Welcome to DU! The truly grassroots left-of-center political community where regular people, not algorithms, drive the discussions and set the standards. Join the community: Create a free account Support DU (and get rid of ads!): Become a Star Member Latest Breaking News General Discussion The DU Lounge All Forums Issue Forums Culture Forums Alliance Forums Region Forums Support Forums Help & Search

TheBlackAdder

(28,163 posts)
Fri Feb 8, 2019, 10:49 AM Feb 2019

2020 Campaign Security - DECT 6.0 Phones. Most are insecure, allowing eavesdropping.

.

I am in the search of a new cordless phone system, one that is secure, and I am coming across startling info. I used to be a radio operator, and years back tested phones with an open scanner to see if I was transmitting in the clear. But that was years ago. With a 3-foot mast that is attached to a scanner, a cordless phone can be received upwards of 1.5 miles away, so that opens up a lot of territory for eavesdropping.


Most of the cordless phones being sold are insecure.

1) The DECT 6.0 standard was breached years ago, with scanning cards selling for around $400-500, allowing anyone to intercept a call, pretending to the the base station. While those cards are rare, and made in Germany, professionals or the nefarious would purchase them.

2) Most DECT 6.0 phones ONLY encrypt from the handset to the base, NOT bidirectionally.

3) Most DECT 6.0 phones either transmit an unencrypted side channel, to "provide call quality and prevent dropped calls" or they will shift from encrypted to unencrypted if the call starts to break up. Some manufacturers allow the user to disable this feature, but that still leave the upstream portion of the conversation unencrypted in many.


I have searched for a few hours and came across rumblings that there are some of the more obscure brands that provide full security, but they are not backed by a major brand name. I'll still pursue this endeavor, possibly contacting the manufacturers directly, as each implements DECT in their own proprietary manners.


Is there anyone in the DU community versed on these phones and know their vulnerabilities who might be able to shed light on which brands to use? Some of the Top-Rated phones, from major brands, are the most vulnerable to prying ears. This also includes cordless corporate phones systems. I'm about ready to revert to using a corded handset, and forego cordless handsets to make secure calls from now on.


===


At the start of the 2020 campaign season, it it time to take security to the next level, when reaching out to contacts.

.

1 replies = new reply since forum marked as read
Highlight: NoneDon't highlight anything 5 newestHighlight 5 most recent replies
2020 Campaign Security - DECT 6.0 Phones. Most are insecure, allowing eavesdropping. (Original Post) TheBlackAdder Feb 2019 OP
Just go corded. You can get phones with a corded console and cordless... TreasonousBastard Feb 2019 #1

TreasonousBastard

(43,049 posts)
1. Just go corded. You can get phones with a corded console and cordless...
Fri Feb 8, 2019, 11:00 AM
Feb 2019

extensions all over the house.

I saved a small bundle by getting a corded phone with no recorder but all the memory buttons, speaker, etc and also hooking up a cordless set I had lying around. I got splitters, cords, and whatever at the dollar store.

Latest Discussions»General Discussion»2020 Campaign Security - ...