Become a Site Supporter and Never see Ads again!

Author Topic: PSA: Security flaw with WPA (Wireless Router) Security...with simple fix.  (Read 6200 times)

0 Members and 1 Guest are viewing this topic.

Offline Fatah Ruark (aka MIKE B)

  • Trade Count: (11)
  • Needs to get out more...
  • *****
  • Posts: 10060
  • Gender: Male
  • I dream in beige.
    • sloppy.art.ink
Just wanted to make sure everyone has the heads up to a new security flaw that make it easy for anyone with half a brain to break into your wireless network.

MOST routers made in the past several years are vulnerable.

Basically the flaw is in the WPS part of the router. This is the little button with the key printed on the bottom of your router that make it easy for the average Joe to set up wireless security (so you don't need to get into the web based setup).

Simple solution is to TURN OFF WPS. You need to get into that web based setup screen (most likely 192.168.1.1) and turn it off. Sounds like you can't turn it off on Linksys routers though (well you can uncheck it, but it doesn't actually turn it off).

Here's an article on how to break into someone's router:

http://lifehacker.com/5873407/how-to-crack-a-wi+fi-networks-wpa-password-with-reaver

Figured I'd toss that out there. Not a huge problem because someone would have to be within range of your network to abuse it.

If you run an aftermarket firmware (Tomato, DD-WRT) on your router, I'm pretty sure your safe. I know Tomato doesn't have WPS support, so obviously you can't take advantage of it it then.
||| MICS: DPA 4022 | DPA 4080 | Nevaton MCE400 | Sennheiser Ambeo Headset |||
||| PREAMPS: DPA d:vice|||
||| DECKS: Sound Devices MixPre6 | Zoom F3 | iPod Touch 32GB |||
|||Concert History || LMA Recordings || Live YouTube |||

Offline mattmiller

  • Trade Count: (20)
  • Taperssection All-Star
  • ****
  • Posts: 1460
  • Gender: Male
Glad I installed Tomato several years ago.
Mics: Neumann KM100 (x4), AK40 (x2), AK50 (x2)
Pre: Lunatec V3
Recorders: Tascam DR-680, Tascam HD-P2 (x2), Sony PCM-M10

Offline johnw

  • Trade Count: (11)
  • Needs to get out more...
  • *****
  • Posts: 3836
  • Gender: Male
    • My cd List
Anyone found a fix for Cisco/Linksys? I have the e1200 and there is no way to disable WPS!  :o
Schoeps MK41 & MK4V  |  Schoeps CMC6, Schoeps KCY, AKI/2C, PFA, Nbox Cable/PFA  |  Grace V2, Nbox Platinum  |  SD744T, SD MixPre 6, Sony PCM M10

Canon 16-35mm/2.8L mkii, 24-70mm/2.8L, 70-200mm/2.8L IS, 50mm/1.8 mkii, 135mm/2L, 100mm/2.8L IS, Sigma 35mm/1.4 A  |  Canon 5D mk4

Offline Fatah Ruark (aka MIKE B)

  • Trade Count: (11)
  • Needs to get out more...
  • *****
  • Posts: 10060
  • Gender: Male
  • I dream in beige.
    • sloppy.art.ink
Anyone found a fix for Cisco/Linksys? I have the e1200 and there is no way to disable WPS!  :o

As far as I can tell Tomato or DD-WRT is not compatible with the e1200. You might want to double check on that though because installing Tomato or DD-WRT will fix the problem.

Otherwise the only thing you can do is wait for Linksys to come out with a new firmware. I'm under the impression they are working on new firmware to resolve this problem.

||| MICS: DPA 4022 | DPA 4080 | Nevaton MCE400 | Sennheiser Ambeo Headset |||
||| PREAMPS: DPA d:vice|||
||| DECKS: Sound Devices MixPre6 | Zoom F3 | iPod Touch 32GB |||
|||Concert History || LMA Recordings || Live YouTube |||

Offline johnw

  • Trade Count: (11)
  • Needs to get out more...
  • *****
  • Posts: 3836
  • Gender: Male
    • My cd List
Yeah it looks like my model isn't supported on either site, and I don't want to brick it by trying.
Schoeps MK41 & MK4V  |  Schoeps CMC6, Schoeps KCY, AKI/2C, PFA, Nbox Cable/PFA  |  Grace V2, Nbox Platinum  |  SD744T, SD MixPre 6, Sony PCM M10

Canon 16-35mm/2.8L mkii, 24-70mm/2.8L, 70-200mm/2.8L IS, 50mm/1.8 mkii, 135mm/2L, 100mm/2.8L IS, Sigma 35mm/1.4 A  |  Canon 5D mk4

Offline Fatah Ruark (aka MIKE B)

  • Trade Count: (11)
  • Needs to get out more...
  • *****
  • Posts: 10060
  • Gender: Male
  • I dream in beige.
    • sloppy.art.ink
Good news is someone that wants to do this has to be within range of your router.

Not sure what someone could do once they gain access. I'm under the impression that a router secured with WPA does not allow one computer to see another computers data. Could be wrong on that though.
||| MICS: DPA 4022 | DPA 4080 | Nevaton MCE400 | Sennheiser Ambeo Headset |||
||| PREAMPS: DPA d:vice|||
||| DECKS: Sound Devices MixPre6 | Zoom F3 | iPod Touch 32GB |||
|||Concert History || LMA Recordings || Live YouTube |||

Offline rastasean

  • in paradise
  • Trade Count: (23)
  • Needs to get out more...
  • *****
  • Posts: 3800
  • Gender: Male
Well the least that could be done would be to monitor you internet usage and intercept insecure data going across the wire. Also it would be possible to edit host records and direct it elsewhere but this this isn't likely.

