Cahners in-Stat Group estimates the wireless LAN market will grow more than 200% in the next 2 years, from $1.2 billion in 2000 to $4 billion by 2003. But this recent popularity has drawn significant attention in other areas, particularly security. Despite the recent press barrage detailing the ease with which wireless networks can be hacked, these networks remain astonishingly vulnerable. Wireless networks paint a tantalizing picture for crackers, snoops, and even the mildly curious because these individuals can easily equip themselves with a few readily available items, hop in a car, and drive around detecting wireless access points. In fact, this activity has become a favorite pastime of the technology media itself as it continues to prove the frailty of wireless security. CRACKERS : CHOOSE YOUR WEAPON Just as in the wired world, a variety of attacks are used to infiltrate wireless networks. Although some are used alone, others ca be used in tandem to access sensitive data. The following are several examples of popular attacks used against 802.11B based networks. INSERTION ATTACKS: Insertion attacs occur when crackers deploy unauthorized devices in an effort to be recognized by an existing network. For instance, a craker could set up shop outside an access point, armed with a notebook computer or PDA and Wireless Network cards. Because of the required devices' portability, it's simple enough to accomplish these attacks while parked in a car outside a business or home. The access point may or may not be configured for password authentication. If it isnt, the crackers's job is much easier, as it's only necessary to enable communication between the wireless client and the access point. JAMMING As a form of DOS ( denial of service) attacks, DDOS ( distributed denial of service ) rose to popularity in 2000 when websites, such as Yahoo, Amazon, and CNN were crippled by the attacks overwhelming traffic. Crackers also use DOS attacks to flood wireless frequencies to the point where legitimate traffic cant get through. Wireless jamming isnt a new kid on the block. In fact, cell phone jamming equipment can transmit radio signals that blockĀ cell phones nearby from accessing and decoding local signals from cellular networks. BRUTE FORCING because most access points share one key or password wiall connecting wireless clients, that key or password is often subjected to brute force attacks. The Brute Force method involves the use of software-based password crackers that try every possible password combination until they succesfully find the correct one. Although this process can be time consuming, it's still effective across wireless and wired networks. Those mentioned are simply a few. If you are interested in learning more on Wireless Hacking/ Taping feel free to email me at This e-mail address is being protected from spambots. You need JavaScript enabled to view it for further reading. THERAIDER
Exploits:
- Vuln: Mahara Resume Blocktype Cross Site Scripting Vulnerability
- Vuln: Mahara Admin Password Reset Security Bypass Vulnerability
- Vuln: eCryptfs 'parse_tag_3_packet()' Packet Heap Based Buffer Overflow Vulnerability
- Vuln: Cisco VPN Client for Windows 'StartServiceCtrlDispatche' Local Denial of Service Vulnerability
- Vuln: HP OpenView Network Node Manager 'ovdbrun.exe' Denial of Service Vulnerability
- Vuln: PHP Versions Prior to 5.3.1 Multiple Vulnerabilities
- Vuln: KDE KDELibs 'dtoa()' Remote Code Execution Vulnerability
- Vuln: PEAR Sendmail 'From' Parameter Arbitrary Argument Injection Vulnerability
- Vuln: IBM Rational Products Multiple Cross Site Scripting Vulnerabilities
- Vuln: Microsoft Internet Explorer 'Style' Object Remote Code Execution Vulnerability
Articles
Legacy Articles
Wireless Taping
Legacy Articles
Wireless Taping
Viewed 233 times so far.
Like this? Tweet it to your followers!
Published in
Subscribe to the RSS feed of Network Security & Hacking Articles
Network Security & Hacking Articles
/
Subscribe to the RSS feed of Legacy Security Articles
Legacy Security Articles
Like this? Let your friends know now!
Rate this article
Latest articles from GSO
-
Bugtraq: Re: /proc filesystem allows bypassing directory permissions on Linux
posted on Monday, 29 November 1999 16:00
Re: /proc filesystem allows bypassing directory permissions on Linux
-
Vuln: IBM Lotus Connections Mobile Activities Pages Cross Site Scripting Vulnerability
posted on Monday, 26 October 2009 12:00
IBM Lotus Connections Mobile Activities Pages Cross Site Scripting Vulnerability
-
Bugtraq: Adobe Acrobat Reader up to 9.1.1 ONLY Linux integer overflow to heap overflow.
posted on Monday, 29 November 1999 16:00
Adobe Acrobat Reader up to 9.1.1 ONLY Linux integer overflow to heap overflow.
-
Bugtraq: Rising Multiple Products Local Privilege Escalation Vulnerability
posted on Monday, 29 November 1999 16:00
Rising Multiple Products Local Privilege Escalation Vulnerability
-
Bugtraq: {PRL} Rising Firewall 2009 Privilege Escalation
posted on Monday, 29 November 1999 16:00
{PRL} Rising Firewall 2009 Privilege Escalation
Latest 'tweets' from GovernmentSecurity
- News Update: Cyber war is coming, the impact could be huge: CBS News reports that cyber.. http://bit.ly/1tx1kr | #Security Link Monday, 09 November 2009 07:35
- News Update: Tenable Network #Security Podcast - Episode 11: Welcome to the Tenable Netw.. http://bit.ly/2Iqd6G | Security Link Monday, 09 November 2009 07:35
- News Update: Consent will be required for cookies in Europe: EDITORIAL: A law that dema.. http://bit.ly/3JYgip | #Security Link Monday, 09 November 2009 07:35
- News Update: CBS 60 Minutes tackles cyber-terrorism: Could hackers get into the compute.. http://bit.ly/2d5Y21 | #Security Link Monday, 09 November 2009 07:35
- Blog Update: We have launched the new GovernmentSecurity.org: We decided to launch th.. http://bit.ly/2G1SSF | #Security Link Saturday, 07 November 2009 17:38
Site Search
Login Form
Disqus Tools
