Researchers Identify 84 Security Flaws in 4G and 5G Networks
A study by researchers from Nanyang Technological University has uncovered 84 security vulnerabilities in 4G and 5G core networks. These vulnerabilities, termed implicit trust errors (iTrue), stem from a pattern of blind trust among core network components. The flaws could allow attackers to conduct denial-of-service (DoS) attacks and session hijacking by exploiting weaknesses in the signaling interfaces of LTE/5G core networks. The vulnerabilities were found in widely used open-source LTE/5G cores, which are used in both research testbeds and commercial deployments. The study highlights the need for improved security measures in cloud-native deployments of cellular networks.