Japanese security researchers have devised a method of cracking WPA wireless encryption in less than a minute.

The hack was developed by Toshihiro Ohigashi (Hiroshima University) and Masakatu Morii (Kobe University), building on the German-developed Beck-Tews attack which takes around 15 minutes.
The hack targets the Temporal Key Integrity Protocol (TKIP) version of WiFi Protected Access (WPA) wireless encryption. It cannot retrieve a WPA encryption key, but it does allow the perpetrator to read and spoof data packets.
Wireless networks using Advanced Encryption Standard (AES) based encryption are immune to the hack.
8 Comments on WPA wifi hack – gone in sixty seconds
http://jwis2009.nsysu.edu.tw/locatio...20on%20WPA.pdf
|
> I assume that this means you can recover the whole key and > > start decoding traffic in real time. |
|
Fortunately not. This is definitely NOT a key recovery attack. It only allows an attacker to determine a single SHORT packet's pseudo-random XORing bit stream ... from which another packet can be synthesized. Yes, you could then use ARP spoofing to insert yourself "in the middle" ... by synthesizing a single packet, but you still could not really do anything from there (other than a denial of service) since you still don't have any other packets' bit- streams. It's an improvement on the previous TKIP attack, and it means that moving from TKIP to AES cipher is still a good idea ... but this isn't a huge "end of the world" event by any means.
|
http://forums.remote-exploit.org/150062-post43.html
|
from grc newsserver
steve gibson replied also fron the remote-exploit forums http://forums.remote-exploit.org/150062-post43.html |
Most popular headlines
Windows Blue to allow boot to desktop and brings start menu back? (3)
- Tue 16 Apr 16:12 by DoMiN8ToR
- Software, Windows 8
The upcoming update of Windows 8 might allow users to boot to the desktop again.
Jobs in US entertainment industry on all-time high - piracy?! (8)
- Fri 12 Apr 15:10 by DoMiN8ToR
- Piracy
The number of jobs in the film and music industry in the United States has increased despite the claimed negative effects of illegal downloads.
The Piratebay domain moves to Greenland - circumvents blockade (3)
- Tue 9 Apr 14:23 by DoMiN8ToR
- Piracy
The PirateBay has moved to the domain thepiratebay.gl in fear that their previous domain would be ceased by Swedish authorities
Intel 9 series chipset has native SATA Express (SATA over PCIe) support (2)
- Wed 17 Apr 13:57 by DoMiN8ToR
- Solid State (ssd)
A Chinese tech site has posted a picture that reveals details on Intel's 9 series chipset.



