...
首页> 外文期刊>Computer Science & Information Technology >Denial of Service Attacks Against the 4-Way Wi-Fi Handshake
【24h】

Denial of Service Attacks Against the 4-Way Wi-Fi Handshake

机译:针对四向Wi-Fi握手的拒绝服务攻击

获取原文
           

摘要

The 4-way Wi-Fi handshake is used to negotiate fresh pairwise keys, and authenticates both theclient and Access Point (AP). We analyze this handshake, and discover several new denial-ofservice(DoS) attacks against it. Interestingly, our attacks work even if Management FrameProtection (MFP) is enabled.The first attack abuses the observation that messages in the 4-way handshake undergo linklayerencryption once the pairwise key is installed. More precisely, when message 4 of thehandshake is dropped, the handshake times out. The second attack is similar to the second one,but induces the AP into sending the first message 4 with link-layer encryption. Again, thiscauses the handshake to time out. In the third attack, an adversary waits until the victimcompletes the 4-way handshake. Then she initiates a rekey by injecting a malformed 4-wayhandshake messages, causing several implementations to disconnect the client from thenetwork. Finally, we propose countermeasures against our discovered attacks.
机译:4向Wi-Fi握手用于协商新的成对密钥,并验证客户端和接入点(AP)。我们分析了这种握手,并发现了针对它的几种新的拒绝服务(DoS)攻击。有趣的是,即使启用了Management FrameProtection(MFP),我们的攻击也仍然有效。第一次攻击滥用了以下观点:一旦安装了成对密钥,则4向握手中的消息将经过链路层加密。更准确地说,当握手消息4被丢弃时,握手超时。第二次攻击与第二次攻击相似,但是诱使AP通过链路层加密发送第一条消息4。同样,这导致握手超时。在第三次攻击中,对手等待直到受害者完成四次握手为止。然后,她通过注入格式错误的4向握手消息来启动密钥更新,从而导致多种实现方式将客户端与网络断开连接。最后,我们提出了针对我们发现的攻击的对策。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号