Re: WPA TKIP Cracked --- Use WPA2 AES
Quite interesting. Seems I need some tweaking to do with my wifi. Thank you for that, Grey.
Announcement
Collapse
No announcement yet.
WPA TKIP Cracked --- Use WPA2 AES
Collapse
X
-
Leave a comment:
-
Re: WPA TKIP Cracked --- Use WPA2 AES
Suddenly I feel hope. It tastes like sunshine.
Leave a comment:
-
Re: WPA TKIP Cracked --- Use WPA2 AES
Eh, AES has not been cracked. What was cracked there was the method for storing the password which created the connection ... so if I have physical access to a machine to get their SSID and passphrase for WPA2 I am good to go as well!
AES has a long way to go before it is cracked ... unless anyone from the NSA wishes to speak up?
Leave a comment:
-
Re: WPA TKIP Cracked --- Use WPA2 AES
Originally posted by xor View Post
Leave a comment:
-
Re: WPA TKIP Cracked --- Use WPA2 AES
Originally posted by renderman View PostAES will probably last longer than WEP (with the already broken RC4) did. To their credit, the standards bodies do good work, it's usually concessions made to vendors being whiny that things end up getting FUBAR'd.
USB-stick-with-hardware-AES-encryption-has-been-cracked
xor
Leave a comment:
-
Re: WPA TKIP Cracked --- Use WPA2 AES
Originally posted by renderman View PostAES will probably last longer than WEP (with the already broken RC4) did. To their credit, the standards bodies do good work, it's usually concessions made to vendors being whiny that things end up getting FUBAR'd.
I would suggest watching my panel from Shmoocon 2007 where we put the screws to the IETF chairman about such things as the Michael countermeasures.
http://www.shmoocon.org/2007/videos/...%20Housley.mp4
Leave a comment:
-
Re: WPA TKIP Cracked --- Use WPA2 AES
Originally posted by Ænder View PostOf course, even switching to WPA2 AES, how long will it be until this, too, is cracked? With the rate of encryption and security measures being compromised, I can't imagine it will be long.
I would suggest watching my panel from Shmoocon 2007 where we put the screws to the IETF chairman about such things as the Michael countermeasures.
http://www.shmoocon.org/2007/videos/...%20Housley.mp4
Leave a comment:
-
Re: WPA TKIP Cracked --- Use WPA2 AES
Of course, even switching to WPA2 AES, how long will it be until this, too, is cracked? With the rate of encryption and security measures being compromised, I can't imagine it will be long.
Leave a comment:
-
Re: WPA TKIP Cracked --- Use WPA2 AES
Not much to add.
I knew that Micheal countermeasure / WMM things was going to be trouble.
It's a step in the direction of larger attacks but I think were still a bit off from the level of brokeness that WEP has achieved.
Leave a comment:
-
Re: WPA TKIP Cracked --- Use WPA2 AES
Originally posted by datalust View PostJust recapping for my own memory: With the announced vulnerability from Tews, sufficiently small TKIP encrypted packets traveling from AP to client can be decrypted, modified, and re-encrypted then sent to the client.
Sound partly correct?
Originally posted by datalust View PostStrong keys still safe?
Leave a comment:
-
Re: WPA TKIP Cracked --- Use WPA2 AES
Just recapping for my own memory: With the announced vulnerability from Tews, sufficiently small TKIP encrypted packets traveling from AP to client can be decrypted, modified, and re-encrypted then sent to the client.
Sound partly correct? Strong keys still safe?
Leave a comment:
-
Re: WPA TKIP Cracked --- Use WPA2 AES
Originally posted by xor View PostI'm surprised Render or Thorn didn't beat me to the punch.
Could be Render and Thorn were waiting for more data as it is still spotty and the FUD is flowing.
Here's what I have.Last edited by Greyhatter; November 12, 2008, 07:37.
Leave a comment:
-
Re: WPA TKIP Cracked --- Use WPA2 AES
The article I was reading stated that arp poisoning would be a trivial matter with this hack. Maybe even dns packet injection.
xor
Aircrack is already rolling it into their software. If you are a fan and haven't stopped by their site in awhile you should.
Leave a comment:
Leave a comment: