Skip to content
← LibraryTechnique entry
5G-SCP-SBIPrivilege Escalation

5G Service-Based Interface Abuse

5GC SBI (HTTP/2 + OAuth between AMF / SMF / SCP / NRF) — misconfigured token issuer / SCP without mTLS lets attacker NF query subscriber data, register new NF.

§ Where this technique fits

5G-SCP-SBI is catalogued under the Privilege Escalation tactic of the offensive-security kill-chain. It appears in 0 approved dossiers in the registry, typically.