~ similar to 2605.10812v1· 20 results
The paper empirically compares the security and privacy implementation characteristics of major Android messaging apps (Meta Messenger, Signal, and Telegram) using static and dynamic analysis, finding…
This paper provides a comprehensive review of the security vulnerabilities and privacy challenges inherent in the Open Radio Access Network (O-RAN) architecture for the 6G era, systematically categori…
This paper demonstrates a non-disruptive, sidecar-based integration of NIST-standardized Post-Quantum Cryptography (PQC) into an open-source 5G core, showing that while it introduces a predictable lat…
This paper analyzes the security vulnerabilities of emerging pay-for-use Wi-Fi hotspots in rural areas, demonstrating practical attacks like connection hijacking and rogue hotspots.
This paper evaluates the security of industrial control systems (ICS) transitioning to 5G communication, finding that while optimal conditions allow for resilience, degraded channel conditions signifi…
The paper investigates undetectable command and control (C2) channels within 5G core networks, demonstrating how compromised components can enable sophisticated attacks against subscriber security and…
The paper proposes StormShield, a fingerprint-based detection and mitigation technique implemented as an xApp on an O-RAN RIC, which effectively prevents gNB resource exhaustion caused by RRC signalin…
Song Son Ha, Kunal Singh, Florian Foerster, Henry Beuster +3 more
This paper experimentally demonstrates the high detection performance of machine learning-based intrusion detection systems for identifying cyberattacks targeting OPC UA applications running over priv…
This paper provides a comprehensive, system-level taxonomy for designing quantum-resistant network architectures, moving beyond simple protocol substitutions to address key distribution and management…
Tobias Kröll, Stephan Kleber, Frank Kargl, Matthias Hollick +1 more
The authors reverse-engineered and fuzz-tested the undocumented Apple Remote Invocation (ARI) interface, revealing a significant, untested Remote Code Execution (RCE) attack surface on iOS.
Ember is a serverless, peer-to-peer messaging system that provides end-to-end encrypted communication over a decentralized IPv6 mesh network while enforcing strict data minimization.
Huijun Zhou, Xiaohan Zhang, Haozhe Zhang, Haoyang Zhang +2 more
This study provides the first measurement of authentication security in real-world remote Model Context Protocol (MCP) servers, finding pervasive and critical authentication weaknesses, particularly i…
Qiqing Huang, Xingyu Wang, Wanda Guo, Guofei Gu +1 more
The paper introduces Constraint-Guided Semantic Testing (ConSeT), a novel framework that systematically finds critical, pre-authentication vulnerabilities in 5G User Equipment (UE) by exploiting seman…
Shereen Ismail, Taelyn Dyer, Raul Martinez, Garrett Gastman +2 more
Analyzing 10 days of global internet traffic from a network telescope reveals that a small fraction of source IPs dominate traffic, with a notable focus on exploiting legacy IoT devices via Telnet por…
Carlos Semeho Edorh, Jialu Bi, Hanchen Ye, Dawood Sajjadi +1 more
ShieldShare is a novel, non-root Android application that enables secure, VPN-backed hotspot sharing with accurate per-user traffic accounting, addressing limitations in current mobile VPN implementat…
This paper analyzes darknet traffic to characterize advanced, AI-assisted bot reconnaissance, finding that modern evasion techniques allow most bot traffic to bypass standard IDS thresholds.
The paper introduces PQC Validator, a comprehensive, layered framework designed to rigorously test and validate the actual post-quantum cryptographic readiness of cloud-native 5G Core networks, addres…
The paper analyzes the security and practical deployability of advanced Wi-Fi ranging standards (IEEE 802.11az/bk), concluding that while promising, secure implementation is highly sensitive to config…
The paper introduces a multi-surface evidence framework to provide comprehensive observability for post-quantum TLS migration, enabling robust measurement of session behavior and endpoint capabilities…
Asier Atutxa, Ane Sanz, Eire Salegi, Gaizka González +2 more
This paper designs and validates a Quantum Key Distribution (QKD) based mechanism to secure non-3GPP access in 5G networks, demonstrating that it achieves Information-Theoretic Security while improvin…