Archive for October, 2011

Fraud Management Procedures

Saturday, October 15th, 2011 | Wireless networks with Comments Off

In addition to applying new technologies to combat the fraudulent use of mobile phones, carriers and retail agents have implemented new fraud management techniques to aid avert the chance for abuse.

Service Companies Income losses to cellular phone fraud are so excellent that many service companies have an inner unit that is responsible for advising the company on ways to decrease possibilities for fraud, investigating situations of fraud and doing work with law enforcement authorities to prosecute criminals, and to educate company mobile telephone end users about approaches to stop fraud.

The adhering to processes, when adopted by support providers, can reduce possibilities for fraud:

  • Verify clearance. Enable a new customer to accessibility the network only right after the verify has been cleared. In the United States, the Federal Reserve needs three organization days to apparent particular checks.
  • Credit card verification. Permit a new consumer to entry the network only soon after the credit score card has been verified. This can be carried out in a handful of minutes through card viewers linked to the card issuer’s regional database.
  • Welcome get in touch with. Confirm a new customer’s identity ahead of paying out a bonus or commission to the salesperson or licensed dealer. Contact the consumer on a fixed line to verify name and deal with, and validate other details on the application form—such as mother’s maiden identify or spouse’s initials. Consult for the name and deal with of the employer if in doubt, contact the workplace to verify employment details.
  • Welcome letter. Deliver a letter to the consumer in an envelope that does not give the physical appearance of getting junk mail. In purchase to activate service, the recipient need to phone the customer services toll-totally free cellphone number specified in the letter.
  • Commission withholding. Apply a 3-month withholding time period for connection commissions to dealers. If a new subscriber fails to make the very first payment within that period of time, the sale need to be declared invalid and the connection commission canceled.
  • Premium services bar. Only supply individuals companies which a new subscriber has asked for. International calling and premium charge solutions would be immediately barred by default when the telephone is given to the customer.
  • Early invoicing. Send the initial mobile phone bill out early to minimize airtime fraud or expose commission fraud.
  • Credit score alert. Create a report of phones with a higher-volume of calls.A complex algorithm is utilised to detect fraudulent exercise based on customer profiling, how extended the telephone has been linked, typical monthly shell out, and time period of inactivity followed by frantic usage.
  • Nonphone alert. This is a commission fraud involving a bogus mobile phone, or the telephone was by no means switched on. If the phone was switched on only two or 3 times above a interval, the customer really should be contacted as a precaution.

Subscribers Businesses and authorities agencies are really vulnerable to mobile fraud. Not only do staff have no particular stake in taking fundamental antitheft precautions, but the mobile phone bills of numerous organizations are so massive that fraudulent calls are hard, if not impossible, identify.

Most fraudulent telephone calls are compensated for by unknowing victims, often traveling executives who pass the invoices on to their businesses without inspecting them. Nevertheless, organizations (and buyers) can lessen cell phone fraud by taking the following precautions:

  • If offered, obtain phones outfitted with authentication technologies, which uses secret codes that are in no way transmitted across the airwaves.
  • Inquire the cellular services for a PIN that ought to be entered just before a contact can go via. Presented the infrequency of its transmission, this code is not effortlessly intercepted, and without having it, cell phones cannot be cloned.
  • If not required, consult the service provider to shut off entry to global support. This would prevent anybody from producing illegal calls to other countries, wherever a lot of fraudulent calls are directed.
  • If probable, use a beeper to screen incoming calls. With the cellphone is turned off, it will not be transmitting its identifying numbers, thereby minimizing vulnerability to fraud. Since call retrieval normally entails air time costs, it is far more cost-effective to use the beeper as a screening machine for calls that do not desire immediate attention.
  • Do not lend the cell cellphone to everyone, and place it in a safe place when it is not in use. Even if the cell telephone is insured towards theft, most subscriber agreements limit coverage to a single incident, following which the person should spend for a substitute mobile phone.
  • When leaving automobiles unattended, get rid of the handset and antenna to stop cellular mobile phone thieves from targeting the motor vehicle.
  • By no means depart the subscriber agreement or contract out in plain view it typically includes such delicate info as Social Safety Range, drivers license quantity, credit card range, cell quantity, and digital serial number.
  • Report all problems to the services supplier right away, particularly if there is problems placing calls. This might indicate that someone may have cloned the mobile phone and is utilizing it at that time. Other warning indicators include issues retrieving voice-mail messages, abnormal hangups, and callers getting active signals or improper numbers.

Even though there is fantastic progress in cracking down on mobile phone fraud in the United States and Europe, other countries are experiencing an boost in this type of criminal exercise. According to some experts, the worldwide arena looms as the next frontier for cellular mobile phone fraud, specifically in spots where U.S.-based mostly multinationals are setting up shop and getting this type of service.

