Multiple new vulnerabilities in 4G networks may cause server crashes (paper attached)

Multiple new vulnerabilities in 4G networks may cause server crashes (paper attached)

US researchers recently discovered 10 new vulnerabilities in 4G LTE networks that could be used by attackers to send fake messages to groups and possibly paralyze servers. The researchers called on relevant parties to work together to plug these vulnerabilities.

LTE is short for "Long Term Evolution" and is a type of 4G network technology. Purdue University in the United States recently announced that researchers from the university and their counterparts at the University of Iowa used a tool called "LTE Inspector" to discover these vulnerabilities in 4G LTE networks. The researchers said that this tool can systematically analyze the processes of "connection", "disconnection" and "paging" in 4G LTE networks for the first time.

[[222895]]

Researchers said that these vulnerabilities can be used to launch various forms of attacks, such as hijacking the target device's paging channel, sending fake emergency messages to a large number of devices, forcing devices to perform certain operations to drain their batteries, and blocking the device's connection to the core network. In addition, these vulnerabilities can also allow attackers to access the core network without authentication, and launch a "denial of service attack" after obtaining user address information, causing the server to crash.

The researchers tested eight of the 10 new vulnerabilities, proving that fixing them is not easy. Patching existing systems without breaking backward compatibility is difficult to prevent attacks under extreme conditions. To solve the related problems, it may be necessary to readjust the overall architecture of the 4G LTE network.

The researchers called on equipment manufacturers and network providers to work together to update the entire system of 4G LTE networks to plug these vulnerabilities.

paper:

[[222896]]

[[222897]]

[[222898]]

[[222899]]

[[222900]]

<<:  A brief discussion on the organizational structure design of data center operation and maintenance

>>:  There will be a chance in 2020: Why is it so difficult to port your number? !

Blog    

Recommend

Understand HTTP and HTTPS protocols in ten minutes?

[[276795]] 1. What is a protocol? A network proto...

Network | How to design a billion-level API gateway?

The API gateway can be seen as the entrance for t...

Maxthon Host Los Angeles Unicom AS9929 Line VPS Simple Test

Yesterday I shared the news about Maxthon's L...

G Suite vs. Office 365: Which is the right productivity suite for your business?

Choosing an office suite used to be a simple matt...

Huawei's Meng Wanzhou: 5.5G is the inevitable path for 5G network evolution

On June 28, 2023 MWC Shanghai opened, and Huawei ...

Can code rot be avoided?

[[409216]] If you leave an apple on the table and...

Life is not easy, where is the future for terminal manufacturers in the 5G era?

From the 1G analog communication era to the 4G mo...