Crofton Black Profile picture
Oct 4 15 tweets 4 min read Read on X
Tough talk from UK regulator @Ofcom around surveillance actors' access to phone networks - notable because it highlights the UK as one of world's most dangerous conduits for global location tracking and account cracking ofcom.org.uk/phones-and-bro…
The report looks at "GT leasing": what happens when phone companies rent out their "Global Titles", the mobile network access nodes allocated to them by the regulator. As many revelations over the years have shown, GT leasing is a cesspool, and the Ofcom report acknowledges this
Clear finding: UK GTs “are one of the most significant and persistent sources of malicious signalling traffic affecting mobile networks globally” Image
Why does this matter? Again, clear finding: real use cases with real associated harms Image
Image
What might be surprising to some is just how high the UK scored in the threat index compiled by security specialist @EneaGovBodies: the 6th most dangerous country in the world by "relative volume and types of malicious signalling observed" Image
As the report highlights, one reason UK GTs are attractive to threat actors is the presumption of trust: in my view some other not so distant countries like Sweden and Switzerland should have a think about this too Image
The report also notes how volatility in the market creates an accountability vacuum for leased GTs: companies get bought or go bust and soon no one knows who's using the old leased nodes or for what Image
Industry body @GSMA has been trying to get operators around the world to act more responsibly around GT leasing but Ofcom isn't impressed and is calling for a ban Image
I'd advocate saying the quiet part of the report out loud: sloppy commercial practices by global north companies (leasing GTs for a bit of cash on the side) are especially harmful in the global south (less secure networks, greater risks to people)
Ofcom highlights investigations from @LHreports and our colleagues @IrpiMedia @citizenlab @guardian among others
It's commendable that @Ofcom is having an open conversation about what has long been a murky problem. Other regulators esp in places like Sweden and Switzerland need to wake up tho if this dark market is to be cleaned up any time soon
I get the impression from some of these regulators that security = their security; Ofcom report is important in highlighting worldwide nature of threat and significant role of UK as an enabler within this
Anyway a few links to end with: earlier this year @LHreports and @IrpiMedia exposed a UK-based location tracking firm using leased GTs from UK, Switzerland, Cambodia and Pacific Islands irpimedia.irpi.eu/setelefonando-…
In our "Ghost in the Network" collab with @haaretzcom @derspiegel @tagesanzeiger @Mediapart last year we examined a whole host of activities worldwide including account cracks by UK GTs lighthousereports.com/investigation/…
Coordinated efforts to track fleeing princess Latifa al-Maktoum in 2018 included UK GTs from offshore dependencies Jersey and Guernsey thebureauinvestigates.com/stories/2020-1…

• • •

Missing some Tweet in this thread? You can try to force a refresh
 

Keep Current with Crofton Black

Crofton Black Profile picture

Stay in touch and get notified when new unrolls are available from this author!

Read all threads

This Thread may be Removed Anytime!

PDF

Twitter may remove this content at anytime! Save it as PDF for later use!

Try unrolling a thread yourself!

how to unroll video
  1. Follow @ThreadReaderApp to mention us!

  2. From a Twitter thread mention us with a keyword "unroll"
@threadreaderapp unroll

Practice here first or read more on our help page!

More from @cr0ft0n

Nov 30, 2022
Spyware companies usually like to fly under the radar. Here's a story about one that didn't. lighthousereports.nl/investigation/…
Since last summer thanks to @FbdnStories and friends the most notorious name in hacking software has been Israel's NSO Group. They got into big trouble: sanctioned by the US gov, sued by Apple, scrutinised by the EU parliament.
But what if the tribulations of NSO Group helped other spyware sellers to thrive? And when they do thrive, what happens to the countries where they operate?
Read 30 tweets
Aug 29, 2022
Meet Tykelab - the surveillance company tracking people around the world from a small office in Rome … via the Pacific Ocean. lighthousereports.nl/investigation/…
From its website you’d think it’s just another telecom services provider - not a lynchpin of the European intercept industry.
But we obtained confidential data showing that it’s been routing tens of thousands of tracking queries through global mobile networks - queries which can force networks to disclose phone users’ locations as well as other sensitive info.
Read 30 tweets

Did Thread Reader help you today?

Support us! We are indie developers!


This site is made by just two indie developers on a laptop doing marketing, support and development! Read more about the story.

Become a Premium Member ($3/month or $30/year) and get exclusive features!

Become Premium

Don't want to be a Premium member but still want to support us?

Make a small donation by buying us coffee ($5) or help with server cost ($10)

Donate via Paypal

Or Donate anonymously using crypto!

Ethereum

0xfe58350B80634f60Fa6Dc149a72b4DFbc17D341E copy

Bitcoin

3ATGMxNzCUFzxpMCHL5sWSt4DVtS8UqXpi copy

Thank you for your support!

Follow Us!

:(