Главная
Study mode:
on
1
Intro
2
ABOUT ME
3
WHAT AM I GOING TO TALK ABOUT?
4
MOBILE NETWORK SECURITY RETROSPECTIVE
5
SECURITY RESEARCH RAPIDLY MATURING
6
SOME BASIC JARGON
7
LTE ARCHITECTURE
8
LTE ATTACH PROCEDURE
9
LTE (IN)SECURITY REDUX
10
SNIFFING BASE STATION CONFIGURATION
11
IMSI CATCHING
12
DEVICE DOS AND SILENT DOWNGRADE TO GSM
13
DEVICE TRACKING
14
DNS SPOOFING AND TRAFFIC HIJACK OVER LTE
15
UL FUZZING AND EXPLOITS WITHOUT ROGUE BS!
16
(SIMPLIFIED) 5G ARCHITECTURE
17
5G ATTACH PROCEDURE
18
5G NSA ATTACH PROCEDURE
19
5G SA ATTACH PROCEDURE
20
CHALLENGES IN CAPTURING AND ANALYZING 5G TRAFFIC
21
RELEASE 15 TRAFFIC CAPTURES FOR ANALYSIS
22
5G IMSI PROTECTION - SUPUSUCI
23
5G SUPI PROTECTION?
24
OUT OF SCOPE
25
5G (IN)SECURITY RATIONALE
26
SNIFFING 5G BASE STATION CONFIGURATION
27
5G RNTI-BASED TRACKING
28
UE CAPABILITY INQUIRY
29
THE CURRENT STATE OF AFFAIRS IN 5G SECURITY
30
ROOT CAUSE FOR MOST VULNERABILITIES
31
5G SECURITY ROADMAP?
32
DIGITAL CERTIFICATES IN CELLULAR NETWORKS?
Description:
Explore the vulnerabilities and exploits in 5G protocols through this comprehensive conference talk from Shmoocon 2020. Delve into the evolution of mobile network security, from LTE to 5G, and examine real-world 5G traffic captures. Learn about pre-authentication message-based exploits, IMSI catching prevention, and the limitations of the 5G security architecture. Analyze potential adversary tactics and discover how certain LTE exploits remain applicable in 5G networks. Gain insights from Roger Piqueras Jover, a Senior Security Architect and wireless security researcher, as he presents findings on both non-standalone (NSA) and standalone (SA) 5G modes. Understand the challenges in capturing and analyzing 5G traffic, and explore topics such as SUPI protection, base station configuration sniffing, and RNTI-based tracking. Conclude with a discussion on the current state of 5G security and potential future improvements, including the use of digital certificates in cellular networks.

5G Protocol Vulnerabilities and Exploits

0xdade
Add to list
0:00 / 0:00