Foreign governments have just not been aggressive in locating and prosecuting this type of criminal, they take note. In some countries such as China, there are even operations committed to creating cell phones that get illegally programmed and then marketed on the black industry.

Scanning the airwaves for cell telephone identification numbers and programming them into clones has been produced far more hard with innovative authentication processes and digital networks that support encryption. GSM will modify the nature of fraud in the long term. The authentication mechanism applied with the SIM is forcing a lot of would-be criminals to flip their attention to subscription fraud, which is nevertheless time-consuming to track down, even for the greatest service providers.

Mobile cellphone fraud is an extension of “phone phreaking,” the identify presented to a strategy of payphone fraud that originated in the 1960s and employed an electronic box held more than the speaker. When a user is asked to insert income, the digital box plays a rapid sequence of tones that fool the billing personal computer into pondering that funds has been inserted. Considering that then, criminals and hackers have devoted time and cash to produce and refine their tactics, applying them to cellular phones as effectively.

The increasing reputation and spread of the Net to distribute tips and tricks to defraud carriers helps make mobile mobile phone fraud a billion-dollar international activity. Not only is cellular cellphone fraud rewarding, the stolen handsets have also supplied anonymity to callers engaged in criminal pursuits. Apart from the called numbers, usually no other proof is left behind. The calls are charged to the genuine subscribers’ accounts.

Fraud Management Systems – Smart Cards

Thursday, October 13th, 2011 | Wireless networks with Comments Off

While it is straightforward to intercept information from cell phones employed on analog networks, it is a lot tougher to do so on this kind of digital networks as the North American Individual Communication Services (PCS) and the European Worldwide Technique for Cellular (GSM) telecommunications. This is so simply because the signals are encrypted, generating them considerably more tough to intercept devoid of pricey devices and a greater diploma of technical expertise.

Although signal encryption for the duration of airtime is a standard characteristic of GSM networks, a network operator can choose not to implement it. In this circumstance, when a handset is turned on to access the host base station for companies, the subscriber is vulnerable to the identical eavesdropping attacks as with analog programs.

GSM signal encryption is done through a programmable wise card—the Subscriber Identification Module (SIM), which slips into a slot developed into the handset. Every consumer has a personal smart card keeping particular specifics (short codes, often named figures, and so on.) as well as an worldwide mobile subscriber identity (IMSI)—equivalent to Mobile Identification Range (MIN) for analog systems—and an authentication crucial on the microprocessor.

Plugging the intelligent card into one more phone will enable that telephone to be utilized as if it had been the customer’s personal. This is hassle-free in that the subscriber wants only to have the SIM even though traveling and plug it into a rental phone at the location location wherever the distinction in frequency would preclude use of the owner’s telephone. Even so, it is even now achievable for a technically savvy fraudster to entry a microprocessor’s firmware for identification facts and to reprogram them into other SIM cards.

Counterfeiting SIM cards for GSM phones can be accomplished by programming pc chips using a laptop pc and other peripheral gear. Despite the fact that cloning fraud is possible, the technical experience essential is this kind of that less individuals will be capable to engage in this exercise. And the nature of the method is these that it can not be done on a substantial scale expense-effectively.

Although cloning may have hit a greater technological barrier on GSM and PCS networks, other kinds of fraud, these as technical fraud in global roaming markets and subscription fraud, are on the rise. With GSM networks, there is little protection from the theft of authentication keys.

In truth, the use of cell communications companies by a developing subscriber base across an expanding network of roaming partners has developed opportunities to defraud the digital networks to a degree not envisioned by participants in the early layout phases of the engineering. The weak website link in GSM networks is the problem and reaction method included into the authentication approach that makes it possible for the SIM to validate its IMSI by demonstrating expertise of the authentication algorithm and the exclusive key, referred to as the Ki.

The property system sends a random problem to the handset, and only that handset can encrypt the problem utilizing both the algorithm and the Ki resident inside the SIM assigned to that subscriber. Making use of the stored algorithm, the SIM generates the correct reaction back again to the home technique. In this scenario, the single point of failure is the authentication middle in the property program.

Authentication need to avoid fraudulent entry to the wireless services, and the authentication center by itself can be secured against internal and external theft of the IMSI and Ki sets. Even so, even this solution has its share of difficulties.

For instance, when high call volumes and nonsignaling traffic threaten to overburden the system—as when subscribers roam to global areas in which the prospective of intersystem bottlenecks is greatest—network administrators can reconfigure their programs to reuse the outcomes of prior authentications or bypass the authentication procedure fully to reduce the targeted traffic back to the property technique.

As targeted traffic raises, network administrators come under growing strain to alter or dispense with authentication out of the require to keep congestion down, buyers satisfied, and revenues up. However, tampering with authentication generates opportunities for fraud, which also can consequence in customer churn and misplaced revenues. The solution is to boost network capability, which also expenses cash and can lead to buyer churn if rates are elevated.

