Road 0121 1402x672

The Road to 5G Migration Starts With Securing 4G

Feb. 1, 2021
Positive Technologies published its Migrating mobile networks to 5G: a smooth and secure approach report. The report details how mobile network operators (MNOs) who have already begun upgrading to 5G […]

Positive Technologies published its Migrating mobile networks to 5G: a smooth and secure approach report. The report details how mobile network operators (MNOs) who have already begun upgrading to 5G networks can make the journey of migration from previous generation networks without exposing themselves and subscribers to existing and new risks.

 5G networks today mostly rely on the infrastructure of previous generation 4G LTE networks. The Non-Standalone architecture has proved a quick way to provide subscribers with 5G access, since MNOs do not need to build a new core network. However, this also exposes both the next-generation network and 5G subscribers to the same threats of past networks.

Food for Thought from Our 2022 ICT Visionaries

 As shown by previous Positive Technologies research, an attacker can exploit Diameter vulnerabilities in 4G to cause denial of service attacks, track subscriber location, obtain subscriber profile information, and commit fraud. In the report, Positive Technologies experts argue that with 5G Non-Standalone architecture, previous-generation protocols must be secured and since networks are so intertwined, merely defending 5G is not enough.

 It also examines how mobile operators are scoping out ways to successfully migrate, without compromising the current architecture. One solution is to build a separate Standalone core network and shed themselves of the LTE entirely. Some mobile providers are beginning to deploy their standalone 5G networks. Gartner expects 5G investment to exceed LTE/4G in 2022 and that communications service providers (CSPs) will gradually add standalone capabilities to their non-standalone 5G networks. For now, operators cannot completely scrap old networks, especially as 5G coverage is not available everywhere.

 Pavel Novikov, Head of the Telecom Security Research Team at Positive Technologies, comments: "For years to come, most 5G networks will continue to rely on 4G networks, which means 5G-only security efforts are pointless and dangerous. Therefore, true 5G security must go beyond the features built into standalone architecture. Cost efficiencies can be gained by building a hybrid network that supports both LTE and 5G, which will enable a future-proofed next-generation network in the longer term. This enables mobile operators to add new 5G-capable subscribers, while continuing to support older ones to offer a full-service network. To defend 5G networks, it’s important to pay special attention to signaling networks, utilizing existing defenses, and adding additional layers specific to 5G. The network must be carefully checked for configuration errors, requiring regular assessment of the state of infrastructure security."

 Click here to access the full report.

 About Positive Technologies: Positive Technologies is a global cyber security company, headquartered in Europe. Its flagship Telecom Cybersecurity Suite helps network operators drive business performance while protecting their customers and services. By providing greater visibility into infrastructure vulnerabilities and securing customer services, Positive Technologies helps to increase customer trust, drive revenue with value-added security services, and protect emerging telecoms technologies such as 5G and IoT. For more information, visit https://positive-tech.com.

Like this Article?

Subscribe to ISE magazine and start receiving your FREE monthly copy today!

About the Author

Human Network Contributor

If you're interested in contributing an article, please email Sharon Vollman, Editorial Director, [email protected], or Lisa Weimer, Managing Editor, ISE Magazine, [email protected].