Search: Home Bugtraq Vulnerabilities Mailing Lists Jobs Tools Vista
Coffee shop WiFi for dummies
Scott Granneman, 2006-02-09

The average user has no idea of the risks associated with public WiFi hotspots. Here are some very simple tips for them to keep their network access secure.

Comments Mode:
WiFi for dummies 2006-02-09
Greg
WiFi for dummies 2006-02-09
Mike Heffner
WiFi for dummies 2006-02-09
Anonymous
WiFi for dummies 2006-02-09
Anonymous
WiFi for dummies 2006-02-09
Anonymous
WiFi for dummies 2006-02-10
Phil from NY
WiFi for dummies 2006-02-10
Sid (2 replies)
Re: WiFi for dummies 2006-02-11
stacy (1 replies)
Re: Re: WiFi for dummies 2006-02-15
Sid
Re: WiFi for dummies 2006-02-13
Anonymous
WiFi for dummies 2006-02-10
Maxim
Coffee shop WiFi for dummies 2006-02-10
Edgard Tanieda
Coffee shop WiFi for dummies 2006-02-12
Jim Driscoll
Coffee shop WiFi for dummies 2006-02-13
j (1 replies)
Re: Coffee shop WiFi for dummies 2006-02-15
Anonymous (1 replies)
Coffee shop WiFi for dummies 2006-02-13
Anonymous
Coffee shop WiFi for dummies 2006-02-13
Paul R. from Rome, NY
Use a VPN for God's Sake 2006-02-13
Anonymous
Gmail does support https... 2006-02-14
Anonymous
RE: Coffee shop - Just say NO to Google! 2006-02-15
Anonymous (1 replies)
Coffee shop WiFi for dummies 2006-02-15
Lizard
Gmail via SSL 2006-02-15
Ricky
Recommending gaim? HAH 2006-02-17
infamous41md (1 replies)
Re: Recommending gaim? HAH 2006-02-19
Roger (1 replies)
Umm, that's interesting, but at least you *have* given Gaim a code audit, unlike IE and Skype which are closed source. And that's reflected in the vulnerability disclosures: since getting up to version 1 around 16 months ago, Gaim has had 13 vulnerabilities published, of which nearly all were non-critical DoS (you could crash Gaim with malformed input, generally only if the victim would accept the malformed data from the attacker). There were, however, 3 Critical vulnerabilities, all of them patched before any known exploits and none currently outstanding. The typical time to patch a new vulnerability, by the way, was 1 day, with a few stretching to 3 or 4 days. There have been 0 vulnerabilities on the roster continuously for the last 6 months. No doubt that will change soon: the beta of version 2 has just been released. But the record of Gaim on vulnerabilities and patching really is not too bad.

In contrast, IE has had 2 non-critical and 4 Critical vulnerabilities published in just the FIRST THREE WEEKS of this month. Three of those remain unpatched; one Critical has been unpatched for weeks now (you did apply the workaround, right?)

Two of the Critical ones had the vulnerability announced to coincide with the patch being released, but were actually discovered a while back; Microsoft spent respectively 5 and 8 weeks doing those two patches, lucky the discoverers both played ball with them I guess.

Of course these aren't the only known open vulnerabilities, just the ones from last 3 weeks.

[ reply ]

Link to this comment: http://www.securityfocus.com/comments/columns/385/33151#33151
Re: Re: Recommending gaim? HAH 2006-02-20
infamous41md (1 replies)
Re: Re: Re: Recommending gaim? HAH 2006-02-23
Roger (1 replies)
Re: Re: Re: Re: Recommending gaim? HAH 2006-02-24
infamous41md (1 replies)
Get a real ISP provider 2006-02-17
In Secure
You forgot one of the most important... 2006-02-26
Anonymous (1 replies)
personalVPN 2006-03-08
Anonymous
Miranda 2006-08-31
Lo Yuk Fai
Coffee shop WiFi for dummies 2006-09-14
Anonymous
Coffee shop WiFi for dummies 2006-10-04
oreste
Coffee shop WiFi for dummies 2006-12-25
Anonymous
Coffee shop WiFi for dummies 2007-01-24
Charlene - Prescott, AZ
Coffee shop WiFi for dummies 2007-02-25
Anonymous
Coffee shop WiFi for dummies 2007-05-21
Anonymous
Coffee shop WiFi for dummies 2007-11-22
Coffee Guy
Coffee shop WiFi for dummies 2008-01-08
Anonymous







 

Privacy Statement
Copyright 2008, SecurityFocus