11 ms·
I'm pretty sure this has been discovered years ago. Or at least my brain is convinced it was. Edit: Just saw the authors notes that this may have been found b
by omgitstom 12y ago
I'm pretty sure this has been discovered years ago. Or at least my brain is convinced it was.
Edit: Just saw the authors notes that this may have been found before... If anyone is curious, I found the one of the original reports on this:
https://sviehb.files.wordpress.com/2011/12/viehboeck_wps.pdf https://sviehb.files.wordpress.com/2011/12/viehboeck_wps.pdf
- jakobdabo 12y agoYes this is old news, and here is software for recovering the password when WPS is enabled: https://code.google.com/p/reaver-wps/ https://code.google.com/p/reaver-wps/
- mirashii 12y agoThis tool is doing the brute force of 11000 PINs, which is mentioned in the article but not this particular attack.
- trixr4skids 12y agoReaver takes 4-6 hours, this takes seconds. I would say that's a step forward.
- rb12345 12y agoI thought that too initially, but this appears to be a much faster method. For comparision, the "blackjack" attack uses 18 packets vs. 11000 for brute-force. I think we can say WPS is fairly unsafe at this point.