【24h】

Mobile Terminated SMS Billing — Exploits and Security Analysis

机译:移动终止的SMS计费-漏洞和安全性分析

获取原文

摘要

This paper analyses mobile terminated (MT) SMS billing, an area of mobile commerce which has undergone massive growth with the maturation of mobile content delivery on 2.5G mobile networks. Although the short message service for GSM devices was never designed to be a facilitator for micropayments, premium SMS services have been embraced by many network operators worldwide. We investigate its inherent insecurity as a payment solution and show how existing systems can be used for fraud or to deceive users. From a UK perspective, we see how the standardisation of mobile platforms with J2ME combined with WAP delivery have enabled the rise of the mobile content industry, with premium SMS as the most method common of billing. Threats to the established business models are addressed, with particular attention paid to the potential for severe disruption from mobile (SMS) spam. Furthermore, we present attacks on MT SMS systems, showing how a malicious attacker could damage the mobile content industry by undermining consumer confidence in premium rate SMS payment solutions.
机译:本文分析了移动终端(MT)SMS计费,随着2.5G移动网络上的移动内容交付的成熟,该领域已经历了巨大的增长,成为移动商务领域。尽管从未将用于GSM设备的短消息服务设计为促进小额支付的手段,但全球许多网络运营商已经接受了高级SMS服务。我们将调查其固有的不安全性作为一种支付解决方案,并展示如何将现有系统用于欺诈或欺骗用户。从英国的角度来看,我们将J2ME与WAP交付相结合的移动平台标准化如何推动了移动内容行业的兴起,而付费SMS是最常见的计费方式。解决了对已建立的业务模型的威胁,并特别注意了移动(SMS)垃圾邮件可能造成严重破坏的可能性。此外,我们介绍了对MT SMS系统的攻击,显示了恶意攻击者如何通过破坏消费者对溢价SMS支付解决方案的信心来破坏移动内容行业。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号