Networks Training

  • About
  • My Books
  • SUGGESTED TRAINING
  • HOME
  • Cisco Networking
    • Cisco General
    • Cisco IOS
    • Cisco VPN
    • Cisco Wireless
  • Cisco ASA
    • Cisco ASA General
    • Cisco ASA Firewall Configuration
  • Certifications Training
    • CCNA Training
    • Cisco Certifications
    • I.T Training
  • General
    • General Networking
    • IP Telephony
    • Network Security
    • Product Reviews
    • Software
  • Cisco Routers
  • Cisco Switches
You are here: Home / Network Security / KRACK WiFi Vulnerability – WPA2 has been breached

KRACK WiFi Vulnerability – WPA2 has been breached

Written By Harris Andrea

On October 16, 2017 a serious security vulnerability has been published by researchers from KU Leuven, a university in Belgium. This has to do with WPA2 protection in WiFi networks, which is the modern security standard considered to be very safe so far.

krack wpa2 vulnerability

This vulnerability has to do with the WPA2 technology itself and is not a fault of any specific vendor. So basically all vendor devices which implement the WPA2 standard correctly are affected by this weakness.

KRACK stands for “Key Reinstallation Attacks” and in summary it tricks the Wi-Fi client device to install an all-zero encryption key. This attack is easier to be executed on Linux and Android devices but all WiFi clients and network devices using WPA2 are vulnerable.

Have a look at the official video below which demonstrates what an attacker can do with this attack:

As you can see from the video, all data transferred from the WiFi client on the “protected” WPA2 network can be captured by the attacker.

MORE READING:  Network based Firewall vs Host based Firewall-Discussion and Comparison

Some might say that if you use secure client protocols (such as HTTPs) then you are still protected.

This is wrong because the attacker can use for example SSLSTRIP and reroute the connection into a normal HTTP communication which does not encrypt anything. Then with packet capture software (such as wireshark) they can steal your sensitive information such as login credentials, banking details, credit card numbers etc.

Statistics show that WPA2 is used on over 60% of all Wi-Fi networks, so you can understand the impact of this. WPA2 Enterprise is also used in many corporate networks, and this is still vulnerable as the initial research has shown.

My recommendation is to temporarily disable any Enterprise WiFi networks that rely on WPA2 protection until patches are distributed by the vendors.

The good news is that big vendors (Microsoft, Google etc) said that this weakness is patchable in software and they will issues patches very soon. However, its still unknown if you only have to patch the WiFi clients only or if the actual WiFi Access Points will need software updates as well.

MORE READING:  What is Cisco Identity Services Engine (ISE)? Use Cases, How it is Used etc

In any case, for now just avoid to perform any sensitive transactions over WiFi networks (especially if you use Android smartphones) and wait for security patches to be available.

More information on the official website here: https://www.krackattacks.com/

Related Posts

  • How to Scan an IP Network Range with NMAP (and Zenmap)
  • What is Cisco Identity Services Engine (ISE)? Use Cases, How it is Used etc
  • What is Cisco Umbrella Security Service? Discussion – Use Cases – Features
  • 7 Types of Firewalls Technologies (Software/Hardware) Explained
  • 10 Best Hardware Firewalls for Home and Small Business Networks

Filed Under: Network Security

Download Free Cisco Commands Cheat Sheets

Enter your Email below to Download our Free Cisco Commands Cheat Sheets for Routers, Switches and ASA Firewalls.

We use Elastic Email as our marketing automation service. By submitting this form, you agree that the information you provide will be transferred to Elastic Email for processing in accordance with their Terms of Use and Privacy Policy. Also, you allow me to send you informational and marketing emails from time-to-time.

About Harris Andrea

Harris Andrea is an Engineer with more than two decades of professional experience in the fields of TCP/IP Networks, Information Security and I.T. Over the years he has acquired several professional certifications such as CCNA, CCNP, CEH, ECSA etc.

He is a self-published author of two books ("Cisco ASA Firewall Fundamentals" and "Cisco VPN Configuration Guide") which are available at Amazon and on this website as well.

Leave a Reply

Your email address will not be published. Required fields are marked *

This site uses Akismet to reduce spam. Learn how your comment data is processed.

Search this site

About Networks Training

We Provide Technical Tutorials and Configuration Examples about TCP/IP Networks with focus on Cisco Products and Technologies. This blog entails my own thoughts and ideas, which may not represent the thoughts of Cisco Systems Inc. This blog is NOT affiliated or endorsed by Cisco Systems Inc. All product names, logos and artwork are copyrights/trademarks of their respective owners.

Amazon Disclosure

As an Amazon Associate I earn from qualifying purchases.
Amazon and the Amazon logo are trademarks of Amazon.com, Inc. or its affiliates.

Search

BLOGROLL

Tech21Century
Firewall.cx

Copyright © 2023 | Privacy Policy | Terms and Conditions | Hire Me | Contact | Amazon Disclaimer | Delivery Policy

131 shares