SlideShare une entreprise Scribd logo
1  sur  24
Télécharger pour lire hors ligne
www.i3forum.org
David Morrow
Group Corporate Security Fraud Manager
Vodafone Group Services Limited
Restricted - Confidential Information
© GSM Association 2012
All GSMA meetings are conducted in full compliance with the GSMA’s anti-trust compliance policy
GSM Association Fraud Forum
Presentation to i3 Forum
David Morrow, Vodafone
Document Number
Meeting Date 17 May 2012
Meeting Venue Chicago
For Approval
For Information X
Version 1
Security Restrictions Confidential – GSMA Members,
Associate Members & Rapporteurs &
i3Forum members
© GSM Association 2012 3
GSM Association (GSMA) Background
  Global trade association responsible for
GSM family of technologies
  Global membership of nearly 800 operators
and 200 manufacturers and suppliers
  Organised into working groups and projects
on many topics, open to all employees of
GSMA member companies
  Participation leads to industry solutions,
information sharing and education
© GSM Association 2012 4
GSMA Working Groups
  Eight Working Groups report to EMC
  Focus on a particular area of competence, e.g. security
  Deliver solutions for the GSM community where cooperation is
needed, e.g. roaming
  Operators provide subject matter experts to the Working Groups
  HQ provides support via a WG Director and Coordinator
© GSM Association 2012 5
Fraud Forum (FF) – Objectives & Membership
  Trusted forum on GSM fraud
issues to minimise exposure for
members
– Develop fraud awareness
– Exchange intelligence & best practice
– Develop & maintain industry
countermeasures e.g. NRTRDE
– Assess the fraud exposure of new
services
– Collaborate with other GSMA working
groups and projects
  Provides value through education
in addition to formal work items.
FF Membership – Jan 2012
Total across FF,
Asia-Pac FF &
Africa FF
Individual
members
487
Countries 106
Companies 242
Operators 199
Associate
members
43
© GSM Association 2012 6
Evolution of Mobile Fraud
  Analogue - subscription fraud
  Analogue cloning - personal use, Call Selling (later inc. PBX fraud)
  Premium Rate Service (PRS) fraud (domestic)
  Roaming PRS fraud
  Credit card fraud – prepay
  SIM cloning (small numbers) + Roaming PRS, etc.
  International Revenue Share Fraud (IRSF)
© GSM Association 2012 7
Current key issues:
  Subscription fraud
  Roaming
  GSM Gateway/SIMbox (bypass)
© GSM Association 2012 8
03:00
Thurs
05:00
Thurs
17:00
Fri
09:00
Mon
11:00
Mon
€37800
per SIM
© GSM Association 2012 9
Optimised Fraud
Home
Network
Carrier n Number
range
holder
Content
provider
€1.00 €0.50 €0.25
€4.00 €3.50 €3.25
No
payment
to Home
Network
€3.00
  Short – stopping by fraudsters
  Number Range hi-jacking
Carrier 2Carrier 1
© GSM Association 2012 10
What next (and what’s in a name)?
  4G
  LTE (Long Term Evolution)
  NGN (Next Generation Networks)
  all terms referring to mobile evolution from circuit switched to packet
switched services
© GSM Association 2012 11
What is a Next Generation Network?
  Support for services, applications based on service building blocks
  Interworking with legacy networks
via open interfaces
  Unified service
  Converged services
  Services don’t have to be
from the Mobile Operator
• Codec
• Destination
Voice
• Auth.
• Set
destination
Access
network
•  Find end
party
•  Give IP
address
and route
Receiving
network
•  Select
codec
• Decode
IP data
Access
for End
party
© GSM Association 2012 12
IP & IMS Systems
  First time in mobile telecoms that the bearer providing the service is
totally separate from the services offered
  In effect, this means two separate operators can run services, one for
the service and one for the bearer
  Within 10 years Telco networks will be solely IP backbone and
conventional switching will have disappeared due to cost
  All services offered will be digital
12
© GSM Association 2012 13
NGN issues - Identity Management
  There are now two types of identity - for the bearer & service layers
  Different identities may be combined into one account
  There will be a number of other identities used internally in the network
  Many of the identities are dynamic and change in session
Bearer Identity
  Account ID, Radius ID
  IMSI, Terminal ID
  MSISDN, Fixed line
access number
  IMEI, Device Electronic
serial number
Service Identity
IMPU
IMPI
sip_uri
tel_uri
E.164
© GSM Association 2012 14
NGN: The Challenges
  The key areas for challenges and risks are:
–  For Operators - control of separate Bearer and Services
–  Service Providers - lack of total control and information
–  New players with lack of knowledge and/or experience
–  Fraud Management - new technical opportunities for fraud
–  Revenue Assurance - Different billing models and data sources
–  Security - More complex technical controls
–  3rd parties - Control and trustworthiness of billing and content!
  A mix of:
–  More complex technology
–  Different billing models
So Fraud will be different
© GSM Association 2012 15
IMS: IP Multimedia Subsystem
  IMS means a complete new network that separates the bearer
network and can work across many network types
–  Mobile GSM, 3G, CDMA etc.
–  Fixed networks
–  WLAN
–  PAN e.g. Bluetooth, IR or Near Field Communications (NFC)
  IMS does not standardise applications, but aids access of
multimedia & voice applications across wireless & fixed terminals
  IMS provides ‘horizontal control layers’ that allows the separation of
the access/bearer network from the service layer
 This drives different needs for fraud & risk management
15
© GSM Association 2012 16
Customer Terminal Device
  In NGN, the “end point” can be called different names in different network
types can be:
–  Mobile Phone (GSM, CDMA, …..)
–  Data terminal – tablets or smartphones
–  ASDL or Cable Router/ Modem
–  IAD (Integrated Access Device)
–  CPE (Customer Premise Equipment) for fixed networks
  They all have some common functions:
–  Store an identity such as SIP Username and password
–  Have an IP address (allocated or dynamic)
–  Have some other identity such as an equipment identity
–  Have an operating system and memory and run applications
–  Generally poor internal security or fraud controls so these need to be in
the CSP’s systems
© GSM Association 2012 17
Key Issues for Next Generation Services
  Every service can be very different and made up of different
component parts - both IP with interaction over different Bearer
and Services
  Content and payments will move operators to a different risk profile
similar to those of banks and retailers – e.g. money laundering,
undelivered goods etc.
  Issues for the operator on CPE, IAD, SIP & smartphones and the
applications that exist on them – corruption or malware
  Proof of the location and identity of the user and transaction is
difficult with mobile and IP based services!
© GSM Association 2012 18
Professional:
 Video Conference
 Multimedia Sales
 Advertising
 Informative
 Remote Vigilance
 Mobile Marketing
 On Line Training
 Location Based
 Security Surveillance
 Mobile Office
 Presence
Financial:
 M – Commerce
 Virtual Banking
 E – Payments
 On Line Billing
 Stock broking
 Auctions
 Government
 Community
 Financial Transactions
Shopping:
 M – Commerce
 Auctions
 Retailing
 Ticketing
 Booking
 Working
 Advertising
Entertainment:
 Informative
 Multiparty Gaming
 Music
 Movies
 Video Content
 Gambling
 TV
 Radio
 Pictures
 Messaging
 Video Sharing
NGN Service Groupings
18
© GSM Association 2012 19
Challenges for Fraud & RA
  More complex both from a
technical and operational
perspective
  Data more real-time and
complex - increased need for
the collection of events
  Linking data in Bearer &
Services
  Requires new data feeds
from new services platforms
© GSM Association 2012 20
NGN Frauds?
  Aim for the highest value content or greatest volume
  Hackers and Malware writers looking for notoriety by implementing
widespread damage / maximum financial gain
  Fraudsters from the Finance Industry targeting M-banking & M-commerce
  Will make more use of internal information and work with internal staff due to
better external controls
  Criminals will exploit the same approaches as today but with a greater
potential reward….. Moving away from simple airtime usage – comparatively
low value!
© GSM Association 2012 21
NGN Fraud Management Approach
  NGN FM approach will be a variation of what is done
today, but it will be more complex both from a technical
and operational perspective
  Significantly more data and increased need for the
collection of events from many places compared to
present
  The identities may not have a known location for traffic
origination or termination? 20% of IP are not where they
are geographically expected
  Traffic can originate in different places - no need for a
central switch location where call records can be
collected for FM purposes
© GSM Association 2012 22
Services Fraud Management
  Fraud detection of the services layer will be partly the same as
today - many services used combined with multiple bearers
  Provisioning related fraud will need detecting as a lot more self care
will take place and it will also be driven by the billing model
  FMS will need to know which services the customer is allowed to
use - needs much more control of provisioning fraud than with
present systems
www.i3forum.org
Panelists:
Dima Alkin, Director, Sales Support, North America,
Cvidya
Peter Coulter, Member of Executive Cmtee-FIINA,
Executive Director, Global Fraud Management,
AT&T
Steve Heap, Senior Technology/Communications
Executive, IPSoft
David Morrow, Group Corporate Security Fraud
Manager, Vodafone Group Services Limited
Thomas Walker, Director - Business & Solutions
Consulting, Subex
Fraud Control & Management
Panel Discussion
www.i3forum.org
May 17, 2012
Chicago
3rd Annual
i3Forum Conference
The Future is All IP

