Live data from Hacker News

A Map of Wireless Passwords from Airports and Lounges

foxnomad.com

11–20 of 124 posts

Re: A Map of Wireless Passwords from Airports and Lounges

#11
post #7

Is there an android solution to automate registering and accepting T&Cs for free wifi? The log in process and unreliable connection make them barely worth using.

I've seen an app for this in FDroid.

What's the name of it?

Re: A Map of Wireless Passwords from Airports and Lounges

#12
The author claims to be a computer security engineer, yet is deliberately setting up a tool to defeat security -- not an abstract tool, useful in surveying and thus improving your own security and incidentally capable of being used for mischief, but nothing more than a list of identifiers and passwords. The only indicator you can gain from this is that someone betrayed your trust.

If this profession had a board of ethics, this is the sort of thing that it would take action against.

If people want you to use their networks, they will offer you access via any one of several convenient mechanisms, including

not using encryption

putting a sign on the wall with a password

handing you a card with credentials

telling you a password

Re: A Map of Wireless Passwords from Airports and Lounges

#13
post #7

Earlier quoted context omitted.

I've seen an app for this in FDroid.

What's the name of it?

https://f-droid.org/en/packages/com.juliansparber.captivepor...

"It works by simply replacing the action URL from the login form on the web page to a local HTTP server which redirects the request to the original destination. The local HTTP server saves the request, so the app can reproduce the same call next time you connect to the same WiFi network."

Uhh... Time to move to iOS, I think.

Re: A Map of Wireless Passwords from Airports and Lounges

#17

Almost every item I see on here is using private WiFi connections intended for paying or premium customers, and precisely zero ones that are intended to be free. This would seem to constitute "piggybacking", which is of questionable legality in many places: https://en.wikipedia.org/wiki/Legality_of_piggybacking Given the dubious legality, seems odd to see this on HN.

No you got it wrong, WiFi is controlled by greedy monopolies and he’s just being disruptive ;)

Re: A Map of Wireless Passwords from Airports and Lounges

#18

Any comments on the tech behind this? (I've done a few projects crowd sourcing and distributing information like this and I'm currently thinking about some tools in this space, hence my curiosity.)

Its just a google map, I dont believe its dynamically updated from users, and doing that would be trivial anyway.

Re: A Map of Wireless Passwords from Airports and Lounges

#19
post #14

Any wifi other than yours, or your company's is huge security risk. I would not trust a second for a service like this.

Would you care to elaborate what those risks are? The internet is rather bigger than the WiFi network you connect to.

Re: A Map of Wireless Passwords from Airports and Lounges

#20
post #12

The author claims to be a computer security engineer, yet is deliberately setting up a tool to defeat security -- not an abstract tool, useful in surveying and thus improving your own security and incidentally capable of being used for mischief, but nothing more than a list of identifiers and passwords. The only indicator you can gain from this is that someone betrayed your trust. If this profession had a board of et…

I'm less concerned with the security issues - WiFi you don't control should always be treated as possibly being compromised.

What is a problem is that the networks are password protected and not meant for use by the general public. Airline lounges are providing WiFi for customers who have paid for access (either through the type of ticket or by spending enough to have status to access the lounges). Depending on the location, unauthorized access to the networks can either be categorized as theft of service or unauthorized access to a network.

A "security engineer" who is promoting illegal activity isn't actually concerned with security.

Post reply on HN