Flux rss

Risks related to wireless WiFi networks (802.11 or Wi-Fi)

Lack of security

Radio waves intrinsically have the power to propagate in all directions, with a relatively wide range. Because of this, it is very difficult to keep radio broadcasts confined to a limited area. Radio propagation also occurs three-dimensionally. The waves can therefore travel from one floor of a building to another (albeit with a high degree of attenuation.)

The main consequence of this "wild propagation" of radio waves is that a non-authorised person may be able to listen to the network, possibly beyond the enclosure of the building where the wireless network is set up.

The critical issue is that a wireless network can very easily be installed in a business without the IT department even knowing! An employee only has to plug an access point into a data port for all communication on the network to become "public" throughout the access point's broadcast range.

War-driving

Given how easy it is to "listen" to wireless networks, some people have taken to travelling around a city with a wireless-compatible laptop computer (or PDA) looking for wireless networks. This practice is called war driving (sometimes written wardriving or war-Xing for "war crossing"). Specialised war-driving software allows the locations of these open access points to be mapped accurately with the help of a Global Positionning System (GPS).

These maps can show available unsecured wireless networks, sometimes allowing people to access the Internet. Many websites have been started to share this information; in fact, in 2002, students in London invented a sort of "sign language" to indicate the presence of wireless networks in an area by drawing symbols on the sidewalk in chalk. This is called "warchalking". Two opposing semicircles mean that the area is covered by an open network that provides Internet access, a circle indicates the presence of an open wireless network without access to a wired network, and a W inside a circle shows that there is a properly secured wireless network.

Warchalking

Security risks

There are several risks involved in not properly securing a wireless network:

  • Data interception is the practice of listening in on the transmissions of various wireless network users.
  • Cracking is an attempt to access a local network or the Internet.
  • Transmission jamming means sending out radio signals so as to interfere with traffic.
  • Denial of service attacks make the network unusable by sending out false requests.

Data interception

By default, a wireless network is unsecured. This means that it is open to everyone, and anyone within the coverage area of an access point may potentially listen to communications being sent on the network. For an individual, there is little threat, as data is rarely confidential, unless the data is of a personal nature. For a business, however, this may pose a serious problem.

Network intrusion

When an access point is installed on a local network, it lets any station access the wired network, as well as the Internet, if the local network is connected to it. For this reason, an unsecured wireless network gives hackers the perfect gateway to an business or organisation's internal network.

Besides letting the hacker steal or destroy information on the network and giving him or her free Internet access, the wireless network might also be helping him or her to carry out cyber-attacks. Indeed, since there is no way to identify a hacker on a network, the business which installed the wireless network might be held responsible for the attack.

Radio jamming

Radio waves are very sensitive to interference. This is why a signal can easily be jammed by a radio transmission with a frequency close to that used by the wireless network. Even a simple microwave oven can make a wireless network completely inoperable if it is being used within an access point's range.

Denial of service

The 802.11 standard's network access method is based on the CSMA/CA protocol, which involves waiting until the network is free before transmitting data frames. Once the connection is established, a station must be linked to an access point in order to send it packets. Because the methods for accessing a network and associating with it are known, it is easy for a hacker to sent packets requesting for a station to become disassociated from the network. Sending out information intended to disrupt a wireless network is called a denial of service attack.

What's more, connecting to wireless networks uses up power. Even if the wireless peripheral devices have power-saving features, a hacker may be able to send enough encrypted data to a machine for it to overload. Many portable peripherals (like PDAs and laptop computers) have limited battery life. Therefore, a hacker may want to cause excessive power consumption that renders the device temporarily unusable, which is called a battery exhaustion attack.

Last update on Thursday October 16, 2008 02:43:15 PM.

