UNIT.City — місце, де люди працюють... КРАЩЕ! Обирай свій простір просто зараз 👉
Марія БровінськаWar
19 January 2026, 08:35
2026-01-19
"It's all about the damn spoofing." Cybersecurity researcher publishes investigation into the causes of the internet blackout in Iran
Cybersecurity researcher Nariman Gharib has published a technical investigation into the failure of Starlink terminals in Iran during a massive internet blackout. The main finding: the terminals were subject to GPS spoofing, causing connectivity and network stability issues.
Cybersecurity researcher Nariman Gharib has published a technical investigation into the failure of Starlink terminals in Iran during a massive internet blackout. The main finding: the terminals were subject to GPS spoofing, causing connectivity and network stability issues.
«Cybersecurity researcher Nariman Garib published a technical investigation into the Internet blackout in Iran. He says that damn spoofing is to blame for everything. He allegedly fooled the Starlink terminals and everything worked, but poorly,» military communications expert Sergey (Flash) Beskrestnov described the incident in simple words.
Reference
Spoofing occurs when an attacker feeds incorrect signals to a GNSS receiver in order to intercept its original positioning data. Spoofing is a «smart» form of GPS interference. During a spoofing attack, the GPS receiver reports an incorrect position.
The GPS spoofing incident occurred against the backdrop of massive anti-government protests in the country that began in January 2026 due to an economic crisis, rising prices, and political tensions.
To limit the spread of information and control the protests, the Iranian authorities implemented a massive internet shutdown. During the blackout, virtually all access to the global internet was blocked, mobile and landline communications were severely restricted, and some internal services (state or «whitelisted») remained available.
In this context, Starlink terminals were supposed to provide access to the global network, but, according to Nariman Garib, they were purposefully subjected to GPS spoofing, which complicated connection and reduced service performance.
That is, Starlink’s technical problems are part of a broader government intervention in internet access during a crisis.
According to the researcher’s findings, the Internet in Iran disappeared due to spoofing detection and GPS jamming — the terminals detected anomalous GPS signals and activated countermeasures.
In addition, the fixer experienced low performance — about 20% constant packet loss, and there was no stable connection for 24 minutes of operation.
Satellite tracking problems due to directional error (deviation of about 1°) exceeded the position uncertainty (0.32°), making it difficult to maintain optimal communication.
The connection at the boom was maintained, but the bandwidth was limited and the stability was low.
According to Garib, this is the first documented case of a state using GPS spoofing against consumer satellite internet. The incident demonstrates how manipulation of GPS signals can disrupt satellite terminals and limit access to the global internet.
Will the points of invincibility have guaranteed internet via xPON or Starlink during blackouts? What does the government resolution say about this and will it help Ukrainians stay connected?
Product Designer задонатив ЗСУ особистий Starlink. Як він це зробив
Арсеній Фещенко працює на позиції Product Designer платформи по оренді квартир у Києві та Лондоні bird. Нещодавно хлопець задонатив на потреби ЗСУ особистий Starlink. Розповідаємо, як це вдалося зробити.
Британець створив інструмент для злому Starlink з деталями на $25. Чи виведе він термінал з ладу? WIRED
Британський дослідник безпеки Леннерт Воутерс створив modchip — спеціальний інструмент злому, який можна приєднати до антени Starlink. Готові деталі для нього коштують $25.
10 серпня на конференції з безпеки Black Hat у Лас-Вегасі дослідник розкрив подробиці збоїв у терміналах Starlink та розповів про те, як серія апаратних недоліків дозволяє зловмисникам отримати доступ до системи і запустити власний код на пристроях. Про це написав WIRED.
Бойова гігієна. Чим небезпечний WiFi на передовій, та чому інколи прилітає по Starlink: пояснює айтішник
Володимир Степанець, Senior Systems Architect в EPAM Poland написав великий пост-пояснення про те, чим небезпечний інтернет на передовій та чому роздавати його не варто як з терміналів Starlink, так і зі смартфону.
Публікуємо його аргументи, правила та поради.
Have important news to share? Message our Telegram bot
Key events and useful links in our Telegram channel