Re: [PEN-TEST] wireless LAN traffic sniffing

From: Frank Knobbe (FKnobbeat_private)
Date: Wed May 02 2001 - 09:47:17 PDT

  • Next message: Frank Knobbe: "Re: [PEN-TEST] wireless LAN traffic sniffing"

    -----BEGIN PGP SIGNED MESSAGE-----
    Hash: SHA1
    
    > -----Original Message-----
    > From: Torgeir Hansen [mailto:tha@SECURE-GROUP.COM]
    > Sent: Wednesday, May 02, 2001 12:27 AM
    >
    > I'm pretty sure (99.8%) I've sniffed traffic from one client to the
    > AP without being associated to it, once i used this to actually get
    > onto someone's network - their security-measure was just to
    > require the AP's SSID,
    > that did not get broadcasted - but i got it in cleartext when
    > they booted up
    > a computer with wlan, defined my card to use that AP and
    > voila i was in..
    > (NOTE: this spesific incident was work, I did nothing illegal;)
    
    
    Also, some (most?) drivers will allow 'ANY' as the SSID. In an open
    system you wouldn't need to do anything else to hook into the net. No
    reason to sniff the ID first...
    
    Regards,
    Frank
    
    -----BEGIN PGP SIGNATURE-----
    Version: PGP Personal Privacy 6.5.8
    Comment: PGP or S/MIME encrypted email preferred.
    
    iQA/AwUBOvA6FZytSsEygtEFEQJ8awCfT9HJ0/xyEuQHi/lwf6MTxae3wbQAoJc1
    n47uJihCCdU2lxa4dWukWPGt
    =HHCt
    -----END PGP SIGNATURE-----
    



    This archive was generated by hypermail 2b30 : Thu May 03 2001 - 05:50:31 PDT