{"id":1060,"date":"2017-10-16T14:59:09","date_gmt":"2017-10-16T18:59:09","guid":{"rendered":"https:\/\/solutionsreview.com\/security-information-event-management\/?p=1060"},"modified":"2017-10-16T14:59:09","modified_gmt":"2017-10-16T18:59:09","slug":"wifi-security-has-been-kracked-according-to-researchers-2","status":"publish","type":"post","link":"https:\/\/solutionsreview.com\/security-information-event-management\/wifi-security-has-been-kracked-according-to-researchers-2\/","title":{"rendered":"WiFi Security Has Been \u2018Kracked\u2019, According to Researchers"},"content":{"rendered":"<p><img decoding=\"async\" src=\"https:\/\/solutionsreview.com\/wireless-network\/files\/2017\/10\/Untitled-1.jpg\" alt=\"WiFi Security Has Been 'Kracked', According to Researchersv\" \/><\/p>\n<p>By Nate Lewis<\/p>\n<p>Cue the feature images of shady people in hoodies. Researchers have reported that the WPA2 security protocol at the heart of nearly every modern wireless device has been broken. In summary, this means that almost every wireless-enabled device is at risk of attack.<\/p>\n<p>This bug refers to \u201cKRACK\u201d for Key Reinstallation Attack and exposes a fundamental flaw in WPA2, a common security protocol used in security a majority of wireless networks. The flaw was found by Mathy Vanhoef, a computer security academic. Vanhoef says the weakness lies in the protocol\u2019s four-way handshake, which securely allows new devices with a pre-shared password to join the network.<\/p>\n<p>At worst, this weakness can allow attackers to decrypt network traffic from a WPA2-enabled device , take over connections, and inject content into the traffic stream. For the layperson, this means that your wireless devices are exposed to eavesdropping.<\/p>\n<p>News of the vulnerability was later confirmed on Monday by US Homeland Security\u2019s cyber-emergency unit US-CERT, which about two months ago had confidentially warned vendors and experts of the bug,<\/p>\n<p>At its heart, the flaw is found in the cryptographic nonce, a randomly generated number used to prevent attacks. In this particular case, an attacker can trick a victim into reinstalling a key that\u2019s already in use. Reusing the nonce number can allow an attacker the encryption by replaying, decrypting, or forging packets.<\/p>\n<p id=\"GeJ24Q\">The\u00a0<a href=\"https:\/\/www.us-cert.gov\/\">United States Computer Emergency Readiness Team<\/a>\u00a0issued the following warning in response to the exploit:<\/p>\n<blockquote>\n<p id=\"aE2Fhg\">US-CERT has become aware of several key management vulnerabilities in the 4-way handshake of the Wi-Fi Protected Access II (WPA2) security protocol. The impact of exploiting these vulnerabilities includes decryption, packet replay, TCP connection hijacking, HTTP content injection, and others. Note that as protocol-level issues, most or all correct implementations of the standard will be affected. The CERT\/CC and the reporting researcher KU Leuven, will be publicly disclosing these vulnerabilities on 16 October 2017.<\/p>\n<\/blockquote>\n<p>For more on the WPA2 break, check out\u00a0<a href=\"https:\/\/www.krackattacks.com\/\">krackattacks.com<\/a><\/p>\n","protected":false},"excerpt":{"rendered":"<p>By Nate Lewis Cue the feature images of shady people in hoodies. Researchers have reported that the WPA2 security protocol at the heart of nearly every modern wireless device has been broken. In summary, this means that almost every wireless-enabled device is at risk of attack. This bug refers to \u201cKRACK\u201d for Key Reinstallation Attack [&hellip;]<\/p>\n","protected":false},"author":24,"featured_media":0,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"inline_featured_image":false,"footnotes":""},"categories":[3],"tags":[54,95,145,112,460],"acf":[],"yoast_head":"<!