KezNews.com
DownloadsOther NewsForumBlogsWallpapersJokewareSearch

News letter:


Enter Your E-mail:

Windows 7 RTM 7600.16385.090713-1255 HERE !

How to activate Windows 7 RC build 7600, 7264, 7231 and olders


WPA Encryption No Longer Secure

section: common, for your questions: KezNews forum, 7.11.2008

    Tip: Click here to update all your PC's outdated drivers

Security researchers Erik Tews and Martin Beck have succeeded in partially cracking the WPA (Wi-Fi Protected Access) encryption, which until now had been considered safe.




The two hackers will demonstrate their feat at the upcoming PacSec security conference in Tokyo, Japan.

WPA is a protocol that has been widely adopted as a replacement for WEP (Wired Equivalent Privacy), which has been known to be insecure since as far back as 2001. The initial attack on WEP was actually a dictionary attack, thus requiring great computational resources. This meant that attack scenarios on a large scale were highly unlikely.

The uncertainty ended at the beginning of 2007, when Erik Tews, along with two student colleagues from the Darmstadt University of Technology in Germany, developed a new technique which allowed them to break WEP security in only two minutes. Their method, which became known as the PTW attack, prompted all security professionals to declare WEP a high security risk. In fact, the use of WEP as encryption protocol is what allowed hackers to steal millions of credit card details in the T.J. Maxx hit.

NetworkWorld reports that, according to Dragos Ruiu, the PacSec organizer, in order to crack the TKIP (Temporal Key Integrity Protocol) key, the researchers found a way to trick the router into sending them large amounts of encrypted data. Combining this with what Ruiu calls a “mathematical breakthrough”, the attack time was reduced to a matter of minutes, between 12 and 15.

This is even more impressive as it is not a dictionary attack, because just as in the case of WEP, the idea that WPA might be vulnerable to a dictionary attack has always been voiced by researchers. However, considering the amount of resources, computational and time-related, needed to pull off such an attack, this has never been considered a big threat to WPA security.

The two researchers only succeeded in cracking WPA's TKIP key, but they haven't been able to actually decrypt the individual keys generated by the TKIP, which are used to encrypt the data packets sent between a computer and the router. Even so, this is “just the starting point," Dragos Ruiu pointed out. "Erik and Martin have just opened the box on a whole new hacker playground,” he explained.

Mr. Ruiu also outlines the problems raised by this achievement, mainly the fact that WPA is now a requirement for security standards compliance almost everywhere. As a result, WPA has been adopted and is being used by many organizations and not just by individuals. "Everybody has been saying, 'Go to WPA because WEP is broken'. This is a break in WPA," concluded Ruiu.

Robert Graham, of Errata Security, begs to differ. According to him, WPA or WPA-RC4-TKIP as it is technically known, has been designed from the start as just a temporary fix to WEP and everybody should have known that. The entire reason for WPA-RC4-TKIP's existence was to reduce adoption costs by accommodating older WEP hardware, which wasn't able to support WPA2 (WPA2-AES-CCMP) at that time. The WPA2, which uses the AES “block cypher” and not the RC4 “stream cypher” implemented in both WPA and WEP is not affected by this new attack and, according to Mr. Graham, will continue to be secure for a long time to come.

“There are no weakness in AES or the WPA2 standard based upon it. It's going to last for the next 20 years,” claims Robert Graham. He adds that since WPA and WPA2 have been basically standardized at the same time, but one as a temporal fix and the other as a long term one, “you should always have been planning WPA2-AES-CCMP eventually, and been planning to rely upon that for many years. If you planned to only do WPA-RC4-TKIP, then you were wrong”.

Regardless of whether you considered or were even aware of the temporal nature of WPA or not, you should immediately start planning for full WPA2 implementation, as it's likely that not much time will pass until it is completely compromised. If you are a home user, check if your router has WPA2 support, which is the case for newer ones, and switch to it.

In addition, Erik Tews plans on publishing the findings in an academic journal in the near future, while Martin Beck has released parts of the attack code as tkiptun-ng, a tool incorporated in the popular and freely available Aircrack-ng suite, a collection of applications aimed at cracking wireless encryption.

source: news.softpedia.com

  >> Click Here to Run a Free Scan for PC Errors <<

send email Send link 2 friend  |  Permalink
<< previouse article
Windows 7 in details
next article >>
Windows 7 for Christmas - next year

MORE RELATED ARTICLES:
Windows 7 will give your laptop longer battery life || Hacker: Snow Leopard less secure than Windows || Vista SP2 and Windows 7 More Secure than Linux and Mac OS X Leopard

Comments(4)

it was never secure

By anon on 08.11.2008 - 11:11
back just before 2008 you could crack it with a program and linux.

it was

By PrEzi on 08.11.2008 - 12:11
it was secure - you could crack it only with a dictionary attack and/or brute force which could take years when a properly complex key was used.

i see cracks

By Big Dickson on 09.11.2008 - 18:11
crack it with a program and linux - you are talking about wep...its amazing how many people leave their wireless networks open so you don't even have to crack anything. use wpa2-aes with access control and you are safe

fggyyu

By yhuii on 10.11.2008 - 18:11
i hack wireless keys and it can easily be done in about 10 mins for a wpa psk 2


No new comments are allowed for this article.

For your questions use our KezNews Forum