Lounge How was your day? Anything goes but please keep it PG-13!

So much for the new WPA wireless encryption....

Thread Tools
 
Search this Thread
 
Old 08-27-2009, 04:13 PM
  #11  
Former Vendor
 
acuteperformance's Avatar
 
Join Date: Apr 2008
Location: SoCal
Posts: 5,051
Likes: 0
Received 1 Like on 1 Post
My Ride: 14 550i
Default

that's actually a fallacy. if you're going to be breaking encryption, the utilities you use will show all APs in the area including hidden ones.

michael

Originally Posted by porsche911targa' post='990758' date='Aug 27 2009, 03:58 PM
Hahaha, I love your new picture. I made one for you, albeit not as sophisticated. I hope you like it.

Attachment 88511

Anyway, one of the best things people can do is to set their router to NOT broadcast its existence.
Old 08-27-2009, 04:45 PM
  #12  
Contributors
 
Brit_in_NJ's Avatar
 
Join Date: Apr 2008
Location: New Jersey
Posts: 2,596
Likes: 0
Received 0 Likes on 0 Posts
My Ride: '05 545 Titanium Silver, Black Leather - Nav, Logic 7, Cold weather. Mods: Carbon filter removed. M5 iDrive knob. Umnitza license plate LEDs. MP3 40% 3M tint ACS Anti-Roll(sway) bars RPI Scoop G-tech Pro RR CF Roundels CF Wheel caps
Default

Originally Posted by porsche911targa' post='990758' date='Aug 27 2009, 06:58 PM
Anyway, one of the best things people can do is to set their router to NOT broadcast its existence.

Nope! The only way you can do that is to switch the power off!

If it's on it's visible. It's very easy to find a non broadcast SSID.
Old 08-27-2009, 06:16 PM
  #13  
Contributors
 
porsche911targa's Avatar
 
Join Date: Sep 2008
Location: Massachusetts, USA
Posts: 2,718
Likes: 0
Received 1 Like on 1 Post
My Ride: 2006 525XI, Jet black on Dakota beige. Premium and winter packages. I consider myself a purist and intend to keep my car absolutely stock and shiny. 2008 328I Convertible, Sapphire black on beige interior. Premium package, NAV, iPod adapter. Retired: 2002 325I, Titanium silver on black leather. Premium package. Absolutely stock and proud of it.
Smile

Originally Posted by Brit_in_NJ' post='990830' date='Aug 27 2009, 08:45 PM
Nope! The only way you can do that is to switch the power off!

If it's on it's visible. It's very easy to find a non broadcast SSID.
Yes, that's assuming someone really wants to hack into YOUR network, but the casual hacker will probably hack into the first network he/she sees, and if your network is hidden you might be a little safer from the casual hacker who just wants to piggy-back on anybody's network.
Old 08-27-2009, 06:19 PM
  #14  
Former Vendor
 
acuteperformance's Avatar
 
Join Date: Apr 2008
Location: SoCal
Posts: 5,051
Likes: 0
Received 1 Like on 1 Post
My Ride: 14 550i
Default

i don't believe in security through obfuscation.

Originally Posted by porsche911targa' post='990931' date='Aug 27 2009, 07:16 PM
Yes, that's assuming someone really wants to hack into YOUR network, but the casual hacker will probably hack into the first network he/she sees, and if your network is hidden you might be a little safer from the casual hacker who just wants to piggy-back on anybody's network.
Old 08-27-2009, 06:22 PM
  #15  
Super Moderator
 
Rudy's Avatar
 
Join Date: Mar 2004
Location: Pittsburgh, PA USA
Posts: 17,310
Likes: 0
Received 2 Likes on 2 Posts
My Ride: G30 M550i
Model Year: 2018
Default

Originally Posted by porsche911targa' post='990931' date='Aug 27 2009, 10:16 PM
Yes, that's assuming someone really wants to hack into YOUR network, but the casual hacker will probably hack into the first network he/she sees, and if your network is hidden you might be a little safer from the casual hacker who just wants to piggy-back on anybody's network.
Just don't move in next door to me then and you'll be safe. Oh wait, I forgot, there are tons of people way more skilled than me living all over the world -- maybe one already lives next to you?
Old 08-27-2009, 06:36 PM
  #16  
Contributors
 
