>From SANS newsletter
--15 November 2002  WPA Vulnerable to DoS
Wi-Fi Protected Access (WPA), the new wireless security standard,
is vulnerable to a type of denial of service attack.  If it receives
two unauthorized data packets within one second, it shuts down
for one minute to prevent an "active attack."  In other words, an
attacker could send two unauthorized packets every minute and keep
the network down.
http://www.wired.com/news/business/0,1367,56350,00.html
Cisco's response admitting vulnerability to DoS in the conclusion:
http://www.cisco.com/en/US/products/hw/wireless/ps430/prod_bulletin09186a008
00a9e74.html
[Editor's Note (Shpantzer): This feature/vulnerability is built into
the spec.  It focuses on improving resistance to confidentiality
and integrity attacks, at least relative to WEP.  The tradeoff is a
built-in denial of service vulnerability.]

--
general wireless list, a bawug thing <http://www.bawug.org/>
[un]subscribe: http://lists.bawug.org/mailman/listinfo/wireless

Reply via email to