ENHANCED USER EQUIPMENT SECURITY AGAINST ATTACKS IN A 4G OR 5G NETWORK

    公开(公告)号:EP4132051A1

    公开(公告)日:2023-02-08

    申请号:EP22183232.2

    申请日:2022-07-06

    Applicant: Apple Inc.

    Abstract: A UE may discard a Plain Authentication Request message or a Plain Identity Request, when received in Service-Request-Initiated state. In such a manner, the UE will not respond to non-integrity protected Authentication Request message or non-integrity protected Identity Request message as part of integrity protected service request procedure (NR and LTE), tracking area update procedure (LTE), or registration request procedure (NR). Thus, a malicious attacker may not use a captured Authentication Request or an Identity Request message to track victim UEs in the network.
    A UE may receive a first GUTI from a network. The UE may transition to a Connected mode in response to a paging procedure with the network. The UE may take actions to ensure that a second GUTI is obtained from the network. Other aspects are described.

    ENHANCED SECURITY FOR ACCESS STRATUM TRANSMISSION

    公开(公告)号:EP4075845A1

    公开(公告)日:2022-10-19

    申请号:EP22177205.6

    申请日:2018-06-22

    Applicant: Apple Inc.

    Abstract: This disclosure relates to techniques, base stations, and user equipment devices (UEs) for performing base station authentication through access stratum signaling transmissions. The UE may operate in idle mode and may receive an authentication message from a base station through the wireless interface while operating in idle mode. The UE may determine whether a signature comprised within the authentication message is valid, and the UE may continue a connection procedure with the base station based on a determination that the signature is valid. If it is determined that the signature is invalid, the UE may designate the base station as a barred base station and may perform cell re-selection. The authentication message may be one of a radio resource control (RRC) connection setup message, a special RRC message, a media access control (MAC) message, or a random access channel (RACH) message comprising a random access response (RAR) message.

Patent Agency Ranking