Brit_in_NJ's Avatar
 
Join Date: Apr 2008
Location: New Jersey
Posts: 2,596
Likes: 0
Received 0 Likes on 0 Posts
My Ride: '05 545 Titanium Silver, Black Leather - Nav, Logic 7, Cold weather. Mods: Carbon filter removed. M5 iDrive knob. Umnitza license plate LEDs. MP3 40% 3M tint ACS Anti-Roll(sway) bars RPI Scoop G-tech Pro RR CF Roundels CF Wheel caps
Default

Originally Posted by porsche911targa' post='990931' date='Aug 27 2009, 10:16 PM
Yes, that's assuming someone really wants to hack into YOUR network, but the casual hacker will probably hack into the first network he/she sees, and if your network is hidden you might be a little safer from the casual hacker who just wants to piggy-back on anybody's network.
Your network is NOT HIDDEN! All it does is send a null value for the broadcast beacon. It's kinda like driving around with your licence plates off...it would most likely attract unwanted attention.
Old 08-27-2009, 07:37 PM
  #17  
Contributors
 
tex_phil's Avatar
 
Join Date: May 2008
Location: San Antonio, TX
Posts: 5,895
Likes: 0
Received 0 Likes on 0 Posts
My Ride: 04 525i, 04 Dinan M3
Default

WPA encryption has always been vulnerable. I can crack WPA encryption, and WEP is a joke which can be done in <30 seconds. WPA is a little more involved, I'd say I could get a WPA access point in around 15 minutes, but it may vary. Almost everything is vulnerable in some way. WPA2 is alot more secure than the other two, but with enough time and if someone is dedicated enough it could be cracked in a few months. WPA2 is not uncrackable. As for hidden SSID, its not hidden, it may not broadcast a SSID name, but I can still scan and pick up the mac address and get in. A pre-shared key is like the shadow file on linux where it uses a salt value, which is much harder to crack. Shared keymode is less secure than pre-shared, a church of wifi database with a couple million common passphrases can brute force it.

Originally Posted by porsche911targa' post='990931' date='Aug 27 2009, 09:16 PM
Yes, that's assuming someone really wants to hack into YOUR network, but the casual hacker will probably hack into the first network he/she sees, and if your network is hidden you might be a little safer from the casual hacker who just wants to piggy-back on anybody's network.
You can keep thinking that a hacker would not have any interest in your network but that makes you more of a target. You may not have anything of use to someone on a network, but they can use your network to carry out attacks against others or download illegal files off your network. A good example of this is a friend of mine this week who got a call from the MPAA saying they saw activity from his IP downloading District 9 off torrent. He has a open network and did not download it, someone was on his wireless network and downloaded it. I'm not sure what happened, but he could easily be sued because of this. Always be cautious.
Old 08-27-2009, 07:40 PM
  #18  
Former Vendor
 
acuteperformance's Avatar
 
Join Date: Apr 2008
Location: SoCal
Posts: 5,051
Likes: 0
Received 1 Like on 1 Post
My Ride: 14 550i
Default

nice... backtrack ftw?

Originally Posted by tex_phil' post='990992' date='Aug 27 2009, 08:37 PM
WPA encryption has always been vulnerable. I can crack WPA encryption, and WEP is a joke which can be done in <30 seconds. WPA is a little more involved, I'd say I could get a WPA access point in around 15 minutes, but it may vary. Almost everything is vulnerable in some way. WPA2 is alot more secure than the other two, but with enough time and if someone is dedicated enough it could be cracked in a few months. WPA2 is not uncrackable. As for hidden SSID, its not hidden, it may not broadcast a SSID name, but I can still scan and pick up the mac address and get in. A pre-shared key is like the shadow file on linux where it uses a salt value, which is much harder to crack. Shared keymode is less secure than pre-shared, a church of wifi database with a couple million common passphrases can brute force it.
Old 08-28-2009, 06:06 AM
  #19  
Contributors
 
porsche911targa's Avatar
 
Join Date: Sep 2008
Location: Massachusetts, USA
Posts: 2,718
Likes: 0
Received 1 Like on 1 Post
My Ride: 2006 525XI, Jet black on Dakota beige. Premium and winter packages. I consider myself a purist and intend to keep my car absolutely stock and shiny. 2008 328I Convertible, Sapphire black on beige interior. Premium package, NAV, iPod adapter. Retired: 2002 325I, Titanium silver on black leather. Premium package. Absolutely stock and proud of it.
Default

