Cahners in-Stat Group estimates the wireless LAN market will grow more than 200% in the next 2 years, from $1.2 billion in 2000 to $4 billion by 2003. But this recent popularity has drawn significant attention in other areas, particularly security. Despite the recent press barrage detailing the ease with which wireless networks can be hacked, these networks remain astonishingly vulnerable. Wireless networks paint a tantalizing picture for crackers, snoops, and even the mildly curious because these individuals can easily equip themselves with a few readily available items, hop in a car, and drive around detecting wireless access points. In fact, this activity has become a favorite pastime of the technology media itself as it continues to prove the frailty of wireless security. CRACKERS : CHOOSE YOUR WEAPON Just as in the wired world, a variety of attacks are used to infiltrate wireless networks. Although some are used alone, others ca be used in tandem to access sensitive data. The following are several examples of popular attacks used against 802.11B based networks. INSERTION ATTACKS: Insertion attacs occur when crackers deploy unauthorized devices in an effort to be recognized by an existing network. For instance, a craker could set up shop outside an access point, armed with a notebook computer or PDA and Wireless Network cards. Because of the required devices' portability, it's simple enough to accomplish these attacks while parked in a car outside a business or home. The access point may or may not be configured for password authentication. If it isnt, the crackers's job is much easier, as it's only necessary to enable communication between the wireless client and the access point. JAMMING As a form of DOS ( denial of service) attacks, DDOS ( distributed denial of service ) rose to popularity in 2000 when websites, such as Yahoo, Amazon, and CNN were crippled by the attacks overwhelming traffic. Crackers also use DOS attacks to flood wireless frequencies to the point where legitimate traffic cant get through. Wireless jamming isnt a new kid on the block. In fact, cell phone jamming equipment can transmit radio signals that blockĀ cell phones nearby from accessing and decoding local signals from cellular networks. BRUTE FORCING because most access points share one key or password wiall connecting wireless clients, that key or password is often subjected to brute force attacks. The Brute Force method involves the use of software-based password crackers that try every possible password combination until they succesfully find the correct one. Although this process can be time consuming, it's still effective across wireless and wired networks. Those mentioned are simply a few. If you are interested in learning more on Wireless Hacking/ Taping feel free to email me at This e-mail address is being protected from spambots. You need JavaScript enabled to view it for further reading. THERAIDER
Exploits:
- Vuln: Mahara Resume Blocktype Cross Site Scripting Vulnerability
- Vuln: Mahara Admin Password Reset Security Bypass Vulnerability
- Vuln: Google Chrome prior to 3.0.195.32 Multiple Security Vulnerabilities
- Vuln: Multiple Horde Products Cross-Site Scripting Vulnerabilities and File Overwrite Vulnerability
- Vuln: Mod_Perl Path_Info Remote Denial Of Service Vulnerability
- Vuln: Apache mod_perl 'Apache::Status' and 'Apache2::Status' Cross Site Scripting Vulnerability
- Vuln: FreeBSD 'fifo_vnops.c' Resource Leak Local Denial of Service Vulnerability
- Vuln: Citrix NetScaler and Access Gateway Denial Of Service Vulnerability
- Vuln: PDFLib 'open_basedir' Restriction Bypass Vulnerability
- Vuln: Multiple Vendor TLS Protocol Session Renegotiation Security Vulnerability
Articles
Legacy Articles
Wireless Taping
Legacy Articles
Wireless Taping
Viewed 179 times so far.
Like this? Tweet it to your followers!
Published in
Subscribe to the RSS feed of Network Security & Hacking Articles
Network Security & Hacking Articles
/
Subscribe to the RSS feed of Legacy Security Articles
Legacy Security Articles
Like this? Let your friends know now!
Rate this article
Latest articles from GSO
-
Bugtraq: Re: /proc filesystem allows bypassing directory permissions on Linux
posted on Monday, 29 November 1999 16:00
Re: /proc filesystem allows bypassing directory permissions on Linux
-
Vuln: IBM Lotus Connections Mobile Activities Pages Cross Site Scripting Vulnerability
posted on Monday, 26 October 2009 12:00
IBM Lotus Connections Mobile Activities Pages Cross Site Scripting Vulnerability
-
Bugtraq: Adobe Acrobat Reader up to 9.1.1 ONLY Linux integer overflow to heap overflow.
posted on Monday, 29 November 1999 16:00
Adobe Acrobat Reader up to 9.1.1 ONLY Linux integer overflow to heap overflow.
-
Bugtraq: Rising Multiple Products Local Privilege Escalation Vulnerability
posted on Monday, 29 November 1999 16:00
Rising Multiple Products Local Privilege Escalation Vulnerability
-
Bugtraq: {PRL} Rising Firewall 2009 Privilege Escalation
posted on Monday, 29 November 1999 16:00
{PRL} Rising Firewall 2009 Privilege Escalation
Latest 'tweets' from GovernmentSecurity
- Blog Update: We have launched the new GovernmentSecurity.org: We decided to launch th.. http://bit.ly/2G1SSF | #Security Link Saturday, 07 November 2009 17:38
- New Article: When And How To Outsource IT : CargoWise edi, a leading provider of inte.. http://bit.ly/3NCSnX | #Security Link Saturday, 07 November 2009 17:08
- New Article: Avoiding Email Blacklists and Spam Folder: With the unparalleled rise .. http://bit.ly/10wQPw | #Security Link Saturday, 07 November 2009 17:01
- News Update: Twitter users troubled by locked accounts: If you have been using Twitter .. http://bit.ly/3r9nfU | #Security Link Saturday, 07 November 2009 11:57
- Can I get a Hoot Hoot?! #HootSuite is my number one Twitter client. http://hootsuite.com Link Friday, 06 November 2009 06:03

