IIRC, in LTE the devices verify the identity of the towers with a signature check now too.
Some attacks abuse error indication prior authentication for location leaks and denial of service.
Once the connection is established, you're good.
Base stations receive a derivated key. If the base station is not connected to your provider's network, you cannot establish a connection due to the lack of a common key.