News WPS Vulnerability

American Zombie

Moderator
Staff member
Political Access
Joined
23 Jun 2004
Messages
2,964
If you have a router and use WPS you may want to go into your routers GUI to disable WPS for now until your router manufacturer (if on the list) provides a firmware update.

A design flaw that exists in the WPS specification for the PIN authentication significantly reduces the time required to brute force the entire PIN because it allows an attacker to know when the first half of the 8 digit PIN is correct.
The lack of a proper lock out policy after a certain number of failed attempts to guess the PIN on some wireless routers makes this brute force attack that much more feasible.

More info and router manufactures affected are at the source.

:source: Source: US-Cert
 
Last edited:

fitz

Woah.. I'm still here?
Political Access
Joined
26 Apr 2004
Messages
4,088
I never really liked WPS - maybe because I never took the time to fully understand it..
 

Xie

- geek -
Joined
29 Sep 2003
Messages
5,275
This kinda dropped right off the radar, which is weird because probably 99% of the routers that would have been effected still are. The scary part is that your router can be potentially exploited by this vulnerability even if it is not active on your router, just having it as part of the firmware is enough in some cases. Only way to know is try and crack your routers password. 🙂

Here is a write up on it @ Lifehacker: How to Crack a Wi-Fi Network's WPA Password with Reaver
 

Members online

No members online now.

Latest profile posts

Xie Electronic Punk Xie wrote on Electronic Punk's profile.
Impressed you have kept this alive this long EP! So many sites have come and gone. 🙁

Just did some crude math and I apparently joined almost 18yrs ago, how is that possible???
hello peeps... is been some time since i last came here.
Electronic Punk Sazar Electronic Punk wrote on Sazar's profile.
Rest in peace my friend, been trying to find you and finally did in the worst way imaginable.
Terrahertz Electronic Punk Terrahertz wrote on Electronic Punk's profile.
Yo fellas!
Electronic Punk Sazar Electronic Punk wrote on Sazar's profile.
Where are you buddy?

Forum statistics

Threads
62,017
Messages
673,508
Members
5,636
Latest member
GLOCKTOR642
Back