-- This site is optimized with the Yoast SEO plugin v23.5 - https:\/\/yoast.com\/wordpress\/plugins\/seo\/ -->\n<title>WiFi Security Has Been \u2018Kracked\u2019, According to Researchers<\/title>\n<meta name=\"description\" content=\"By Nate Lewis Cue the feature images of shady people in hoodies. Researchers have reported that the WPA2 security protocol at the heart of nearly every\" \/>\n<meta name=\"robots\" content=\"index, follow, max-snippet:-1, max-image-preview:large, max-video-preview:-1\" \/>\n<link rel=\"canonical\" href=\"https:\/\/solutionsreview.com\/security-information-event-management\/wifi-security-has-been-kracked-according-to-researchers-2\/\" \/>\n<meta property=\"og:locale\" content=\"en_US\" \/>\n<meta property=\"og:type\" content=\"article\" \/>\n<meta property=\"og:title\" content=\"WiFi Security Has Been \u2018Kracked\u2019, According to Researchers\" \/>\n<meta property=\"og:description\" content=\"By Nate Lewis Cue the feature images of shady people in hoodies. Researchers have reported that the WPA2 security protocol at the heart of nearly every\" \/>\n<meta property=\"og:url\" content=\"https:\/\/solutionsreview.com\/security-information-event-management\/wifi-security-has-been-kracked-according-to-researchers-2\/\" \/>\n<meta property=\"og:site_name\" content=\"Best Information Security SIEM Tools, Software, Solutions &amp; Vendors\" \/>\n<meta property=\"article:published_time\" content=\"2017-10-16T18:59:09+00:00\" \/>\n<meta property=\"og:image\" content=\"https:\/\/solutionsreview.com\/wireless-network\/files\/2017\/10\/Untitled-1.jpg\" \/>\n<meta name=\"author\" content=\"Jeff Edwards\" \/>\n<meta name=\"twitter:label1\" content=\"Written by\" \/>\n\t<meta name=\"twitter:data1\" content=\"Jeff Edwards\" \/>\n\t<meta name=\"twitter:label2\" content=\"Est. reading time\" \/>\n\t<meta name=\"twitter:data2\" content=\"2 minutes\" \/>\n<script type=\"application\/ld+json\" class=\"yoast-schema-graph\">{\"@context\":\"https:\/\/schema.org\",\"@graph\":[{\"@type\":\"WebPage\",\"@id\":\"https:\/\/solutionsreview.com\/security-information-event-management\/wifi-security-has-been-kracked-according-to-researchers-2\/\",\"url\":\"https:\/\/solutionsreview.com\/security-information-event-management\/wifi-security-has-been-kracked-according-to-researchers-2\/\",\"name\":\"WiFi Security Has Been \u2018Kracked\u2019, According to Researchers\",\"isPartOf\":{\"@id\":\"https:\/\/solutionsreview.com\/security-information-event-management\/#website\"},\"primaryImageOfPage\":{\"@id\":\"https:\/\/solutionsreview.com\/security-information-event-management\/wifi-security-has-been-kracked-according-to-researchers-2\/#primaryimage\"},\"image\":{\"@id\":\"https:\/\/solutionsreview.com\/security-information-event-management\/wifi-security-has-been-kracked-according-to-researchers-2\/#primaryimage\"},\"thumbnailUrl\":\"https:\/\/solutionsreview.com\/wireless-network\/files\/2017\/10\/Untitled-1.jpg\",\"datePublished\":\"2017-10-16T18:59:09+00:00\",\"dateModified\":\"2017-10-16T18:59:09+00:00\",\"author\":{\"@id\":\"https:\/\/solutionsreview.com\/security-information-event-management\/#\/schema\/person\/3d31b4b6a777a91476a65c087be260e6\"},\"description\":\"By Nate Lewis Cue the feature images of shady people in hoodies. Researchers have reported that the WPA2 security protocol at the heart of nearly every\",\"breadcrumb\":{\"@id\":\"https:\/\/solutionsreview.com\/security-information-event-management\/wifi-security-has-been-kracked-according-to-researchers-2\/#breadcrumb\"},\"inLanguage\":\"en-US\",\"potentialAction\":[{\"@type\":\"ReadAction\",\"target\":[\"https:\/\/solutionsreview.com\/security-information-event-management\/wifi-security-has-been-kracked-according-to-researchers-2\/\"]}]},{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\/\/solutionsreview.com\/security-information-event-management\/wifi-security-has-been-kracked-according-to-researchers-2\/#primaryimage\",\"url\":\"https:\/\/solutionsreview.com\/wireless-network\/files\/2017\/10\/Untitled-1.jpg\",\"contentUrl\":\"https:\/\/solutionsreview.com\/wireless-network\/files\/2017\/10\/Untitled-1.jpg\"},{\"@type\":\"BreadcrumbList\",\"@id\":\"https:\/\/solutionsreview.com\/security-information-event-management\/wifi-security-has-been-kracked-according-to-researchers-2\/#breadcrumb\",\"itemListElement\":[{\"@type\":\"ListItem\",\"position\":1,\"name\":\"Home\",\"item\":\"https:\/\/solutionsreview.com\/security-information-event-management\/\"},{\"@type\":\"ListItem\",\"position\":2,\"name\":\"WiFi Security Has Been \u2018Kracked\u2019, According to