HomeSecurityBeware! New Sni5Gect attack targets 5G network

Beware! New Sni5Gect attack targets 5G network

Cybersecurity researchers at the Singapore University of Technology and Design have unveiled a groundbreaking but disturbing tool, SNI5GECT, that changes the way we think about threats to 5G networks. Unlike traditional techniques that require a fake base station to intercept data, the new attack framework monitors and intercepts communication between devices and the provider, without having to mimic the core network.

Sni5Gect attack 5G network

This feature makes it particularly dangerous, as it significantly lowers the barriers for a potential attacker. The team of researchers led by Shijie Luo (and Matheus Garbelini, Sudipta Chattopadhyay, and Jianying Zhou) demonstrated that attacks can be achieved from distances of up to 20 meters, allowing for user identity theft, connection degradation, and even device damage.

See also: Critical Chrome Vulnerability – Use After Free: Fix Immediately!

SNI5GECT framework: Attack without "false antennas"

Until now, most attacks on 5G networks have relied on installing a fake base station, aiming to trick devices into connecting to it. But SNI5GECT changes the game. It monitors protocol states by decoding messages captured during the user equipment (UE) connection process and then uses this information to inject targeted attack payloads into downlink communications.

The research team tested the framework on five different 5G-capable devices using both open-source srsRAN and commercial Effnet base stations.

This method is particularly sophisticated because it does not easily leave traces. The attacker does not need to simulate the entire provider, but only needs to know the location of the target device and be within range. This allows him to execute interception and data tampering scenarios with great success.

Beware! New Sni5Gect attack targets 5G network

The test results

The results from the tests on the five devices are alarming:

  • 80%+ success rates in message interception (uplink and downlink message sniffing).
  • 70–90% success rate in inserting malicious packages.
  • Consistent effectiveness when the distance between the target device and the attacker was known, with success rates above 70%.

The range and effectiveness make SNI5GECT an extremely realistic threat for real network conditions.

See also: Salesforce Data Theft via Compromised AI Tool

5G at risk: The new "multi-stage degradation attack"

Perhaps the most worrying finding is the discovery of a attack . Through SNI5GECT, the researchers were able to make devices abandon the secure authentication methods of 5G and revert to older generation protocols (such as 4G or 3G), which are more vulnerable. This paves the way for even more dangerous attacks, as it removes basic security safeguards that were taken for granted in 5G.

The GSMA's response and the importance for the industry

The GSM Association (GSMA), the global organization representing mobile phone operators, has already recognized the seriousness of the research. In collaboration with the researchers, it has activated a Responsible Vulnerability Disclosure (CVD)to study the risks of 5G and develop potential solutions.

The GSMA’s intervention shows that this is not an academic experiment without practical implications. 5G is the backbone of many critical infrastructures – from telemedicine and autonomous vehicles to industrial applications. Any attacks at this level could have serious consequences not only for consumers but also for national networks, services and businesses.

Beware! New Sni5Gect attack targets 5G network

What does 5G mean for the future?

The SNI5GECT revelation brings to the fore an important truth: 5G, despite its promises of speed and security, still has vulnerabilities that can be exploited. The research proves that security is never a given and that weaknesses at the protocol level can have devastating results.

See also: Chinese APT group uses Proxy and VPN services

Selecting the team

🔒 Protect your privacy with Proton VPN

Swiss VPN from the creators of Proton Mail — strict no-logs policy, strong encryption, and built-in NetShield that blocks ads, trackers, & malware.

  • ✔ No-logs, based in Switzerland (except 14-Eyes)
  • ✔ NetShield: blocks ads, trackers & malicious domains
  • ✔ Covers all devices — free version available
Try Proton VPN for free — 30-day money-back guarantee →

The link is an affiliate link — SecNews may receive a commission at no additional cost to you. It does not affect the independence of our article writing.

For providers and regulators, the message is clear: enhanced security measures and continuous evaluation in real-world conditions are required. Data interception and injection attacks are no longer theoretical scenarios but proven feasible techniques.

Presentation at USENIX Security 2025

The work on SNI5GECT will be presented at USENIX Security 2025, one of the leading conferences in the cybersecurity field. The publication will be available through the conference's open access initiative, giving practitioners and researchers the tools they need to understand and address the threat.

SNI5GECT is a wake-up call for the 5G ecosystem. It is not just a theoretical attack, but a practical and repeatable method that demonstrates how vulnerable even the most advanced technologies. The challenge now is for industry players to adapt so that 5G can maintain its credibility as a secure foundation for the future of digital connectivity.

Source: gbhackers.com

📧
Subscribe to the SecNews Newsletter

The most important Security & Technology news in your Inbox.

Digital Fortress
Digital Fortresshttps://www.secnews.gr
Pursue Your Dreams & Live!

SEARCH

FOLLOW US

📧
Newsletter SecNews
The most important Security & Technology news in your inbox.

LIVE NEWS