---
title: The Rising Security Threat of Global Title Leasing
description: Global Titles (GT) leasing poses network security risks that CSPs must address immediately. Signaling outbound firewalls have been identified as a real-time technical control that is capable of restricting the use of those global titles to legitimate and authorized purposes only and safeguarding the security of the network and subscribers.
image: https://blog.mobileum.com/hubfs/DLG_blogShareableImage_Saverio-Vardaro.png
---

![Loader](https://blog.mobileum.com/hubfs/raw_assets/public/Marketplace/Blog%20Template%20-%20psdtohubspot/mobileum-blog-2025/assets/img/loader.gif)

<https://blog.mobileum.com>

- [Back to Mobileum.com](https://www.mobileum.com)
- Subscribe

Global Title leasing has been a widespread practice whereby service provides lease access to their Global Titles (GT) and Hosts to enterprise customers. But today, GT leasing poses network security risks that CSPs must address immediately, says Saverio Vardaro, CCO Security at Mobileum.

Initially, the use of GTs made sense. As well as supporting services such as A2P SMS or Sponsored Roaming, enterprises wanted a mechanism whereby they could track and verify the legitimate location of a customer. For example, global fleet management companies may want to track the location of trucks periodically, or a bank may need to confirm a customer’s location to validate an international credit card transaction.

However, the practice of Global Title leasing has significantly increased the attack surface for communications service providers. For example, a GT is provided for sending A2P SMS, but there is the potential that it is used to track a high-value subscriber in a roaming partner network and possibly spy upon their calls and SMS. Another case is where an enterprise uses GT access to send promotional messages to international customers, but access is exploited to send spam and smishing messages. A wrap-up of some recent high-profile cases of the risks that GT leasing can be found in our blog “[The Battle to protect our subscribers against cyber weapons](https://blog.mobileum.com/the-battle-to-protect-our-subscribers-against-cyber-weapons).”

One of the most significant vulnerabilities of GT leasing is that access to interconnect protocols and systems has been granted to third parties, sometimes without the required due diligence, protection, or monitoring mechanisms being put in place by operators. The ongoing risk has now been deemed so high that the GSMA is currently working on a formal Code of Conduct that designates GT Leasers as the responsible party that needs to actively manage and control the use of their leased GTs through the use of real-time technical controls. Mobileum is steadfastly committed to this activity and has in fact chaired the task force.

Signaling outbound firewalls have been identified as a real-time technical control that is capable of restricting the use of those global titles to legitimate and authorized purposes only and safeguarding the security of the network and subscribers. However, not all outbound signaling firewalls are made equal. Having an SS7/DIAMETER Outbound firewall that handles all of the GSMA threat categories is the minimum requirement. CSPs need an outbound firewall that not only protects their own network but also ensures that it is not compromised to send malicious traffic to other partner networks. To do so, CSPs need an outbound signaling firewall that has the full capabilities to:

- Apply rate limits to outgoing traffic per GT/Host
- Application of Message Sequence and customized advanced rules
- SMS rules to check senders, binary, volume, spam/A2P content

[Mobileum’s Signaling Outbound Firewall](https://www.mobileum.com/products/network-security/signaling-firewall/firewall-types/#risk_network) works on zero trust architecture. By operating on the basis of not trusting anybody or anything inside the network perimeter, it provides CSPs added protection by applying restrictions to activities and only allowing interworking functionality on an exception basis. In addition to having the full capabilities to meet the GSMA threat categories, the Signaling Outbound Firewall enforces controls at the individual originating Global Title/Host level to allow/block specific signaling operations or block specific destinations.

If you are leasing global titles to third parties, you must have the capabilities to restrict the use of those global titles to legitimate and authorized purposes. If you don’t you cannot comply with the new GSMA Code of Conduct. Only with Mobileum’s Signaling Outbound Firewall can you be sure that you have protections in place to do so. [Contact us](https://www.mobileum.com/contact-us/) to learn more.

[![Report | MobileSquared: The State of the Signaling Firewall Landscape](https://no-cache.hubspot.com/cta/default/148794/323a25f2-804c-45c1-b004-46b00ae3521d.png)](https://cta-redirect.hubspot.com/cta/redirect/148794/323a25f2-804c-45c1-b004-46b00ae3521d)

<https://blog.mobileum.com/the-rising-security-threat-of-global-title-leasing#_ftnref1><https://en.wikipedia.org/wiki/List_of_data_breaches> <https://blog.mobileum.com/the-rising-security-threat-of-global-title-leasing#_ftnref1><https://www.theguardian.com/uk/2008/feb/12/monarchy.france1>

### Subscribe to our Blog

- Recent
- Popular

<https://blog.mobileum.com/how-to-capture-5g-roaming-revenues-with-real-time-testing-and-monitoring>

[How to Capture 5G Roaming Revenues with Real-Time Testing and Monitoring](https://blog.mobileum.com/how-to-capture-5g-roaming-revenues-with-real-time-testing-and-monitoring)

<https://blog.mobileum.com/direct-to-device-turn-satellite-into-enterprise-service>

[Direct-to-Device: Turn Satellite into Enterprise Service](https://blog.mobileum.com/direct-to-device-turn-satellite-into-enterprise-service)

<https://blog.mobileum.com/voice-trust-under-siege-why-telecoms-next-security-battle-will-be-won-inside-the-conversation>

[Why Telecom’s Next Security Battle Will Be Won Inside the Conversation](https://blog.mobileum.com/voice-trust-under-siege-why-telecoms-next-security-battle-will-be-won-inside-the-conversation)

<https://blog.mobileum.com/from-fraud-to-sabotage-the-new-threat-of-weaponized-sim-farms>

[From Fraud to Sabotage: The New Threat of Weaponized SIM Farms](https://blog.mobileum.com/from-fraud-to-sabotage-the-new-threat-of-weaponized-sim-farms)

<https://blog.mobileum.com/scaling-private-5g-how-csps-can-deliver-secure-smart-and-service-ready-networks>

[Scaling Private 5G: How CSPs Can Deliver Secure, Smart, and Service-Ready Networks](https://blog.mobileum.com/scaling-private-5g-how-csps-can-deliver-secure-smart-and-service-ready-networks)

<https://blog.mobileum.com/validating-5g-sa-roaming-readiness-through-sepp-and-interface-testing>

[Validating 5G SA Roaming Readiness Through SEPP and Interface Testing](https://blog.mobileum.com/validating-5g-sa-roaming-readiness-through-sepp-and-interface-testing)

