Audit Linux privileges now to limit compromise, escalation, and system-wide damage. Review Linux Privileges×
The WWWD provides a snapshot of the security posture of currently deployed wireless access points throughout the world. During the Third WorldWide WarDrive, which took place in July 2003, over 88,000 unique access points were discovered worldwide. The statistics compiled for the WWWD have become the defacto standard for statistics used by many media outlets and wireless security vendors to further generate public awareness of wireless security issues. . . . . -----BEGIN PGP SIGNED MESSAGE----- Hash: SHA1 Announcing the Fourth WorldWide WarDrive (WWWD) 12-19 June, 2004 The WorldWide WarDrive is an effort by security professionals and hobbyists to generate awareness of the need by individual users and companies to secure their access points. The goal of the WorldWide WarDrive (or WWWD) is to provide a statistical analysis of the many access points that are currently deployed. We feel that many end users are not aware that the factory or "default" settings on Access Points do not take any security measures into account. By providing these statistics we hope that end users will become aware of the need to take simple measures to secure their access points. The WWWD provides a snapshot of the security posture of currently deployed wireless access points throughout the world. During the Third WorldWide WarDrive, which took place in July 2003, over 88,000 unique access points were discovered worldwide. The statistics compiled for the WWWD have become the defacto standard for statistics used by many media outlets and wireless security vendors to further generate public awareness of wireless security issues. The Fourth WorldWide WarDrive will take place 12-19 June 2004. The WorldWide WarDrive has teamed with the Wireless Geographic Logging Engine (WiGLE www.wigle.net) to provide real time maps and statistics as data from each area is uploaded. This is a departure from past events where statistics and maps were compiled at the conclusion of the week long WWWD. Also in conjunction with the announcementof the Fourth WorldWide WarDrive, the Church Of WiFi is proud to announce that an updated version of WarKizNiz is available at / WarKizNiz accepts input from Kismet log files and converts them into NetStumbler .ns1 format. Coordination of drives throughout the world is done at the WorldWide WarDrive Forums located at As in the past, discussions pertaining to the WWWD can also be conducted on the WarDriving mailing list ( ). New for WWWD4 is the creation of a mailing list devoted solely to wireless security issues. To join this list, hosted by Michigan Wireless go to . Media persons interested in articles or interviews should email
DIGITAL RIGHTS GROUP the Electronic Frontier Foundation (EFF) is asking hackers to help it with its plans to build a secure but open router.. The EFF has released source code for such a machine that runs on the Netgear WNDR3800, and its hope is that the security community will download and run with it. "EFF is releasing an experimental hacker alpha release of wireless router software specifically designed to support secure, shareable Open Wireless networks. This release is a work in progress and is intended only for developers and people willing to deal with the bleeding edge," it said. The link for this article located at The Inquirer is no longer available. . The EFF has unveiled a new open-source framework for a fortified router aimed at the Netgear WNDR3800, encouraging developers to get involved.. Open Router, Wireless Security, EFF Initiatives, Hacker Collaboration. . LinuxSecurity.com Team
How secure is your wireless router? The Def Con 22 hacker conference aims to find out exactly how resilient off the shelf products are next month during a six-day hackathon. . Seasoned hackers and security experts are being invited to break a number of wireless routers made by the likes of Linksys, Netgear and D-Link, with the intention of shaming manufacturers into making better kit. The link for this article located at recombu is no longer available. . Cybersecurity experts are encouraged to assess the vulnerabilities of leading Wi-Fi devices at Def Con 22 to identify potential weaknesses.. Router Security, Wireless Hacking, Def Con 22, Security Exploits, Hacker Community. . Dave Wreski
It's been known for some time that there are security issues associated with the increasing use of RFID tags in credit cards, but this past weekend afforded a fresh demonstration of just how easy it is for hackers to take advantage of them. . Onstage at the Shmoocon hacker conference in Washington, D.C., Recursion Ventures security researcher Kristin Paget used about $350 in equipment to wirelessly read a volunteer's RFID-enabled credit card and then encode its key data onto a blank card, as described Monday by Forbes. The link for this article located at Network World is no longer available. . Uncover the alarming simplicity with which cybercriminals can manipulate RFID-enabled payment cards using basic tools, as demonstrated at Shmoocon.. RFID Technology, Credit Card Exploits, Wireless Hacking Techniques. . LinuxSecurity.com Team
A hacker claims he's used Amazon's cloud services to bust open SHA-1, a wireless network security standard, and he says he'll be demonstrating his process at an upcoming Black Hat get-together. Malicious hackers could quickly set up brute-force attack systems using the cloud, but critics say real-world password cracks might not come so easily.. German hacker Thomas Roth's announcement that he used Amazon.com's (Nasdaq: AMZN) cloud service to crack a wireless network security standard has left some security researchers scratching their heads. Others are merely shaking them in disbelief. That attack was launched against the SHA-1 hash algorithm. Roth's conclusions are that the SHA-1 algorithm is not fit for password hashing, and the compute power offered by cloud services makes it cheap and easy to launch brute-force attacks on passwords. However, it's been known since 2005 that the SHA-1 algorithm has flaws, and the National Institute of Standards and Technology is seeking to replace it. The link for this article located at Tech News World is no longer available. . German hacker Thomas Roth's announcement that he used Amazon.com's (Nasdaq: AMZN) cloud service to c. hacker, claims, amazon's, cloud, services, sha-1, wireless, network, security. . LinuxSecurity.com Team
Amazon. According to the news wire, Roth. Explore the ways in which Amazon's cloud infrastructure might create opportunities for prospective wireless breaches, as indicated by current findings.. Wireless Security,AWS Security Risk,Cloud Computing,Amazon Security. . Anthony Pell
For almost 18 months starting in 2005, attackers used wireless networks at TJX and other retail chains to steal credit card data. The vulnerabilities were not an isolated instance: Subsequent research found that about half of all retail outlets in one shopping center had insecure wireless networks.. Today, WiFi security has improved somewhat, but insecurities in installations still remain far too common. Vulnerability assessments of more than two dozen companies found a quarter have rogue wireless access points that were installed by employees, and a third of their wireless networks had misconfigurations that undermined their security, according to wireless security firm AirTight Networks, which conducted the tests. "A rogue AP is a very serious problem if you have it -- an unmanaged, unknown device that is circumventing your defenses," says David King, CEO of AirTight. "All the layers of defense that you worked so hard to put in can be circumvented by a single device that is communicating in the clear." The link for this article located at Dark Reading is no longer available. . Network protection has advanced, but vulnerabilities remain in setups and settings in commerce and further sectors.. Wireless Security,Rogue Access Point,Network Assessment,Insecure Networks. . LinuxSecurity.com Team
Forget spam, viruses, worms, malware and phishing. These threats are apparently old school when compared to a new class of denial-of-service (DOS) attacks that threaten wireless data networks. The latest wireless network threats were outlined in a talk here Thursday by Krishan Sabnani, vice president of networking research at Bell Labs, at the Cyber Infrastructure Protection Conference at City College of New York. . Sabnani said the latest wireless data network threats are the result of inherent weaknesses in Mobile IP, a protocol that uses tunneling and complex network triangulation to allow mobile devices to move freely from one network to another. The link for this article located at Network World is no longer available. . Emerging DOS attacks focus on exploiting weaknesses in Mobile IP, jeopardizing the integrity of wireless communications.. Dos Attack, Wireless Network Threat, Mobile IP Security, Network Defense, Cyber Threats. . Dave Wreski
Get the latest Linux and open source security news straight to your inbox.