DocumentCode :
2003792
Title :
Practical Defenses for Evil Twin Attacks in 802.11
Author :
Gonzales, Harold ; Bauer, Kevin ; Lindqvist, Janne ; McCoy, Damon ; Sicker, Douglas
Author_Institution :
Univ. of Colorado, Boulder, CO, USA
fYear :
2010
fDate :
6-10 Dec. 2010
Firstpage :
1
Lastpage :
6
Abstract :
Open-access 802.11 wireless networks are commonly deployed in cafes, bookstores, and other public spaces to provide free Internet connectivity. These networks are convenient to deploy, requiring no out-of-band key exchange or prior trust relationships. However, such networks are vulnerable to a variety of threats including the evil twin attack where an adversary clones a client´s previously-used access point for a variety of malicious purposes including malware injection or identity theft. We propose defenses that aim to maintain the simplicity, convenience, and usability of open-access networks while offering increased protection from evil twin attacks. First, we present an evil twin detection strategy called context-leashing that constrains access point trust by location. Second, we propose that wireless networks be identified by uncertified public keys and design an SSH-style authentication and session key establishment protocol that fits into the 802.1X standard. Lastly, to mitigate the pitfalls of SSH-style authentication, we present a crowd-sourcing-based reporting protocol that provides historical information for access point public keys while preserving the location privacy of users who contribute reports.
Keywords :
Internet; invasive software; public key cryptography; wireless LAN; 802.11 wireless networks; 802.1X standard; Internet connectivity; constrains access point; context-leashing; evil twin attack; malware injection; open access networks; public keys; reporting protocol; session key establishment protocol; Authentication; Communication system security; Context; Protocols; Public key; Wireless networks;
fLanguage :
English
Publisher :
ieee
Conference_Titel :
Global Telecommunications Conference (GLOBECOM 2010), 2010 IEEE
Conference_Location :
Miami, FL
ISSN :
1930-529X
Print_ISBN :
978-1-4244-5636-9
Electronic_ISBN :
1930-529X
Type :
conf
DOI :
10.1109/GLOCOM.2010.5684213
Filename :
5684213
Link To Document :
بازگشت