Our new research CONSET (“Semantics Over Syntax: Uncovering Pre-Authentication 5G Baseband Vulnerabilities”) will appear in USENIX Security’26. This work leverages LLM and builds a new framework CONSET, which systematically extracts specification-level constraints and turns them into semantic violations for testing 5G UE implementations. On commercial smartphones, it confirms 6 device-level flaws through responsible disclosure, including 3 high-severity CVEs. These vulnerabilities affect 41 chipset models and over 466 commercially available smartphones.
This is joint work with researchers (Prof. Hongxin Hu and his students) at University of Buffalo. Congratulations on the amazing work, Qiqing!
