Business IT - Technology for your business

No. 1 Story

Telstra adds one million mobile services, but Sensis plummets

Telstra has revealed the addition of almost one million new mobile services in the six months to December 2011, but Sensis revenues plummeted 24 percent in 12 months.

read more

WPA is Broken. Be Afraid, be Very Afraid

Business IT - Security

Researchers claim to have cracked the Wireless Protection Access (WPA) standard.  Their results are due to be announced at the upcoming PacSec conference on November 12th and 13th in Tokyo, Japan.  The paper has also been submitted to WiSec 2009 Zurich.

OK, afraid is good, fortunately it’s not quite time to turn off your wireless router.  Yet.

The following is based on pre-publication information provided to a variety of publications.

In a glorious piece of understatement, Eric Tews, one of the two graduate students to identify the problem, said "The new attack on WPA is not a complete key recovery attack, it just allows you to decrypt packets and inject packets with custom content.”

Fortunately, this attack relies on identifying a short term key, rather than the (hopefully stronger) connection key.

As is seemingly always the case, this attack relies on an out-of-band attack – instead of directly addressing the data stream, Tews and his co-researcher Martin Beck found it easier to direct their assault upon the ARP protocol via the Temporal Key Integrity Protocol (TKIP).  Here, very little of the data in a packet (in fact just 14 bytes) is unknown and is susceptible to attack.  The researchers indicate that less than 15 minutes of processing is required to determine the unknown information.

One of the improvements over WEP made by developers of the WPA protocol was to add integrity checking to protect against header and message alteration.  Unfortunately, according to Tews and Beck, this doesn’t make the problem harder, just slower to solve.

There’s a big difference.  Harder problems require smarter solutions; slower problems simply require more horsepower.  Well perhaps this isn’t relevant – Tews indicated that the attack might take 3 seconds on a modern laptop once the initial decryption has occurred.

Overall, this doesn’t mean that WPA is broken (yet) but it certainly exposes a very important issue with the protocol.  The ability to send a small amount of data using a valid keystream (before it expires) is kinda useful!

And from here, the research never goes backwards!

Loading comments ...

- sponsored feature -

The Death of Traditional BI: What’s Next?

How to Make Business Discovery Work for Your Business IP PABX BUYING GUIDE

Business Discovery takes its cues from consumer apps. Like Google, it encourages us- ers to hunt for and explore data without worrying about or even noticing the underly- ing technology. Their entire experience is working within an intuitive interface to get real-time, self-service results with only minimal training. ...more