{"id":393,"date":"2024-03-06T11:12:37","date_gmt":"2024-03-06T08:12:37","guid":{"rendered":"https:\/\/sms-txt.net\/?p=393"},"modified":"2024-09-05T12:45:59","modified_gmt":"2024-09-05T09:45:59","slug":"mis-on-ss7-turvaprobleem","status":"publish","type":"post","link":"https:\/\/sms-txt.net\/et\/ss7-sms\/mis-on-ss7-turvaprobleem\/","title":{"rendered":"Mis on SS7 turvaviga?"},"content":{"rendered":"<p>Paljud meist on kindlasti tundnud stsenaariume, kui meie internetipangas\u00fcsteem palub meil ikka ja j\u00e4lle andmeid sisestada. Sest s\u00fcsteem ei suuda meie kontoandmeid tuvastada. See ei ole mitte ainult murettekitav, vaid ka \u00e4rritav olukord. Me peame sisestama autoriseerimiskoodi, et kontrollida oma identiteeti.<\/p>\n<p>Selleks saame pangast s\u00f5numi v\u00f5i telefonik\u00f5ne. Mitte ainult pangakontod ei kasuta seda teabe saamise s\u00fcsteemi. Aga ka teised finantsorganisatsioonid koguvad andmeid autentimiseks \u00fcle maailma.<\/p>\n<p>2019. aasta veebruaris t\u00f5statas Metro Banki h\u00e4kkimine suure probleemi signalisatsioonis\u00fcsteemi 7 (SS7) puhul. Mobiilsideoperaatorid (MNO) kasutavad seda protokollide kogumit andmete edastamiseks. SS7 on rahvusvaheline telekommunikatsioonistandard k\u00f5nede, s\u00f5numite ja muude andmete edastamiseks. See s\u00fcsteem tagab teabe ja tarbijate tasude kehtivuse. Mobiilsideoperaatorid kasutavad seda SS7-s\u00fcsteemi laialdaselt andmeedastuseks. See aitab kasutajatel andmeside r\u00e4ndluse puhul, kui nad reisivad m\u00f5nda teise riiki.<\/p>\n<p>1974. aastal, kui SS7 leiutati, ei olnud \u00fchtegi haavatavuse probleemi. SS7 kasutuselev\u00f5tu ajal oli ainult piiratud arv v\u00f5rguoperaatoreid. Kuid tehnoloogia ja mobiilsideoperaatorite kiire kasv andsid sellele ruumi. N\u00fc\u00fcd, kus on palju mobiilsideoperaatoreid, on v\u00f5imalik h\u00e4kkida mis tahes mobiilseadet, mis kasutab SS7-s\u00fcsteemi.<\/p>\n<p>Pole kahtlust, et need mobiilsideoperaatorid v\u00f5itlevad oma kasutajate kaitsmise nimel. Nad p\u00fc\u00fcavad v\u00e4lja t\u00f6\u00f6tada parimad turvameetmed, kuid ka nende vastased on \u00f5ppinud. Teadmiste v\u00f5rdne levik on muutnud s\u00fcsteemi kaitsmise nende nutikate sissetungijate eest keeruliseks. Kui m\u00f5ni mobiilsideoperaator v\u00f5tab kasutusele m\u00f5ne j\u00e4lgimisseadme, leiavad petturid ka lahenduse selle \u00fcletamiseks.<\/p>\n<p>Loomulikult on nad \u00f5ppinud, kvalifitseeritud ja varustatud h\u00e4kkimisvahendite ja -strateegiatega. Nende abiga p\u00e4\u00e4sevad nad edukalt ligi neile huvipakkuvatele \u00fchendatud telefoniv\u00f5rkudele. Need h\u00e4kkerid kasutavad telefoninumbreid ja kasutavad SS7-protokolli, et p\u00e4\u00e4seda nende haavatavuste juurde.<\/p>\n<p>K\u00f5ik mobiilsideoperaatorite eksperdid ja tehnoloogiad on nende SS7 trag\u00f6\u00f6diatega h\u00e4sti kursis. Tehnoloogia keerukuse t\u00f5ttu on neil raske leida p\u00fcsivat lahendust nende haavatavuste vastu. Paljud mobiilsides\u00fcsteemid otsustasid nende riskide vastu v\u00f5idelda, kuid seisid silmitsi raskete ja nutikate takistustega. Enamasti andmete r\u00e4ndluse ajal ei saa SS7-i filtreerida v\u00f5rgu ulatuse t\u00f5ttu.