Hacker News new | ask | show | jobs
by NemosDemos 4463 days ago
It looks like they just de-authenticated a client and then performed a dictionary attack:

"At the beginning, the area was scanned-sniffed with ‘Airodump’ and then a deauthentication attack was made with ‘Aireplay’," according to the paper. "Through that, an instance of the PSK was caught. Finally, ‘Aircrack’ was attempting to reveal the secret password by using the instance of the PSK and matching it with every record of the dictionary. For these experiments we used a very big dictionary that consisted of 666,696 standard printable ASCII character records of various lengths. ‘Airodump’ and ‘Aireplay’ are commands of the ‘Aircrack’ suite, responsible for sniffing and deauthentication respectively." [1]

[1]http://www.securityweek.com/researchers-outline-how-crack-wp...

1 comments

I like the way securityweek portrays their findings a lot more than the paper states. "cypher/system cracked" carries very specific meaning the the security community, meaning that a specific mechanism has been broken. SW sounds more like an advisory, warning to make sure your keys are strong. Kudos to them.