Security Basics mailing list archives

Re: RE: About War Driving ..


From: "Francois Yang" <francois.y () gmail com>
Date: Mon, 4 Dec 2006 15:54:22 -0600

I agree with most of everyone here.  Use wpa2 for encryption. Wpa is
still susceptible to a dictionary attack. as far as catching the guy
or girl right handed. the chances of it are slim unless you spend alot
of money on equipment and software or they screw up.  instead, you
should setup a sniffer and try to capture as much traffic as you can
and review the traffic at a later time.  The traffic, may reveal what
sites he/she likes to go to.  if they have a server or webpage at home
or somewhere that they always access after getting online. I've seen
where someone would hack a server, then call home, and when you go to
their home page, it displays their real name or nick name.  Then you
can google for that name and you usually find something good.....also
as someone else mentioned. it could be someone bringing in their
personal laptop.  You should try to locate, the offending MAC address
and associated IP address. if you can't log everything from the
wireless AP.
Then look thru the log or captured traffic for that address.  If you
get a computer name. You might be able to find the same computer name
on your wired network. if this happens, then you can nail the person.
There are many different options here beside the one about changing
encryption.  Without knowing your network, we can only offer so much.

---------------------------------------------------------------------------
This list is sponsored by: ByteCrusher

Detect Malicious Web Content and Exploits in Real-Time.
Anti-Virus engines can't detect unknown or new threats.
LinkScanner can. Web surfing just became a whole lot safer.

http://www.explabs.com/staging/promotions/xern_lspro.asp?loc=sfmaildetect
---------------------------------------------------------------------------


Current thread: