Educause Security Discussion mailing list archives

Re: WPA Cracked in less than a minute


From: Matthew Gracie <graciem () CANISIUS EDU>
Date: Fri, 28 Aug 2009 14:25:28 -0400

Theresa Semmens wrote:
http://www.idgconnect.com/index.cfm?event=showarticle&cid=116&pk=9433
<http://www.idgconnect.com/index.cfm?event=showarticle&cid=116&pk=9433>



SANS had a nice writeup on it as well:

http://isc.sans.org/diary.html?storyid=7027

The basic gist of the situation: WPA with TKIP is broken. Throw it on
the scrapheap with WEP and DVD-CSS. On the up side, the WPA2 crypto
scheme using AES instead of TKIP is still perfectly viable.

--Matt

--
Matt Gracie                         (716) 888-8378
Information Security Administrator  graciem () canisius edu
Canisius College ITS                Buffalo, NY
http://www2.canisius.edu/~graciem/graciem_public_key.gpg        

Current thread: