Search:  

 
 
   All ForumsHot TopicsGallery






how-to block ads


 
Forums » Out of Thin Air » Where...
Search Topic:
Share Topic:
RSS topic:
toggle:
flat / full
normal / watch
Post a:
Post a:
Want security? Just stay under their "radar" »
« How long would it take to...  
AuthorAll Replies


gdead

@eisg.net

reply to Sisqo
Defensive Techniques

Howdy,
So I've been involved in the Airsnarf project (I presented with Beetle at BlackHat Federal in DC a few months ago on the project). I've got a few things to say about this tool and the write-up about this.

First off, the type of attack that airsnarf carries out is not rocket science. It is not about breaking encryption but rather about tricking the client. The attack can be fully explained in about 5 minutes to a level that anyone with familiarity with 802.11 can fully understand it.

HOWEVER, not a single OS vendor, security tool provider, or driver vendor alert the user that this kind of attack is being performed. This is completely a layer 2 attack that should be caught by any wireless security tool. At the point of our talk at BH, nothing existed that would tell the user "hey, bad things are afoot... you should stop using this network". Airsnarf is a wakeup call to the vendors.

To that end, we also wrote the hotspot defense kit (HSDK). It's designed to alert the user that there is a layer 2 attack underway. It can be downloaded from the airsnaft page. Currently it only runs on OS X, but we are working on a windows port.

Finally, I am not a 3l337 blackhat hacker. I coauthored 802.11 Security through O'Reilly. I also try to educate as many people as I can about wireless security through talks, mailing lists, etc.

later
Forums » Out of Thin AirWant security? Just stay under their "radar" »
« How long would it take to...  


Friday, 05-Dec 04:06:03 Terms of Use | Privacy Policy | Hosting by www.nac.net - DSL,Hosting & Co-lo | feedback | contact
over 9 years online! © 1999-2008 dslreports.com.republican-creole
page compression OFF
Most commented news this week
· [125] AT&T Metered Billing Trial Hits Second Market
· [97] UDP BitTorrent Will Destroy The Interwebs!
· [96] AT&T Cutting 12,000 Jobs
· [94] Exclusive Screens Of Comcast's New Bandwidth Meter
· [90] EFF Challenges Telecom Immunity
· [83] Firefox Extension Leads Amazon Customers To Pirated Alternatives
· [77] Scott Cleland: Google Using 21x The Bandwidth They Pay For
· [63] Apple: Who Believes Our Ads Anyway?
· [62] Comcast Tries To Slow Verizon's Philly Entry
· [61] Comcast To Offer Bandwidth Use Tracker In January
Most people now reading
· Level 80 PVP gear info? [World of Warcraft]
· Extjs grid combo box. [Webmasters and Developers]
· Coalition Government Possible? [TekSavvy]
· Notice, new uTorrent Alpha may be able to evade throttling [TekSavvy]
· [ Professions] Northrend Herbalism and Mining Tracks [World of Warcraft]
· [WotLK] PVP gear at 80 [World of Warcraft]
· [Connectivity] SB5120 errors and intermittent connection failure [Comcast HSI]
· AD trust between 2 different forest [No, I Will Not Fix Your #@$!! Computer]
· Setting up TekSavvy with IMAP [TekSavvy]
· [XP Home] Disk Defragmenter could not start. [Microsoft help]