Smartphones in a Microwave: Formal and Experimental Feasibility Study on Fingerprinting the Corona-Warn-App

07/06/2023
by   Henrik Graßhoff, et al.
0

Contact Tracing Apps (CTAs) have been developed to contain the coronavirus disease 19 (COVID-19) spread. By design, such apps invade their users' privacy by recording data about their health, contacts, and partially location. Many CTAs frequently broadcast pseudorandom numbers via Bluetooth to detect encounters. These numbers are changed regularly to prevent individual smartphones from being trivially trackable. However, the effectiveness of this procedure has been little studied. We measured real smartphones and observed that the German Corona-Warn-App (CWA) exhibits a device-specific latency between two subsequent broadcasts. These timing differences provide a potential attack vector for fingerprinting smartphones by passively recording Bluetooth messages. This could conceivably lead to the tracking of users' trajectories and, ultimately, the re-identification of users.

READ FULL TEXT
research
09/10/2020

GoCoronaGo: Privacy Respecting Contact Tracing for COVID-19 Management

The COVID-19 pandemic is imposing enormous global challenges in managing...
research
04/21/2021

Public Perception of the German COVID-19 Contact-Tracing App Corona-Warn-App

Several governments introduced or promoted the use of contact-tracing ap...
research
05/09/2020

How good is good enough for COVID19 apps? The influence of benefits, accuracy, and privacy on willingness to adopt

A growing number of contact tracing apps are being developed to compleme...
research
08/02/2020

Contact Classification in COVID-19 Tracing

The present paper addresses the task of reliably identifying critical co...
research
09/17/2019

A First Look at Commercial 5G Performance on Smartphones

We conduct to our knowledge a first measurement study of commercial 5G p...
research
04/21/2020

Syndromic surveillance using search query logs and user location information from smartphones against COVID-19 clusters in Japan

[Background] Two clusters of coronavirus disease 2019 (COVID-19) were co...

Please sign up or login with your details

Forgot password? Click here to reset