Jump to content

802.11n Remote Injection of Frames Vulnerability

Blade of Grass

Saw an interesting paper discussing a vulnerability in the 802.11n standard that allows attackers to remotely inject frames into open WiFi networks. 
 
Paper
Proof of concept code and basic discription

 

Thoughts?

 

Seems pretty scary to me, but happily this is only limited to open wireless networks. 

15" MBP TB

AMD 5800X | Gigabyte Aorus Master | EVGA 2060 KO Ultra | Define 7 || Blade Server: Intel 3570k | GD65 | Corsair C70 | 13TB

Link to comment
Share on other sites

Link to post
Share on other sites

Nothing really new, just another Man-in-the-Middle attack against Wi-Fi. Most networks can easily be broken into in a few minutes some a few hours.

Mein Führer... I CAN WALK !!

Link to comment
Share on other sites

Link to post
Share on other sites

Nothing really new, just another Man-in-the-Middle attack against Wi-Fi. Most networks can easily be broken into in a few minutes some a few hours.

 

This is a LOT LARGER than just a little man-in-the-middle attack. Read the github, this is cool. Could infect users using a users network and perform MASS ddos attacks.

blackshades on

 

 

Link to comment
Share on other sites

Link to post
Share on other sites

This is a LOT LARGER than just a little man-in-the-middle attack. Read the github, this is cool. Could infect users using a users network and perform MASS ddos attacks.

There were Def-Con talks on exploits like this, I'm not saying it's not interesting (I'm quiet interested and plan to read the whole thing) but that attacks on Wi-Fi of this magnitude happen all the time. And yet the public doesn't care meaning the manufactures won't fix the problem.

Mein Führer... I CAN WALK !!

Link to comment
Share on other sites

Link to post
Share on other sites

There were Def-Con talks on exploits like this, I'm not saying it's not interesting (I'm quiet interested and plan to read the whole thing) but that attacks on Wi-Fi of this magnitude happen all the time. And yet the public doesn't care meaning the manufactures won't fix the problem.

Not really, this vulnerability is quite a bit different because it's involves remote frame injection. This is not a man in the little attack. The example the author used is getting the victim to open a loaded image which then executes the vulnerability. The attacker does not need a wifi device and does not need to be present.

15" MBP TB

AMD 5800X | Gigabyte Aorus Master | EVGA 2060 KO Ultra | Define 7 || Blade Server: Intel 3570k | GD65 | Corsair C70 | 13TB

Link to comment
Share on other sites

Link to post
Share on other sites

Create an account or sign in to comment

You need to be a member in order to leave a comment

Create an account

Sign up for a new account in our community. It's easy!

Register a new account

Sign in

Already have an account? Sign in here.

Sign In Now

×