Table of Contents - Q.3066 (01/2026) - Principles for detection and mitigation of signalling attacks in telecommunication networks
1 Scope 2 References 3 Definitions 3.1 Terms defined elsewhere 3.2 Terms defined in this Recommendation 4 Abbreviations and acronyms 5 Conventions 6 List and location of assets prone to signalling attacks 7 Signalling threat model 7.1 Single request signalling attacks 7.2 Multi request signalling attacks using a single protocol 7.3 Multi-protocol signalling attacks 7.4 Cross-generational signalling attacks 8 Signalling threat detection methods 8.1 Unauthenticated signalling message detection 8.2 Breach of signalling origination allow-list and message rate checks 8.3 Heuristic analysis 8.4 Anomaly detection 8.5 Cross-protocol consistency detection 8.6 Detection of signalling attacks 9 Mitigation framework 9.1 Correct configuration of network elements 9.2 Authenticity validation of signalling messages 9.3 Heuristic mitigation 9.4 Blocking of anomalous signalling flows 9.5 Mitigation framework impact on threat categories Bibliography
|