VULNERABILITY EXPLOIT PATTERN GENERATION AND ANALYSIS FOR PROACTIVE SECURITY RISK MITIGATION FOR 5G NETWORKS

06 September 2022

New Image

This paper presents a proactive intelligent mechanism to detect possible variants of known vulnerability exploits being attempted on any component of wireless networks. Vulnerability Exploit Pattern Analyzer (VEPA) presented in this paper can prevent possible zero-day attacks by learning from the available known exploits from published databases. Lot of wireless network elements use OS (like Linux, Windows, Android), which have known vulnerabilities from the past. There have been incidents like WannaCry ransomware attack, where a known OS vulnerability was exploited sometime after it was published, and even the patches were available in public. In 5G wireless networks, the number of network functions and devices are expected to be in millions. For most of the CVEs published, different exploits are also published, and available in online databases like Exploit DB. It is likely that attackers take such exploits, manipulate them to create different variants of such exploits and launch attacks on networks. For example, [4] has more than 8000 exploits published only for SQL injection kind of vulnerabilities. Older vulnerability exploits can inspire creation of newer ones for other products. 5G and future wireless networks having service-based architecture at the core will require more proactive approaches to predict any misuse of emerging or manipulated variants of known exploits. This paper proposes one possible solution for the same.