Live data from Hacker News

WiFi deauthentication attacks and home security

mjg59.dreamwidth.org

231–232 of 232 posts

Re: WiFi deauthentication attacks and home security

#231
post #66

Seems widespread; sad state of affairs... wonder how many locations suffer from (mis)configured APs battling each other.. https://help.fortinet.com/fos50hlp/54/Content/FortiOS/fortig... "In addition to monitoring rogue APs, you can actively prevent your users from connecting to them. When suppression is activated against an AP, the FortiGate WiFi controller sends deauthentication messages to the rogue AP’s clients, p…

Rogue APs are generally defined as APs that you don't manage but have been connected to your wired network. Obviously this could be a significant security risk. I don't think they're sending deauth messages to every client/AP they see. https://help.fortinet.com/fos50hlp/54/Content/FortiOS/fortig...

I would define "rogue" as any AP intentionally using the SSID of my network to trick users into connecting to it instead of my own infrastructure.

Re: WiFi deauthentication attacks and home security

#232

He doesn't describe an attack, he describe literally what 802.11 was designed to do. An attack is forcing a deauth and then stealing the 4-way handshake data and, say, cracking WEP. Which is why WEP was decommissioned ... checks notes ... 15 years ago. No need to edit aircrack-ng, WireShark does what he did natively (filter out and set channels), and a good realtek chipset allows you to set the scan interval so you c…

Denial of service is also a type of attack.
Post reply on HN