Become a Site Supporter and Never see Ads again!

Author Topic: HEADS UP: Firesheep (public wifi "sniffer" - beware on public networks)  (Read 3027 times)

0 Members and 1 Guest are viewing this topic.

Offline Fatah Ruark (aka MIKE B)

  • Trade Count: (11)
  • Needs to get out more...
  • *****
  • Posts: 10060
  • Gender: Male
  • I dream in beige.
    • sloppy.art.ink
I'm sure some of you have heard about this new plugin for Firefox. Basically you install it and then go to a public network where you can log into the accounts of other users on the network with the click of a button.

Works pretty easy. I really haven't had a lot of time to play with it.

The solution to this is to use SSL if available, or ask the owner of the public network to turn on WPA/WPA2 and openly post the password to the network. WPA does not allow computers on the same network to talk to each other the same way they do on an unencrypted network.

Anyway...figured I'd let everyone know. Hopefully this will convince sites that have been targeted to offer SSL.
||| MICS: DPA 4022 | DPA 4080 | Nevaton MCE400 | Sennheiser Ambeo Headset |||
||| PREAMPS: DPA d:vice|||
||| DECKS: Sound Devices MixPre6 | Zoom F3 | iPod Touch 32GB |||
|||Concert History || LMA Recordings || Live YouTube |||

Offline rjp

  • Trade Count: (0)
  • Taperssection Member
  • ***
  • Posts: 432
  • Gender: Male
  • You are likely to be eaten by a grue.
Re: HEADS UP: Firesheep (public wifi "sniffer" - beware on public networks)
« Reply #1 on: November 01, 2010, 10:21:01 PM »
WPA does not allow computers on the same network to talk to each other the same way they do on an unencrypted network.

That's actually a router function, independent of WPA. WPA will prevent someone who doesn't have the access password from sniffing traffic, but an authenticated user may be able to do so, depending on the router setup. For a router running DD-WRT firmware, the setting is called "AP Isolation," and blocks wireless-to-wireless traffic when turned on.
Mics: AKG Perception 170, Naiant X-X, Sound Professionals SP-TFB-2
Preamps: Naiant Littlebox
Recorders: Olympus LS-10
Interfaces: Focusrite Saffire Pro 14, Focusrite Scarlett 2i2

Offline Fatah Ruark (aka MIKE B)

  • Trade Count: (11)
  • Needs to get out more...
  • *****
  • Posts: 10060
  • Gender: Male
  • I dream in beige.
    • sloppy.art.ink
Re: HEADS UP: Firesheep (public wifi "sniffer" - beware on public networks)
« Reply #2 on: November 02, 2010, 05:22:13 PM »
Cool. Thanks for fixing that. Always good to learn new stuff.
||| MICS: DPA 4022 | DPA 4080 | Nevaton MCE400 | Sennheiser Ambeo Headset |||
||| PREAMPS: DPA d:vice|||
||| DECKS: Sound Devices MixPre6 | Zoom F3 | iPod Touch 32GB |||
|||Concert History || LMA Recordings || Live YouTube |||

 

RSS | Mobile
Page created in 0.033 seconds with 27 queries.
© 2002-2025 Taperssection.com
Powered by SMF