If you're really worried about this, I would recommend disabling wireless and only using the ethernet cable...not very practical but secure.

On a related note, I have discovered my cable modem has ssh and telnet open and I tried to login a couple times and got locked out with brute force protection. Since then, the cable provider is filtering ssh and telnet but I'm hopeful another reset of the modem will fix this.
Advice is a form of nostalgia, dispensing it is a way of fishing the past from the disposal, wiping it off, painting over the ugly parts and recycling it for more than it’s worth.

Offline fleish

  • Trade Count: (4)
  • Needs to get out more...
  • *****
  • Posts: 3209
  • Gender: Male
  • I've been safariing since before you were born
I'm under the impression that a router secured with WPA does not allow one computer to see another computers data. Could be wrong on that though.
Depends what you mean by "see" ... are you saying wireless clients talking directly to each other without going through the WAP? Otherwise (or even if that was the case), standard system level access controls would (or should) be in control of what data can be seen on a computer.


Well the least that could be done would be to monitor you internet usage and intercept insecure data going across the wire. Also it would be possible to edit host records and direct it elsewhere but this this isn't likely.
Huh? Edit host records where & how exactly?


On a related note, I have discovered my cable modem has ssh and telnet open and I tried to login a couple times and got locked out with brute force protection. Since then, the cable provider is filtering ssh and telnet but I'm hopeful another reset of the modem will fix this.
This kind of thing always makes me laugh. The stupidity of residential ISP's has a long, sordid, and ongoing history of doing dumb sh!t. Just yesterday I was flipping between a primary cable modem connection & backup DSL connection - all the while pinging the router for the cable connection @ 10.10.10.1 to make sure I was still online. Well, after I switched over to the LAN for the DSL connection - I noticed 10.10.10.1 was still responding - only at an increased rate of ~60ms. Stupid AT&T is routing it right out onto the public internet and something on their network is even responding to the ICMP requests :P

The mention of telnet though reminds me of the old days in the 90s when a bunch of us got our first residential DSL lines through Digital Select. We get the thing setup and start probing around RFC1918 (private, not-supposed-to-be-routed-on-the-internet) space space for some reason. Next thing we know, we find we're able to login to many of Digital Select's backbone ATM nodes ... VIA TELNET! No access control whatsoever, we were just dropped right into a full access prompt. Saw a bunch of their WAN links and could probably have caused them a huge outage if we were so inclined.
Mics: AT853, MC930, AK40/AK50 > LC3 > KM100, ADK TL51
Cables: Audio Magic XStream silver, Kind Kables, Zaolla M1.5
Decks: D8, Busman Hybrid R4

My LMA tapes: http://archive.org/search.php?query=taper%3A%22Todd+Fleisher%22

My LMA transfers: http://archive.org/search.php?query=-taper%3A%28Todd%20Fleisher%29%20AND%20transferer%3A%28Todd%20Fleisher%29

My LMA uploads: http://archive.org/search.php?query=collection%3Aetree%20AND%20uploader%3A%28todd%40fleish.org%29

Awesome. David said you were like The Wolf in Pulp Fiction. Shows up just in time with tons of gear, does a pro job, and disappears into the night! :-)

Offline rastasean

  • in paradise
  • Trade Count: (23)
  • Needs to get out more...
  • *****
  • Posts: 3800
  • Gender: Male
Huh? Edit host records where & how exactly?

If you have access to the router, why would you not be able to edit the DNS to a machine you have setup as a DNS server with edited records. Its highly unlikely anyone would want to do this, however. I suppose a more simpler solution would be to setup an opendns account under the WAN IP and then block traffic as you wish.
Advice is a form of nostalgia, dispensing it is a way of fishing the past from the disposal, wiping it off, painting over the ugly parts and recycling it for more than it’s worth.

Offline fleish

  • Trade Count: (4)
  • Needs to get out more...
  • *****
  • Posts: 3209
  • Gender: Male
  • I've been safariing since before you were born
Huh? Edit host records where & how exactly?

If you have access to the router, why would you not be able to edit the DNS to a machine you have setup as a DNS server with edited records. Its highly unlikely anyone would want to do this, however. I suppose a more simpler solution would be to setup an opendns account under the WAN IP and then block traffic as you wish.

Ah yes if the router was not secured with a password this would be possible.
Mics: AT853, MC930, AK40/AK50 > LC3 > KM100, ADK TL51
Cables: Audio Magic XStream silver, Kind Kables, Zaolla M1.5
Decks: D8, Busman Hybrid R4

My LMA tapes: http://archive.org/search.php?query=taper%3A%22Todd+Fleisher%22

My LMA transfers: http://archive.org/search.php?query=-taper%3A%28Todd%20Fleisher%29%20AND%20transferer%3A%28Todd%20Fleisher%29

My LMA uploads: http://archive.org/search.php?query=collection%3Aetree%20AND%20uploader%3A%28todd%40fleish.org%29

Awesome. David said you were like The Wolf in Pulp Fiction. Shows up just in time with tons of gear, does a pro job, and disappears into the night! :-)

 

RSS | Mobile
Page created in 0.049 seconds with 34 queries.
© 2002-2025 Taperssection.com
Powered by SMF