Originally Posted by tex_phil' post='990992' date='Aug 27 2009, 11:37 PM
WPA encryption has always been vulnerable. I can crack WPA encryption, and WEP is a joke which can be done in <30 seconds. WPA is a little more involved, I'd say I could get a WPA access point in around 15 minutes, but it may vary. Almost everything is vulnerable in some way. WPA2 is alot more secure than the other two, but with enough time and if someone is dedicated enough it could be cracked in a few months. WPA2 is not uncrackable. As for hidden SSID, its not hidden, it may not broadcast a SSID name, but I can still scan and pick up the mac address and get in. A pre-shared key is like the shadow file on linux where it uses a salt value, which is much harder to crack. Shared keymode is less secure than pre-shared, a church of wifi database with a couple million common passphrases can brute force it.


You can keep thinking that a hacker would not have any interest in your network but that makes you more of a target. You may not have anything of use to someone on a network, but they can use your network to carry out attacks against others or download illegal files off your network. A good example of this is a friend of mine this week who got a call from the MPAA saying they saw activity from his IP downloading District 9 off torrent. He has a open network and did not download it, someone was on his wireless network and downloaded it. I'm not sure what happened, but he could easily be sued because of this. Always be cautious.
Sounds like I may make my netwok public and start downloading stuff off of torrent. I can blame "hackers" then.
Old 08-28-2009, 06:41 AM
  #20  
Contributors
 
CWS530's Avatar
 
Join Date: Dec 2007
Location: St. Louis Burbs, USA
Posts: 8,998
Likes: 0
Received 1 Like on 1 Post
My Ride: 2007 530i. Purchased 6/28/07. Titanium Silver Metallic, Black Dakota Leather, Dark Poplar Trim, Steptronic, Premium Package, Cold Weather Package, Bluetooth, Adaptive Control Xenons. 10/30/07 Added OEM 124s with 245/40/18 & 275/35/18 Michelin Pilot Sport A/S tires. Installed red Cal Covers� from BavAuto. 11/21/07 Added OEM all-weather floor mats (for winter, carpet in summer) and coat rack. 6/26/08 installed M5-style rear spoiler. 6/30/08 put on red reflectors. 8/22/08 Euro turn signal stickers applied. 3/20/09 Installed Shadowline Trim. 3/27/09 Added Matte Black Kidney Grilles from Trinity. 4/03/09 Installed Bimmian Shadow Matte Black 530i Badges. 4/04/09 Installed LED license plate lights from Trinity. 5/01/09 Installed Brabus Interior LED Kit and White Angel Eyes. 5/02/09 Put in Brabus 6K Fogs. 5/14/09 Removed charcoal filter. 5/15/09 Installed light smoke LED side marker lamps from Trinity. 5/21/09 Sprint Booster. 6/12/09 Painted exhaust tips flat black. 6/13/09 Pulled red Cal Covers and painted calipers low gloss black. 6/27/09 RPI Ram Air Scoop from Trinity. 8/15/09 Installed Brabus's silver invisibulbs front and rear. 9/24/09 Installed R-Dash license plate LEDs from Brabaus (John).
Default

Originally Posted by porsche911targa' post='990758' date='Aug 27 2009, 05:58 PM
Hahaha, I love your new picture. I made one for you, albeit not as sophisticated. I hope you like it.

Attachment 88511

Anyway, one of the best things people can do is to set their router to NOT broadcast its existence.

AHAHAHAHA! I love it!


Quick Reply: So much for the new WPA wireless encryption....



All times are GMT -8. The time now is 07:20 AM.