TelcoSecSecurity Research
Home
5G Security
New

Next-gen network security analysis

4G/LTE Security

LTE network vulnerabilities

3G Security

UMTS security assessment

2G Security

GSM legacy vulnerabilities

SS7 Security

Signaling System 7 attacks

Diameter Security

AAA protocol vulnerabilities

SIGTRAN Security

IP-based signaling transport

GTP Security
Updated

GPRS tunneling protocol

SIP Security

Session Initiation Protocol

VoIP Security

Voice over IP vulnerabilities

IMS Security

IP Multimedia Subsystem

SIM Card Security

SIM card attack vectors

Mobile Device Security

Smartphone vulnerabilities

Baseband Security

Cellular modem analysis

MoTIF Matrix

Mobile Threat Intelligence Framework

Security Tools

Testing and analysis tools

Security Diagrams

Visual security references

Security Comparisons

Technology comparisons

Home
5G Security
New

Next-gen network security analysis

4G/LTE Security

LTE network vulnerabilities

3G Security

UMTS security assessment

2G Security

GSM legacy vulnerabilities

SS7 Security

Signaling System 7 attacks

Diameter Security

AAA protocol vulnerabilities

SIGTRAN Security

IP-based signaling transport

GTP Security
Updated

GPRS tunneling protocol

SIP Security

Session Initiation Protocol

VoIP Security

Voice over IP vulnerabilities

IMS Security

IP Multimedia Subsystem

SIM Card Security

SIM card attack vectors

Mobile Device Security

Smartphone vulnerabilities

Baseband Security

Cellular modem analysis

MoTIF Matrix

Mobile Threat Intelligence Framework

Security Tools

Testing and analysis tools

Security Diagrams

Visual security references

Security Comparisons

Technology comparisons

MoTIFTechniquesMOT3006
Initial Access
MOT3006

Exploit via Radio Interface

Public
2G
3G
4G
View in Matrix
Description

Adversaries may use the radio access network to initiate attacks towards the UE or the mobile network.

Sub-techniques
Specific variations of this technique
MOT1477.301AS Signalling
2G
3G
4G: Demonstrated

Adversaries may modify or trigger control plane procedures on the radio interface control plane using Access Stratum (AS) signalling that occurs between the UE and the base station.

MOT1477.302NAS Signalling
2G
3G
4G: Demonstrated

Adversaries may modify or trigger Non-Access-Stratum (NAS) signalling related procedures that is generated from a false base station infrastructure.

MOT1477.303Radio Broadcast Channel
2G
3G
4G

The adversary leverages the radio broadcast System Information Block1 messages (SIB1) to advertise to the target UEs new cell configuration.

MOT1477.3045G NR Radio Interface
5G-SA: Theoretical

Adversaries may exploit vulnerabilities in the 5G New Radio (NR) interface to initiate attacks against UEs or the network.

Related Software
Software tools associated with this technique

No related software found

Network Generations
Mobile network generations this technique applies to
2G
Used
3G
Used
4G
Used
5G-SA
Not Applicable
5G-NSA
Not Applicable
Quick Links
View in MoTIF MatrixView Tactic: Initial AccessAll Techniques
TelcoSec LogoTelcoSec

Expert resources on telecommunications security, vulnerabilities, and attack vectors in mobile networks and unified communications.

GitHubLinkedInEmail

Mobile Networks

  • 5G Security
  • 4G Security
  • 3G Security
  • 2G Security

Signaling Protocols

  • SS7 Security
  • Diameter Security
  • SIGTRAN Security
  • SIP Security
  • VoIP Security

Resources

  • MoTIF Framework
  • Security Tools
  • Sitemap
  • About Author
  • Contact
Privacy PolicyTerms of ServiceAdvertisePartners

© 2025 TelcoSec. All rights reserved.