BEGIN:VCALENDAR
VERSION:2.0
PRODID:Data::ICal 0.24
BEGIN:VEVENT
DESCRIPTION:   'Title: This is a Test: Vibe Hacking LTE Cell Broadcast for 
 Emergency\n   Alert Injection\n   Tags: Radio Frequency Village | Creator 
 Talk/Panel\n   When: Saturday\, Aug 8\, 13:30 - 13:55 PDT\n   Where: LVCCW
  Level 1 Hall 1 409 (Radio Frequency Village) - [1]Map\n\n   Description:\
 n\n   Every month\, billions of mobile subscribers worldwide receive\n   P
 residential Alerts\, AMBER alerts\, earthquake warnings\, and severe\n   w
 eather notifications directly to their phones through the 3GPP Public\n   
 Warning System (PWS). This encompasses CMAS\, ETWS\, and EU-Alert. These\n
    messages bypass all user settings\, cannot be blocked\, and are trusted
 \n   implicitly by the public. But what if the tower screaming at your\n  
  phone isn't a tower at all?\n\n   This talk exposes the fragile trust mod
 el underlying emergency\n   alerting on modern LTE networks globally. We d
 issect how PWS messages\n   are transported at the physical and protocol l
 ayers\, from SIB10/11/12\n   broadcast blocks down to the exact ASN.1 enco
 ding\, and demonstrate how\n   an attacker with modest RF resources can in
 ject\, spoof\, and manipulate\n   these alerts at scale using software-def
 ined radio.\n\n   We'll begin with a technical primer on PWS architecture 
 in LTE\,\n   explaining how Cell Broadcast Service (CBS) messages propagat
 e from\n   alert aggregators through carrier core networks to individual e
 NodeBs\,\n   and ultimately to handsets worldwide via the BCCH. Then we sh
 ift to\n   the offensive perspective: using a USRP B210 and open-source LT
 E\n   stacks\, we show how to craft malicious SIB messages\, impersonate\n
    legitimate carrier cells\, and force target devices to display\n   arbi
 trary alert text\, including spoofed presidential alerts and\n   hyper-loc
 alized fake emergency notifications.\n\n   The presentation includes live 
 demonstrations\, open-source release of\n   our PWS injection toolkit\, an
 d a discussion of responsible disclosure\n   findings shared with carriers
  and regulators across multiple\n   countries. No prior LTE expertise is r
 equired\, but familiarity with\n   SDR concepts and cellular architecture 
 will help attendees maximize\n   their takeaways. Attendees will leave und
 erstanding exactly why global\n   wireless emergency alerting lacks crypto
 graphic authentication\, how\n   trivial the barrier to entry is for alert
  spoofing.\n\n   SpeakerBio:  XtraRaj\, Mechanic\, Car Hacking Village\n\n
    Ayyappan is a cybersecurity enthusiast interested in hacking and\n   se
 curing everything from wireless\, automotive\, IoT security\, and\n   crit
 ical infrastructure. He has published several high-impact CVEs\n   relatin
 g to the automotive and IoT sectors and loves to tinker with\n   every ele
 ctronic device he can get his hands on. Notably\, he once\n   successfully
  turned a doorbell into a botnet that rickrolls visitors.\n\n   Links:\n  
  inspired from this paper:\n   https://www.purdue.edu/newsroom/archive/rel
 eases/2018/Q1/attacks-on-4g-lte-networks-could-send-fake-emergency-alerts.
 html\n   - [2]Research inspired from this paper:\n   https://www.purdue.ed
 u/newsroom/archive/releases/2018/Q1/attacks-on-4g-lte-networks-could-send-
 fake-emergency-alerts.html\n   '\n\n   1. #LVCCW_Level1_Hall1\n   2. Resea
 rch%20inspired%20from%20this%20paper:%20https://www.purdue.edu/newsroom/ar
 chive/releases/2018/Q1/attacks-on-4g-lte-networks-could-send-fake-emergenc
 y-alerts.html\n\n\n
DTEND:20260808T205500Z
DTSTART:20260808T203000Z
LOCATION:Radio Frequency Village - LVCCW Level 1 Hall 1 409 (Radio Frequenc
 y Village)
SUMMARY:This is a Test: Vibe Hacking LTE Cell Broadcast for Emergency Alert
  Injection
END:VEVENT
END:VCALENDAR
