A University of Maryland professor and his graduate student have apparently uncovered serious weaknesses in the next-generation Wi-Fi (Wireless Fidelity) security protocol known as 802.1x.


A session hijacking can occur because of the so-called race conditions between the 802.1x and 802.11 state machines. Arbaugh uses the analogy of a thief and a store owner racing for the front door at the same time. If the owner gets there first he locks the thief out, if the thief gets there first he steals everything. Because the client and the AP aren't synchronized, "loose consistency," the thief can tell the owner/client to go away and the AP still thinks he is there.


http://slashdot.org/article.pl?sid=01/02/15/1745204&mode=thread


Related Entries

Recent Entries

  • The Placebo Effect

    So, how's that homeopathy working for you? The Strange Powers of the Placebo Effect - YouTube...

  • Coffee and a Devil's Star

    Reading another Jo Nesbo book (is that 'Joe' or 'Yo'?) and grabbing a cup at Williams on Northfield. I'm all out of order on this...

  • 5 Reasons No One Is Guestposting At Your (My) Blog

    Image via WikipediaWell, obviously, I've not been looking for guest posters. But apparently, it's a thing you can do to get more content and more...

  • Gearing Up for the 2011 Zombie Invasion

    Image by aeviin via FlickrPut on your brains, the zombies are coming. Zombies make their appearances here and there all through the year, but you...

  • My Mai Tai

    A Trader Vic mai tai, straight from the book. Remember, the only fruit juice in a mai tai should be lime. Yes, well, there should...

Close