This document entitled « Risks related to wireless WiFi networks (802.11 or Wi-Fi) » from Kioskea (en.kioskea.net) is made available under the Creative Commons license. You can copy, modify copies of this page, under the conditions stipulated by the licence, as this note appears clearly.
Securing your wireless network Securing your wireless network What is Wi-Fi? Ad-hoc mode Infrastructure mode connection Security and protection What is Wi-Fi? Wi-Fi regroups various IEEE802.11 standards and technologies, using radio waves to provide reliable... en.kioskea.net/faq/sujet-431-securing-your-wireless-network
WiFi - 802.11i / WPA2 802.11i was ratified on 24 June 2004, in order to address security issues in WiFi networks. Like WPE, it relies on the TKIP encryption algorithm, but it also supports the much more secure AES (Advanced Encryption Standard). The Wi-Fi Alliance created... en.kioskea.net/wifi/wifi-wpa2.php3
What is Wi-Fi and how it works What is Wi-Fi and how it works How does Wi-Fi work? Frequencies What is a Hotspot? How to make a Wi-Fi connection Wireless technology has widely spread lately and you can get connected almost anywhere; at home, at work, in... en.kioskea.net/faq/sujet-298-what-is-wi-fi-and-how-it-works
Can your microwave oven affect your Wi-Fi connection?Can your microwave oven affect your Wi-Fi connection? Myth Truth Myth Your microwave oven can reduced affect your Wi-Fi connection. Truth Don't be suprised if your Wi-Fi connection goes down when an nearby Microwave oven is... en.kioskea.net/faq/sujet-445-can-your-microwave-oven-affect-your-wi-fi-connection
Disabling True Vector Service under Windows XPDisabling True Vector Service under Windows XP To shut down True Vector Service, Go to Menu “Start”> “Control Panel” and double-click on “Security Center”. In the below image, select “Windows Firewall” and choose... en.kioskea.net/faq/sujet-620-disabling-true-vector-service-under-windows-xp
FireFox -- tab and formFireFox -- tab and form Solutions With Firefox under Mac Operating System (all versions), the navigation with the key tab may cause some unexpected error. The tab tab can only be moved as text field to text field which however... en.kioskea.net/faq/sujet-870-firefox-tab-and-form
Laptop connection in wi-fi areaHi! I am student in one of college of Pune .Our college is wi-fi area. I have Laptop but i don't know, how connect to the internet of my Laptop. en.kioskea.net/forum/affich-26575-laptop-connection-in-wi-fi-area
Mesh network device with five interfacesHello, I have a mesh network device which has five Interfaces. But IP want only one IP for the system so that any device that is connected to the to any interface of my device can ssh to my device with this single IP. Is there any IP rule that can fix... en.kioskea.net/forum/affich-26751-mesh-network-device-with-five-interfaces
Download Cordless Internet HandsetAre you looking for a wireless internet kit? Do not seek any more, Cordless Internet Handset is made for you, produced good range from Logitech, you will find easily and easily satisfaction by using it. Here thus, for those which have it already, this... en.kioskea.net/telecharger/telecharger-969-cordless-internet-handset
Download SharePodSharePod is an administrator of file mp3. It integrates with the readers mp3 the most recent: Ipod and iTunes. He allows to transfer file of on the disc of Ipod.He can show under Windows files stocked in READER MP3. It inserts a research motor which... en.kioskea.net/telecharger/telecharger-816-sharepod
Download CHAOS ShredderCHAOS Shredder allows to abolish permanently files or specific files, the contents of the hamper, temporary files, cookies, review or list of the recent documents. Contrary to the basic tools of abolition of Windows, files once abolished by Chaos... en.kioskea.net/telecharger/telecharger-171-chaos-shredder
Bangkok offers 15,000 free Wi-Fi spotsA Wi-Fi hotspot sign. The Thai capital will offer 500,000 people free Wi-Fi access starting Thursday, in a pilot project that will provide 15,000 hotspots for them to get online, Bangkok's municipal government said. The Thai capital will offer... en.kioskea.net/actualites/bangkok-offers-15-000-free-wi-fi-spots-10483-actualite.php3
Videogame console giants jockey for throneA woman tries the Wii Fit games console. Microsoft, Nintendo and Sony are waging battle at the Electronics Entertainment Expo, each claiming to be the true king of videogame consoles in a booming multi-billion dollar industry Microsoft, Nintendo and... en.kioskea.net/actualites/videogame-console-giants-jockey-for-throne-10546-actualite.php3
WPA - WiFi Protected Access WPA (WiFi protected Access) WiFi network security solution offered by the WiFi Alliance, in order to fill gaps in WEP. WPA is a "light" version of the 802.11i protocol, which relies on authentication protocols and a strong encryption algorithm:... en.kioskea.net/wifi/wifi-wpa.php3
WiFi - Introduction The IEEE 802.11 specification (ISO/IEC 8802-11) is an international standard describing the characteristics of a wireless local area network (WLAN). The name Wi-Fi (short for "Wireless Fidelity", sometimes incorrectly shortened to WiFi) corresponds... en.kioskea.net/wifi/wifiintro.php3
WiFi - Data link layer and access methods The data link layer of the 802.11 standard is composed of two sublayers: the Logical Link Control layer (or LLC for short), and the Media Access Control layer (or MAC). The MAC layer defines two different access methods: The CSMA/CA method, which... en.kioskea.net/wifi/wifimac.php3