Researchers Report 84 Flaws in 4G and 5G Cores, Including a Session Hijacking Flaw
Researchers at Nanyang Technological University in Singapore have discovered 84 previously unknown vulnerabilities in 4G and 5G core network implementations, including flaws that could lead to denial-of-service attacks and session hijacking. These vulnerabilities, dubbed ‘implicit trust errors,’ stem from a lack of proper validation and resource checks within core network components, allowing attackers to inject malicious messages and redirect user traffic. Several vendors, including Dotouch (CVE-2026-8233), have addressed the issues, but a major 5G carrier is still in remediation. This highlights a broader and ongoing security problem requiring immediate action.
Summary written automatically in our own words from the original article, which belongs to its publisher and remains the reference. It may contain errors. Sources & data
