Insights

Market Intelligence.

Unique insights on compliance and analytics — written for the teams who build and operate global telecom infrastructure.

compliance mandates7 min read

Salt Typhoon exposed the CALEA paradox: the intercept mandate is now the attack surface

Chinese state-sponsored hackers breached U.S. carrier networks by exploiting legally mandated CALEA intercept infrastructure — the very access points telecom operators are required by law to maintain. The FCC issued an emergency cybersecurity ruling in January 2025, then reversed it in November. Telecom operators are now legally obligated to run infrastructure that the federal government has confirmed is a proven attack vector, with no updated compliance standard to harden against. Here is what that means for your intercept stack.

Read article
compliance mandates6 min read

VoLTE S8HR and the intercept blind spot in 5G voice roaming

The S8 Home Routed (S8HR) architecture for VoLTE roaming routes voice sessions through the home network's IMS, creating an intercept blind spot for the visited network and compliance complexity for both parties. As 5G voice roaming scales, this architecture gap needs to be addressed explicitly.

Read article
compliance mandates6 min read

CALEA at 30: Why broadband LI compliance is still a patchwork

Three decades after CALEA was enacted, broadband and VoIP interception mandates remain inconsistently implemented across US telecom operators. We examine the technical gaps, the FCC enforcement posture, and what a modern probe-free LI architecture actually looks like in 2024.

Read article
records & data retention5 min read

CG-NAT and the subscriber identification problem

As IPv4 exhaustion drives mass CG-NAT deployment, subscriber-to-IP mapping has become one of the most error-prone steps in records production. We break down why timestamp correlation alone is insufficient and what accurate identification actually requires.

Read article
roaming analytics4 min read

Why roaming IOT agreements are still negotiated on gut feel

Most operators enter IOT negotiations without a model of how proposed rate changes actually affect their margin — because building that model requires correlating TAP files, traffic distribution, and usage patterns in ways their BSS was never designed to support. There is a better way.

Read article
strategy8 min read

Build vs buy vs outsource: the compliance infrastructure decision

Telecom operators face a recurring decision: build compliance infrastructure in-house, licence a platform and operate it themselves, or outsource the entire function to a managed service. Each model has a different risk and cost profile — and the right answer depends on factors most organisations do not fully account for.

Read article

Stay current.

New analysis when it's ready — no cadence forcing, no filler. Unsubscribe any time.