随着4G-LTE网络和移动互联网技术的兴起,网络IP化已经成为未来电信网络的演进趋势。全IP化的电信网络一旦与互联网连接,不可避免会遭受来自外界的网络攻击。很多研究者开始对4G-LTE网络,特别是协议的安全性展开研究,脆弱性分析是其中较为活跃的领域之一。由于电信网络,特别是信令协议具有面向控制的特点,且上层协议与传统IT网络存在较大的差异,直接使用现有的Fuzzing测试技术存在一定的困难。讨论了现有的各种Fuzzing测试技术用于4G-LTE电信网络协议测试的优缺点,提出了4G-LTE电信网Fuzzing测试技术的设计准则,最后展望了未来的发展方向。
With the Development of 4G-LTE network and mobile internet technology. IP-based network structure becomes the evolution trend of telecom network. The IP-based telecom network, once connected to the internet, would inevitably suffer the network attack from outside. A large amount of researchers now start their research on the security of 4G-LTE telecom network protocols, and vulnerability analysis becomes one of the hot points in this field. Due to its specific features, particularly the control-oriented signaling protocol, telecom network is difficult to directly employ the traditional fuzzing technology. This paper first discusses the current achievements presented in this field, then gives the design guidelines for general fuzzing tool for 4G-LTE telecom network protocols. Finally, future research directions in this filed are forecasted.