Mobile Threat Catalogue

Message Injection

Contribute

Threat Category: SMS / MMS / RCS

ID: CEL-19

Threat Description: Message injection can create a Denial of Service (DoS) attack when large numbers of text messages are sent to a recipient, blocking the ability of phone calls to be delivered to that user’s mobile device.

Threat Origin

Mitigating Attacks on Open Functionality in SMS-Capable Cellular Networks 1

Attacking SMS 2

Exploit Examples

Not Applicable

CVE Examples

Not Applicable

Possible Countermeasures

References

  1. P. Traynor et al., “Mitigating Attacks on Open Functionality in SMS-Capable Cellular Networks”, in IEEE/ACM Transaction on Networking 17.1, 2009; https://www.cise.ufl.edu/~traynor/papers/mobicom06.pdf [accessed 8/29/2016] 

  2. Z. Lackey, Attacking SMS, presented at Blackhat, 30 July 2009; www.blackhat.com/presentations/bh-usa-09/LACKEY/BHUSA09-Lackey-AttackingSMS-SLIDES.pdf [accessed 8/29/2016]