Researchers\"}]},{\"@type\":\"WebSite\",\"@id\":\"https:\/\/solutionsreview.com\/security-information-event-management\/#website\",\"url\":\"https:\/\/solutionsreview.com\/security-information-event-management\/\",\"name\":\"Best Information Security SIEM Tools, Software, Solutions &amp; Vendors\",\"description\":\"Buyer&#039;s Guide and Best Practices\",\"potentialAction\":[{\"@type\":\"SearchAction\",\"target\":{\"@type\":\"EntryPoint\",\"urlTemplate\":\"https:\/\/solutionsreview.com\/security-information-event-management\/?s={search_term_string}\"},\"query-input\":{\"@type\":\"PropertyValueSpecification\",\"valueRequired\":true,\"valueName\":\"search_term_string\"}}],\"inLanguage\":\"en-US\"},{\"@type\":\"Person\",\"@id\":\"https:\/\/solutionsreview.com\/security-information-event-management\/#\/schema\/person\/3d31b4b6a777a91476a65c087be260e6\",\"name\":\"Jeff Edwards\",\"image\":{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\/\/solutionsreview.com\/security-information-event-management\/#\/schema\/person\/image\/\",\"url\":\"https:\/\/secure.gravatar.com\/avatar\/8471d2b63e0587b41d829ecc153ba8e7?s=96&d=mm&r=g\",\"contentUrl\":\"https:\/\/secure.gravatar.com\/avatar\/8471d2b63e0587b41d829ecc153ba8e7?s=96&d=mm&r=g\",\"caption\":\"Jeff Edwards\"},\"description\":\"Jeff Edwards is an enterprise technology writer and analyst covering Identity Management, SIEM, Endpoint Protection, and Cybersecurity writ large. He holds a Bachelor of Arts Degree in Journalism from the University of Massachusetts Amherst, and previously worked as a reporter covering Boston City Hall.\",\"sameAs\":[\"https:\/\/solutionsreview.com\",\"https:\/\/x.com\/InfoSec_Review\"],\"url\":\"https:\/\/solutionsreview.com\/security-information-event-management\/author\/jedwards\/\"}]}<\/script>\n<!-- \/ Yoast SEO plugin. -->","yoast_head_json":{"title":"WiFi Security Has Been \u2018Kracked\u2019, According to Researchers","description":"By Nate Lewis Cue the feature images of shady people in hoodies. Researchers have reported that the WPA2 security protocol at the heart of nearly every","robots":{"index":"index","follow":"follow","max-snippet":"max-snippet:-1","max-image-preview":"max-image-preview:large","max-video-preview":"max-video-preview:-1"},"canonical":"https:\/\/solutionsreview.com\/security-information-event-management\/wifi-security-has-been-kracked-according-to-researchers-2\/","og_locale":"en_US","og_type":"article","og_title":"WiFi Security Has Been \u2018Kracked\u2019, According to Researchers","og_description":"By Nate Lewis Cue the feature images of shady people in hoodies. Researchers have reported that the WPA2 security protocol at the heart of nearly every","og_url":"https:\/\/solutionsreview.com\/security-information-event-management\/wifi-security-has-been-kracked-according-to-researchers-2\/","og_site_name":"Best Information Security SIEM Tools, Software, Solutions &amp; Vendors","article_published_time":"2017-10-16T18:59:09+00:00","og_image":[{"url":"https:\/\/solutionsreview.com\/wireless-network\/files\/2017\/10\/Untitled-1.jpg"}],"author":"Jeff Edwards","twitter_misc":{"Written by":"Jeff Edwards","Est. reading time":"2 minutes"},"schema":{"@context":"https:\/\/schema.org","@graph":[{"@type":"WebPage","@id":"https:\/\/solutionsreview.com\/security-information-event-management\/wifi-security-has-been-kracked-according-to-researchers-2\/","url":"https:\/\/solutionsreview.com\/security-information-event-management\/wifi-security-has-been-kracked-according-to-researchers-2\/","name":"WiFi Security Has Been \u2018Kracked\u2019, According to Researchers","isPartOf":{"@id":"https:\/\/solutionsreview.com\/security-information-event-management\/#website"},"primaryImageOfPage":{"@id":"https:\/\/solutionsreview.com\/security-information-event-management\/wifi-security-has-been-kracked-according-to-researchers-2\/#primaryimage"},"image":{"@id":"https:\/\/solutionsreview.com\/security-information-event-management\/wifi-security-has-been-kracked-according-to-researchers-2\/#primaryimage"},"thumbnailUrl":"https:\/\/solutionsreview.com\/wireless-network\/files\/2017\/10\/Untitled-1.jpg","datePublished":"2017-10-16T18:59:09+00:00","dateModified":"2017-10-16T18:59:09+00:00","author":{"@id":"https:\/\/solutionsreview.com\/security-information-event-management\/#\/schema\/person\/3d31b4b6a777a91476a65c087be260e6"},"description":"By