The 5G Key-Establishment Stack

Rhys Miller, Ioana Boureanu, Stephan Wesemeyer⋆, Christopher J. P. Newton · Proceedings of the 2022 ACM on Asia Conference on Computer and Communications Security · 2022

We formally analyse the security of each 5G authenticated key- establisment (AKE) procedures: the 5G registration, the 5G authentication and key agreement (AKA) and 5G handovers. We also study the security of their composition, which we call the 5GAKE_stack. Our security analysis focuses on aspects of multi-party AKEs that occur in the 5GAKE_stack. We also look at the consequences this AKE (in)security has over critical mobile-networks' objects such as the Protocol Data Unit (PDU) sessions, which are used to bill sub- scribers and ensure quality of service as per their contracts/plans.

Read the paper · More papers on PaperTik