Paper 2025/2066

A Comprehensive Analysis of the AKMA+ Protocol

Yueming Li, Institute of Software, Chinese Academy of Sciences, Beijing, China, University of Chinese Academy of Sciences
Long Chen, Institute of Software, Chinese Academy of Sciences, Beijing, China
Zhenfeng Zhang, Institute of Software, Chinese Academy of Sciences, Beijing, China
Abstract

With the rapid advancement of 5G networks and the increasing demand for secure application access, the Authentication and Key Management for Applications (AKMA) framework was developed by the 3rd Generation Partnership Project (3GPP) to provide unified authentication and key management for diverse 5G services. In response to the security and privacy concerns identified in the current AKMA protocol, as outlined in 3GPP TR 33.835, Yang et al. proposed an enhanced, standard-compatible 5G AKMA protocol known as AKMA+[14]. This paper presents a comprehensive analysis of AKMA+, discovering two critical vulnerabilities: (1) the compromise of the AKMA Anchor Function (AAnF), which enables adversaries to impersonate legitimate users; and (2) the persistent storage of multiple anchor keys, which heightens the risk of key exposure. These vulnerabilities arise from the reliance on the authentication framework inherent in existing AKMA+ models. This architectural dependency introduces fundamental security risks that cannot be adequately mitigated through incremental modifications to the current design. Furthermore, we observe that AKMA+ faces challenges in aligning with the standard account-based authentication model, which is incompatible with existing user practices within information systems. Additionally, we find that providing account-based authentication functionality without compromising privacy poses significant difficulties.

Metadata
Available format(s)
PDF
Category
Cryptographic protocols
Publication info
Published elsewhere. 24th IEEE International Conference on Trust, Security and Privacy in Computing and Communications
Keywords
5G AuthenticationKey ManagementSecurity VulnerabilityPrivacy Protection
Contact author(s)
yueming2021 @ iscas ac cn
chenlong @ iscas ac cn
zhenfeng @ iscas ac cn
History
2025-11-13: approved
2025-11-08: received
See all versions
Short URL
https://ia.cr/2025/2066
License
Creative Commons Attribution
CC BY

BibTeX

@misc{cryptoeprint:2025/2066,
      author = {Yueming Li and Long Chen and Zhenfeng Zhang},
      title = {A Comprehensive Analysis of the {AKMA}+ Protocol},
      howpublished = {Cryptology {ePrint} Archive, Paper 2025/2066},
      year = {2025},
      url = {https://eprint.iacr.org/2025/2066}
}
Note: In order to protect the privacy of readers, eprint.iacr.org does not use cookies or embedded third party content.