<\/p>\n<p>Kui h\u00e4kkerid p\u00e4\u00e4sevad SS7-s\u00fcsteemile ligi, saavad nad h\u00f5lpsasti k\u00e4tte mobiiljuhtimise. Nad saavad vastu v\u00f5tta k\u00f5nesid, s\u00f5numeid ja edastada neid. Mobiilsideoperaatoritel ja tehnoloogidel muutub v\u00f5imatuks petturite asukoha v\u00e4ljaselgitamine.<\/p>\n<p>Kuigi 2020. aastal on kehtestatud teatavad autentsed ja ranged turvameetmed. Kuid SS7 haavatavus on endiselt nende h\u00e4kkerite meelevallas. IT-eksperdid ja tehnoloogid v\u00f5tavad 4G-v\u00f5rkude jaoks kasutusele uued protokollid kui l\u00e4bim\u00f5\u00f5t. Kuigi see kindlustab \u00fchenduse, on ikkagi olemas haavatavuse v\u00f5imalused. Kuna 4G v\u00f5rk kasutab k\u00f5nede ja s\u00f5numite edastamiseks ka vana SS7 \u00fchilduvust.<\/p>\n<p>Turvaline ja kaitstud protokoll v\u00f5ib aidata nende haavatavuste eest. Sellise turvalise protokolli kavandamisel on olulised m\u00f5ned tegurid. Esiteks tuleb v\u00e4ltida riske p\u00f5hjustavaid samme. Nii et sissetungijate k\u00f5rvaldamine turvalisest ja t\u00f5husast sides\u00fcsteemist v\u00e4hendab riski. Teiseks peaksid mobiilsideoperaatorid ja teised asjaomased ettev\u00f5tted neid juhtumeid algusest peale regulaarselt j\u00e4lgima. Seega aitavad need kaasa nende haavatavate h\u00e4kkerite likvideerimisele mobiilse SS7-s\u00fcsteemi.<\/p>","protected":false},"excerpt":{"rendered":"<p>Paljud meist on kindlasti tundnud stsenaariume, kui meie internetipangas\u00fcsteem palub meil ikka ja j\u00e4lle andmeid sisestada. Sest s\u00fcsteem ei suuda meie kontoandmeid tuvastada. See ei ole mitte ainult murettekitav, vaid ka \u00e4rritav olukord. Me peame sisestama autoriseerimiskoodi, et kontrollida oma identiteeti. Selleks me...<\/p>","protected":false},"author":1,"featured_media":411,"comment_status":"closed","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[1],"tags":[],"class_list":["post-393","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-ss7-sms"],"yoast_head":"<!-- This site is optimized with the Yoast SEO Premium plugin v26.7 (Yoast SEO v26.7) - https:\/\/yoast.com\/wordpress\/plugins\/seo\/ -->\n<title>What is SS7 Security Flaw?<\/title>\n<meta name=\"robots\" content=\"index, follow, max-snippet:-1, max-image-preview:large, max-video-preview:-1\" \/>\n<link rel=\"canonical\" href=\"https:\/\/sms-txt.net\/et\/ss7-sms\/mis-on-ss7-turvaprobleem\/\" \/>\n<meta property=\"og:locale\" content=\"et_EE\" \/>\n<meta property=\"og:type\" content=\"article\" \/>\n<meta property=\"og:title\" content=\"What is SS7 Security Flaw?\" \/>\n<meta property=\"og:description\" content=\"Many of us must have felt the scenarios when our online banking system asks us to enter our data again and again. Because the system fails to detect our account details. It is not only an alarming but irritating situation. We have to enter an authorization code to verify our identity. For this purpose, we...\" \/>\n<meta property=\"og:url\" content=\"https:\/\/sms-txt.net\/et\/ss7-sms\/mis-on-ss7-turvaprobleem\/\" \/>\n<meta property=\"og:site_name\" content=\"SS7 Hacking\" \/>\n<meta property=\"article:published_time\" content=\"2024-03-06T08:12:37+00:00\" \/>\n<meta property=\"article:modified_time\" content=\"2024-09-05T09:45:59+00:00\" \/>\n<meta property=\"og:image\" content=\"https:\/\/sms-txt.net\/wp-content\/uploads\/2020\/06\/ss7-smsintercept.jpg\" \/>\n\t<meta property=\"og:image:width\" content=\"2000\" \/>\n\t<meta