Wednesday, December 28, 2011

drag2share: Researcher finds vulnerability in WPS protocol, looks for manufacturers to offer fix

Source: http://www.engadget.com/2011/12/28/researcher-finds-vulnerability-in-wps-protocol-looks-for-manufa/

On the plus side, your router's mostly secure. Security researcher Stefan Viehbock has just discovered a major security hole which allowed him to use a brute force technique to access a WPS PIN-protected network in about two hours. According to Viehbock, a design flaw allows the WPS protocol's 8-digit PIN security to fall dramatically as additional attempts are made. With each attempt, the router will send a message stating whether the first four digits are correct while the last digit of the key is used as a checksum and then given out by the router in negotiation. As a result, the 100,000,000 possibilities that the WPS should represent becomes roughly to 11,000.

The US-CERT has picked up on this and advised users to disable WPS on their routers. Viehbock, in turn, claims to have attempted to discuss the vulnerability with hardware vendors such as Buffalo, D-Link, Linksys, and Netgear, but says he has been roundly ignored and that no public acknowledgement of the issue has been released. As a possible final step, Viehbock has promised to release a brute force tool soon, thereby pushing the manufacturers to work to resolve the issue. In other news, that evil supercomputer from the movie War Games just got a few more digits of the nuclear launch codes -- maybe one of Stefan's pals can look into that one.

Researcher finds vulnerability in WPS protocol, looks for manufacturers to offer fix originally appeared on Engadget on Wed, 28 Dec 2011 19:55:00 EDT. Please see our terms for use of feeds.

Permalink The Verge  |  sourceStefan Viehbock, US-CERT  |  Email this | Comments

---
drag2share - drag and drop RSS news items on your email contacts to share (click SEE DEMO)