The present invention relates to a security system for mobile networks and a method of providing increased security in mobile networks.
As with electronic mail, unsolicited messages or spam messages are a problem in the mobile network environment. The content of these messages is usually aimed to push the recipient to make use of some charged services. Such messages are a source of irritation to the user and are often misleading.
Like e-mail spam, spam messages are becoming an increasing source of nuisance to mobile users. The content of these messages is usually aimed to push the recipient to make use of some charged services, such as calling a specific charged 0800 number. This phenomenon is irritating to the recipient who does not fall into the trap, and is also misleading as the end-user who did fall in the trap will eventually blame the operator. By using faked source addresses in their messages, spamming parties keep their identity hidden from operators.
The invention addresses the problem of unsolicited messages in mobile networks.
According to the invention, there is provided a security system for a mobile network having a gateway for receiving messages from outside the network and a network element storing mobile terminal location information, wherein the security system:
The invention also provides a method implemented by a security system for monitoring messages in a mobile network having a gateway for receiving messages from outside the network and a network element storing mobile terminal location information, the method comprising the steps of the security system:
In one embodiment, the system blocks messages which are likely to be unsolicited.
In another embodiment, the system also monitors data for a look-up request for a message, and decides according to said look-up request data and monitoring messages.
In another embodiment, the system monitors a source address of a look-up request and a source address of a corresponding message, and decides that the message is likely to be unsolicited if its source address is different from that of the corresponding look-up request.
In a further embodiment, the system further comprises a data store and a timer, the system stores look-up requests received from the gateway in the data store, and decides that a message is likely to be unsolicited if a corresponding look-up request has not been received within a pre-set time period.
In one embodiment, the system stores the look-up requests for only a pre-set time duration, and determines if a request has been received within said pre-set time period if it is stored in the data store when the data store is searched upon receipt of a message.
In another embodiment, the system determines that a look-up request corresponds with a message if they have the same source address.
In another embodiment, the system activates the timer upon receipt of said request.
In another embodiment, the timer is configured to run from the time of receipt T0 to a preset time limit Tpreset
In a further embodiment, the system facilitates setting the timer time limit Tpreset
The invention will be more clearly understood from the following description of some embodiments thereof, given by way of example only with reference to the accompanying drawings in which:
Referring to
The security system 2 has a processor 4 programmed to monitor incoming SRI requests R1, R2 . . . Rn and incoming messages M1, M2 . . . Mn. The routing configuration within the mobile network 1 is such that all potentially suspicious messages are routed through the security system 2 where they can be analyzed. Incoming SRI requests include source information. Incoming messages M1, M2 . . . Mn are each associated with a prior SRI request. The security system 2 also comprises a local data store 5 and a timer clock 6. Received SRI requests are monitored, associated source information is copied to the local data store 5 and an associated counter of the timer clock 6 is started.
Some features typical of unsolicited messages or spam are as follows:
The system 1 and method of the invention operate to prevent messages with the above noted features from passing through. The method of operation involves monitoring SRI requests and incoming messages. As noted above the location information retrieved from the HLR query, in response to a look-up request/SRI request, is then used in the time period T thereafter to submit unsolicited messages destined for the end-user. The clock timer 6 is thus preset to run from the time of receipt of a SRI request T0 to a preset time limit Tpreset
Referring to
The (internal) architecture of the security system includes a proxy which is able to look into the relevant details of a passing message/SRI request and a data store for keeping relevant data related to (recent) SRI requests so that these details can be compared to those of subsequent messages.
In case an SRI enters, at least the following information is stored: source address of the originator of the SRI, identification of the mobile for which the query is intended, and the current time. As soon as a message itself is received then the recipient address of that message is used to perform a lookup in the store. In case one (or more) registration of a prior SRI is found then the source address of that SRI is compared to that of the message itself. If no prior SRI is found (
The system of the invention enables real time monitoring and control of unsolicited messages arriving in a mobile network. This method prevents mobile users from receiving untraceable messages with fake source addresses from an international source by monitoring and controlling international traffic as described above.
The method of the invention serves to prevent unsolicited messages from passing through mobile networks. It has the advantage that traceability is guaranteed and that end users are not bothered by these messages.
The invention also includes a computer readable medium comprising software code for performing the method as described above when executing on a digital data processor.
The invention is not limited to the embodiments described but may be varied in construction and detail.
This is a national stage of PCT/IE2006/000002 filed 18 Jan. 2006, claiming the benefit of U.S. Provisional Application No. 60/644,531 filed 19 Jan. 2005, and published in English.
Filing Document | Filing Date | Country | Kind | 371c Date |
---|---|---|---|---|
PCT/IE2006/000002 | 1/18/2006 | WO | 00 | 7/6/2007 |
Publishing Document | Publishing Date | Country | Kind |
---|---|---|---|
WO2006/077536 | 7/27/2006 | WO | A |
Number | Name | Date | Kind |
---|---|---|---|
6101393 | Alperovich et al. | Aug 2000 | A |
6603389 | Murray | Aug 2003 | B1 |
6738814 | Cox et al. | May 2004 | B1 |
6885872 | McCann et al. | Apr 2005 | B2 |
20020184362 | Banerjee et al. | Dec 2002 | A1 |
20030009698 | Lindeman et al. | Jan 2003 | A1 |
20030083078 | Allison et al. | May 2003 | A1 |
20050101306 | Zabawskyj et al. | May 2005 | A1 |
20060135133 | Cai et al. | Jun 2006 | A1 |
20070281718 | Nooren | Dec 2007 | A1 |
20080004047 | Hill et al. | Jan 2008 | A1 |
Number | Date | Country |
---|---|---|
2397139 | Jul 2003 | GB |
WO 2005091656 | Mar 2005 | WO |
Number | Date | Country | |
---|---|---|---|
20080092225 A1 | Apr 2008 | US |
Number | Date | Country | |
---|---|---|---|
60644531 | Jan 2005 | US |