Your Ad Here

Researcher finds vulnerability in WPS protocol, looks for manufacturers to present fix

At the plus side, your router’s mostly secure. Security researcher Stefan Viehbock has just discovered a chief security hole which allowed him to exploit a brute force method to access a WPS PIN-protected network in about two hours. In step with Viehbock, a design flaw allows the WPS protocol’s 8-digit PIN security to fall dramatically as additional attempts are made. With each attempt, the router will send a message stating whether the 1st four digits are correct while the last digit of the hot button is used as a checksum after which given out by the router in negotiation. Accordingly, the 100,000,000 possibilities that the WPS should represent becomes roughly to 11,000.

The US-CERT has picked up in this and advised users to disable WPS on their routers. Viehbock, in turn, claims to have attempted to debate the vulnerability with hardware vendors similar to Buffalo, D-Link, Linksys, and Netgear, but says he have been roundly ignored and that no public acknowledgement of the difficulty was released. As a probable final step, Viehbock has promised to release a brute force tool soon, thereby pushing the manufacturers to work to solve the problem. In other news, that evil supercomputer from the movie War Games just got just a few more digits of the nuclear launch codes — maybe considered one of Stefan’s pals can look at that one.

Source

  • Twitter
  • Facebook
  • email
  • PDF
  • Digg
  • del.icio.us
  • Google Bookmarks
  • RSS

This post is tagged: , , , ,

Leave a Reply





  • Everything Everywhere promises ‘small-scale LTE launch’ in UK by the top of 2012Everything Everywhere promises ‘small-scale LTE launch’ in UK by the top of 2012

    Everything Everywhere's spilled more details on its 4G hopes and dreams. That £1.5 billion investment is aiming to get a small scale LTE launch by the tip of the year -- subject to Ofcom's say-so . The lucky epicenter of for the way forward for mobile communications within the UK? That'll be Bristol, which is able to begin its trial on 1800MHz spectrum from April. It's already… »
  • ASUS MWC teaser video hints at possible hi-res tablet display?ASUS MWC teaser video hints at possible hi-res tablet display?

    What's to not love a couple of short video insinuating something marvelous could be coming soon -- especially if it means a hi-res screen on a tablet, à la that purported Retina Display we saw a couple of days back . We need to give ASUS credit for this one, as it's teasing us with a clip titled "Twice the Detail, Twice the thrill." The vid's lead actors are a plethora of… »

Categories

Subscribe

Enter your email address: