorists", this still applies.

  14. Re:law & border by LostCluster · · Score: 3, Interesting

    Once the threshhold for an arrest warrent is met, such a person shouldn't be allowed to do much of anything without being arrested. They've already have been accused of some sort of crime, so the only thing left for the police to do is figure out where the person is and slap some cuffs on the person so they can hand them over to the courts.

  15. Some comment. by S3D · · Score: 3, Interesting

    Despite Swiss law about not buying SIM cards anonimously SIM cars still freely awailable for online shopper. But all this affair show that Al-Qaeda is not quite tech savvy. List of the phones on the paper ? Not encripted ? Well it's sound good :). They also didn't use smartphone with software voice scrambler, though scrambled talk also could rase suspicion. Don't know how many people scrambling them really. Not 100% sure but I think existing high-end smartphones powerful enough to produce unbreakable scrambling. Even they arn't encripted text messagess could be made practically unbreakable ...

  16. Why is this story published? by throbber · · Score: 4, Interesting

    I find it intersting that this story has been published at all. And with such a wide varity of direct quotes. They basically tell any would-be naughty person using a mobile phone to change the SIM card and the phone everytime they make a phone call.

    I'm reminded of a satelite photo from the mid '80s the showed a radar picture of the Nile Delta. Why would you publicly show a picture that told everyone that you could see 30 metres underground durring the Cold War?

    Just what can 'they' really monitor if 'they' know that you know that your moble phone is monitored?

  17. Re:law & border by Ironica · · Score: 4, Interesting

    now we have trackable cellphones (which are becoming ubiquitous), rfid chips, red-light cameras with OCR, etc. pretty easy and non-paranoid to imagine the automated abiity to track anyone anywhere.

    True, but thankfully, in many cases, the agencies who have control of the technology are very reluctant to cooperate with law enforcement.

    A week ago, my Transportation Planning class went on a field trip, where (among other locations) we visited the Route 91 Express Lanes and the ATSAC (made famous by "The Italian Job") Control Center. Route 91 has license plate cameras and OCR equipment which identifies toll evaders when they enter the Express Lanes as well as 35 incident cameras along the 10-mile route, and ATSAC has cameras all over Los Angeles which can watch intersections and streets for incidents. *Both* agencies mentioned that law enforcement has repeatedly approached them for cooperation and information, and that they *never* allow it without a court order.

    I think the reasoning was best expressed by the engineer at ATSAC, who said that if they used their cameras for enforcement, it wouldn't be long before the cameras were routinely vandalized and smashed to bits.

    It's not about what the technology can do; it's about who controls it and what they perceive as their responsibility.

    --
    Don't you wish your girlfriend was a geek like me?
  18. Al Queda Works For: +1, Interesting by Anonymous Coward · · Score: 1, Interesting

    Ever wonder why Osama bin Laden can't be found?

    To find out, listen to The World's Most Dangerous Leader

    Regards,
    Kilgore

  19. GSM phone ESN by HPNpilot · · Score: 2, Interesting

    I have a question about that NYT article. In the old cell phones there was a phone ESN and then the subscriber info entered in the NAM. So it was always possible to track a phone no matter what user had it. Now we have these GSM phones with SIM cards and the NYT article is a bit vague but seems to imply that the SIM card was the tracking mechanism and not the phone hardware. My question is, is there an embedded phone ESN in the GSM phone, or is the subscriber info entirely in the SIM card?

  20. Re:Anyone can do this in the UK by Anonymous Coward · · Score: 2, Interesting

    Of course you need the phone owners permission.

    I've lost my mobile phone... but since you'll have to type 1074 to get the trace approved, I can't get the sucker to tell me where the heck it is...

  21. Re:Look at how fast they adapted by Anonymous Coward · · Score: 1, Interesting

    That's not how Directional Antenna Arrays work at all. They work based on the phase differences of the signal between multiple antennas.

    The signal from your phone starts out in phase. As the signal propogates towards the multiple antennas, it takes a slightly different path to each antenna, ending up out of phase.

    These phase shifts are measured and the return signals are transmitted from the same multiple antennas using exactly the same phase shifts.

    The signal then returns to you following the same paths as your outgoing signal (in reverse) and converge on your phone in phase again.

    Note that the cell does not track your location, it merely tracks the phase shifting of your signals. This would only provide accurate location data in a featureless landscape. In a city (or even suburb), the path between you and the cell might involve multiple bounces off of buildings, etc.

  22. Location information by Savage-Rabbit · · Score: 2, Interesting

    ...is our privacy restored by removing the ability to track users' cell phones? Of course not.

    Location information is generated automatically by the GSM network. Depending on the layout of the GSM net you can determine in which GSM cell the user is and even (roughly) determine his location within the cell. The location info is required for the network to operate properly. All this article has really accomplished is that Al Quaeda is, as this is written, instructing its operatives to ditch their anonymous simms after a certain short period for new ones to make tracking more difficult or to abandon GSM phones alltogether. It would have been nice if more of those terrorist [EXPLETIVE DELETED] had fallen for this before it was advertised by the press. Loose lips sink ships, or burn skyscrapers in this case.

    --
    Only to idiots, are orders laws.
    -- Henning von Tresckow
  23. Re:Look at how fast they adapted by mpe · · Score: 2, Interesting

    And now that the terrorists have moved on to other techniques, is our privacy restored by removing the ability to track users' cell phones?

    You also have the "who watches the watchers" problem as a fundermental problem. With the position of "watcher" being highly attractive to criminal types.

  24. Re:Look at how fast they adapted by Shakrai · · Score: 2, Interesting
    Did it dawn on you that perhaps the Navy denied the existence of those anti-aircraft weapons in the submarine for security reasons?

    Please explain to me what the point would be to putting anti-aircraft weapons onboard submarines that couldn't use them without surfacing. Kind of defeats the point of a submarine.

    Please also explain to me how even if this was the case (a US Navy ship shot down the airliner) it would remain a secret? Do you really think the crew of the ship would remain silent?

    Anywau I always thought the vertical launch tubes were for nukular ICBMs, so what do I know?

    On the Ohio SSBN yes. The text that I quoted was talking about the 688I class attack submarine. On those subs the tubes are used for Tomahawks.

    --
    I want peace on earth and goodwill toward man.
    We are the United States Government! We don't do that sort of thing.
  25. gsm monitoring by Anonymous Coward · · Score: 3, Interesting

    Many years ago I worked for the first GSM operator in one of the countries in the middle east. We had setup the gsm network, Motorola was the overseer of the installation. All of us were Arab engineers, mostly native to the country we were setting up in. Anyway, we setup the network and were almost through with the testing phase. About a month before official start of operations (selling to the public), the Motorola project manager tells us that one of his guys will be installing equipment in the Switching Center, and that we would not be involved. At least one of us was always involved during any installation since we might have to troubleshoot later. We were in the OMC (operations and Maintenance center), and he told us that we would not have any access to this equipment. This guy later arrives with a shitload of equipment and installs it. We were explicitly told not to touch it. The only thing I and the others could tell was that it was for listening in to the GSM calls, since the very nature of GSM (TDMA, etc) makes it difficult to just use a radio scanner. Best we could figure out was where the wires came in from and went out to. Turns out they were connected to the general intelligence department of the mukhabarat (sort of like FBI). Thus the intelligence boys didn't have to listen over the wireless, they tapped straight into the switching center, leaping over the whole GSM complexities. I suspect the US, UK, et al can tap straight into GSM over-wireless. But hey, if you live in one of the "friends-of-the-US" countries, you can go straight to the center.