home hardware prices news articles forums photos user reviews
Go Back   Tech Support Forums - TechIMO.com > PC Hardware and Tech > Networking and Internet
Ask a Tech Support Question (free)!

Wireless Hackers

Reply
Get bargains at  »  Dealighted.com
 
Thread Tools Search this Thread
Currently Active Users: 2613
Discussions: 200,996, Posts: 2,379,949, Members: 246,364
Old July 10th, 2002, 11:39 PM   Digg it!   #1 (permalink)
Member
 
Join Date: Feb 2002
Location: Satellite Beach, Florida
Posts: 250
Angry
Wireless Hackers

I just read some stuff that really scares me. It appears if I use wireless to extend my internet and lan throughout my Apartment so I can use my laptop, then anyone with the right equipment driving in the apartment complex....or maybe just upstairs.... can break my encryption code.

Link removed by mikey

What encryption key do these wireless cards use anyway? 8 bit?

Not only can they read my stuff.....they can use my connection for illegal activities that I and we could become liable for.

Is Linksys and the other big manufactuers of wireless equipment doing something about this?

How an we protect ourselves from this?

Help!

mikey

Last edited by mikey76 : July 11th, 2002 at 12:46 AM.
mikey76 is offline   Reply With Quote
Old July 10th, 2002, 11:46 PM     #2 (permalink)
addicted
 
DVNT1's Avatar
 
Join Date: Oct 2001
Location: Ohio
Posts: 6,103
The encryption key length depends on the hardware you buy. I typically use 128bit encryption cards.

I didn't read that article but there are some methods to make it fairly secure. The easiest I know if is requiring VPN for all wireless workstations. This way, regardless of seeing the network traffic, all data will still be encrypted and only those with the authenticated VPN client would be allowed through the VPN server/router.
DVNT1 is offline   Reply With Quote
Old July 11th, 2002, 12:45 AM     #3 (permalink)
Member
 
Join Date: Feb 2002
Location: Satellite Beach, Florida
Posts: 250
This is one of the systems they talk about:

XVXV is a wireless LAN (WLAN) tool which recovers encryption keys. XVXV operates by passively monitoring transmissions, computing the encryption key when enough packets have been gathered.
802.11b, using the Wired Equivalent Protocol (WEP), is crippled with numerous security flaws. Most damning of these is the weakness described in "Weaknesses in the Key Scheduling Algorithm of RC4 " by Scott Fluhrer, Itsik Mantin and Adi Shamir. Adam Stubblefield was the first to implement this attack, but he has not made his software public. XVXV, along with JJJJ, which was released about the same time as XVXV, are the first publicly available implementaions of this attack.

XVXV requires approximately 100M-1GB of data to be gathered. Once enough packets have been gathered, XVXV can guess the encryption password in under a second. "

(Names of systems have been changed to XVXV and JJJJ)

This doesn't look good to me.

Last edited by mikey76 : July 11th, 2002 at 12:47 AM.
mikey76 is offline   Reply With Quote
Old July 11th, 2002, 12:51 AM     #4 (permalink)
addicted
 
DVNT1's Avatar
 
Join Date: Oct 2001
Location: Ohio
Posts: 6,103
Actually I am aware of the wireless sniffers and have read a lot about the common insecurities with the WEP keys.

This is why I mention using VPN on the clients (totally seperate from the WEP encryption).
DVNT1 is offline   Reply With Quote
Old July 11th, 2002, 01:12 AM     #5 (permalink)
Member
 
Join Date: Feb 2002
Location: Satellite Beach, Florida
Posts: 250
Using Win98SE, how do I activate or make sure I have VPN configured properly to protect me?

And how does VPN protect....if it can be explained in one or two sentences

I guess these systems don't crack the 128 bit code. They crack an idividuals key to the cards that use that code. Is this true?

Thanks

mike
mikey76 is offline   Reply With Quote
Old July 11th, 2002, 01:19 AM     #6 (permalink)
addicted
 
DVNT1's Avatar
 
Join Date: Oct 2001
Location: Ohio
Posts: 6,103
For the VPN you would need a VPN sever and you would need to make the wireless connection(s) on it's own segment. Much more than most home users would want to do.

For home use, change the key every few days to be the safest.
DVNT1 is offline   Reply With Quote
Old July 11th, 2002, 01:25 AM     #7 (permalink)
Senior Member
 
MDdan's Avatar
 
Join Date: Dec 2001
Posts: 857
Humm...after all the stuff that was x'ed out, I went back and read the FAQs to make sure that I didn't violate any rules with my post.