Contenu connexe

Tendances

Mobile.Broadband Dan.Warren 101012
Mobile.Broadband Dan.Warren 101012Mobile.Broadband Dan.Warren 101012
Mobile.Broadband Dan.Warren 101012Adrian Treacy
 
The Customer Journey to Regular Usage - MMU Global Event 2013
The Customer Journey to Regular Usage - MMU Global Event 2013The Customer Journey to Regular Usage - MMU Global Event 2013
The Customer Journey to Regular Usage - MMU Global Event 2013GSMA Mobile for Development
 
MMU: Results from the 2012 Global Mobile Money Adoption Survey
MMU: Results from the 2012 Global Mobile Money Adoption SurveyMMU: Results from the 2012 Global Mobile Money Adoption Survey
MMU: Results from the 2012 Global Mobile Money Adoption SurveyGSMA Mobile for Development
 
MVNO for Financial Services - Cartesian - June 2015
MVNO for Financial Services - Cartesian - June 2015MVNO for Financial Services - Cartesian - June 2015
MVNO for Financial Services - Cartesian - June 2015Cartesian
 
mAgri Webinar: Mobile market information systems for farmers: requirements fo...
mAgri Webinar: Mobile market information systems for farmers: requirements fo...mAgri Webinar: Mobile market information systems for farmers: requirements fo...
mAgri Webinar: Mobile market information systems for farmers: requirements fo...GSMA Mobile for Development
 
MVNOs & M2M (Machine to Machine) - Mobile telecommunications in 2015
MVNOs & M2M (Machine to Machine) - Mobile telecommunications in 2015MVNOs & M2M (Machine to Machine) - Mobile telecommunications in 2015
MVNOs & M2M (Machine to Machine) - Mobile telecommunications in 2015Martyn Taylor
 
Mobile Opportunities for Retailers
Mobile Opportunities for RetailersMobile Opportunities for Retailers
Mobile Opportunities for RetailersCartesian
 
Mmu marketing mobile_money
Mmu marketing mobile_moneyMmu marketing mobile_money
Mmu marketing mobile_moneyCamilo Tellez
 
Questionnaire: the 70 questions to answer before engaging on the road to beco...
Questionnaire: the 70 questions to answer before engaging on the road to beco...Questionnaire: the 70 questions to answer before engaging on the road to beco...
Questionnaire: the 70 questions to answer before engaging on the road to beco...Computaris
 
Cartesian Perspectives - What does the future hold for the MVNO market?
Cartesian Perspectives - What does the future hold for the MVNO market? Cartesian Perspectives - What does the future hold for the MVNO market?
Cartesian Perspectives - What does the future hold for the MVNO market? Cartesian
 
Mvno summit rome 2013
Mvno summit rome 2013Mvno summit rome 2013
Mvno summit rome 2013Paul Wade
 
MVNO Mobile virtual network operator
MVNO Mobile virtual network operator MVNO Mobile virtual network operator
MVNO Mobile virtual network operator Ibrahim alghamdi
 
