Wireless LANs wide open to 'drive-by' hackers

You can never be too careful...

NEWS City firms are leaving themselves wide open to hackers by failing to secure their wireless networks. RSA Security picked up data from over a hundred wireless LANs just by walking around some streets in the City with a simple scanner. Two thirds of these networks used no encryption at all. Just under half transmitted the name of the company running the network in the data packets. Tim Pickard, marketing director for RSA, said firms who had spent millions on top of the range IT security and firewalls were leaving the back door wide open: "This is easy pickings for anyone with malicious intent. Not only can hackers get access to corporate data, but they can also get into the network to plant trojans or launch denial of service attacks." The survey compounds fears that the rapid growth in wireless technology is leading to a new kind of "drive-by hacking". This is when the signal from wireless LANs carries on outside the building, allowing anyone nearby to get access to the data, if they are equipped with the right gear. For the study, all RSA Security needed was a laptop, a £129 wireless network card, and two pieces of software freely available over the internet. It picked up 124 different networks within a two mile area around the City of London, 83 (67 per cent) of which were unencrypted, meaning clear text data was available for anyone to intercept. The widely-publicised weakness in the encryption standard for wireless networks would allow a hacker to break the code in a day, Pickard said. RSA advises users of such networks to ensure they have the encryption activated and ensure that the wireless LAN connection points are outside the firewall, to avoid the risk of compromising the entire company. It also recommends firms run additional encryption and authentication on top of the platform, to make hacking impossible. RSA stresses it did not actually attempt to inspect any of the data it could detect, or try to decrypt any of the networks. It also stresses it did not need to gain entry to any of the organisations to get the info - all data was collected from the street.

Comments

There is 1 comment. Join the discussion

  1. 1. anonymous

    WLAN hacking is a problem in the US as is in London. Here are some good tools for WLAN hacking.
    Cain and Able
    Netguard scanner
    Netbus
    and some others ill post again tommarow and give the rest.

    • 9 February 2004 16:44
    • Add comment

Post your comment

In order to post a comment you need to be registered and logged in.

You can also log in with Facebook. Log in or create your silicon.com account below

  • Login

Will not be displayed with your comment

By signing up for this service, you indicate that you agree to our Terms and Conditions and have read and understood our Privacy Policy.

Questions about membership? Find the answers in the Membership FAQ

Get silicon.com's daily newsletter

  • Register on silicon.com

    Enter your email to register

Keep in touch with silicon.com

silicon.com newsletters