logoalt Hacker News

dsltoday at 10:02 AM3 repliesview on HN

> The first is what a cellular network does for tracking a user. It's not returning a set of GPS coordinates.

From the perspective of someone working on the RF side of cellular networks, you are absolutely correct.

Modern cellphone baseband chips however are required to implement MT-LR, which allows the network to request that the device respond with its latitude and longitude. In the US this is legally required to be accurate to within 300 meters, so it comes from GPS or AGPS. By sending LAWFUL_INTERCEPT_SERVICES as the client type in the request, the phone is required to not notify the user in any way or log the request.

There is a reason China has been caught with their hand in the US "lawful intercept" cookie jar at least three times.


Replies

bondarchuktoday at 2:15 PM

>In the US this is legally required to be accurate to within 300 meters, so it comes from GPS or AGPS.

Does that mean GPS is used by the baseband chip even when I disable location services in the OS?

show 1 reply
kevin_nisbettoday at 1:52 PM

Yup, sorry I didn't bring this side up because the article was mainly talking from the perspective of pulling the LAC/TAI from generating messages in the SS7/Diameter networks. If we want to include what a carrier can do or what lawful intercept can do it's a different story.

leonidasruptoday at 11:04 AM

The good old lawful interception capabilities, like in the Greek wiretapping case of 2004–05, also referred to as Greek Watergate.

https://en.wikipedia.org/wiki/Greek_wiretapping_case_2004%E2...

"involved the illegal tapping of more than 100 mobile phones on the Vodafone Greece network belonging mostly to members of the Greek government and top-ranking civil servants."

"In September 2011, new evidence emerged indicated the US Embassy in Athens was behind the telephone interceptions."