### Posts by Topic

- [Security & Risk  (76)](https://blog.mobileum.com/topic/security-risk)
- [Fraud Management (69)](https://blog.mobileum.com/topic/fraud-management)
- [5G (41)](https://blog.mobileum.com/topic/5g)
- [Network & Connectivity (36)](https://blog.mobileum.com/topic/network-connectivity)
- [Revenue Assurance (36)](https://blog.mobileum.com/topic/revenue-assurance)
- [Risk Management (34)](https://blog.mobileum.com/topic/risk-management)
- [BSS/OSS  (24)](https://blog.mobileum.com/topic/bss-oss)
- [Technology Evolution & Innovation (22)](https://blog.mobileum.com/topic/technology-evolution-innovation)
- [Telecom Trends (22)](https://blog.mobileum.com/topic/telecom-trends)
- [AI & Analytics (21)](https://blog.mobileum.com/topic/ai-analytics)
- [DNA (Deep Network Analytics)  (20)](https://blog.mobileum.com/topic/dna-deep-network-analytics)
- [AI/ML  (14)](https://blog.mobileum.com/topic/ai-ml)
- [Customer Experience (12)](https://blog.mobileum.com/topic/customer-experience)
- [Data Monetization (11)](https://blog.mobileum.com/topic/data-monetization)
- [Roaming (10)](https://blog.mobileum.com/topic/roaming)
- [IoT  (8)](https://blog.mobileum.com/topic/iot)
- [Internet of Things (IoT) (7)](https://blog.mobileum.com/topic/internet-of-things-iot)
- [Regulatory & Compliance  (7)](https://blog.mobileum.com/topic/regulatory-compliance)
- [eSIM (6)](https://blog.mobileum.com/topic/esim)
- [Debt Collection (4)](https://blog.mobileum.com/topic/debt-collection)
- [Satellite Connectivity  (4)](https://blog.mobileum.com/topic/satellite-connectivity)
- [Incentive Compensation (3)](https://blog.mobileum.com/topic/incentive-compensation)
- [Private Networks (3)](https://blog.mobileum.com/topic/private-networks)
- [VoLTE (3)](https://blog.mobileum.com/topic/volte)
- [NFV (Network Functions Virtualization)  (2)](https://blog.mobileum.com/topic/nfv-network-functions-virtualization)
- [Security (2)](https://blog.mobileum.com/topic/security)
- [Advanced Analytics (1)](https://blog.mobileum.com/topic/advanced-analytics)
- [Machine Learning (1)](https://blog.mobileum.com/topic/machine-learning)
- [Mobile Money (1)](https://blog.mobileum.com/topic/mobile-money)
- [RPA (Robotic Process Automation)  (1)](https://blog.mobileum.com/topic/rpa-robotic-process-automation)

#### Give us your comments

### Let us know what you thought about this article

## You may also like:

<https://blog.mobileum.com/voice-trust-under-siege-why-telecoms-next-security-battle-will-be-won-inside-the-conversation>

## [Why Telecom’s Next Security Battle Will Be Won Inside the Conversation](https://blog.mobileum.com/voice-trust-under-siege-why-telecoms-next-security-battle-will-be-won-inside-the-conversation)

Voice remains one of the world’s most trusted communication channels, but that trust is increasingly under attack. Fraud...

<https://blog.mobileum.com/roaming-looks-operational-but-the-main-risk-is-financial>

## [Roaming Looks Operational, But the Main Risk Is Financial](https://blog.mobileum.com/roaming-looks-operational-but-the-main-risk-is-financial)

Roaming risk has changed. The challenge is no longer simply whether operators can launch, test, monitor, and support roa...

<https://blog.mobileum.com/why-genai-in-risk-management-needs-skills-not-just-agents>

## [Why GenAI in Risk Management Needs Skills, Not Just Agents](https://blog.mobileum.com/why-genai-in-risk-management-needs-skills-not-just-agents)

The market is moving quickly from AI experimentation to AI deployment. In that shift, many organizations are focusing on...

```json
{
  "@context" : "https://schema.org",
  "@type" : "BlogPosting",
  "author" : {
    "@type" : "Person",
    "name" : "Saverio Vardaro",
    "url" : "https://blog.mobileum.com/author/saverio-vardaro"
  },
  "dateModified" : "2025-05-25T12:07:53.589Z",
  "datePublished" : "2022-11-07T04:23:22.000Z",
  "headline" : "The Rising Security Threat of Global Title Leasing",
  "image" : [ "https://blog.mobileum.com/hubfs/DLG_blogShareableImage_Saverio-Vardaro.png" ],
  "mainEntityOfPage" : {
    "@id" : "https://blog.mobileum.com/the-rising-security-threat-of-global-title-leasing",
    "@type" : "WebPage"
  },
  "publisher" : {
    "@type" : "Organization",
    "logo" : {
      "@type" : "ImageObject",
      "url" : "https://blog.mobileum.com/hubfs/01.%20Mobileum/09.%20Image%20Library/Brand%20Kit/Mobileum_logo_hubspot.png"
    },
    "name" : "Mobileum "
  }
}
```