I’m not too knowledgeable about cellular equipment, but I was wondering how much of the phone based data actually gets to the SIM card.

Would it be possible, by sniffing the connection to the card, to listen to the content of calls and mobile data? Or would it be possible to get tower information in a similar format to rayhunter?

I understand there is some encryption, would getting the keys for that enable some of the previous ideas?