Admin/1423: On the Insecurity of Open-Source 5G Core Network Deployments in the Wild
At a glance
- الاستشهادات
- 0
- المراجع
- 15
- Comments
- 0
Abstract
5G promises improved performance and security features for our communication infrastructures, and cloud implementations of 5G core networks make private deployments more accessible. They accelerate the distribution of 5G-based communication networks for various use cases. However, the accessibility of a functional network implementation also bears the risk of maintaining a complex infrastructure with insecure configurations. In this work, we conduct a measurement study that focuses on selected interfaces of exposed core networks on the Internet. To this end, we scan for exposed management interfaces and analyze their security regarding insecure default login credentials, JWT tokens, exposed GTP ports, and cluster APIs. Our results indicate that a high number of deployed networks must be considered insecure.
Publication details
- DOI
- 10.1109/eurospw67616.2025.00025
- OpenAlex
- W4413886750
- Document type
- conference-paper
- Language
- EN
- Last metadata update
Comments
تسجيل الدخول للانضمام إلى النقاش.