TY - JOUR
T1 - DoS attacks exploiting signaling in UMTS and IMS
AU - Kambourakis, Georgios
AU - Kolias, Constantinos
AU - Gritzalis, Stefanos
AU - Park, Jong Hyuk
PY - 2011/3/15
Y1 - 2011/3/15
N2 - The Universal Mobile Telecommunication Standard (UMTS) is continuously evolving to meet the growing demand of modern mobile and Internet applications for high capacity and advanced features in security and quality of service. Although admittedly enhanced in terms of security when compared to 2G systems, UMTS still has weaknesses that can lead to security incidents. In this paper, we investigate the vulnerabilities of the UMTS security architecture that can be exploited by a malicious individual to mount Denial of Service (DoS) attacks. Our focus is on signaling-oriented attacks above the physical layer. We describe and analyze several novel attacks that can be triggered against both core UMTS architecture as well as hybrid UMTS/WLAN realms. An additional contribution of this paper is the presentation of an extensive survey of similar attacks in UMTS and related protocol infrastructures such as IP Multimedia Subsystem (IMS). Finally, we offer some suggestions that would provide greater tolerance to the system against DoS attacks.
AB - The Universal Mobile Telecommunication Standard (UMTS) is continuously evolving to meet the growing demand of modern mobile and Internet applications for high capacity and advanced features in security and quality of service. Although admittedly enhanced in terms of security when compared to 2G systems, UMTS still has weaknesses that can lead to security incidents. In this paper, we investigate the vulnerabilities of the UMTS security architecture that can be exploited by a malicious individual to mount Denial of Service (DoS) attacks. Our focus is on signaling-oriented attacks above the physical layer. We describe and analyze several novel attacks that can be triggered against both core UMTS architecture as well as hybrid UMTS/WLAN realms. An additional contribution of this paper is the presentation of an extensive survey of similar attacks in UMTS and related protocol infrastructures such as IP Multimedia Subsystem (IMS). Finally, we offer some suggestions that would provide greater tolerance to the system against DoS attacks.
KW - Denial of service
KW - EAP-AKA
KW - IMS
KW - Security
KW - UMTS
UR - http://www.scopus.com/inward/record.url?scp=78751649037&partnerID=8YFLogxK
U2 - 10.1016/j.comcom.2010.02.010
DO - 10.1016/j.comcom.2010.02.010
M3 - Article
AN - SCOPUS:78751649037
SN - 0140-3664
VL - 34
SP - 226
EP - 235
JO - Computer Communications
JF - Computer Communications
IS - 3
ER -