Accelerating Monetization of M2M/Connected Devices
Accelerating Monetization of M2M/Connected DevicesAccelerating Monetization of M2M/Connected Devices
Accelerating Monetization of M2M/Connected DevicesCartesian
 
Profitability presentation
Profitability presentation Profitability presentation
Profitability presentation Camilo Tellez
 

Tendances (20)

Mobile.Broadband Dan.Warren 101012
Mobile.Broadband Dan.Warren 101012Mobile.Broadband Dan.Warren 101012
Mobile.Broadband Dan.Warren 101012
 
The Customer Journey to Regular Usage - MMU Global Event 2013
The Customer Journey to Regular Usage - MMU Global Event 2013The Customer Journey to Regular Usage - MMU Global Event 2013
The Customer Journey to Regular Usage - MMU Global Event 2013
 
Commonwealth Digital Broadcasting Switchover Forum 2015 Mortimer Hope
Commonwealth Digital Broadcasting Switchover Forum 2015 Mortimer HopeCommonwealth Digital Broadcasting Switchover Forum 2015 Mortimer Hope
Commonwealth Digital Broadcasting Switchover Forum 2015 Mortimer Hope
 
MMU: Results from the 2012 Global Mobile Money Adoption Survey
MMU: Results from the 2012 Global Mobile Money Adoption SurveyMMU: Results from the 2012 Global Mobile Money Adoption Survey
MMU: Results from the 2012 Global Mobile Money Adoption Survey
 
MVNO for Financial Services - Cartesian - June 2015
MVNO for Financial Services - Cartesian - June 2015MVNO for Financial Services - Cartesian - June 2015
MVNO for Financial Services - Cartesian - June 2015
 
Final ppt
Final pptFinal ppt
Final ppt
 
mAgri Webinar: Mobile market information systems for farmers: requirements fo...
mAgri Webinar: Mobile market information systems for farmers: requirements fo...mAgri Webinar: Mobile market information systems for farmers: requirements fo...
mAgri Webinar: Mobile market information systems for farmers: requirements fo...
 
MVNOs & M2M (Machine to Machine) - Mobile telecommunications in 2015
MVNOs & M2M (Machine to Machine) - Mobile telecommunications in 2015MVNOs & M2M (Machine to Machine) - Mobile telecommunications in 2015
MVNOs & M2M (Machine to Machine) - Mobile telecommunications in 2015
 
Introduction to MVNO
Introduction to MVNOIntroduction to MVNO
Introduction to MVNO
 
Mobile Opportunities for Retailers
Mobile Opportunities for RetailersMobile Opportunities for Retailers
Mobile Opportunities for Retailers
 
Mmu marketing mobile_money
Mmu marketing mobile_moneyMmu marketing mobile_money
Mmu marketing mobile_money
 
Mvno uk
Mvno  ukMvno  uk
Mvno uk
 
Questionnaire: the 70 questions to answer before engaging on the road to beco...
Questionnaire: the 70 questions to answer before engaging on the road to beco...Questionnaire: the 70 questions to answer before engaging on the road to beco...
Questionnaire: the 70 questions to answer before engaging on the road to beco...
 
MMU Webinar: Agent Training - Oct 9, 2012
MMU Webinar: Agent Training - Oct 9, 2012MMU Webinar: Agent Training - Oct 9, 2012
MMU Webinar: Agent Training - Oct 9, 2012
 
Cartesian Perspectives - What does the future hold for the MVNO market?
Cartesian Perspectives - What does the future hold for the MVNO market? Cartesian Perspectives - What does the future hold for the MVNO market?
Cartesian Perspectives - What does the future hold for the MVNO market?
 
Mvno summit rome 2013
Mvno summit rome 2013Mvno summit rome 2013
Mvno summit rome 2013
 
MVNO Mobile virtual network operator
MVNO Mobile virtual network operator MVNO Mobile virtual network operator
MVNO Mobile virtual network operator
 
Accelerating Monetization of M2M/Connected Devices
Accelerating Monetization of M2M/Connected DevicesAccelerating Monetization of M2M/Connected Devices
Accelerating Monetization of M2M/Connected Devices
 
Profitability presentation
Profitability presentation Profitability presentation
Profitability presentation
 
Max chion mastercard
Max chion mastercardMax chion mastercard
Max chion mastercard
 

En vedette

Vodafone Global Enterprise - The Importance of a MultiLayered Security Solution
Vodafone Global Enterprise - The Importance of a MultiLayered Security SolutionVodafone Global Enterprise - The Importance of a MultiLayered Security Solution
Vodafone Global Enterprise - The Importance of a MultiLayered Security SolutionJoe Di Clemente
 
Vodafone security priorities in Greece
Vodafone security priorities in GreeceVodafone security priorities in Greece
Vodafone security priorities in GreeceKevin Duffey
 
Mr. Julian Kersey's presentation at QITCOM 2011
Mr. Julian Kersey's presentation at QITCOM 2011Mr. Julian Kersey's presentation at QITCOM 2011
Mr. Julian Kersey's presentation at QITCOM 2011QITCOM
 
A Comparative Study of Mobile Services Provided By Vodafone & Other Telecom C...
A Comparative Study of Mobile Services Provided By Vodafone & Other Telecom C...A Comparative Study of Mobile Services Provided By Vodafone & Other Telecom C...
A Comparative Study of Mobile Services Provided By Vodafone & Other Telecom C...ASIF KHAN
 
Vodafone Company Presentation
Vodafone Company PresentationVodafone Company Presentation
Vodafone Company PresentationAshutosh Pandey
 
Vodafone Ppt
Vodafone PptVodafone Ppt
Vodafone Pptmarksh970
 

En vedette (6)

Vodafone Global Enterprise - The Importance of a MultiLayered Security Solution
Vodafone Global Enterprise - The Importance of a MultiLayered Security SolutionVodafone Global Enterprise - The Importance of a MultiLayered Security Solution
Vodafone Global Enterprise - The Importance of a MultiLayered Security Solution
 
Vodafone security priorities in Greece
Vodafone security priorities in GreeceVodafone security priorities in Greece
Vodafone security priorities in Greece
 
Mr. Julian Kersey's presentation at QITCOM 2011
Mr. Julian Kersey's presentation at QITCOM 2011Mr. Julian Kersey's presentation at QITCOM 2011
Mr. Julian Kersey's presentation at QITCOM 2011
 
A Comparative Study of Mobile Services Provided By Vodafone & Other Telecom C...
A Comparative Study of Mobile Services Provided By Vodafone & Other Telecom C...A Comparative Study of Mobile Services Provided By Vodafone & Other Telecom C...
A Comparative Study of Mobile Services Provided By Vodafone & Other Telecom C...
 
Vodafone Company Presentation
Vodafone Company PresentationVodafone Company Presentation
Vodafone Company Presentation
 
Vodafone Ppt
Vodafone PptVodafone Ppt
Vodafone Ppt
 

Similaire à 7.2 gsm-association-fraud-forum

Flash Insight: Are OTT Attackers in Pole Position to Make Use of eSIM?
Flash Insight: Are OTT Attackers in Pole Position to Make Use of eSIM?Flash Insight: Are OTT Attackers in Pole Position to Make Use of eSIM?
Flash Insight: Are OTT Attackers in Pole Position to Make Use of eSIM?Mücke Roth & Company
 
BT's guide to MiFIDII for financial advisers and brokers
BT's guide to MiFIDII for financial advisers and brokersBT's guide to MiFIDII for financial advisers and brokers
BT's guide to MiFIDII for financial advisers and brokersmParticle
 
[WSO2Con EU 2017] Keynote: Mobile Identity in the Digital Economy
[WSO2Con EU 2017] Keynote: Mobile Identity in the Digital Economy[WSO2Con EU 2017] Keynote: Mobile Identity in the Digital Economy
[WSO2Con EU 2017] Keynote: Mobile Identity in the Digital EconomyWSO2
 
Mobile Device: Regulation and Reality
Mobile Device: Regulation and RealityMobile Device: Regulation and Reality
Mobile Device: Regulation and RealityArief Gunawan
 
e-Sim Sharing (extract)
e-Sim Sharing (extract)e-Sim Sharing (extract)
e-Sim Sharing (extract)BearingPoint
 
2014 march falcon business fraud classification model (3attendees)
2014 march falcon business fraud classification model (3attendees)2014 march falcon business fraud classification model (3attendees)
2014 march falcon business fraud classification model (3attendees)jcsobreira
 
Roaming Data Access: Carrier Insights and OEM Perspectives
Roaming Data Access: Carrier Insights and OEM Perspectives Roaming Data Access: Carrier Insights and OEM Perspectives
Roaming Data Access: Carrier Insights and OEM Perspectives Telefónica IoT
 
FIDO Authentication and GSMA Mobile Connect
FIDO Authentication and GSMA Mobile ConnectFIDO Authentication and GSMA Mobile Connect
FIDO Authentication and GSMA Mobile ConnectFIDO Alliance
 
Creating a Truly Global Connectivity Solution - Is It Even Possible?
Creating a Truly Global Connectivity Solution - Is It Even Possible?Creating a Truly Global Connectivity Solution - Is It Even Possible?
Creating a Truly Global Connectivity Solution - Is It Even Possible?Dan Mårtensson
 
Io t flyer_telecommunication_mobiloitte_v5
Io t flyer_telecommunication_mobiloitte_v5Io t flyer_telecommunication_mobiloitte_v5
Io t flyer_telecommunication_mobiloitte_v5Mobiloitte
 
How to Leverage Big Data to Help Finding Fraud Patterns & Revenue Assurance
How to Leverage Big Data to Help Finding Fraud Patterns & Revenue AssuranceHow to Leverage Big Data to Help Finding Fraud Patterns & Revenue Assurance
How to Leverage Big Data to Help Finding Fraud Patterns & Revenue AssurancecVidya Networks
 
SS7: the bad neighbor you're stuck with during the 5G migration and far beyond
SS7: the bad neighbor you're stuck with during the 5G migration and far beyondSS7: the bad neighbor you're stuck with during the 5G migration and far beyond
SS7: the bad neighbor you're stuck with during the 5G migration and far beyondPositiveTechnologies
 
Fraud Management Industry Update Webinar
Fraud Management Industry Update WebinarFraud Management Industry Update Webinar
Fraud Management Industry Update WebinarcVidya Networks
 
Lattice: RedChip's Global Online CEO Conference
Lattice: RedChip's Global Online CEO ConferenceLattice: RedChip's Global Online CEO Conference
Lattice: RedChip's Global Online CEO ConferenceRedChip Companies, Inc.
 
Presentation antrax 30.10.13
Presentation antrax 30.10.13Presentation antrax 30.10.13
Presentation antrax 30.10.13Olya Saiko
 
GSMA - How To Combine Cross-border eID Recognition With Convenience For Users...
GSMA - How To Combine Cross-border eID Recognition With Convenience For Users...GSMA - How To Combine Cross-border eID Recognition With Convenience For Users...
GSMA - How To Combine Cross-border eID Recognition With Convenience For Users...Ubisecure
 

Similaire à 7.2 gsm-association-fraud-forum (20)

Flash Insight: Are OTT Attackers in Pole Position to Make Use of eSIM?
Flash Insight: Are OTT Attackers in Pole Position to Make Use of eSIM?Flash Insight: Are OTT Attackers in Pole Position to Make Use of eSIM?
Flash Insight: Are OTT Attackers in Pole Position to Make Use of eSIM?
 
