WPA crack details revealed
section: windows, for your questions: KezNews forum, 12.11.2008
Tip: Click here to update all your PC's outdated driversGerman researchers have published a paper that claims to give details of how to crack the Wi-Fi Protected Access encryption standard.
A proof-of-concept tool to crack Wi-Fi Protected Access (WPA) has also been published by the researchers, Martin Beck of the Technical University of Dresden, and Erik Tews of the Technical University of Darmstadt.
The research paper, Practical attacks against WEP and WPA, was published on Saturday. It gives details of how the researchers used a modified Wired Equivalent Privacy (WEP) attack against WPA.
WPA can use two protocols to protect payload — Temporal Key Integrity Protocol (TKIP) and AES-CCMP. Tews and Beck concentrated on compromising TKIP, and claim to have done so by modifying a 'chopchop' attack against WEP.
A chopchop attack works by taking one byte of data from a WEP encrypted packet, substituting values for that byte, and recalculating the encryption checksum. The modified packets are then sent to an access point, which simply discards them until a valid checksum is eventually substituted by the attacker.
The attack against WPA works by exploiting a flaw in TKIP. An attacker first captures traffic looking for an Address Resolution Protocol (ARP) request or response. These short packets contain an eight-byte Message Integrity Check (MIC), called 'Michael', plus a four-byte Integrity Check Value (ICV) checksum, both used to ensure the integrity of the packet. If an access point receives two bad Michael checksums within 60 seconds, it will exchange new keys with every client. If a client receives two bad Michael checksums within 60 seconds, it will shut down and then request a new key exchange with the access point. However, both Michael and ICV can be cracked using the chopchop technique if packets are tested after every 60 seconds, according to the researchers.
"Within a little bit more than 12 minutes, the attacker can decrypt the last 12 bytes of plaintext (MIC and ICV)," wrote the paper's authors. "To determine the remaining unknown bytes (exact sender and receiver IP addresses), the attacker can guess the values and verify them against the decrypted ICV."
In an email interview with ZDNet UK on Friday, Tews wrote that Beck had the idea of modifying chopchop to decrypt single WPA packets.
source:
news.zdnet.co.uk
>> Click Here to Run a Free Scan for PC Errors <<
Send link 2 friend | Permalink
MORE RELATED ARTICLES:
More Windows 7 Release Candidate details revealed || Windows 7 upgrade coupon program details revealed || Dead Cheap Windows 7 OEM/System Builder, Pricing Details Revealed || Windows 7 pricing to be revealed next month? || New AntiVirus from Microsoft - Morro revealed
Comments(3)
first download then install download this rapid file which include windows 7 fast link
with keyss
http://rapidshare.com/files/160448033/win_7_build6801_100__tested_link_with_activator.rar
what the hell. this has been around for ages
very good
No new comments are allowed for this article.
For your questions use our KezNews Forum
download windows 7 build 6801 100 % testing 64 bit now with crack
By 7 maker on 12.11.2008 - 02:11