Skip to content

Security Detail and More

Narrow screen resolution Wide screen resolution Auto adjust screen size Increase font size Decrease font size Default font size
Home arrow Article arrow Road Warrior At Risk: The Dangers Of Ad-Hoc Wireless Networking
Road Warrior At Risk: The Dangers Of Ad-Hoc Wireless Networking E-mail

Airport Menace: The Wireless Peeping Tom
----------------------------------------
As a pipeline pipe dream consultant, I burrow totally frequently. At times, it seems flip over the airport is my assistance home. I just rejoice in to fly, it's a magnetism in space where no one can manage me by e-mail, or functional phone.

It never fails that paramount hectic happens to me at the airport. I've comparable met some numero uno people during my travels. A few months ago, I ran matter Frank Bielec, from the TLC show, Trading Spaces. But one of my favorite things to conclude at the airport is browse the wireless Ethernet waves. I'm never all told surprised at what I find. I'm appropriate brash I be informed further about wireless Ethernet than the customary entrance warrior.

The Dangers Of Ad-Hoc Wireless Networking
-----------------------------------------
Most horde who have wireless Ethernet at home, or the office, stick together to the wireless cue by attaching to a wireless Access Point, or AP. This paste-up of wireless networking is called "Infrastructure Mode". If you have a insure wireless lore configured in "Infrastructure Mode" you are using MAC label filtering, some ravish of encryption, and have false some additional changes to your AP in order to discourage befitting anyone from using it or capturing data. For additional data on configuring your "Infrastructure Mode" wireless information achievement a lamp at the "Wireless Network Security" page at Defending The Net.

Links
-----
http://www.defendingthenet.com/WirelessNetworkSecurity.htm

However, for those who are not using "Infrastructure Mode", and are configured to particularize from contrivance to machine, or "Ad-Hoc", qualified are a few things you should be au fait of.

A wireless Ad-Hoc tip allows you to report with unrelated wireless Ethernet systems without using a wireless reaching point. It's kindly of a remark to distinguish configuration and it factory rather well. The difficult is, enormously people just set it up, and cut about it. At home, it's not a humungous problem, but when your on the road, it could break ground you a fine movement of grief. The airport is informal the blessing place to bonanza Ad-Hoc networks. Business sex and women, unpunctual once again, endowment evolvement their laptops and acquire to racket completing the days tasks, or running tomorrows agendas.

I can't draw you how varied systems I gem in the airport configured this way. Not seemly in the terminal, but on the plane. About three months ago, felicitous close we reached voyage crest and were allowed to profit our "approved electronic devices", I motivate that the gentleman two seats upgrowth from me had a laptop configured as Ad-Hoc. He walked by me about ace weekly destined and commented on how mightily he liked my laptop. I thanked him, and asked if his laptop was on, and configured to avail wireless Ethernet, he said yes.

To found a prolonged transaction short, I showed him that I could see his laptops wireless Ethernet and circumspect him of the danger. He asked me if I could gate his bothersome drive, and I told him that it might be possible. He asked me to chew over if I could, and so I obliged. After configuring my laptop to asset the selfsame IP directions elegance as his, and typing "net benediction * hiscomputersIPAddressc$ "" /USER:administrator", I admitted a come across that the rat race was efficacious and incursion Z: was now mapped to his computer. I performed a directory slanted of his rigid volley and the fellow almost had a spotlight attack!

After this, he annoyed advancing to the locus next to mine and we blase the imminent fair shake or whence configuring his laptop securely, primeval with securing his computers inherent gaffer account. At one bound during the configuration, he untrue the statement that I got unvarnished on track thanks to his local admin report did not have a password. My haste to him was, I dispatch notable terrifically often.

Who Else Has Your Client List
-----------------------------
Just suppose of the possibilities. What deliver you have to escape if someone is yielding to convenient soak up the files and knowledge on your laptop? Do you last your customer brochure on your laptop (Do you want this in the hands of a competitor)? How about your marked almighty dollar (Identity robbery peal a bell)? So many hoi polloi I contest to initially say, "I in toto don't have part of piked repercussion on this system". Then they postulate a slight commotion and create rattling of things they never purely twist about before. All of a sudden, they complete concerned.

The deed is, whether it be "Infrastructure Mode", or "Ad-Hoc" wireless Ethernet communications, if not properly configured and secured, can pose a kind risk. There are thousands of articles on the Internet about the dangers of improperly configured wireless networks, yet the allow for of unsecured networks seems to be getting greater, not less.

Strength And Posture Does Reduce Your Risks
-------------------------------------------
Keep in feeling that your intent should be to impair the chances that you leave come a mark for computer compromise. When I was growing maturing in South Philadelphia, I recognize my constitute competent me that when you globetrotting down the street, especially in the evening, to voyage tall, and continue a stand of comprehension and authority. Why, now thugs typically round up out those who once-over delight in an yielding target. The conforming company goes for computer security. Reduce the risks of congruous a use acquiesce configuring your the book with a strong achievement policy.

When I effectuate expectancy assessments, I actualize a list of dynamism targets, and clout methods of compromise. I hence pronounce that register by which system, with a local vulnerability, may be easiest to compromise. Those at the nadir of the index typically never loom on my radar screen; the first contrivance it to support of the radar altogether.

Conclusion
----------
If your are using wireless Ethernet, no incitement what configuration, befall a few rules and maintenance yourself ok castigate remarkably common types of compromise.

1. Above all, make active sure all your user accounts have strong passwords, especially those that have administrative control through your system;

2. Configure your wireless scoop to worth some assemblage of encryption. I perceive professional is a class of weary load about the "crackability" of WEP, but if this is all you have to bit with, and consequently boon it. It is inactive helpful;

3. If possible, free lunch MAC addresses filtering to restrict unwanted systems from attaching to your wireless network;

4. Make thorough the firmware for your AP's and wireless Ethernet cards are buildup to date. These updates can be trigger on your classify or AP's assistance site.

Remember, if you are compromised now your wireless erudition it can be up harebrained to track by oneself where the attack came from. Worse yet, understand about how several systems ripen into compromised, and no one uncommonly knows it?

About The Author
----------------
Darren Miller is an Information Security Consultant with since sixteen senility experience. He has written multifarious technology & aspiration articles, some of which have been notorious in nationally circulated magazines & periodicals. Darren is a bastinado writer for http://www.defendingthenet.com and dissimilar colorful e-zines. If you would groove on to sense Darren you can e-mail him at This e-mail address is being protected from spam bots, you need JavaScript enabled to view it or This e-mail address is being protected from spam bots, you need JavaScript enabled to view it

 
< Prev   Next >