Smashing WEP in a Passive Attack

Smashing WEP in a Passive Attack
复制标题

DOI:
10.1007/978-3-662-43933-3_9
复制
发表时间:
2013-03
期刊:
--
影响因子:
--
通讯作者:
Pouyan Sepehrdad;Petr Susil;S. Vaudenay;Martin Vuagnoux
Pouyan Sepehrdad;Petr Susil;S. Vaudenay;Martin Vuagnoux
中科院分区:
其他
文献类型:
--
作者:
Pouyan Sepehrdad;Petr Susil;S. Vaudenay;Martin Vuagnoux

文献摘要

被引文献

相似文献

在本文中,我们报告了非常快速和优化的主动和被动攻击对旧的IEEE 802.11无线通信协议WEP。这是通过大量的理论和实验分析(捕获WiFi数据包),改进和优化所有以前已知的攻击和方法来实现的。我们支持我们所有的主张,通过提供这种攻击的实现作为Aircrack-ng上的公开补丁。我们的新攻击大大提高了它的成功概率。我们调整我们的理论分析在Eurocrypt 2011现实世界的情况下,我们进行了轻微的调整,以匹配的经验观察。我们的主动攻击,基于阿普注入,需要一个包,以获得成功的概率对一位WEP密钥,使用Aircrack-ng在非交互模式。它运行在一个现成的个人电脑不到thans。使用相同数量的数据包,Aicrack-ng的成功率约为。此外,我们描述了非常快速的被动攻击,只是窃听TCP/IPv4数据包在WiFi通信。我们的被动攻击需要背包。这比Aircrack-ng需要的非活动模式(大约)的数据包数量要少得多,这是一个巨大的改进。我们相信,我们的分析带来了对RC 4安全性的进一步了解。
In this paper, we report extremely fast and optimised active and passive attacks against the old IEEE 802.11 wireless communication protocol WEP. This was achieved through a huge amount of theoretical and experimental analysis (capturing WiFi packets), refinement and optimisation of all the former known attacks and methodologies against RC4 stream cipher in WEP mode. We support all our claims by providing an implementation of this attack as a publicly available patch on Aircrack-ng. Our new attacks improve its success probability drastically. We adapt our theoretical analysis in Eurocrypt 2011 to real-world scenarios and we perform a slight adjustment to match the empirical observations. Our active attack, based on ARP injection, requirespackets to gain success probability ofagainst a-bit WEP key, using Aircrack-ng in non-interactive mode. It runs in less thans on an off-the-shelf PC. Using the same number of packets, Aicrack-ng yields aroundsuccess rate. Furthermore, we describe very fast passive only attacks by just eavesdropping TCP/IPv4 packets in a WiFi communication. Our passive attack requirespackets. This ismuch less than the number of packetsAircrack-ng requires inactive mode(around), which is a huge improvement. We believe that our analysis brings on further insight to the security of RC4.