Frequency Division Multiiple Access

Tuesday, October 11th, 2011 | Wireless networks with Comments Off

3 multiple access schemes are in use these days, supplying the groundwork for cellular communications programs:

  • Frequency Division Many Accessibility (FDMA), which serves the calls with various frequency channels.
  • Time Division Numerous Access (TDMA), which serves the calls with diverse time slots.
  • Code Division Several Entry (CDMA), which serves the calls with various code sequences.

All a few technologies are commonly utilised in cellular networks. FDMAis still employed on some initial-era cellular analog networks, this sort of as Superior Mobile Cellphone Service (AMPS)one and TACS (Whole Access Communications System).one TDMAis utilised on 2nd-era digital mobile networks, this kind of as North American Digital Cellular and International Method for Cellular (GSM) communications.

CDMAis also utilised on 2nd-generation digital mobile networks, these as PCS 1900. The two TDMAand CDMAhave been enhanced to help rising third-era networks. Of the three, FDMAis the easiest and even now the most widespread engineering in use these days for cellular communications. For example, FDMAis used in the CT2 method for cordless telecommunications.

The acquainted cordless telephone used in the property is representative of this kind of method. It creates capability by splitting bandwidth into radio channels in the frequency domain. In the preliminary call setup, the handset scans the offered channels and locks onto an unoccupied channel for the duration of the contact. The traditional analog cellular programs, this kind of as individuals centered on AMPS, also use FDMAto derive the channel.

In the situation of AMPS, the channel is a 30-kHz “slice” of spectrum. Only one particular subscriber at a time is assigned to the channel. No other conversations can entry the channel till the subscriber’s contact is completed, or until finally the call is handed off to a various channel in an adjacent cell. The analog operating atmosphere poses many issues. One particular is that the wireless gadgets are typically in motion.

Latest analog technology does not deal with phone handoffs quite well, as evidenced by the substantial incidence of dropped calls. This surroundings is specially harsh for info, which is less tolerant of transmission troubles than voice. Whereas momentary signal fade, for instance, is a nuisance in voice communications, it might result in a data connection to drop.

Another difficulty with analog methods is their minimal ability. To enhance the ability of analog mobile systems, the 30-kHz channel can be divided into three narrower channels of ten kHz each and every. This is the basis of the narrowband AMPS (N-AMPS) regular. Even so, this band-splitting approach incurs significant base station expenses, and its minimal expansion potential tends to make it suited only as a small-term answer.

Whilst cell subdivision frequently is used to improve potential, this solution has its limits. Given that adjacent cells can’t use the identical frequencies without having risking interference, a limited quantity of frequencies are currently being reused at closer distances, which can make it progressively difficult to preserve the quality of communications. Subdividing cells also will increase the volume of overhead signaling that ought to be employed to set up and handle the calls, which can overburden change sources.

In addition, house or rights of way for cell web sites are challenging to receive in metropolitan areas where visitors quantity is best and foreseeable future significant progress is predicted. These and other restrictions of analog FM radio technologies have led to the advancement of 2nd-era mobile methods centered on digital radio technologies and superior networking ideas.

Supplying trustworthy service in this dynamic atmosphere needs digital radio systems that employ sophisticated signal processing technologies for modulation, error correction, and diversity. These capabilities are offered by TDMAand CDMA.

FM programs have supported mobile services for virtually 20 many years, during which desire has eventually caught up with the obtainable potential. Now 1st-era cellular techniques primarily based on analog FM radio engineering are swiftly becoming phased out in favor of digital systems that provide increased capability, much better voice good quality, and superior get in touch with managing features. TDMA- and CDMA-based mostly techniques are contending for acceptance amid analog mobile carriers throughout the world.

Fraud Management Systems – Authentication

Monday, October 10th, 2011 | Wireless networks with Comments Off

Authentication works by immediately sending a sequence of encoded passwords over the airwaves among the cellular telephone and the cellular network to validate a buyer every single time a get in touch with is put or obtained. Authentication makes use of a complex security function that is made up of a solution code and particular range centered on an algorithm shared only by the mobile phone and the wireless network.

When a client places or receives a call, the wireless system asks the cellular phone to prove its identification via a question- and-response method. This process occurs without having delaying the time it takes to connect a genuine cellular contact. There is no cost for this services. Authentication employs innovative encryption engineering that makes it nearly difficult for a subscriber’s cell cellphone number to be cloned.

It entails the trade of a key code based mostly on an intricate algorithm amongst the mobile phone and the switch. These algorithms are so complex that services companies say that they will continue to be impenetrable for at minimum 20 decades. Authentication technologies identifies cloned telephone amounts instantly, prior to costly communications can consider place. The digital network and the authentication-all set phones running on it have matching information.

