SYS.INTEL — TELCOSEC RESEARCH DIVISION

FEED

Adversarial research on cellular network security — SS7 exploitation, 5G SBA vulnerabilities, and real-world threat actor intelligence documented for defenders and operators.

FILTER:
FEATURED INTELLIGENCE
ALL INTELLIGENCE RECORDS
36 RECORDS
CORE ATTACKSNEW

5G SEPP N32 Roaming Interface Security Bypass

How SEPP N32-c capability negotiation can be downgraded to unencrypted N32-f, letting IPX-positioned adversaries intercept roaming SBI traffic in plaintext.

2026-07-04MEDIUM
TRANSMISSIONS ATTACKSNEW

5G SUCI Null-Scheme Attacks: The IMSI Catcher Evolution

2026-07-04HIGH
CORE ATTACKSNEW

APT41 (Double Dragon): When State Espionage Meets Telecom Billing Fraud

2026-07-04CRITICAL
CORE ATTACKSNEW

GALLIUM (Operation Soft Cell): 7 Years Inside 10 Global Carriers

2026-07-04CRITICAL
CORE ATTACKSNEW

MITRE FiGHT for Telecom: A Field Guide to 5G Attack Techniques

2026-07-04INFO
CORE ATTACKSNEW

MuddyWater: Iran's Long-Running Telecom Espionage Campaign

MuddyWater (MERCURY) is an Iranian MOIS-linked APT running ongoing spearphishing and VPN-exploitation espionage against Middle East telecom operators.

2026-07-04HIGH
TRANSMISSIONS ATTACKSNEW

RAN & Wireless Security Assessment: A Practical Methodology

2026-07-04INFO
CORE ATTACKSNEW

Salt Typhoon: Inside the Breach That Compromised US Carrier Wiretap Systems

2026-07-04CRITICAL
CORE ATTACKSNEW

Sandworm: The GRU Unit Behind NotPetya Targets Telecom as a Weapon

2026-07-04CRITICAL
SIGNALING ATTACKSNEW

CAMEL InitialDP Call Redirection and Charging Fraud

2026-07-04HIGH
SIGNALING ATTACKSNEW

Diameter S6a CLR Forced Subscriber Deregistration

How adversaries abuse the Diameter S6a Cancel-Location-Request to impersonate the HSS, force subscriber detach, and stage attach-hijack race conditions.

2026-07-04MEDIUM
SIGNALING ATTACKSNEW

Diameter S6a ULR Subscriber Location Disclosure

2026-07-04HIGH
SIGNALING ATTACKSNEW

GTP-C Tunnel Hijacking and IMSI Overbilling Fraud

2026-07-04CRITICAL
SIGNALING ATTACKSNEW

LightBasin (UNC1945): The APT That Lived in Roaming Networks for 5 Years

2026-07-04CRITICAL
SIGNALING ATTACKSNEW

Liminal Panda: A 4-Year SS7 and Diameter Espionage Campaign

2026-07-04HIGH
SIGNALING ATTACKSNEW

IMS SIP REGISTER Identity Spoofing in VoLTE

TelcoSec IMS SIP REGISTER spoofing analysis: how weak IMS-AKA authentication lets attackers hijack VoLTE calls, SMSoIP, and bypass OTP delivery.

2026-07-04HIGH
SIGNALING ATTACKSNEW

SS7 MAP SMS Interception via UpdateLocation

2026-07-04CRITICAL
SIGNALING ATTACKSNEW

SS7 SRI-for-SM Subscriber Geolocation Attacks

2026-07-04HIGH
SIGNALING ATTACKSNEW

Telecom OSINT: A Reconnaissance Methodology for Carrier Infrastructure

2026-07-04INFO
SIGNALING ATTACKSNEW

How We Track Telecom Threat Actors: MITRE ATT&CK, FiGHT, and the Kill Chain

2026-07-04INFO
CELLULAR NETWORKS ATTACKSNEW

Volt Typhoon: Pre-Positioning for Wartime Disruption of US Telecoms

How Volt Typhoon used living-off-the-land techniques and hijacked SOHO routers to pre-position inside US telecom, energy, and water infrastructure.

2026-07-04CRITICAL
CORE ATTACKS

10 Threat Intelligence Resources for MNO SOC Teams

2026-05-18HIGH
CORE ATTACKS

Why Telecoms Outgrow Generic Threat Intelligence

2026-05-18HIGH
CORE ATTACKS

Mobile Network Evolution: Understanding 3GPP Releases

2026-03-04INFO
CELLULAR NETWORKS ATTACKS

Telco vs Computer Networks: Architecture & Convergence

2026-03-03INFO
CELLULAR NETWORKS ATTACKS

RAN Vulnerabilities: A Deep Dive into the Air Interface

TelcoSec RAN air interface security vulnerabilities: O-RAN exploitation, IMSI catcher deployment, NAS/RRC manipulation, and MEC attack surface analysis.

2026-03-03CRITICAL
CELLULAR NETWORKS ATTACKS

5G Network Slicing Security

2024-05-12CRITICAL
TRANSMISSIONS ATTACKS

IMSI Catchers and Rogue Base Stations

2024-05-08HIGH
USER LAND ATTACKS

SIM Cloning and SIM Swap Attacks

2024-04-22CRITICAL
CORE ATTACKS

Diameter Protocol Security Analysis

2024-04-20CRITICAL
SIGNALING ATTACKS

SS7 Location Tracking Vulnerabilities

TelcoSec SS7 MAP exploitation guide: subscriber tracking, SMS interception, and call redirection via SendRoutingInfo and ProvideSubscriberInfo attacks.

2024-03-15CRITICAL
MOBILE SECURITY

Baseband Exploitation in Modern Smartphones

2024-03-04CRITICAL
CORE ATTACKS

5G Network Security Architecture

2024-03-03HIGH
TRANSMISSIONS ATTACKS

Setting up a Private LTE/5G Environment

2024-03-03MEDIUM
SIGNALING ATTACKS

Methodology: Telecom Penetration Testing Lifecycle

2024-03-03CRITICAL
CORE ATTACKS

Vulnerabilities in the 5G SBA

TelcoSec exposes 5G SBA vulnerabilities: NRF poisoning, BOLA in telecom APIs, container breakout paths in Kubernetes-deployed 5G cores, and zero-trust defenses.

2024-03-03CRITICAL
RECORDS RETURNED: 37
// STAGE IV ACTIVE VALIDATION

ACCESS ADVANCED SIGNALING LABS

Our Intelligence Feed is just the beginning. Register on the platform to access full course modules, virtual labs, and real-time research nodes.

ACCESS NOW [→]
SYSTEMS READY