Live data from Hacker News

AirSnitch: Demystifying and breaking client isolation in Wi-Fi networks [pdf]

ndss-symposium.org

1–10 of 204 posts

Re: AirSnitch: Demystifying and breaking client isolation in Wi-Fi networks [pdf]

#2
On the one hand, a seems-solid article by an author I mostly trust.

OTOH... with the recent journalistic scandal at Ars Technica, perhaps Dan should have made sure that he spelled "Ubiquity" correctly? (5th para; it's correct further down.)

Re: AirSnitch: Demystifying and breaking client isolation in Wi-Fi networks [pdf]

#3
post #2

On the one hand, a seems-solid article by an author I mostly trust. OTOH... with the recent journalistic scandal at Ars Technica, perhaps Dan should have made sure that he spelled "Ubiquity" correctly? (5th para; it's correct further down.)

That's an easy autocorrect issue. As someone who write Ubiquiti more often than most.

I don't even think most editors would know the difference. That's the problem with using corruptions of real words as your name.

Re: AirSnitch: Demystifying and breaking client isolation in Wi-Fi networks [pdf]

#5
Does anyone know of any good firewalls for macOS? The built in firewall is practically unusable, and if client isolation can be bypassed, the local firewall is more important than ever.

I often have a dev server running bound to 0.0.0.0 as it makes debugging easy at home on the LAN, but then if I connect to a public WiFi I want to know that I am secure and the ports are closed. "Block all incoming connections" on macOS has failed me before when I've tested it.

Re: AirSnitch: Demystifying and breaking client isolation in Wi-Fi networks [pdf]

#6
Original source (should replace the current link): https://www.ndss-symposium.org/wp-content/uploads/2026-f1282...

Summary: https://www.ndss-symposium.org/ndss-paper/airsnitch-demystif... (hat tip: https://news.ycombinator.com/item?id=47167975)

Re: AirSnitch: Demystifying and breaking client isolation in Wi-Fi networks [pdf]

#7

Does anyone know of any good firewalls for macOS? The built in firewall is practically unusable, and if client isolation can be bypassed, the local firewall is more important than ever. I often have a dev server running bound to 0.0.0.0 as it makes debugging easy at home on the LAN, but then if I connect to a public WiFi I want to know that I am secure and the ports are closed. "Block all incoming connections" on mac…

Little Snitch is probably the most popular one, written my devs who deeply understand macOS firewall architecture.

https://obdev.at/products/littlesnitch/index.html

Re: AirSnitch: Demystifying and breaking client isolation in Wi-Fi networks [pdf]

#8

Does anyone know of any good firewalls for macOS? The built in firewall is practically unusable, and if client isolation can be bypassed, the local firewall is more important than ever. I often have a dev server running bound to 0.0.0.0 as it makes debugging easy at home on the LAN, but then if I connect to a public WiFi I want to know that I am secure and the ports are closed. "Block all incoming connections" on mac…

LittleSnitch
Post reply on HN