Cracking Wireless Access Points

GIJoeBob

Shared on Tue, 08/08/2006 - 17:15
Here is a short film showing how easy it is to crack WEP security on a wireless access point. Yes, I know that WPA is better, but a lot of people still use WEP due to having older equipment.

[youtube]http://www.youtube.com/watch?v=G38PD5FyUxE[/youtube]

The take away on this is that relying on WEP to keep your computer safe is not a good idea. Password protect your computer, do not have open shares and use all the security features you can to help slow down the person trying to get into your computer so that they get frustrated enough to move on to other, easier targets.

Comments

Armor's picture
Submitted by Armor on Tue, 08/08/2006 - 13:03
Would WEP in combination with MAC address filtering over enough "levels of frustration" to prevent this type of hack?
SirPoonga's picture
Submitted by SirPoonga on Tue, 08/08/2006 - 13:11
No, MAC address filtering doesn't do much if the person knows how to do this. You can "sniff" random packets floating through the air and see what mac addresses are in those packets. Then setup a wireless device with the same MAC. However, if both devices with the same mac are on at the same time they will get confused and have not network access. So it is obvious when this is happening. Unfortunately I have one router that is WEP because tha tis all the DS can do. At some point I will put it outside the network but it is being used for something else right now. GI, you meant WPK, not WMA :)
SirPoonga's picture
Submitted by SirPoonga on Tue, 08/08/2006 - 13:12
Err, WPA.
GIJoeBob's picture
Submitted by GIJoeBob on Tue, 08/08/2006 - 17:16
Thanks Poonga. I've got Windows Media on the brain right now. :D
Orbytal's picture
Submitted by Orbytal on Tue, 08/08/2006 - 17:20
So this doesnt work on a PSP?
TANK's picture
Submitted by TANK on Tue, 08/08/2006 - 17:23
The other thing is don't use a word as your WEP key if you're using wep. That guy cracked his own gateways because he use a huge word database file to do it with. Get creative with WEP passwords, use 128bit and use the full amount of characters to fill in your wep key. Make your password a sentence with 0's as spaces and stuff like that. Passwords can always be broken in time but you don't need to make it easy.
TANK's picture
Submitted by TANK on Tue, 08/08/2006 - 17:26
Other wifi tips. Don't broadcast your SSID, use MAC Filtering, use a good strong password sentence as recommended above and use WPA 256bit encryption if possible otherwise 128bit wep. THats pretty much as good as you're going to get for wifi. It's a very vulnerable technology, the best you can do is use all the security measures together to make it not worth the time to hack when there's an easier one to hack in the air too. Another idea is to setup a 2nd 'dummy' wifi access point that's outside your firewall. That way people can jump on and only go out to theinternet. If you give them something right in front of their eyes, maybe they won't look for your internal network wifi.
GIJoeBob's picture
Submitted by GIJoeBob on Tue, 08/08/2006 - 19:02
Actually, this guy didn't use a dictionary attack. I have that video as well, those hacks took only seconds. :0

Join our Universe

Connect with 2o2p