BT's guide to MiFIDII for financial advisers and brokers
BT's guide to MiFIDII for financial advisers and brokersBT's guide to MiFIDII for financial advisers and brokers
BT's guide to MiFIDII for financial advisers and brokers
 
Banking and Mobile Identity
Banking and Mobile IdentityBanking and Mobile Identity
Banking and Mobile Identity
 
[WSO2Con EU 2017] Keynote: Mobile Identity in the Digital Economy
[WSO2Con EU 2017] Keynote: Mobile Identity in the Digital Economy[WSO2Con EU 2017] Keynote: Mobile Identity in the Digital Economy
[WSO2Con EU 2017] Keynote: Mobile Identity in the Digital Economy
 
Mobile Device: Regulation and Reality
Mobile Device: Regulation and RealityMobile Device: Regulation and Reality
Mobile Device: Regulation and Reality
 
e-Sim Sharing (extract)
e-Sim Sharing (extract)e-Sim Sharing (extract)
e-Sim Sharing (extract)
 
2014 march falcon business fraud classification model (3attendees)
2014 march falcon business fraud classification model (3attendees)2014 march falcon business fraud classification model (3attendees)
2014 march falcon business fraud classification model (3attendees)
 
Roaming Data Access: Carrier Insights and OEM Perspectives
Roaming Data Access: Carrier Insights and OEM Perspectives Roaming Data Access: Carrier Insights and OEM Perspectives
Roaming Data Access: Carrier Insights and OEM Perspectives
 
FIDO Authentication and GSMA Mobile Connect
FIDO Authentication and GSMA Mobile ConnectFIDO Authentication and GSMA Mobile Connect
FIDO Authentication and GSMA Mobile Connect
 
Creating a Truly Global Connectivity Solution - Is It Even Possible?
Creating a Truly Global Connectivity Solution - Is It Even Possible?Creating a Truly Global Connectivity Solution - Is It Even Possible?
Creating a Truly Global Connectivity Solution - Is It Even Possible?
 
Report demo(1)
Report demo(1)Report demo(1)
Report demo(1)
 
M commerce
M commerceM commerce
M commerce
 
Io t flyer_telecommunication_mobiloitte_v5
Io t flyer_telecommunication_mobiloitte_v5Io t flyer_telecommunication_mobiloitte_v5
Io t flyer_telecommunication_mobiloitte_v5
 
Mobile Voice Recording (MVR)
Mobile Voice Recording (MVR)Mobile Voice Recording (MVR)
Mobile Voice Recording (MVR)
 
How to Leverage Big Data to Help Finding Fraud Patterns & Revenue Assurance
How to Leverage Big Data to Help Finding Fraud Patterns & Revenue AssuranceHow to Leverage Big Data to Help Finding Fraud Patterns & Revenue Assurance
How to Leverage Big Data to Help Finding Fraud Patterns & Revenue Assurance
 
SS7: the bad neighbor you're stuck with during the 5G migration and far beyond
SS7: the bad neighbor you're stuck with during the 5G migration and far beyondSS7: the bad neighbor you're stuck with during the 5G migration and far beyond
SS7: the bad neighbor you're stuck with during the 5G migration and far beyond
 
Fraud Management Industry Update Webinar
Fraud Management Industry Update WebinarFraud Management Industry Update Webinar
Fraud Management Industry Update Webinar
 
Lattice: RedChip's Global Online CEO Conference
Lattice: RedChip's Global Online CEO ConferenceLattice: RedChip's Global Online CEO Conference
Lattice: RedChip's Global Online CEO Conference
 
Presentation antrax 30.10.13
Presentation antrax 30.10.13Presentation antrax 30.10.13
Presentation antrax 30.10.13
 
GSMA - How To Combine Cross-border eID Recognition With Convenience For Users...
GSMA - How To Combine Cross-border eID Recognition With Convenience For Users...GSMA - How To Combine Cross-border eID Recognition With Convenience For Users...
GSMA - How To Combine Cross-border eID Recognition With Convenience For Users...
 

Dernier

Uneak White's Personal Brand Exploration Presentation
Uneak White's Personal Brand Exploration PresentationUneak White's Personal Brand Exploration Presentation
Uneak White's Personal Brand Exploration Presentationuneakwhite
 
Famous Olympic Siblings from the 21st Century
Famous Olympic Siblings from the 21st CenturyFamous Olympic Siblings from the 21st Century
Famous Olympic Siblings from the 21st Centuryrwgiffor
 
Dr. Admir Softic_ presentation_Green Club_ENG.pdf
Dr. Admir Softic_ presentation_Green Club_ENG.pdfDr. Admir Softic_ presentation_Green Club_ENG.pdf
Dr. Admir Softic_ presentation_Green Club_ENG.pdfAdmir Softic
 
Call Girls In Panjim North Goa 9971646499 Genuine Service
Call Girls In Panjim North Goa 9971646499 Genuine ServiceCall Girls In Panjim North Goa 9971646499 Genuine Service
Call Girls In Panjim North Goa 9971646499 Genuine Serviceritikaroy0888
 
BAGALUR CALL GIRL IN 98274*61493 ❤CALL GIRLS IN ESCORT SERVICE❤CALL GIRL
BAGALUR CALL GIRL IN 98274*61493 ❤CALL GIRLS IN ESCORT SERVICE❤CALL GIRLBAGALUR CALL GIRL IN 98274*61493 ❤CALL GIRLS IN ESCORT SERVICE❤CALL GIRL
BAGALUR CALL GIRL IN 98274*61493 ❤CALL GIRLS IN ESCORT SERVICE❤CALL GIRLkapoorjyoti4444
 
How to Get Started in Social Media for Art League City
How to Get Started in Social Media for Art League CityHow to Get Started in Social Media for Art League City
How to Get Started in Social Media for Art League CityEric T. Tung
 
Falcon's Invoice Discounting: Your Path to Prosperity
Falcon's Invoice Discounting: Your Path to ProsperityFalcon's Invoice Discounting: Your Path to Prosperity
Falcon's Invoice Discounting: Your Path to Prosperityhemanthkumar470700
 
Katrina Personal Brand Project and portfolio 1
Katrina Personal Brand Project and portfolio 1Katrina Personal Brand Project and portfolio 1
Katrina Personal Brand Project and portfolio 1kcpayne
 
Call Girls Pune Just Call 9907093804 Top Class Call Girl Service Available
Call Girls Pune Just Call 9907093804 Top Class Call Girl Service AvailableCall Girls Pune Just Call 9907093804 Top Class Call Girl Service Available
Call Girls Pune Just Call 9907093804 Top Class Call Girl Service AvailableDipal Arora
 