Well, here goes...and please let me know if I'm not even allowed to talk about this stuff:

Netstumbler is a program that runs on Windows 2000 that allows people to sniff for wireless LANs. This product can be used to facilitate an attack or it can be used to audit wireless security, so I assume it is OK to talk about it. Basically, folks drive around with a laptop, perhaps a higher power antenna, and netstumbler running, and look for wireless LANs to access.

Airsnort is a linux program that is used to break WEP. As DVNT1 already suggested, you need to run a VPN because WEP is a joke. There's more to it than key length, the RC4 used by WEP isn't the problem, it's the way that WEP implements RC4. The blackhat briefings webpage has a good multimedia archive with some real media files describing the nature of the weakness in WEP.

To summarize: No key length is going to make a difference with WEP, the implementation is flawed. They're is no harm in using it, and it may deter someone using netstumbler who's looking for unencrypted LANs. But you need to run an encrypted VPN inside the WEP.

Basically, as sold, almost all of the 802.11b products are very poor from a security standpoint. You should also consider where you connect the access point to your network, it would not be good to stick it in the middle of your LAN.

I'm also eager to get a wireless setup going at home....laptop and wireless....woohoo!
MDdan is offline   Reply With Quote
Old July 11th, 2002, 01:36 AM     #8 (permalink)
Member
 
Join Date: Feb 2002
Location: Satellite Beach, Florida
Posts: 250
Laptop and wireless. Yep. Only way to fly!

But if someone outside or down the block can make my ISP think they are me, then lord knows what all they could do. I am more worried about the hackers using my identity to do bad things than monitoring what I do.
mikey76 is offline   Reply With Quote
Old July 11th, 2002, 01:45 AM     #9 (permalink)
Member
 
Join Date: Feb 2002
Location: Satellite Beach, Florida
Posts: 250
Per MDdan:

"You should also consider where you connect the access point to your network, it would not be good to stick it in the middle of your LAN. "

I guess I need a picture. I am not sure what you mean by the middle of my LAN. Cable Modem goes to wireless router. Router feeds desktop. Got a network line on the printer. Wirless router is the access point for the laptop rf. Is this the "middle"

Hackers, virii, worms, ycch. "Why can't we just all get along?"


Oh, dan....you filled in the x'ed out spaces pretty well.
mikey76 is offline   Reply With Quote
Old July 11th, 2002, 08:02 AM     #10 (permalink)
addicted
 
DVNT1's Avatar
 
Join Date: Oct 2001
Location: Ohio
Posts: 6,103
"middle of the LAN"....meaning connected to a hub/switch that is directly (as far as routers and firewalls go) connected to servers, workstations, and other less protected devices.

As for a relative picture....

wirelessComputer <--> AccessPoint<-->VPN server<--> LAN(all wired computers)


Therefore the wirelessComputers should be on thier own subnet too.
DVNT1 is offline   Reply With Quote
Reply
Thread Tools Search this Thread
Search this Thread:

Advanced Search


Currently Active Users Viewing This Thread: 1 (0 members and 1 guests)
 
Most Active Discussions
Is It Just Me? (3092)
Charges against non-tippers dropped.. (22)
Foxconn Blackops x48 MoBo (5)
Health Care Rationing (16)
Nvidia GTX 260 problem (14)
Delete an OS (17)
Laptop with wireless problem. (13)
Wireless Televisions. (12)
windows vista security holes (19)
CPU fan stops spinning randomly (11)
Regular Build (11)
Point and Shoot Camera Suggestions. (9)
[F@H SPAM 11/16/09] ! 1/2 months to.. (41)
windows 7 problem (7)
Recent Discussions
add ram to existing (3)
Need help getting speakers to work (2)
Nvidia GTX 260 problem (14)
Laptop with wireless problem. (13)
Point and Shoot Camera Suggestions. (9)
Is the PSU I received dead? (16)
FreeAgent drive software not x64 comp.. (1)
Intel 5100 AGN issues fixed yet? (28)
Foxconn Blackops x48 MoBo (5)
[F@H SPAM 11/16/09] ! 1/2 months to r.. (41)
Print spooler problem (17)
Q9650 vs. Q9550 (2)
Desktop Calendar Application (2)
Looking for new motherboard (1)
soundmon.exe (8)
Jedi Academy Problem (3)
Can a page file be "too big".. (1)
Size after cutting 700Mb file is 2.5 .. (0)
Delete an OS (17)
windows vista security holes (19)
updating BIOS via winflash, claims fi.. (1)
New Server Configuration Suggestions (0)
cheap gaming laptop? (12)
Unallocated Space (2)
help me pls laptop just stopped worki.. (1)


All times are GMT -4. The time now is 11:58 AM.
TechIMO Copyright 2009 All Enthusiast, Inc.



1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20 21 22 23 24 25 26 27 28