Fraudulent Base Station Detection via Identity Request Correlation

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Current methods for detecting fraudulent base stations are cumbersome and computationally intensive, lacking effective security mechanisms for mutual authentication between user equipment and base stations, allowing malicious stations to capture subscriber identifiers.

Innovation Solution

A system comprising an analyser device and multiple radio devices that report identity request messages for long-term identifiers, identifying a base station as fraudulent if multiple devices receive such messages within a threshold time duration, thereby exploiting the rarity of simultaneous or closely timed identity requests from legitimate base stations.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Reliability

If device-assisted mechanisms are used for detection of fraudulent base stations, then detection capability is improved, but the process becomes cumbersome and time-consuming

Engineering Contradiction:
Improvedetection capabilityVSAvoidoperational simplicity
Core Design Contradiction:
ReliabilityVSEase of operation

Solution Approach 1:

The system enables fraudulent base stations to detect and identify themselves through the behavior they exhibit (sending IDENTITY REQUEST messages). Multiple radio devices monitor for these messages and automatically report them to the analyser device, which then identifies the fraudulent base station. This self-identifying mechanism eliminates the need for complex manual detection procedures while maintaining high detection reliability.

Inventive Principle:
Principle #25Self-service

2Measurement precision

If network-assisted mechanisms are used for detection of fraudulent base stations, then detection accuracy is improved, but computational requirements and complexity increase

Engineering Contradiction:
Improvedetection accuracyVSAvoidsystem complexity
Core Design Contradiction:
Measurement precisionVSDevice complexity

Solution Approach 1:

The detection system is segmented into simple functional components: radio devices that merely monitor and report IDENTITY REQUEST messages, and an analyser device that performs the identification logic. Each component has a simple, well-defined function. The analyser device receives reports from multiple radio devices and applies a simple time-based correlation algorithm to identify fraudulent base stations, avoiding complex computational requirements while maintaining high detection accuracy.

Inventive Principle:
Principle #1Segmentation

3Ease of operation

If manual observation methods are used to detect fraudulent base stations, then operational control is improved, but detection speed and efficiency decrease

Engineering Contradiction:
Improveoperational controlVSAvoiddetection efficiency
Core Design Contradiction:
Ease of operationVSProductivity

Solution Approach 1:

The system performs preliminary monitoring and collection of IDENTITY REQUEST messages from multiple radio devices before the identification decision is made. The analyser device accumulates reports and applies time-based correlation analysis to identify patterns indicative of fraudulent base stations. This preliminary data collection and automated analysis approach enables rapid detection and identification without requiring time-consuming manual observation, significantly improving detection efficiency while maintaining operational control.

Inventive Principle:
Principle #10Preliminary action

Data Source

PatentUS12081987B2Identifying and reporting a fraudulent base station
Publication Date: 2024.09.03 TELEFONAKTIEBOLAGET LM ERICSSON (PUBL)
  • US12081987B2 patent drawing
  • US12081987B2 patent drawing
  • US12081987B2 patent drawing

AI summary

There is provided mechanisms for identifying a fraudulent base station. A system comprises an analyser device and at least two radio devices. The system is configured to provide a report, from any of the at least two radio devices and to the analyser device upon that any of the at least two radio devices having received from a base station an identity request message for a long-term identifier of that any of the at least two radio devices, of the identity request message. The system is configured to identify, by the analyser device, the base station as fraudulent when reports of the same base station as received from at least two different ones of the at least two radio devices are received within a threshold time duration with respect to each other.