Live data from Hacker News

Stunnel and Airline Wi-Fi

potatofrom.space

121–130 of 239 posts

Re: Stunnel and Airline Wi-Fi

#121

An alternative to this is to scan for active Mac addresses on the WiFi and steal one and hope it’s someone paying for the premium WiFi already :) This works on almost all hotel WiFi too.

Wouldn’t than both devices “fight” for the access? Who gets the packages?

Re: Stunnel and Airline Wi-Fi

#122
post #25

In the USA this would be a violation of the CFAA https://www.law.cornell.edu/uscode/text/18/1030 . Specifically, the router is a "protected computer" and the procedure described here is "exceeding authorised access" because it routes packets around a mechanism that was designed to stop them. Maximum penalty 5 years. (Some might argue that it was authorised because the computer let him do it. However the CFAA simply d…

wouldn't this also constitute wire fraud?

Re: Stunnel and Airline Wi-Fi

#123

Wow, this was an amusing read. I actually helped architect part of the system that was bypassed at LiveTV (now Thales). We had some serious hackers on the team and discussed how much probing & prodding it would take to find vulnerabilities like this, but made the conclusion anyone doing this should be worried about more serious consequences. I for one, wouldn’t attempt this myself on the aircraft. The hacker side of…

I don’t think the fact that it’s a defense company is relevant. The company wouldn’t use the same “security” measures if actual defense was at stake.

This system was built with certain specifications and down to a certain price.

Re: Stunnel and Airline Wi-Fi

#124

Earlier quoted context omitted.

How does this not apply to stuff like trackers bypassing anti-fingerprinting browser protections?

His attack is active, privacy plugins are passive, even if they report back false fingerprints. Offense versus defense.

Not sure if the attack is active. He’s not actively talking to the filtering equipment to try and mess up its configuration or disable it. He’s just sending out packets hoping to reach the internet (a perfectly valid thing to do considering the system is designed to let you access the internet). It just so happens that certain packets manage to slip through the poorly designed filter.

Re: Stunnel and Airline Wi-Fi

#125

I did this as well using Orbot (Tor software for Android) and an OBFS4 proxy. In Southwest (the airline), you connect to the wifi for watching the movie and where you are in air. But if you want internet, you pay. I have some of my applications always Torified on my phone. I opened my 3d printer app to view its status, expecting a hard fail. And... it loaded!

Genuine question here - isn't Tor traffic reputed for having a certain "footprint"? I would be worried about accessing the Tor network over public WiFi, but maybe that's just me.

Standard Tor, sure.

But when you start using pluggable transports, like Obfs4, you can defeat pretty much every captive portal or traffic analyzer. I'm sure there might be a way to detect even these. But remember that the real test of detection is the GFoC.

Some piddly airline's offering of pay internet is not going to use nation-state level detection schemes.

Re: Stunnel and Airline Wi-Fi

#126

If your flight has GoGo, it’s easier to just remember which of your friends has a T-Mobile number, plug that in, and you’re in. They don’t actually verify it’s your number.

They used to offer all flight passes as well instead of the hour limit. I’d open up safari on my Mac, spoof the UA and have free internet that way.

Also recently I think they’ve stopped giving T-Mobile numbers access to the higher speeds. Was fun while it lasted. I was able to clock over 50mbps on one of my flights. Kinda nuts.

Re: Stunnel and Airline Wi-Fi

#127

Earlier quoted context omitted.

His attack is active, privacy plugins are passive, even if they report back false fingerprints. Offense versus defense.

Not sure if the attack is active. He’s not actively talking to the filtering equipment to try and mess up its configuration or disable it. He’s just sending out packets hoping to reach the internet (a perfectly valid thing to do considering the system is designed to let you access the internet). It just so happens that certain packets manage to slip through the poorly designed filter.

How is this different from trying a door handle to see if it's open.

Re: Stunnel and Airline Wi-Fi

#128

Earlier quoted context omitted.

Not sure if the attack is active. He’s not actively talking to the filtering equipment to try and mess up its configuration or disable it. He’s just sending out packets hoping to reach the internet (a perfectly valid thing to do considering the system is designed to let you access the internet). It just so happens that certain packets manage to slip through the poorly designed filter.

How is this different from trying a door handle to see if it's open.

In this case the “door handle” is marked with “pull to access the internet”, and he is pulling on it. The handle is supposed to have a mechanism to demand payment before opening but in this case it failed and opened right away.

Not saying this is ethical (although selling WiFi for 12$ per hour isn’t either) but I wouldn’t go as far as calling this an attack.

Re: Stunnel and Airline Wi-Fi

#129

Wow, this was an amusing read. I actually helped architect part of the system that was bypassed at LiveTV (now Thales). We had some serious hackers on the team and discussed how much probing & prodding it would take to find vulnerabilities like this, but made the conclusion anyone doing this should be worried about more serious consequences. I for one, wouldn’t attempt this myself on the aircraft. The hacker side of…

Lifehacker posted a similar article (linked in the OP).

https://lifehacker.com/get-free-unlimited-wi-fi-on-flights-a...

Re: Stunnel and Airline Wi-Fi

#130
post #79

Earlier quoted context omitted.

How does this not apply to stuff like trackers bypassing anti-fingerprinting browser protections?

Because a prosecutor hasn't tried to use it in that way.

Which highlights a fundamental truth to law - it's only enforced to backstop the status quo. Routing around a wifi paywall rocks the boat, performing invasive surveillance on website visitors doesn't.

So practically yes, let's be aware that the author could indeed be persecuted under the CFAA. But let's not grandstand and pretend that following that law is some sort of moral imperative that benefits everyone. The common individual will be the target of the same attacks with or without that law.

Post reply on HN