Search:  

 
 
   All ForumsHot TopicsGallery






how-to block ads


 
Forums » Microsoft Confirms Wi-Fi Flaw » Not much of a flaw
Search Topic:
Uniqs:
2
Share Topic:
RSS topic:
toggle:
flat / full
normal / watch
Post a:
Post a:
Be heard »
« Consumers  
AuthorAll Replies

MiloMindbend

join:2001-01-18
Jeannette, PA

Not much of a flaw

The way I read it, the only thing that MS' implementation is doing wrong is looking for ad-hoc instead of infrastructure mode associations. Take that away, and unless you were using WPA or WPA2 (for mutual authentication), you can still suffer the same results. All the attacker needs to do is pull the SSID from the probe requests your client radio is sending and set up a soft access point advertising that SSID (see all the noise last year about "rogue APs"). The only thing they can fix without breaking the way 802.11 networking works is whether the attacker can use off-the-shelf ad-hoc functionality or he has to know a tiny little bit about how to set up an access point.

Either way, if you wander around with your device's WiFi adapter enabled, you can be providing a network connection to your device (again, unless it was configured to only use WPA or some other mutual-authentication scheme).

(Oh, and all the stuff about "getting a local address"? That's just the autoconf link-local addressing, and it has _nothing_ to do with WiFi. The attacker could just as easily provide DHCP on his soft-AP or ad-hoc peer, and the attackee would obtain an address from that and you'd still have connectivity.)
Forums » Microsoft Confirms Wi-Fi FlawBe heard »
« Consumers  


Tuesday, 10-Nov 08:36:50 Terms of Use | Privacy Policy | Hosting by www.nac.net - DSL,Hosting & Co-lo | feedback | contact
over 10 years online! © 1999-2009 dslreports.com.republican-creole
page compression OFF
Most commented news this week
· [87] Verizon Keeps Swinging At AT&T
· [83] VoIP Over 3G Still Not Working For iPhone
· [33] Bill Would Force ISPs To Block Financial Scams
· [24] Mediacom Hints At 50, 100 Mbps Speeds
· [15] Clearwire To Get Another $1.5 Billion
· [11] Monday Evening Links
· [9] 15 States Have Now Gotten Broadband Mapping Money
· [6] AT&T Launching New 7.2 Mbps 3G Modem
· [1] Sprint Announces Job Cuts
· [0] Tuesday Morning Links
Most people now reading
· Windows 7 boot manager editing questions [Microsoft Help]
· How in the world am I going to get into college? [General Questions]
· Sigh...time to switch from WindowMaker [All Things Unix]
· A fishy CRTC tarriff filed by bell? [TekSavvy]
· 3.x Feral Druid - Bear Tanking Guide [World of Warcraft]
· Wood floor opinion... [Home Repair & Improvement]
· 60 Minutes piece on cyber security last night [Security]
· [WIN7] Standby mode. Is it just a dream? [Microsoft Help]
· Your ideal heroic 5-man class comp! [World of Warcraft]
· Microsoft Security Bulletin Summary for October 13, 2009 [Security]