WPA is NOT cracked
^ I want to emphasize that because people may get the wrong impression from this snippit.
This is a very specialized attack, and it does not open the gates to full sniffing. This particular attack can work in small, specific circumstances and allow an attacker to get the key for a cipher stream only - one of the numerous, ever-changing streams that will be in use. It does not compromise the full passphraise key in any way/shape/form.
I am not saying that WPA is as secure as WPA2 - nowhere near (WPA2 is completely uncrackable ATM, minus brute force) - but it's still not bad at all.
If you have WPA2 and a solid passPHRAISE (not passWORD), then the SSID and MAC filtering are just inconveniences to you.
If you are using WPA, same applies.
If you have WEP, nothing will save you. I have a bunch of hidden ESSID networks around me - a funny fact is that any credible network scanner picks those up too (displaying "SSID: <hidden>").




Reply With Quote

Bookmarks