Sign In/My Account | View Cart  

advertisement

AddThis Social Bookmark Button

Article:
  Tales of a White Hat War Driver
Subject:   Just as open in Colorado Springs?
Date:   2002-03-30 07:20:04
From:   kgrr
My experience here in the front range of Colorado (Denver and Colorado Springs area) is different. Here in Colorado Springs, more users depend on WEP for security. I see about 30% of access points secured with WEP. But many more have purposely discarded it. This is why I am not sure if counting the number of subscribers using WEP is an accurate measure of security. Let me explain.


It's important to note that Rothberg did not mention in his article that WEP has been cracked and that there are tools such as WEPCrack and AirSnort available online to break them. AT&T labs has described a method which will break a WEP key in 15 minutes. Thus, if you have sensitive data, it is very important to use a VPN system overlay to authenticate your users and encrypt your data. In the cases where a VPN is used, the useless WEP is discarded because in larger businesses it's impossible to take the system down to change all the WEP keys. This is because WEP uses the same key for the entire system. His numbers of only 14% of systems secure is very deceiving. To accurately make a measurement of open systems, one must actually have been able to connect to something on the other side of the wireless connection.


For a home user, look for access points that disable SSID broadcasts. The Linksys WAP 11 can do this with a software download from the manufacturer's web site.


Although very useful, be aware that MAC Address filtering cannot be relied upon because there are no standards that require client card manufacturers to have MAC addresses that cannot be altered. It is possible on many client cards to re-program the MAC address to match ones seen over the air with tools like Netstumbler. But most hackers don't know how to do this. It's another layer on the onion.


Another simple thing to do -- password securing all shared drives and resources. If access is gained to the network through the Wired LAN or Wireless LAN, it's important to safeguard your files and printer paper. LAN Jacking does occur, but is not a sensational a topic.


By all means, when 802.11i security becomes available, upgrade the defective WEP in your wireless network to secure the MAC layer.


Konrad Roeder
Consulting Systems Engineer
http://www.springswireless.com

Full Threads Oldest First

Showing messages 1 through 1 of 1.

  • Just as open in Colorado Springs?
    2006-07-08 00:38:09  dawncq [View]

    If you did wardriving, you would notice that WEP only means "encrypted", no matter it is WEP,WPA, or others. that's what the author should have mentioned too.

    For getting what protocol a system uses, it is much more complex than just using probe. As a "good behavior" software like NetStumbler, it won't risk connecting or intruding to a network and give you a piece of information of encryption protocol.