-
Notifications
You must be signed in to change notification settings - Fork 2
Open
Labels
Description
We will be building upon the PDCCH sniffer in this repo to support RACH replay attacks. Here are the steps involved in the replay attack.
- Listen for a PDCCH message
- brute force the CRC using a list of possible RNTIs
- Once the RNTI is know cache for later use in decoding
- Modify the DCI to contain incorrect sync info
- Package the DCI with a new CRC to the UE
This attack will hopefully result in UE disconnect, and can be targeted towards certain users.
Metadata
Metadata
Assignees
Labels
Type
Projects
Status
Nice to have