Visible to the public Security Enhancements to Subscriber Privacy Protection Scheme in 5G Systems

TitleSecurity Enhancements to Subscriber Privacy Protection Scheme in 5G Systems
Publication TypeConference Paper
Year of Publication2021
AuthorsLiu, Fuwen, Su, Li, Yang, Bo, Du, Haitao, Qi, Minpeng, He, Shen
Conference Name2021 International Wireless Communications and Mobile Computing (IWCMC)
Keywords5G mobile communication, Asymmetric Encryption, compositionality, Elliptic Curve Integrated Encryption Scheme (ECIES), Encryption, guess attack, home automation, Human Behavior, Metrics, privacy, pubcrawl, Public key, replay attack, Resiliency, security, Subscription Concealed Identifier (SUCI), Subscription Permanent Identifier (SUPI), the 3rd Generation Partnership Project (3 GPP), Wireless communication
AbstractSubscription permanent identifier has been concealed in the 5G systems by using the asymmetric encryption scheme as specified in standard 3GPP TS 33.501 to protect the subscriber privacy. The standardized scheme is however subject to the SUPI guess attack as the public key of the home network is publicly available. Moreover, it lacks the inherent mechanism to prevent SUCI replay attacks. In this paper, we propose three methods to enhance the security of the 3GPP scheme to thwart the SUPI guess attack and replay attack. One of these methods is suggested to be used to strengthen the security of the current subscriber protection scheme.
DOI10.1109/IWCMC51323.2021.9498591
Citation Keyliu_security_2021