Nate Lewis Cue the feature images of shady people in hoodies. Researchers have reported that the WPA2 security protocol at the heart of nearly every","breadcrumb":{"@id":"https:\/\/solutionsreview.com\/security-information-event-management\/wifi-security-has-been-kracked-according-to-researchers-2\/#breadcrumb"},"inLanguage":"en-US","potentialAction":[{"@type":"ReadAction","target":["https:\/\/solutionsreview.com\/security-information-event-management\/wifi-security-has-been-kracked-according-to-researchers-2\/"]}]},{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/solutionsreview.com\/security-information-event-management\/wifi-security-has-been-kracked-according-to-researchers-2\/#primaryimage","url":"https:\/\/solutionsreview.com\/wireless-network\/files\/2017\/10\/Untitled-1.jpg","contentUrl":"https:\/\/solutionsreview.com\/wireless-network\/files\/2017\/10\/Untitled-1.jpg"},{"@type":"BreadcrumbList","@id":"https:\/\/solutionsreview.com\/security-information-event-management\/wifi-security-has-been-kracked-according-to-researchers-2\/#breadcrumb","itemListElement":[{"@type":"ListItem","position":1,"name":"Home","item":"https:\/\/solutionsreview.com\/security-information-event-management\/"},{"@type":"ListItem","position":2,"name":"WiFi Security Has Been \u2018Kracked\u2019, According to Researchers"}]},{"@type":"WebSite","@id":"https:\/\/solutionsreview.com\/security-information-event-management\/#website","url":"https:\/\/solutionsreview.com\/security-information-event-management\/","name":"Best Information Security SIEM Tools, Software, Solutions &amp; Vendors","description":"Buyer&#039;s Guide and Best Practices","potentialAction":[{"@type":"SearchAction","target":{"@type":"EntryPoint","urlTemplate":"https:\/\/solutionsreview.com\/security-information-event-management\/?s={search_term_string}"},"query-input":{"@type":"PropertyValueSpecification","valueRequired":true,"valueName":"search_term_string"}}],"inLanguage":"en-US"},{"@type":"Person","@id":"https:\/\/solutionsreview.com\/security-information-event-management\/#\/schema\/person\/3d31b4b6a777a91476a65c087be260e6","name":"Jeff Edwards","image":{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/solutionsreview.com\/security-information-event-management\/#\/schema\/person\/image\/","url":"https:\/\/secure.gravatar.com\/avatar\/8471d2b63e0587b41d829ecc153ba8e7?s=96&d=mm&r=g","contentUrl":"https:\/\/secure.gravatar.com\/avatar\/8471d2b63e0587b41d829ecc153ba8e7?s=96&d=mm&r=g","caption":"Jeff Edwards"},"description":"Jeff Edwards is an enterprise technology writer and analyst covering Identity Management, SIEM, Endpoint Protection, and Cybersecurity writ large. He holds a Bachelor of Arts Degree in Journalism from the University of Massachusetts Amherst, and previously worked as a reporter covering Boston City Hall.","sameAs":["https:\/\/solutionsreview.com","https:\/\/x.com\/InfoSec_Review"],"url":"https:\/\/solutionsreview.com\/security-information-event-management\/author\/jedwards\/"}]}},"_links":{"self":[{"href":"https:\/\/solutionsreview.com\/security-information-event-management\/wp-json\/wp\/v2\/posts\/1060"}],"collection":[{"href":"https:\/\/solutionsreview.com\/security-information-event-management\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/solutionsreview.com\/security-information-event-management\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/solutionsreview.com\/security-information-event-management\/wp-json\/wp\/v2\/users\/24"}],"replies":[{"embeddable":true,"href":"https:\/\/solutionsreview.com\/security-information-event-management\/wp-json\/wp\/v2\/comments?post=1060"}],"version-history":[{"count":0,"href":"https:\/\/solutionsreview.com\/security-information-event-management\/wp-json\/wp\/v2\/posts\/1060\/revisions"}],"wp:attachment":[{"href":"https:\/\/solutionsreview.com\/security-information-event-management\/wp-json\/wp\/v2\/media?parent=1060"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/solutionsreview.com\/security-information-event-management\/wp-json\/wp\/v2\/categories?post=1060"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/solutionsreview.com\/security-information-event-management\/wp-json\/wp\/v2\/tags?post=1060"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}