SIM (Subscriber Identity Module)

The Subscriber Identity Module is the tamper-resistant smart card that stores the long-term subscriber key Ki/K, the IMSI/SUPI, network selection data, and a small file system. It executes the AKA authentication algorithm so the secret key never leaves the card. The SIM exists today as a removable UICC, an embedded eSIM with remote provisioning, and an integrated iSIM inside the modem chipset. SIM security underpins all subscriber authentication, making SIM swap and cloning attacks among the highest-impact threats in mobile.

Categories: Identity and SubscriberSecurity ControlsThreats and Attacks

SIM in context

Subscriber identifiers (IMSI, SUPI, MSISDN, IMEI) anchor authentication, charging and lawful interception. Any protocol that leaks a permanent identifier is treated as a privacy defect, which is why 5G introduced SUCI concealment on the air interface.

Security controls span signaling firewalls (SS7/Diameter/GTP screening), transport encryption (IPsec, TLS, PRINS), identity and access on OSS/BSS, and monitoring at both packet and log level. Controls are audited against GSMA FS.11/FS.19/FS.20/FS.36.

To place SIM in the wider telecom-security picture, review Event Logging, MNP, SNMP, 2G, AAA and A5/0 — each entry cross-references back to this page so you can walk the topic in either direction.

Related terms

More from the TelcoSec Glossary

Browse the full TelcoSec Glossary, the Ultimate Guide to Mobile Network Security, or the P1 Arsenal of telecom-security tools.