[ale] wpa_supplicant on hidden SSIDs

Pete Hardie pete.hardie at gmail.com
Thu Sep 26 13:06:03 EDT 2013


This is going off on a tangent from the original, but given the current
state of cracking tools and the wholesale marketing of such to
non-tech-savvy end users, would
'security through obscurity' still be a bad policy? - if the script kiddies
are using "store-bought" cracking suites that do not check for hidden
SSIDs, etc, but just grab the low-hanging fruit of visible SSIDs, hiding
might be better now that is used to be, when the crackers were also hackers


On Thu, Sep 26, 2013 at 12:54 PM, Brian MacLeod <nym.bnm at gmail.com> wrote:

> -----BEGIN PGP SIGNED MESSAGE-----
> Hash: SHA256
>
> On 9/26/13 12:36 PM, Alex Carver wrote:
> > I know it could be discovered by a determined person, it was more
> > about obscurity than anything else.  Let people aim for the
> > "2WIREnnn" SSIDs floating around the area and skip over the blank
> > one.  I've got MAC filters on there, too (still not perfect but
> > better) so I'll just leave it up for a little while.  If I end up
> > not using the wireless much I may just hide the SSID again.
>
>
> Actually, coming from the cracker state of mind, you're going to look
> more interesting than the others because you're using techniques that
> aren't really helping security, and that would point to other such
> measures in use (whether true or not).  A target who "thinks" he's
> more secure but really isn't is just the kind of place I would want to
> be, because the target may not be as proactive as they should be, and
> I can do more damage from there.
>
> Food for thought.
>
> I think all you'll prevent is attempts to join your network from the
> less initiated, which the other forms of security will easily take of
> as well.
>
>
> Brian
>
> -----BEGIN PGP SIGNATURE-----
> Version: GnuPG/MacGPG2 v2.0.18 (Darwin)
> Comment: Using GnuPG with Thunderbird - http://www.enigmail.net/
>
> iQE4BAEBCAAiBQJSRGaqGxhoa3A6Ly9rZXlzZXJ2ZXIudWJ1bnR1LmNvbQAKCRD5
> XCJY/q4Y6LC3B/96RLPz3WswPiU5BFrm0bjaEpqHm73ESBO6twOuNm88iisATmcS
> TzgBlqP+360lqIoS7CE5mAZK5ANzgTdUQXdURGMQ7QMzPSsK8dtnN6J6kuGZit5w
> TCcoi+2HyaXWdErQpAxxhyhFjjRmBia4I3hIWA9jetluV6930bw3IpDnVOsG8zqq
> fjWdz5jxXkzNi4UHPE2RGG9flTO3CzmkyXEbrzcSP4LnHXHkTHvUZnOrVA7p8rQg
> 2daIkOC6WOm31w0TN0Yidz38wMU+CPT3ZbpgBdpP8KQvN/7CbHRHglu8/A4zm73B
> ChQPkfsZt9J+WRBBIhRmE6cPKr3TXx7psmJp
> =wzqs
> -----END PGP SIGNATURE-----
> _______________________________________________
> Ale mailing list
> Ale at ale.org
> http://mail.ale.org/mailman/listinfo/ale
> See JOBS, ANNOUNCE and SCHOOLS lists at
> http://mail.ale.org/mailman/listinfo
>



-- 
Pete Hardie
--------
Better Living Through Bitmaps
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://mail.ale.org/pipermail/ale/attachments/20130926/47a595cb/attachment-0001.html>


More information about the Ale mailing list