{"id":604,"date":"2012-10-10T18:32:19","date_gmt":"2012-10-11T00:32:19","guid":{"rendered":"http:\/\/www.jedge.com\/wordpress\/?p=604"},"modified":"2013-01-08T09:46:03","modified_gmt":"2013-01-08T15:46:03","slug":"mobile-devices-and-airbase-ng-attacks","status":"publish","type":"post","link":"https:\/\/www.jedge.com\/wordpress\/2012\/10\/mobile-devices-and-airbase-ng-attacks\/","title":{"rendered":"Mobile Devices and Airbase-ng Attacks"},"content":{"rendered":"<p>I don&#8217;t feel that this issue gets enough coverage so I am adding my voice to the mix in the hopes that someday the makers of our popular mobile operating systems will FIX THE ISSUE! \u00a0What I&#8217;m going to discuss is a wireless association vulnerability that was first discovered by Max Moser (site<a title=\"All Your Wireless Belongs to Us\" href=\"http:\/\/wifi0wn.wordpress.com\/wifi-tools-software\/\" target=\"_blank\">\u00a0here<\/a>\u00a0and his <a href=\"http:\/\/archives.neohapsis.com\/archives\/fulldisclosure\/2004-04\/0155.html\" target=\"_blank\">full disclosure<\/a>) way back in 2004 for Windows XP. \u00a0Using airbase-ng (part of the <a href=\"http:\/\/aircrack-ng.org\/\" target=\"_blank\">Aircrack-ng<\/a> suite of tools) this same attack works against the latest versions of iOS5 and iOS6 (iPhone and iPad), Blackberry OS, and Android. \u00a0Apple&#8217;s iOS, from AT&amp;T Wireless, even comes with a helpful default profile so you can attack a device right out of the box (see <a href=\"https:\/\/twitter.com\/hdmoore\/status\/250641419096707072\" target=\"_blank\">Tweet by HD Moore<\/a>). \u00a0The only mobile OS that does not have this issue is Windows 8 on the new Nokia phones. \u00a0I don&#8217;t know a soul that has one of these phones so I hung out in an AT&amp;T Wireless store to conduct my testing. \u00a0Those Microsoft devices will not associate with any Airbase-ng APs that mimic APs from the device&#8217;s probe packets. \u00a0Some individuals have tried to tell the world about this issue. \u00a0A great <a title=\"Open Unsecure Wifi And Why Its Not Safe\" href=\"http:\/\/youtu.be\/qlkyolCd4FM\" target=\"_blank\">Youtube video<\/a> was created by\u00a0Jeffery Wilkins demonstrating this issue. \u00a0Vincent Costagliola at <a href=\"http:\/\/patctech.com\/\" target=\"_blank\">patctech.com<\/a>\u00a0wrote this <a href=\"http:\/\/www.patc.com\/weeklyarticles\/print\/2012_srt_reveal.pdf\" target=\"_blank\">article<\/a> mentioning the same issue.<\/p>\n<p>My testing has shown that an iPhone will connect to airbase-ng even if it is already connected to a WPA encrypted access point. \u00a0Just as described by Max Moser in 2004.<\/p>\n<p><iframe loading=\"lazy\" width=\"420\" height=\"315\" src=\"http:\/\/www.youtube.com\/embed\/A0Tlf67M84Q\" frameborder=\"0\" allowfullscreen><\/iframe><\/p>\n","protected":false},"excerpt":{"rendered":"<p>I don&#8217;t feel that this issue gets enough coverage so I am adding my voice to the mix in the hopes that someday the makers of our popular mobile operating systems will FIX THE ISSUE! \u00a0What I&#8217;m going to discuss is a wireless association vulnerability that was first discovered by Max Moser (site\u00a0here\u00a0and his full [&hellip;]<\/p>\n","protected":false},"author":1,"featured_media":0,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"_monsterinsights_skip_tracking":false,"_monsterinsights_sitenote_active":false,"_monsterinsights_sitenote_note":"","_monsterinsights_sitenote_category":0,"footnotes":""},"categories":[6],"tags":[],"class_list":["post-604","post","type-post","status-publish","format-standard","hentry","category-fyi"],"_links":{"self":[{"href":"https:\/\/www.jedge.com\/wordpress\/wp-json\/wp\/v2\/posts\/604","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/www.jedge.com\/wordpress\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www.jedge.com\/wordpress\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www.jedge.com\/wordpress\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/www.jedge.com\/wordpress\/wp-json\/wp\/v2\/comments?post=604"}],"version-history":[{"count":4,"href":"https:\/\/www.jedge.com\/wordpress\/wp-json\/wp\/v2\/posts\/604\/revisions"}],"predecessor-version":[{"id":606,"href":"https:\/\/www.jedge.com\/wordpress\/wp-json\/wp\/v2\/posts\/604\/revisions\/606"}],"wp:attachment":[{"href":"https:\/\/www.jedge.com\/wordpress\/wp-json\/wp\/v2\/media?parent=604"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www.jedge.com\/wordpress\/wp-json\/wp\/v2\/categories?post=604"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www.jedge.com\/wordpress\/wp-json\/wp\/v2\/tags?post=604"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}