Wireless Security
New paper on WEP cracking Apr 04 2007 05:42PM
Cedric Blancher (blancher cartel-securite fr)
Title is "Breaking 104 bit WEP in less than 60 seconds".

http://eprint.iacr.org/2007/120

Improving a FMS improvement, they achieve 50% success probability on 104
bits WEP key on 40k frames... Their tool is available:

http://www.cdc.informatik.tu-darmstadt.de/aircrack-ptw/

I tested it this morning and, with a rough, non ideal at all, dumb setup
and experimental protocol, I could break few keys around 40000 frames
within 6 to 7 minutes timeframe. The first one gave me this ;)

stats for bssid 00:16:B0:3D:E4:32 keyindex=0 packets=40297
Found key with len 13: 7A 52 C3 A0 EB DA 0E D3 00 02 24 4D 40

Paper is very interesting to read. However, I urge you to begin with
Andreas Klein paper, "Attacks on the RC4 stream cipher, on which this
work is based:

http://cage.ugent.be/~klein/RC4/RC4-en.ps

PS: although published on April 1st, it's not an April fool.
PPS: for french speaking readers, you can find a quick summary on my
blog:
http://sid.rstack.org/blog/index.php/2007/04/04/180-les-clous-sont-la-ma
is-vous-aviez-oublie-la-couronne
Others will have to deal with Google translation ;)

--
http://sid.rstack.org/
PGP KeyID: 157E98EE FingerPrint: FA62226DA9E72FA8AECAA240008B480E157E98EE
Cansecwest/core07 *WiFi (in)Security* Security Masters Dojo, Vancouver
http://cansecwest.com/dojowifi.html (Scapy WiFi programming included ;)

[ reply ]


 

Privacy Statement
Copyright 2010, SecurityFocus