Call Girls In Noida 959961⊹3876 Independent Escort Service Noida
Call Girls In Noida 959961⊹3876 Independent Escort Service NoidaCall Girls In Noida 959961⊹3876 Independent Escort Service Noida
Call Girls In Noida 959961⊹3876 Independent Escort Service Noidadlhescort
 
👉Chandigarh Call Girls 👉9878799926👉Just Call👉Chandigarh Call Girl In Chandiga...
👉Chandigarh Call Girls 👉9878799926👉Just Call👉Chandigarh Call Girl In Chandiga...👉Chandigarh Call Girls 👉9878799926👉Just Call👉Chandigarh Call Girl In Chandiga...
👉Chandigarh Call Girls 👉9878799926👉Just Call👉Chandigarh Call Girl In Chandiga...rajveerescorts2022
 
Monthly Social Media Update April 2024 pptx.pptx
Monthly Social Media Update April 2024 pptx.pptxMonthly Social Media Update April 2024 pptx.pptx
Monthly Social Media Update April 2024 pptx.pptxAndy Lambert
 
RSA Conference Exhibitor List 2024 - Exhibitors Data
RSA Conference Exhibitor List 2024 - Exhibitors DataRSA Conference Exhibitor List 2024 - Exhibitors Data
RSA Conference Exhibitor List 2024 - Exhibitors DataExhibitors Data
 
Mysore Call Girls 8617370543 WhatsApp Number 24x7 Best Services
Mysore Call Girls 8617370543 WhatsApp Number 24x7 Best ServicesMysore Call Girls 8617370543 WhatsApp Number 24x7 Best Services
Mysore Call Girls 8617370543 WhatsApp Number 24x7 Best ServicesDipal Arora
 
Call Girls Navi Mumbai Just Call 9907093804 Top Class Call Girl Service Avail...
Call Girls Navi Mumbai Just Call 9907093804 Top Class Call Girl Service Avail...Call Girls Navi Mumbai Just Call 9907093804 Top Class Call Girl Service Avail...
Call Girls Navi Mumbai Just Call 9907093804 Top Class Call Girl Service Avail...Dipal Arora
 
Cracking the Cultural Competence Code.pptx
Cracking the Cultural Competence Code.pptxCracking the Cultural Competence Code.pptx
Cracking the Cultural Competence Code.pptxWorkforce Group
 
Quick Doctor In Kuwait +2773`7758`557 Kuwait Doha Qatar Dubai Abu Dhabi Sharj...
Quick Doctor In Kuwait +2773`7758`557 Kuwait Doha Qatar Dubai Abu Dhabi Sharj...Quick Doctor In Kuwait +2773`7758`557 Kuwait Doha Qatar Dubai Abu Dhabi Sharj...
Quick Doctor In Kuwait +2773`7758`557 Kuwait Doha Qatar Dubai Abu Dhabi Sharj...daisycvs
 
Call Girls From Pari Chowk Greater Noida ❤️8448577510 ⊹Best Escorts Service I...
Call Girls From Pari Chowk Greater Noida ❤️8448577510 ⊹Best Escorts Service I...Call Girls From Pari Chowk Greater Noida ❤️8448577510 ⊹Best Escorts Service I...
Call Girls From Pari Chowk Greater Noida ❤️8448577510 ⊹Best Escorts Service I...lizamodels9
 
Organizational Transformation Lead with Culture
Organizational Transformation Lead with CultureOrganizational Transformation Lead with Culture
Organizational Transformation Lead with CultureSeta Wicaksana
 

Dernier (20)

Uneak White's Personal Brand Exploration Presentation
Uneak White's Personal Brand Exploration PresentationUneak White's Personal Brand Exploration Presentation
Uneak White's Personal Brand Exploration Presentation
 
Famous Olympic Siblings from the 21st Century
Famous Olympic Siblings from the 21st CenturyFamous Olympic Siblings from the 21st Century
Famous Olympic Siblings from the 21st Century
 
Dr. Admir Softic_ presentation_Green Club_ENG.pdf
Dr. Admir Softic_ presentation_Green Club_ENG.pdfDr. Admir Softic_ presentation_Green Club_ENG.pdf
Dr. Admir Softic_ presentation_Green Club_ENG.pdf
 
Call Girls In Panjim North Goa 9971646499 Genuine Service
Call Girls In Panjim North Goa 9971646499 Genuine ServiceCall Girls In Panjim North Goa 9971646499 Genuine Service
Call Girls In Panjim North Goa 9971646499 Genuine Service
 
BAGALUR CALL GIRL IN 98274*61493 ❤CALL GIRLS IN ESCORT SERVICE❤CALL GIRL
BAGALUR CALL GIRL IN 98274*61493 ❤CALL GIRLS IN ESCORT SERVICE❤CALL GIRLBAGALUR CALL GIRL IN 98274*61493 ❤CALL GIRLS IN ESCORT SERVICE❤CALL GIRL
BAGALUR CALL GIRL IN 98274*61493 ❤CALL GIRLS IN ESCORT SERVICE❤CALL GIRL
 
How to Get Started in Social Media for Art League City
How to Get Started in Social Media for Art League CityHow to Get Started in Social Media for Art League City
How to Get Started in Social Media for Art League City
 
Falcon's Invoice Discounting: Your Path to Prosperity
Falcon's Invoice Discounting: Your Path to ProsperityFalcon's Invoice Discounting: Your Path to Prosperity
Falcon's Invoice Discounting: Your Path to Prosperity
 
Katrina Personal Brand Project and portfolio 1
Katrina Personal Brand Project and portfolio 1Katrina Personal Brand Project and portfolio 1
Katrina Personal Brand Project and portfolio 1
 
Call Girls Pune Just Call 9907093804 Top Class Call Girl Service Available
Call Girls Pune Just Call 9907093804 Top Class Call Girl Service AvailableCall Girls Pune Just Call 9907093804 Top Class Call Girl Service Available
Call Girls Pune Just Call 9907093804 Top Class Call Girl Service Available
 
Call Girls In Noida 959961⊹3876 Independent Escort Service Noida
Call Girls In Noida 959961⊹3876 Independent Escort Service NoidaCall Girls In Noida 959961⊹3876 Independent Escort Service Noida
Call Girls In Noida 959961⊹3876 Independent Escort Service Noida
 
👉Chandigarh Call Girls 👉9878799926👉Just Call👉Chandigarh Call Girl In Chandiga...
👉Chandigarh Call Girls 👉9878799926👉Just Call👉Chandigarh Call Girl In Chandiga...👉Chandigarh Call Girls 👉9878799926👉Just Call👉Chandigarh Call Girl In Chandiga...
👉Chandigarh Call Girls 👉9878799926👉Just Call👉Chandigarh Call Girl In Chandiga...
 