When a person initiates a get in touch with, the network difficulties the cellphone to verify itself by performing a mathematical equation only that particular telephone can clear up. An authenticatable cellphone will match the challenge, confirming that it and the corresponding phone amount are becoming used by a legitimate consumer. If it does not match, the network establishes that the cellphone amount is currently being utilized illegally, and support to that mobile phone is terminated.

All this will take spot in a fraction of a 2nd. Prior to authentication, a PIN had to be entered before the phone was related. All that the person desires now is an authentication- prepared cellphone to consider benefit of the services, which is normally provided totally free. Exactly where authentication service is obtainable, subscribers no extended need to have to use a PIN to make calls, except when roaming in places exactly where authentication is not nevertheless accessible.

PINs have grow to be an successful fraud prevention tool. If a subscriber’s cellphone gets cloned anyway, a basic call to the support provider to acquire a new PIN is the extent of the customer’s inconvenience—there is no want to change phone numbers, which also obviates the want for new enterprise cards and letterheads.

The subscriber does not even need to come into the services middle. But PINs are far from bulletproof, and cloners have proven particularly adept at cracking most protection methods carriers have deployed. Nonetheless, PINs have decreased mobile phone fraud by as considerably as 70 %.

Radio frequency Fingerprinting

Radio frequency fingerprinting is a phase up from the use of PINs. With digital evaluation engineering that recognizes the special qualities of radio signals emitted by cell phones, a fingerprint can be produced that can distinguish individual phones within a fraction of a 2nd soon after an endeavor to location a contact is made. The moment the fraudulent get in touch with is detected, it is immediately disconnected. The technology works so well that it has reduce down on fraudulent calls by as considerably as 85 % in selected higher-fraud markets, which includes Los Angeles and New York.

Fraud Management Systems – Voice Verification

Sunday, October 9th, 2011 | Wireless networks with Comments Off

Most fraud prevention technologies—such as PINs, phone pattern analysis, authentication, and radio frequency fingerprinting— are only partially successful. Relatively than verifying the caller, they simply authenticate a piece of information (PIN, ESN/MIN), a piece of devices (RF fingerprinting, authentication), or the subscriber’s contact designs (contact pattern analysis).

Voice verification methods are based on the uniqueness of every single person’s voice and the reliability of the engineering that can distinguish one voice from another by comparing a digitized sample of a person’s voice with a stored design or “voice print.” One particular of the most sophisticated voice verification programs comes from T-NETIX, Inc. The corporation utilizes a combination of decision- tree and neural network technologies to put into action what it calls a “neural tree network”.

The neural tree is comprised of nodes, or neurons, that are discriminantly educated by means of several repeated utterances of a subscriber-selected password or a tiny sample of speech. Discriminant teaching contrasts the acoustic capabilities of the speaker being enrolled to characteristics of the speakers by now enrolled in the services.

During the verification procedure, every neuron must choose no matter whether the acoustic functions of the spoken input are far more like people of the particular person whose identification is claimed or more like people of other speakers in the method. The neural tree network technology permits this complex determination-generating, or discriminant, process to be completed in a relatively small time period of time in contrast to other technologies.

In influence, sure/no choices are attained at each and every neuron of the neural tree, and a conclusion is attained soon after shifting via five or six branches of the tree. The relative simplicity of the neural network selection-path design and style facilitates fast analysis of spoken input with no upward limit on the quantity of enrollees. The engineering is also robust in its ability to figure out and isolate channel environmental circumstances.

The front-end evaluation recognizes and normalizes conditions this sort of as qualifications sounds, channel differences, and microphone variances. The cellular support subscriber goes through an enrollment approach consisting of the subsequent actions:

  • To accessibility the enrollment technique, the subscriber inputs his or her identity utilizing a PIN.
  • The voice response unit prompts the subscriber to communicate the password a handful of periods (usually 3 or 4). The speaker verification technological innovation averages the voice samples to obtain a more strong voice design for the subscriber.
  • The technologies then analyzes the attributes of the subscriber’s statement of the password and characterizes its tonal factors. The method also benefits in characterization and isolation of the channel atmosphere (i.e., line kind, hand-set type).
  • The technique segments the voice utterance into its subword units in buy to examine the utterance in better detail.
  • Types for the voice segments are designed and compared with other samples stored in the database to train the system to distinguish in between individuals with similar voice traits.
  • Finally, the technique loads the subscriber’s voice design into the voice identification database, indexing it to the subscriber’s numeric identifier.

The voice verification technique can reside on a public or private network as an intelligent peripheral or can be put as an adjunct serving a Personal Branch Trade (PBX) or Automated Contact Distributor (ACD). In a cellular environment, the technique can be an adjunct to a Cellular Switching Middle (MSC).