Computing in the real world
SEARCH FOR: IN:
      
Welcome Guest  Register Log in

News 

[PSUs]
Friday 8th March 2002
Pringles hacking session in London finds unsecured wireless networks aplenty 2:53PM, Friday 8th March 2002
On a sunny morning in central London a minibus packed with journalists and security experts set off for a tour of the financial heart of the city. The aim - to find out whether IT managers have bothered to implement even the basics of security on their wireless networks.

The 'hackers' were armed with only the most rudimentary tools - a Pentium II laptop (£400), some free software, a wireless network card (£69) and a directional antenna (made from an empty Pringles carton, worth less than £1.50.)

Within 25 minutes the laptop's screen had registered more than 50 wireless networks. Less than 30 per cent had WEP encryption enabled, and most were still using the manufacturer's default SSID code,
 
 
ADVERTISEMENT
potentially increasing the chances of discovery (see below). The Pringles carton picked out new networks from every block on the short trip, details of which were logged. One network that looked to be worth further examination was tantalisingly called 'IT Projects Room'.

Security company I-SEC, who coordinated the war-driving episode, warned that unsecured networks were at risk from eavesdropping and abuse of e-mail servers as spam relays.

It has published a security checklist, as not everyone is covering even the basic points on their internal LANs!

1. Disable the broadcast probe facility on the wireless access point - this makes them invisible to war-driving software.

2. Don't use default settings for passwords, SSIDs or encryption keys.

3. Don't use an SSID that describes your department.

4. Don't place an access point near external walls, or walls adjacent to other offices in a shared building.

5. Use 128-bit WEP - ultimately it's crackable.

Submit to: Digg  |  Slashdot  |  Del.icio.us  |  Technorati

Read comments: 0
Related News



Top 10 Broadband

150+ broadband packages

Compare 30+ mobile broadband deals

Powered by Top 10 Broadband


Columns

Prolog:

After eight years in a caring relationship, Tim Danton is falling for a desktop once again. › See full Opinion