Monthly Social Media Update April 2024 pptx.pptx
Monthly Social Media Update April 2024 pptx.pptxMonthly Social Media Update April 2024 pptx.pptx
Monthly Social Media Update April 2024 pptx.pptx
 
RSA Conference Exhibitor List 2024 - Exhibitors Data
RSA Conference Exhibitor List 2024 - Exhibitors DataRSA Conference Exhibitor List 2024 - Exhibitors Data
RSA Conference Exhibitor List 2024 - Exhibitors Data
 
Mysore Call Girls 8617370543 WhatsApp Number 24x7 Best Services
Mysore Call Girls 8617370543 WhatsApp Number 24x7 Best ServicesMysore Call Girls 8617370543 WhatsApp Number 24x7 Best Services
Mysore Call Girls 8617370543 WhatsApp Number 24x7 Best Services
 
Call Girls Navi Mumbai Just Call 9907093804 Top Class Call Girl Service Avail...
Call Girls Navi Mumbai Just Call 9907093804 Top Class Call Girl Service Avail...Call Girls Navi Mumbai Just Call 9907093804 Top Class Call Girl Service Avail...
Call Girls Navi Mumbai Just Call 9907093804 Top Class Call Girl Service Avail...
 
Cracking the Cultural Competence Code.pptx
Cracking the Cultural Competence Code.pptxCracking the Cultural Competence Code.pptx
Cracking the Cultural Competence Code.pptx
 
Quick Doctor In Kuwait +2773`7758`557 Kuwait Doha Qatar Dubai Abu Dhabi Sharj...
Quick Doctor In Kuwait +2773`7758`557 Kuwait Doha Qatar Dubai Abu Dhabi Sharj...Quick Doctor In Kuwait +2773`7758`557 Kuwait Doha Qatar Dubai Abu Dhabi Sharj...
Quick Doctor In Kuwait +2773`7758`557 Kuwait Doha Qatar Dubai Abu Dhabi Sharj...
 
Call Girls From Pari Chowk Greater Noida ❤️8448577510 ⊹Best Escorts Service I...
Call Girls From Pari Chowk Greater Noida ❤️8448577510 ⊹Best Escorts Service I...Call Girls From Pari Chowk Greater Noida ❤️8448577510 ⊹Best Escorts Service I...
Call Girls From Pari Chowk Greater Noida ❤️8448577510 ⊹Best Escorts Service I...
 
Forklift Operations: Safety through Cartoons
Forklift Operations: Safety through CartoonsForklift Operations: Safety through Cartoons
Forklift Operations: Safety through Cartoons
 
Organizational Transformation Lead with Culture
Organizational Transformation Lead with CultureOrganizational Transformation Lead with Culture
Organizational Transformation Lead with Culture
 

7.2 gsm-association-fraud-forum

  • 1. www.i3forum.org David Morrow Group Corporate Security Fraud Manager Vodafone Group Services Limited
  • 2. Restricted - Confidential Information © GSM Association 2012 All GSMA meetings are conducted in full compliance with the GSMA’s anti-trust compliance policy GSM Association Fraud Forum Presentation to i3 Forum David Morrow, Vodafone Document Number Meeting Date 17 May 2012 Meeting Venue Chicago For Approval For Information X Version 1 Security Restrictions Confidential – GSMA Members, Associate Members & Rapporteurs & i3Forum members
  • 3. © GSM Association 2012 3 GSM Association (GSMA) Background   Global trade association responsible for GSM family of technologies   Global membership of nearly 800 operators and 200 manufacturers and suppliers   Organised into working groups and projects on many topics, open to all employees of GSMA member companies   Participation leads to industry solutions, information sharing and education
  • 4. © GSM Association 2012 4 GSMA Working Groups   Eight Working Groups report to EMC   Focus on a particular area of competence, e.g. security   Deliver solutions for the GSM community where cooperation is needed, e.g. roaming   Operators provide subject matter experts to the Working Groups   HQ provides support via a WG Director and Coordinator
  • 5. © GSM Association 2012 5 Fraud Forum (FF) – Objectives & Membership   Trusted forum on GSM fraud issues to minimise exposure for members – Develop fraud awareness – Exchange intelligence & best practice – Develop & maintain industry countermeasures e.g. NRTRDE – Assess the fraud exposure of new services – Collaborate with other GSMA working groups and projects   Provides value through education in addition to formal work items. FF Membership – Jan 2012 Total across FF, Asia-Pac FF & Africa FF Individual members 487 Countries 106 Companies 242 Operators 199 Associate members 43
  • 6. © GSM Association 2012 6 Evolution of Mobile Fraud   Analogue - subscription fraud   Analogue cloning - personal use, Call Selling (later inc. PBX fraud)   Premium Rate Service (PRS) fraud (domestic)   Roaming PRS fraud   Credit card fraud – prepay   SIM cloning (small numbers) + Roaming PRS, etc.   International Revenue Share Fraud (IRSF)
  • 7. © GSM Association 2012 7 Current key issues:   Subscription fraud   Roaming   GSM Gateway/SIMbox (bypass)
  • 8. © GSM Association 2012 8 03:00 Thurs 05:00 Thurs 17:00 Fri 09:00 Mon 11:00 Mon €37800 per SIM
  • 9. © GSM Association 2012 9 Optimised Fraud Home Network Carrier n Number range holder Content provider €1.00 €0.50 €0.25 €4.00 €3.50 €3.25 No payment to Home Network €3.00   Short – stopping by fraudsters   Number Range hi-jacking Carrier 2Carrier 1
  • 10. © GSM Association 2012 10 What next (and what’s in a name)?   4G   LTE (Long Term Evolution)   NGN (Next Generation Networks)   all terms referring to mobile evolution from circuit switched to packet switched services
  • 11. © GSM Association 2012 11 What is a Next Generation Network?   Support for services, applications based on service building blocks   Interworking with legacy networks via open interfaces   Unified service   Converged services   Services don’t have to be from the Mobile Operator • Codec • Destination Voice • Auth. • Set destination Access network •  Find end party •  Give IP address and route Receiving network •  Select codec • Decode IP data Access for End party
  • 12. © GSM Association 2012 12 IP & IMS Systems   First time in mobile telecoms that the bearer providing the service is totally separate from the services offered   In effect, this means two separate operators can run services, one for the service and one for the bearer   Within 10 years Telco networks will be solely IP backbone and conventional switching will have disappeared due to cost   All services offered will be digital 12
  • 13. © GSM Association 2012 13 NGN issues - Identity Management   There are now two types of identity - for the bearer & service layers   Different identities may be combined into one account   There will be a number of other identities used internally in the network   Many of the identities are dynamic and change in session Bearer Identity   Account ID, Radius ID   IMSI, Terminal ID   MSISDN, Fixed line access number   IMEI, Device Electronic serial number Service Identity IMPU IMPI sip_uri tel_uri E.164
  • 14. © GSM Association 2012 14 NGN: The Challenges   The key areas for challenges and risks are: –  For Operators - control of separate Bearer and Services –  Service Providers - lack of total control and information –  New players with lack of knowledge and/or experience –  Fraud Management - new technical opportunities for fraud –  Revenue Assurance - Different billing models and data sources –  Security - More complex technical controls –  3rd parties - Control and trustworthiness of billing and content!   A mix of: –  More complex technology –  Different billing models So Fraud will be different
  • 15. © GSM Association 2012 15 IMS: IP Multimedia Subsystem   IMS means a complete new network that separates the bearer network and can work across many network types –  Mobile GSM, 3G, CDMA etc. –  Fixed networks –  WLAN –  PAN e.g. Bluetooth, IR or Near Field Communications (NFC)   IMS does not standardise applications, but aids access of multimedia & voice applications across wireless & fixed terminals   IMS provides ‘horizontal control layers’ that allows the separation of the access/bearer network from the service layer  This drives different needs for fraud & risk management 15
  • 16. © GSM Association 2012 16 Customer Terminal Device   In NGN, the “end point” can be called different names in different network types can be: –  Mobile Phone (GSM, CDMA, …..) –  Data terminal – tablets or smartphones –  ASDL or Cable Router/ Modem –  IAD (Integrated Access Device) –  CPE (Customer Premise Equipment) for fixed networks   They all have some common functions: –  Store an identity such as SIP Username and password –  Have an IP address (allocated or dynamic) –  Have some other identity such as an equipment identity –  Have an operating system and memory and run applications –  Generally poor internal security or fraud controls so these need to be in the CSP’s systems
  • 17. © GSM Association 2012 17 Key Issues for Next Generation Services   Every service can be very different and made up of different component parts - both IP with interaction over different Bearer and Services   Content and payments will move operators to a different risk profile similar to those of banks and retailers – e.g. money laundering, undelivered goods etc.   Issues for the operator on CPE, IAD, SIP & smartphones and the applications that exist on them – corruption or malware   Proof of the location and identity of the user and transaction is difficult with mobile and IP based services!
  • 18. © GSM Association 2012 18 Professional:  Video Conference  Multimedia Sales  Advertising  Informative  Remote Vigilance  Mobile Marketing  On Line Training  Location Based  Security Surveillance  Mobile Office  Presence Financial:  M – Commerce  Virtual Banking  E – Payments  On Line Billing  Stock broking  Auctions  Government  Community  Financial Transactions Shopping:  M – Commerce  Auctions  Retailing  Ticketing  Booking  Working  Advertising Entertainment:  Informative  Multiparty Gaming  Music  Movies  Video Content  Gambling  TV  Radio  Pictures  Messaging  Video Sharing NGN Service Groupings 18
  • 19. © GSM Association 2012 19 Challenges for Fraud & RA   More complex both from a technical and operational perspective   Data more real-time and complex - increased need for the collection of events   Linking data in Bearer & Services   Requires new data feeds from new services platforms
  • 20. © GSM Association 2012 20 NGN Frauds?   Aim for the highest value content or greatest volume   Hackers and Malware writers looking for notoriety by implementing widespread damage / maximum financial gain   Fraudsters from the Finance Industry targeting M-banking & M-commerce   Will make more use of internal information and work with internal staff due to better external controls   Criminals will exploit the same approaches as today but with a greater potential reward….. Moving away from simple airtime usage – comparatively low value!
  • 21. © GSM Association 2012 21 NGN Fraud Management Approach   NGN FM approach will be a variation of what is done today, but it will be more complex both from a technical and operational perspective   Significantly more data and increased need for the collection of events from many places compared to present   The identities may not have a known location for traffic origination or termination? 20% of IP are not where they are geographically expected   Traffic can originate in different places - no need for a central switch location where call records can be collected for FM purposes
  • 22. © GSM Association 2012 22 Services Fraud Management   Fraud detection of the services layer will be partly the same as today - many services used combined with multiple bearers   Provisioning related fraud will need detecting as a lot more self care will take place and it will also be driven by the billing model   FMS will need to know which services the customer is allowed to use - needs much more control of provisioning fraud than with present systems
  • 23. www.i3forum.org Panelists: Dima Alkin, Director, Sales Support, North America, Cvidya Peter Coulter, Member of Executive Cmtee-FIINA, Executive Director, Global Fraud Management, AT&T Steve Heap, Senior Technology/Communications Executive, IPSoft David Morrow, Group Corporate Security Fraud Manager, Vodafone Group Services Limited Thomas Walker, Director - Business & Solutions Consulting, Subex Fraud Control & Management Panel Discussion
  • 24. www.i3forum.org May 17, 2012 Chicago 3rd Annual i3Forum Conference The Future is All IP