Please note multiple researchers published and compiled this work. This is a list of their research in the 3G/4G/5G Cellular security space. This information is intended to consolidate the community's knowledge. Thank you, I plan on frequently updating this "Awesome Cellular Hacking" curated list with the most up to date exploits, blogs, research, and papers.
- Using OpenBTS - "Experimental_Security_Assessment_of_BMW_Cars by KeenLab"
- Jam tomorrow, jam yesterday, but also jam today - Synacktiv
- AT&T Microcell FAIL - fail0verflow (Older blog article, but still a good read)
- WiFi IMSI Catcher
- 5G NR Jamming, Spoofing, and Sniffing: Threat Assessment and Mitigation
- D1T2 - Bypassing GSMA Recommendations on SS7 Networks - Kirill Puzankov
- VoLTE Phreaking - Ralph Moonen
- LTE/LTE-A Jamming, Spoofing, and Sniffing: Threat Assessment and Mitigation
- Exploring LTE security and protocol exploits with open source software and low-cost software radio by Roger Jover
- LTE PROTOCOL EXPLOITS: IMSI CATCHERS,BLOCKING DEVICES AND LOCATION LEAKS
- Practical Attacks Against Privacy and Availability in 4G/LTE Mobile Communication Systems
- LTE security and protocol exploits
- TUTORIAL: LTE And 5G Protocol Security Procedures and Vulnerabllity ANALYSES using SDR
- Breaking_LTE_on_Layer_Two