property=\"og:image:height\" content=\"761\" \/>\n\t<meta property=\"og:image:type\" content=\"image\/jpeg\" \/>\n<meta name=\"author\" content=\"ss7\" \/>\n<meta name=\"twitter:card\" content=\"summary_large_image\" \/>\n<meta name=\"twitter:label1\" content=\"Written by\" \/>\n\t<meta name=\"twitter:data1\" content=\"ss7\" \/>\n\t<meta name=\"twitter:label2\" content=\"Est. reading time\" \/>\n\t<meta name=\"twitter:data2\" content=\"3 minutes\" \/>\n<script type=\"application\/ld+json\" class=\"yoast-schema-graph\">{\"@context\":\"https:\/\/schema.org\",\"@graph\":[{\"@type\":\"Article\",\"@id\":\"https:\/\/sms-txt.net\/ss7-sms\/what-is-ss7-security-flaw\/#article\",\"isPartOf\":{\"@id\":\"https:\/\/sms-txt.net\/ss7-sms\/what-is-ss7-security-flaw\/\"},\"author\":{\"name\":\"ss7\",\"@id\":\"https:\/\/sms-txt.net\/#\/schema\/person\/fa482bf9132db58e46bb9c9df2d73be0\"},\"headline\":\"What is SS7 Security Flaw?\",\"datePublished\":\"2024-03-06T08:12:37+00:00\",\"dateModified\":\"2024-09-05T09:45:59+00:00\",\"mainEntityOfPage\":{\"@id\":\"https:\/\/sms-txt.net\/ss7-sms\/what-is-ss7-security-flaw\/\"},\"wordCount\":553,\"publisher\":{\"@id\":\"https:\/\/sms-txt.net\/#organization\"},\"image\":{\"@id\":\"https:\/\/sms-txt.net\/ss7-sms\/what-is-ss7-security-flaw\/#primaryimage\"},\"thumbnailUrl\":\"https:\/\/sms-txt.net\/wp-content\/uploads\/2020\/06\/ss7-smsintercept.jpg\",\"articleSection\":[\"SS7\"],\"inLanguage\":\"et\"},{\"@type\":\"WebPage\",\"@id\":\"https:\/\/sms-txt.net\/ss7-sms\/what-is-ss7-security-flaw\/\",\"url\":\"https:\/\/sms-txt.net\/ss7-sms\/what-is-ss7-security-flaw\/\",\"name\":\"What is SS7 Security Flaw?\",\"isPartOf\":{\"@id\":\"https:\/\/sms-txt.net\/#website\"},\"primaryImageOfPage\":{\"@id\":\"https:\/\/sms-txt.net\/ss7-sms\/what-is-ss7-security-flaw\/#primaryimage\"},\"image\":{\"@id\":\"https:\/\/sms-txt.net\/ss7-sms\/what-is-ss7-security-flaw\/#primaryimage\"},\"thumbnailUrl\":\"https:\/\/sms-txt.net\/wp-content\/uploads\/2020\/06\/ss7-smsintercept.jpg\",\"datePublished\":\"2024-03-06T08:12:37+00:00\",\"dateModified\":\"2024-09-05T09:45:59+00:00\",\"breadcrumb\":{\"@id\":\"https:\/\/sms-txt.net\/ss7-sms\/what-is-ss7-security-flaw\/#breadcrumb\"},\"inLanguage\":\"et\",\"potentialAction\":[{\"@type\":\"ReadAction\",\"target\":[\"https:\/\/sms-txt.net\/ss7-sms\/what-is-ss7-security-flaw\/\"]}]},{\"@type\":\"ImageObject\",\"inLanguage\":\"et\",\"@id\":\"https:\/\/sms-txt.net\/ss7-sms\/what-is-ss7-security-flaw\/#primaryimage\",\"url\":\"https:\/\/sms-txt.net\/wp-content\/uploads\/2020\/06\/ss7-smsintercept.jpg\",\"contentUrl\":\"https:\/\/sms-txt.net\/wp-content\/uploads\/2020\/06\/ss7-smsintercept.jpg\",\"width\":2000,\"height\":761,\"caption\":\"ss7 sms intercept\"},{\"@type\":\"BreadcrumbList\",\"@id\":\"https:\/\/sms-txt.net\/ss7-sms\/what-is-ss7-security-flaw\/#breadcrumb\",\"itemListElement\":[{\"@type\":\"ListItem\",\"position\":1,\"name\":\"Home\",\"item\":\"https:\/\/sms-txt.net\/\"},{\"@type\":\"ListItem\",\"position\":2,\"name\":\"What is SS7 Security Flaw?