Papers
Topics
Authors
Recent
Search
2000 character limit reached

Toward a Unified Security and Privacy Framework for AI-Native 6G Networks

Published 1 Jul 2026 in cs.CR | (2607.01019v1)

Abstract: Sixth Generation (6G) communication networks are expected to evolve into AI-native, highly autonomous ecosystems that integrate communication, computing, sensing, and artificial intelligence. While these capabilities enable unprecedented connectivity and intelligent services, they also create a highly heterogeneous security and privacy landscape that cannot be addressed through isolated, technology-specific solutions. This paper presents a comprehensive survey of security and privacy in AI-native 6G networks from a cross-layer perspective. We first examine the fragmentation of existing security and privacy approaches across emerging technologies, network architectures, AI systems, and standardization efforts, motivating the need for a unified security and privacy framework. Building upon this framework, we develop a cross-layer threat taxonomy encompassing infrastructure, network and architectural, AI, privacy, and security management domains, and analyze representative threats across key AI-native 6G technologies. Furthermore, we map these threats to corresponding cross-layer countermeasures, including standards harmonization as a security function, and identify critical research gaps and future priorities for secure, interoperable, and trustworthy AI-native 6G ecosystems. Finally, we discuss future research directions toward realizing secure, privacy-preserving, resilient, and globally interoperable 6G networks. This survey provides researchers, practitioners, and standardization communities with a holistic foundation for the design, evaluation, and deployment of trustworthy AI-native 6G systems.

Summary

  • The paper presents a unified security and privacy framework for AI-native 6G networks by integrating threat taxonomy, countermeasures, and standards harmonization.
  • The paper systematically analyzes fragmented vulnerabilities across infrastructure, network, AI, privacy, and security management layers.
  • The framework provides actionable insights for developing resilient, trustworthy, and adaptive defense mechanisms through cross-layer integration and automated orchestration.

Toward a Unified Security and Privacy Framework for AI-Native 6G Networks

Introduction

As wireless networks evolve towards the sixth generation (6G), the convergence of AI, communication, sensing, and computing yields highly heterogeneous, autonomous, and AI-native systems. These systems introduce complex dependencies and interconnections that markedly increase the risk of security and privacy violations. The paper "Toward a Unified Security and Privacy Framework for AI-Native 6G Networks" (2607.01019) presents a systematic analysis of the fragmented security and privacy landscape in 6G networks and proposes a unified framework that integrates threat taxonomy, countermeasures, and standards harmonization to address cross-layer security and privacy challenges.

Fragmentation in 6G Security and Privacy

The fragmentation of security and privacy in AI-native 6G networks arises due to the heterogeneity across enabling technologies (e.g., RIS, JCAS, NTNs, THz communications), novel architectural paradigms (O-RAN, network slicing, edge intelligence), AI-driven functionality (federated learning, foundation models, AI agents), inconsistent standardization, and divergent security management approaches. The lack of holistic, end-to-end security solutions and unified governance exacerbates interoperability gaps and induces emergent threat vectors spanning physical to application layers. Figure 1

Figure 1: Fragmentation in security and privacy across technology, architecture, intelligence, standards, and management disrupts consistent 6G protection.

Unified Security and Privacy Framework

The paper proposes a defense-in-depth unified framework organizing requirements into five domains: Infrastructure Security, Network and Architectural Security, AI Security, Privacy Protection, and Security Management. Cross-layer functions—including Identity and Access Management, Security Orchestration and Automation, AI Governance and Assurance, Privacy Governance and Compliance, and Standards Harmonization—provide continuous, coordinated enforcement. Figure 2

Figure 2: Unified security and privacy framework integrating taxonomy and countermeasures across domains and layers.

By mapping domain threats to cross-layer countermeasures, the framework achieves confidentiality, integrity, availability, privacy preservation, resilience, trustworthiness, and regulatory compliance throughout the AI-native 6G ecosystem.

Cross-Layer Threat Taxonomy

Building on this framework, the paper presents a comprehensive taxonomy covering:

  • Infrastructure Threats: Novel attack surfaces in RIS, JCAS, NTN, THz, and mMIMO/XL-MIMO, including passive eavesdropping, malicious reconfiguration, cross-domain authentication failures, spectrum jamming, pilot contamination, adversarial ML, and privacy leakage via side-channels.
  • Network and Architectural Threats: Vulnerabilities in O-RAN, network slicing, intent-based networking, and edge intelligence manifest as open interface exploits, DoS, model manipulation, API/orchestration abuse, misconfiguration, and data leakage.
  • AI/Intelligence Threats: Data/model poisoning, backdoors, inference and model extraction, Sybil attacks, adversarial evasion, autonomous agent manipulation, and reward/path manipulation in federated and multi-agent learning.
  • Privacy Threats: Location and behavioral tracking, biometric leakage, digital twin inference, semantic communication reconstruction, and large-scale XR/metaverse surveillance.
  • Security Management Threats: Identity spoofing, access manipulation, adversarial AI in ZTA, PQC migration vulnerabilities, attestation forgery, key compromise, and failures in supply chain assurance. Figure 3

    Figure 3: Threat taxonomy categorizing cross-layer vulnerabilities in AI-native 6G networks.

Countermeasures and Standards Harmonization

Countermeasures are systematically mapped: physical-layer security, AI governance, privacy-preserving ML (e.g., DP, FL, HE), post-quantum cryptography, secure attestation, identity management compatible with iZTA, and automated orchestration mitigate threats at each layer. The authors highlight the necessity of standards harmonization—current initiatives by 3GPP, ETSI, ITU, NIST, IETF, O-RAN, and AI-RAN alliances often partially overlap, yet critical gaps (e.g., federated identity, AI trust, cross-layer interoperability, unified JCAS/NTN trust) remain. A standards unification and certification roadmap is advocated.

Implications and Future Research Directions

The unified framework has direct implications for the deployment of resilient, trustworthy, and privacy-preserving infrastructures. Practically, the need for multi-layer, automated, and adaptive defense is stressed, especially as edge intelligence, digital twins, and foundation models expand the attack surface. Theoretically, quantifying cross-layer risk propagation and formalizing security guarantees for collaborative, autonomous, and AI-driven agents becomes paramount.

Future research challenges include:

  • Testbed validation and deployment at operational scale;
  • Achieving autonomous, explainable, and self-healing security via trustworthy AI and secure multi-agent reinforcement learning;
  • Establishing globally harmonized standards and security benchmarks;
  • Formal methods for continuous risk assessment, cross-domain trust management, and quantitative evaluation of adversarial and privacy risks.

Conclusion

AI-native 6G networks introduce unprecedented interconnectedness and intelligent automation but drastically elevate the complexity of the security and privacy landscape. The paper provides a rigorous, cross-layer taxonomy and a unified framework that integrates identity, orchestration, governance, and compliance with standards harmonization as core attributes for secure, privacy-preserving, and trustworthy next-generation 6G deployments. Only a holistic, coordinated approach, integrating technical and organizational advances, can counter the emergent, multi-domain threats associated with 6G.


Reference:

"Toward a Unified Security and Privacy Framework for AI-Native 6G Networks" (2607.01019)

Paper to Video (Beta)

No one has generated a video about this paper yet.

Whiteboard

No one has generated a whiteboard explanation for this paper yet.

Open Problems

We haven't generated a list of open problems mentioned in this paper yet.

Collections

Sign up for free to add this paper to one or more collections.