WPA keys gone in 60 seconds
Time to move to WPA 2
28th August 2009 10:11 GMT
Networking nerds claim to have devised a way of breaking Wi-Fi Protected Access (WPA) encryption within 60 seconds.
The technique, developed by Toshihiro Ohigashi of Hiroshima University and Masakatu Morii of Kobe University, is based on the established Becks-Tews method, which involves making minor changes to packets encrypted with TKIP - Temporal Key Integrity Protocol, a WPA security mechamism - and then sending those packets back to the access point.
However, the Becks-Tews method is known to take anywhere between ten and 15 minutes to execute.
In a recently released paper, Ohigashi and Morii proposed a man-in-the-middle style of attack – also used by the Beck-Tews approach – in which a user’s communication is intercepted by an attacker.
This approach carries a high risk of detection, the pair admitted, so being able to shorten the attack time down to under one minute is a major advantage – to potential hackers, at least.
Ohigashi’s and Morii’s technique doesn’t work in WPA 2 – the AES-based successor to WPA.
The pair will formally unveil their technique at a conference in Hiroshima, Japan late next month. ®


Linksys WRT54G2 Wireless Router (802.11b/g, 54 Mbps, 128 Bit WEP, WPA2)
Linksys WRT610N Dual-N Band Wireless Router (802.11a/b/g, draft 802.11n, 300 Mbps, 128 Bit WEP, WPA2)
D-Link DI-655 Xtreme N Gigabit Router (802.11b/g/N, 300 Mbps, 128 Bit WEP, WPA2)
Synology DS409 4-Bay NAS Enclosure (USB, eSATA)
Netgear WNDR3700 RangeMax Dual Band Wireless Router (802.11b/g/Draft N, WPA, WPA2)