Chinese Invent Bargain Basement GPS Spoofer

August 12, 2015

Written by Editor

Hacking a Phone’s GPS May Have Just Got Easier
Forbes Tech
7 Aug 2015
Parmy Olsen

One of the drawbacks of our increasingly connected world is the proliferation of new wireless connections to hack. More worrying is when hackers finding cheaper and more accessible ways to exploit those vulnerabilities.

For some time it’s been possible to spoof the location of a smartphone or any other device that is connected to a global position system (GPS), but to do so required a sophisticated and often expensive GPS emulator that can cost thousands of dollars.

Now a team of researchers at Chinese Internet security firm Qihoo 360 claim they’ve found a way to make a GPS emulator that can falsify the GPS location of smartphones and in-car navigation systems, more cheaply. (Qihoo’s researchers famously hacked a Tesla Model S last year, taking control of the car’s lock, horn and flashing lights.)

Lead researcher Lin Huang, who will be the first Chinese woman to present at the Defcon security conference later today, says her team used common software-defined radio (SDR) tools to create their module and software. They also used open-source software found on Github that had come from researchers at a Chinese university and some of their own code.

The SDR or radio tools that Huang used include HackRF, once described by Forbes as the $300 wireless Swiss army knife for hackers. The small, relatively cheap board can move between radio frequencies, read and transmit to a broad range of radio frequencies – from the low range used by FM radio to the higher frequencies of WiFi or other more cutting edge protocols.

On smartphones the attack targets navigation signals being delivered at the chipset level, meaning there’s little difference if the device is made by Apple or an Android vendor.

“This is a very low-cost way,” to make a GPS emulator, Huang said on the sidelines of the annual security conference in Las Vegas, speaking with some help from a translator. “This method increases the risk for GPS devices.”

[big_button url=”http://www.forbes.com/sites/parmyolson/2015/08/07/gps-spoofing-hackers-defcon/”]Read More[/big_button]

What Can YOU Do? How Can YOU Help?

PNT is the quiet backbone of everything but too many leaders still don’t see the risk.

But you do. You understand the systems, the dependencies, the failure chains. That insight is rare — and it’s exactly what your country needs right now. Contact your government leaders and industry decision-makers and tell them resilient PNT isn’t a feature — it’s the foundation everything else depends on.

Start the Conversation

Use our Resilient PNT Key Talking Points to make the case.

U.S. Advocates

Find your representatives at Congress.gov, then use our email template to reach them in minutes.

When you get a response, let us know. Every conversation strengthens the mission.

More PNT News

Russia attacks NATO with drones – The Telegraph

Russia attacks NATO with drones – The Telegraph

Image: Shutterstock What's new: A report of Russia spoofing Ukrainian drones and sending them against NATO targets. Why it's important: Russia is attacking NATO kinetically. This is not just electronic warfare anymore. Secondarily: If true, it shows Ukraine is still...

Canada Ending Radio Time Signals (accuracy

Canada Ending Radio Time Signals (accuracy <1ms)

Image: Shutterstock What's new: Canada has announced it is cancelling its short wave time signals as of the 22nd of June 2026. Why it's important: The other sources of official time from the Canadian government (National Research Council, or NRC) are less accurate...

“We can track Starlink users…” – Fast Company

“We can track Starlink users…” – Fast Company

Image: Shutterstock What's new: A report that multiple companies are offering governments the ability to geolocate Starlink terminals.  Why it's important: Security concerns - an adversary could target, kidnap, kill, etc. users. Privacy concerns - user location data...

Get PNT News in Your Inbox