MVNO (Mobile Virtual Network Operator)

A wireless communications service provider that does not own the underlying network infrastructure. MVNOs lease network capacity at wholesale rates from MNOs and resell it to customers under their own brand. MVNOs manage their own billing, customer service, marketing, and sales while relying on the host MNO's radio access and core network. MVNOs enable market competition and serve niche segments without requiring spectrum licenses or infrastructure investment.

Categories: Radio Access NetworkCore NetworkSignaling

MVNO in context

The radio access network is where mobile devices attach to the operator's infrastructure. Attacks in this layer include IMSI catching, rogue base stations and downgrade attacks; defenses rest on mutual authentication, integrity-protected signaling and Open RAN supply-chain hygiene.

The mobile core carries subscriber sessions, mobility and policy. In 4G it is the EPC (MME, HSS, S/PGW); in 5G it is the Service-Based Architecture with AMF, SMF, UPF, AUSF, UDM and the NRF.

To place MVNO in the wider telecom-security picture, review IAP, Man-in-the-Middle (MITM), Mobile Network, 5G SA, AMF and CAPEX: each entry cross-references back to this page so you can walk the topic in either direction.

Related terms

Related topic hubs

  • SS7 Security SS7/MAP/CAP/SCCP attacks and defenses across 2G/3G interconnect.
  • Signaling Firewall Unified SS7/Diameter/GTP/SMS signaling firewall framework.
  • MVNO Security MVNO/MVNE threat model and host-network isolation.

More from the TelcoSec Glossary

Browse the full TelcoSec Glossary, the Ultimate Guide to Mobile Network Security, or the P1 Arsenal of telecom-security tools.