ActiveSync, TCP/IP and 802.11b Wireless Vulnerabilities of WinCE-Based PDAs

نویسندگان

  • Pascal Meunier
  • Sofie Nystrom
  • Seny Kamara
  • Scott Yost
  • Kyle Alexander
  • Dan Noland
  • Jared Crane
چکیده

Researching the vulnerabilities and security concerns of WinCE-based Personal Digital Assistants (PDAs) in an 802.11 wireless environment resulted in identifying CAN-2001-{0158 to 0163}. The full understanding and demonstration of some vulnerabilities would have required reverse engineering ActiveSync, which was beyond the scope of this research. Moreover, the WinCE IP stack demonstrated unstabilities under a number of attacks, one of which produced symptoms in hardware. The inaccessibility of the 802.11b standard documentation was a source of delays in the research; however, we created three proof-of-concept applications to defeat 802.11b security. One collects valid MAC addresses on the network, which defeats MAC-addressbased restrictions. Another builds a code book using known-plaintext attacks, and the third decrypts 802.11b traffic on-the-fly using the code book.

برای دانلود متن کامل این مقاله و بیش از 32 میلیون مقاله دیگر ابتدا ثبت نام کنید

ثبت نام

اگر عضو سایت هستید لطفا وارد حساب کاربری خود شوید

منابع مشابه

Quantitative Assessment of IP Service Quality in 802.11b Networks

This paper experimentally studies the performance of 802.11b links in terms of round trip time (RTT) under load and TCP throughput in the presence of competing traffic. Our test scenarios are of specific interest to the emerging “hot spot” market, and the use of 802.11b in enterprise networks. We use commercial, standards-compliant 802.11b clients and access points, and demonstrate that CSMA/CA...

متن کامل

How to build a faraday cage on the cheap for wireless TCP/IP fingerprinting

The commonly known security weaknesses associated with the 802.11b wireless standard have introduced a variety of security measures to countermeasure attacks. Using a wireless honeypot, a fake wireless network may be configured through emulation of devices and the TCP/IP fingerprinting of OS network stacks. TCP/IP fingerprinting is one of the most popular methods employed to determine the type ...

متن کامل

RealMedia Streaming Performance on an IEEE 802.11b Wireless LAN

This paper presents experimental measurements of RealMedia audio/video streaming applications on an IEEE 802.11b wireless LAN. Empirical traffic measurements collected using a wireless network analyzer are used to characterize RealMedia streaming workloads, and to assess their impacts on wireless network performance. In addition, we study the relationship between the wireless channel error rate...

متن کامل

A TCP/IP Network Emulator

In this paper, a Linux based framework of TCP/IP network emulator is introduced. Several advantages can be noted. Firstly, the maintenance of large numbers of processors is unnecessary. Secondly, compared with simulators constructed with conceptual codes, our emulator framework makes it easier to test the interaction and behaviour of TCP/IP in real Linux network environments. Thirdly, the wired...

متن کامل

Optimizing Internet Flows over IEEE 802.11b Wireless Local Area Networks: A Performance-Enhancing Proxy Based on Forward Error Correction

The success of the IP and its associated technologies has led to new challenges as we try to use it more widely in everyday communications. In particular, the drive toward wireless and highly heterogeneous infrastructures supporting IP services transparently and independent of the underlying physical layer is a challenge. In this context, this article focuses on introducing an implementation of...

متن کامل

ذخیره در منابع من


  با ذخیره ی این منبع در منابع من، دسترسی به آن را برای استفاده های بعدی آسان تر کنید

برای دانلود متن کامل این مقاله و بیش از 32 میلیون مقاله دیگر ابتدا ثبت نام کنید

ثبت نام

اگر عضو سایت هستید لطفا وارد حساب کاربری خود شوید

عنوان ژورنال:

دوره   شماره 

صفحات  -

تاریخ انتشار 2002