\"}]},{\"@type\":\"WebSite\",\"@id\":\"https:\/\/sms-txt.net\/#website\",\"url\":\"https:\/\/sms-txt.net\/\",\"name\":\"SS7 Hacking\",\"description\":\"\",\"publisher\":{\"@id\":\"https:\/\/sms-txt.net\/#organization\"},\"potentialAction\":[{\"@type\":\"SearchAction\",\"target\":{\"@type\":\"EntryPoint\",\"urlTemplate\":\"https:\/\/sms-txt.net\/?s={search_term_string}\"},\"query-input\":{\"@type\":\"PropertyValueSpecification\",\"valueRequired\":true,\"valueName\":\"search_term_string\"}}],\"inLanguage\":\"et\"},{\"@type\":\"Organization\",\"@id\":\"https:\/\/sms-txt.net\/#organization\",\"name\":\"SS7\",\"url\":\"https:\/\/sms-txt.net\/\",\"logo\":{\"@type\":\"ImageObject\",\"inLanguage\":\"et\",\"@id\":\"https:\/\/sms-txt.net\/#\/schema\/logo\/image\/\",\"url\":\"https:\/\/yellow-jaguar-454368.hostingersite.com\/wp-content\/uploads\/2020\/05\/logo.jpg\",\"contentUrl\":\"https:\/\/yellow-jaguar-454368.hostingersite.com\/wp-content\/uploads\/2020\/05\/logo.jpg\",\"width\":866,\"height\":680,\"caption\":\"SS7\"},\"image\":{\"@id\":\"https:\/\/sms-txt.net\/#\/schema\/logo\/image\/\"}},{\"@type\":\"Person\",\"@id\":\"https:\/\/sms-txt.net\/#\/schema\/person\/fa482bf9132db58e46bb9c9df2d73be0\",\"name\":\"ss7\"}]}<\/script>\n<!-- \/ Yoast SEO Premium plugin. -->","yoast_head_json":{"title":"Mis on SS7 turvaviga?","robots":{"index":"index","follow":"follow","max-snippet":"max-snippet:-1","max-image-preview":"max-image-preview:large","max-video-preview":"max-video-preview:-1"},"canonical":"https:\/\/sms-txt.net\/et\/ss7-sms\/mis-on-ss7-turvaprobleem\/","og_locale":"et_EE","og_type":"article","og_title":"What is SS7 Security Flaw?","og_description":"Many of us must have felt the scenarios when our online banking system asks us to enter our data again and again. Because the system fails to detect our account details. It is not only an alarming but irritating situation. We have to enter an authorization code to verify our identity. For this purpose, we...","og_url":"https:\/\/sms-txt.net\/et\/ss7-sms\/mis-on-ss7-turvaprobleem\/","og_site_name":"SS7 Hacking","article_published_time":"2024-03-06T08:12:37+00:00","article_modified_time":"2024-09-05T09:45:59+00:00","og_image":[{"width":2000,"height":761,"url":"https:\/\/sms-txt.net\/wp-content\/uploads\/2020\/06\/ss7-smsintercept.jpg","type":"image\/jpeg"}],"author":"ss7","twitter_card":"summary_large_image","twitter_misc":{"Written by":"ss7","Est. reading time":"3 minutes"},"schema":{"@context":"https:\/\/schema.org","@graph":[{"@type":"Article","@id":"https:\/\/sms-txt.net\/ss7-sms\/what-is-ss7-security-flaw\/#article","isPartOf":{"@id":"https:\/\/sms-txt.net\/ss7-sms\/what-is-ss7-security-flaw\/"},"author":{"name":"ss7","@id":"https:\/\/sms-txt.net\/#\/schema\/person\/fa482bf9132db58e46bb9c9df2d73be0"},"headline":"What is SS7 Security Flaw?","datePublished":"2024-03-06T08:12:37+00:00","dateModified":"2024-09-05T09:45:59+00:00","mainEntityOfPage":{"@id":"https:\/\/sms-txt.net\/ss7-sms\/what-is-ss7-security-flaw\/"},"wordCount":553,"publisher":{"@id":"https:\/\/sms-txt.net\/#organization"},"image":{"@id":"https:\/\/sms-txt.net\/ss7-sms\/what-is-ss7-security-flaw\/#primaryimage"},"thumbnailUrl":"https:\/\/sms-txt.net\/wp-content\/uploads\/2020\/06\/ss7-smsintercept.jpg","articleSection":["SS7"],"inLanguage":"et"},{"@type":"WebPage","@id":"https:\/\/sms-txt.net\/ss7-sms\/what-is-ss7-security-flaw\/","url":"https:\/\/sms-txt.net\/ss7-sms\/what-is-ss7-security-flaw\/","name":"Mis on SS7 