TelcoSecSecurity Research
Home
5G Security
New

Next-gen network security analysis

4G/LTE Security

LTE network vulnerabilities

3G Security

UMTS security assessment

2G Security

GSM legacy vulnerabilities

SS7 Security

Signaling System 7 attacks

Diameter Security

AAA protocol vulnerabilities

SIGTRAN Security

IP-based signaling transport

GTP Security
Updated

GPRS tunneling protocol

SIP Security

Session Initiation Protocol

VoIP Security

Voice over IP vulnerabilities

IMS Security

IP Multimedia Subsystem

SIM Card Security

SIM card attack vectors

Mobile Device Security

Smartphone vulnerabilities

Baseband Security

Cellular modem analysis

MoTIF Matrix

Mobile Threat Intelligence Framework

Security Tools

Testing and analysis tools

Security Diagrams

Visual security references

Security Comparisons

Technology comparisons

Home
5G Security
New

Next-gen network security analysis

4G/LTE Security

LTE network vulnerabilities

3G Security

UMTS security assessment

2G Security

GSM legacy vulnerabilities

SS7 Security

Signaling System 7 attacks

Diameter Security

AAA protocol vulnerabilities

SIGTRAN Security

IP-based signaling transport

GTP Security
Updated

GPRS tunneling protocol

SIP Security

Session Initiation Protocol

VoIP Security

Voice over IP vulnerabilities

IMS Security

IP Multimedia Subsystem

SIM Card Security

SIM card attack vectors

Mobile Device Security

Smartphone vulnerabilities

Baseband Security

Cellular modem analysis

MoTIF Matrix

Mobile Threat Intelligence Framework

Security Tools

Testing and analysis tools

Security Diagrams

Visual security references

Security Comparisons

Technology comparisons

  • Home
  • MoTIF
  • Tactics
  • Discovery
  • Discovery
    MOTA3009

    The adversary is trying to figure out your environment

    Phase: Impact
    4 Techniques
    10 Sub-techniques
    Previous: Credential Access
    Next: Lateral Movement
    Network Service Scanning
    MOT1046
    An adversary may discover operator network related information (identifiers).
    2G
    3G
    4G
    Public
    2 sub-techniques
    Identify Subscriber
    MOT5019
    An adversary may obtain a subscriber permanent or temporary identifier via various means.
    2G
    3G
    4G
    Public
    4 sub-techniques
    Network Function Service Discovery
    MOT5003
    An adversary may query the Network Repository Function (NRF) to discover restricted Network Function (NF) services to further target that NF.
    Public
    2 sub-techniques
    Network Topology Discovery
    MOT3031
    Adversaries may discover the topology of telecom networks to identify targets for further attacks.
    2G
    3G
    4G
    Public
    2 sub-techniques
    TelcoSec LogoTelcoSec

    Expert resources on telecommunications security, vulnerabilities, and attack vectors in mobile networks and unified communications.

    GitHubLinkedInEmail

    Mobile Networks

    • 5G Security
    • 4G Security
    • 3G Security
    • 2G Security

    Signaling Protocols

    • SS7 Security
    • Diameter Security
    • SIGTRAN Security
    • SIP Security
    • VoIP Security

    Resources

    • MoTIF Framework
    • Security Tools
    • Sitemap
    • About Author
    • Contact
    Privacy PolicyTerms of ServiceAdvertisePartners

    © 2025 TelcoSec. All rights reserved.