Rayhunter: IMSI Catchers We Have Found So Far

58 pointsposted 3 hours ago
by cooperq

6 Comments

neilv

20 minutes ago

If you make a Rayhunter, think twice before enabling its smartphone notification feature. The documentation doesn't directly warn, but presumably the notifications leak the fact that you use Rayhunter, and they go through centralized services. (With notifications being practically easier for some parties to check centrally, than how the device appears to the various cellular network towers.)

As situations sometimes become complicated in a locale, I suppose that this leaking could get you flagged as a potential troublemaker, or included in a small pool of persons of interest regarding an event/incident, etc.

(Most people neither think about nor are concerned with such possibilities, but if you find this device fun or interesting, then I'd guess probably you are more likely than the average person to want to reconcile how it works, with your fun/interesting/real threat model.)

Per <https://efforg.github.io/rayhunter/configuration.html>:

> ntfy URL for Sending Notifications, which allows setting a ntfy URL to which notifications of new detections will be sent. The topic should be unique to your device, e.g., https://ntfy.sh/rayhunter_notifications_ba9di7ie or https://myserver.example.com/rayhunter_notifications_ba9di7i.... The ntfy Android and iOS apps can then be used to receive notifications. More information can be found in the ntfy docs.

Scoundreller

2 hours ago

When they say the recommended hotspot device used for this is cheap, they really are.

The recommended device for the Americas is US$11 (refurbished) on eBay with free US shipping. US$14 for shipping to Canada :(

https://www.ebay.com/itm/276624956523

and brand new units for US$20

There’s another seller with 50 for US$160

buildsjets

an hour ago

Cool, an IMSI Catcher Catcher. I am reminded of the otherwise unremarkable 1998 action comedy "The Big Hit."

Not only does this trace buster keep a buster from tracing your call, but it can also trace the MF that's tracing your shit. But if them MFs got a trace buster too, that's why I gots this trace buster BUSTER. See when a MF try to bust your trace with a trace buster, this MF gonna bust the MF trace buster that's busting your trace.

https://www.youtube.com/watch?v=2VY_xxL2jL0

kstrauser

2 hours ago

This is such a neat and fun project! I saw these flying off the shelf at Def Con.

tamimio

19 minutes ago

> To protect yourself from Cellebrite you can use a strong password, turn off biometric unlocks, and keep your phone up to date.

To add, if you truly want to prevent any forensics on your iPhone (especially if you are traveling), make sure to pair lock your iPhone to a MacBook you leave in your house.

https://arkadiyt.com/2019/10/07/pair-locking-your-iphone-wit...