turvaviga?","isPartOf":{"@id":"https:\/\/sms-txt.net\/#website"},"primaryImageOfPage":{"@id":"https:\/\/sms-txt.net\/ss7-sms\/what-is-ss7-security-flaw\/#primaryimage"},"image":{"@id":"https:\/\/sms-txt.net\/ss7-sms\/what-is-ss7-security-flaw\/#primaryimage"},"thumbnailUrl":"https:\/\/sms-txt.net\/wp-content\/uploads\/2020\/06\/ss7-smsintercept.jpg","datePublished":"2024-03-06T08:12:37+00:00","dateModified":"2024-09-05T09:45:59+00:00","breadcrumb":{"@id":"https:\/\/sms-txt.net\/ss7-sms\/what-is-ss7-security-flaw\/#breadcrumb"},"inLanguage":"et","potentialAction":[{"@type":"ReadAction","target":["https:\/\/sms-txt.net\/ss7-sms\/what-is-ss7-security-flaw\/"]}]},{"@type":"ImageObject","inLanguage":"et","@id":"https:\/\/sms-txt.net\/ss7-sms\/what-is-ss7-security-flaw\/#primaryimage","url":"https:\/\/sms-txt.net\/wp-content\/uploads\/2020\/06\/ss7-smsintercept.jpg","contentUrl":"https:\/\/sms-txt.net\/wp-content\/uploads\/2020\/06\/ss7-smsintercept.jpg","width":2000,"height":761,"caption":"ss7 sms intercept"},{"@type":"BreadcrumbList","@id":"https:\/\/sms-txt.net\/ss7-sms\/what-is-ss7-security-flaw\/#breadcrumb","itemListElement":[{"@type":"ListItem","position":1,"name":"Home","item":"https:\/\/sms-txt.net\/"},{"@type":"ListItem","position":2,"name":"What is SS7 Security Flaw?"}]},{"@type":"WebSite","@id":"https:\/\/sms-txt.net\/#website","url":"https:\/\/sms-txt.net\/","name":"SS7 h\u00e4kkimine","description":"","publisher":{"@id":"https:\/\/sms-txt.net\/#organization"},"potentialAction":[{"@type":"SearchAction","target":{"@type":"EntryPoint","urlTemplate":"https:\/\/sms-txt.net\/?s={search_term_string}"},"query-input":{"@type":"PropertyValueSpecification","valueRequired":true,"valueName":"search_term_string"}}],"inLanguage":"et"},{"@type":"Organization","@id":"https:\/\/sms-txt.net\/#organization","name":"SS7","url":"https:\/\/sms-txt.net\/","logo":{"@type":"ImageObject","inLanguage":"et","@id":"https:\/\/sms-txt.net\/#\/schema\/logo\/image\/","url":"https:\/\/yellow-jaguar-454368.hostingersite.com\/wp-content\/uploads\/2020\/05\/logo.jpg","contentUrl":"https:\/\/yellow-jaguar-454368.hostingersite.com\/wp-content\/uploads\/2020\/05\/logo.jpg","width":866,"height":680,"caption":"SS7"},"image":{"@id":"https:\/\/sms-txt.net\/#\/schema\/logo\/image\/"}},{"@type":"Person","@id":"https:\/\/sms-txt.net\/#\/schema\/person\/fa482bf9132db58e46bb9c9df2d73be0","name":"ss7"}]}},"_links":{"self":[{"href":"https:\/\/sms-txt.net\/et\/wp-json\/wp\/v2\/posts\/393","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/sms-txt.net\/et\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/sms-txt.net\/et\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/sms-txt.net\/et\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/sms-txt.net\/et\/wp-json\/wp\/v2\/comments?post=393"}],"version-history":[{"count":0,"href":"https:\/\/sms-txt.net\/et\/wp-json\/wp\/v2\/posts\/393\/revisions"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/sms-txt.net\/et\/wp-json\/wp\/v2\/media\/411"}],"wp:attachment":[{"href":"https:\/\/sms-txt.net\/et\/wp-json\/wp\/v2\/media?parent=393"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/sms-txt.net\/et\/wp-json\/wp\/v2\/categories?post=393"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/sms-txt.net\/et\/wp-json\/wp\/v2\/tags?post=393"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}