SHARE
Follow this article on Twitter Facebook LinkedIn Bookmark and Share
Home >> Voice, Data, and IP >> Hardware, Software and Emerging Applications

Researchers crack WPA Wi-Fi encryption

Researchers crack WPA Wi-Fi encryption

By:  Robert McMillan  On: 05 Nov 2008 For: IDG News Service (San Francisco Bureau) (GM) Creator

When it was launched in 2003, Wi-Fi Protected Access offered dynamic key allocation and other features not available in Wired Equivalent Privacy. But researchers have found a way to break Temporal Key Integrity Protocol in 15 minutes.

Security researchers say they've developed a way to partially crack the Wi-Fi Protected Access (WPA) encryption standard used to protect data on many wireless networks.

The attack, described as the first practical attack on WPA, will be discussed at the PacSec conference in Tokyo next week. There, researcher Erik Tews will show how he was able to crack WPA encryption, in order to read data being sent from a router to a laptop computer. The attack could also be used to send bogus information to a client connected to the router.

To do this, Tews and his co-researcher Martin Beck found a way to break the Temporal Key Integrity Protocol (TKIP) key, used by WPA, in a relatively short amount of time: 12 to 15 minutes, according to Dragos Ruiu, the PacSec conference's organizer.

They have not, however, managed to crack the encryption keys used to secure data that goes from the PC to the router in this particular attack Security experts had known that TKIP could be cracked using what's known as a dictionary attack. Using massive computational resources, the attacker essentially cracks the encryption by making an extremely large number of educated guesses as to what key is being used to secure the wireless data.

The work of Tews and Beck does not involve a dictionary attack, however.

To pull off their trick, the researchers first discovered a way to trick a WPA router into sending them large amounts of data. This makes cracking the key easier, but this technique is also combined with a "mathematical breakthrough," that lets them crack WPA much more quickly than any previous attempt, Ruiu said.

Tews is planning to publish the cryptographic work in an academic journal in the coming months, Ruiu said. Some of the code used in the attack was quietly added to Beck's Aircrack-ng Wi-Fi encryption hacking tool two weeks ago, he added.

WPA is widely used on today's Wi-Fi networks and is considered a better alternative to the original WEP (Wired Equivalent Privacy) standard, which was developed in the late 1990s. Soon after the development of WEP, however, hackers found a way to break its encryption and it is now considered insecure by most security professionals. Store chain T.J. Maxx was in the process of upgrading from WEP to WPA encryption when it experienced one of the most widely publicized data breaches in U.S. history, in which hundreds of millions of credit card numbers were stolen over a two-year period.

Network Security

Sign up for our Newsletters












Print |  Views: 1951   |   Rating:offoffoffoffoff  (0 votes)
Rate this article on a scale of
1 to 5 stars,5 being the best.




Robert McMillan Robert McMillan is a contributor to the International Data Group (IDG) News Service, which publishes global technology stories from bureaus around the world to more than 300 publications in more than 60 countries.

Related Content

Credit-card security standard issued after much debate
Credit-card security standard issued after much debateVersion 1.2 of the Payment Card Industry’s security standard stipulates that all operating systems processing cards must have anti-virus. Find out what it says about firewalls
Canadian firm offers e-card malware response
Canadian firm offers e-card malware responseBD-BrandProtect says enterprises can do more than simply hope users won't click on suspicious-looking messages that could cripple IT systems. Get your spiders and honeypots ready
New Brunswick university hosts hi-tech research hub
New Brunswick university hosts hi-tech research hubThe University of New Brunswick (UNB) in Fredericton recently became home to one of the first research facilities in Canada focusing solely on information and network security studies
VIDEO: How to deal with Conficker
conficker, which has infected more than 10 million pcs so far, is easy to repel with common security practices, according to info-tech research group.see our video interview with james quin of info-tech research group to find out who you can protect your network and figure out whether your
blog comments powered by Disqus