|
||||||||||
|
|
||||||||||
|
If you are like many people, you have a wireless network card in your laptop. Theres a subtle risk that you should know about.
Two Kinds of Wireless Network The usual wireless networks you set up at your home or office are infrastructure networks. They have a piece of equipment (a wireless access point or wireless router) that connects to your Internet connection. Theyre called infrastructure networks because your computer connects to a piece of your network infrastructure. But you can also set up networks between computers when theres no access point involved. These are called ad-hoc networks, and they can be dangerous.
What Happens When You Connect? Your laptop begins by searching the nearby radio airspace for active networks. It first looks for networks youve connected to in the past. If it finds one of these familiar networks, it will connect automatically. Thats why you can usually turn on your computer and be working on your home or office network right away.
If the computer cant find a familiar network, it listens to find out if there are new networks in the vicinity. Heres where things get risky. If you are, say, visiting someone elses office, that new network is probably another infrastructure network and it is likely safe to connect. But it might be an ad-hoc network of computers that are nearby. You have to decide whether you want the laptop to connect to infrastructure networks, ad-hoc networks, or both. The security risk exists when you allow your computer to connect to ad-hoc networks. The problem is that this is commonly how wireless cards are configured by default.
Whats the Problem? Lets say youre on a cross-country airplane, and you decide to open up the laptop to do some work. Unknown to you, theres someone else running a laptop and his computer is announcing that it is running an ad-hoc network (this is known as SSID broadcasting). If your wireless network card comes on in flight, it might connect to this ad-hoc network. Now the attacker in seat 3A might be able to read files on your computer, discover what programs you have installed, or steal information about you. When the attacker turns off his machine, he leaves no trace.
The same thing can happen at coffee shops, restaurants, and any location that has a wireless hotspot. These infrastructure networks often use SSID broadcasting to make it easier for customers to connect to the network. In these situations, you might confuse the attacker's SSID with the real one for the hotspot. It also might happen if an attacker has a computer or PDA nearby -- in a passing car, in the parking lot at work, on the commuter train. Its up to you to protect yourself.
Even if you intend to connect to an infrastructure network, an attacker can overwhelm it with a special antenna. If the attackers signal is stronger than others, and the attacker can guess or discover the SSID, your network card might choose to connect to the attacker, unless you are careful.
What Can You Do About It?
Wireless networks are wonderfully convenient both at home and work. But
you need to be careful to make them secure. Please note: Any trademarks and trade names of others mentioned in this message are the property of their owners, and not Stoney Hill Associates, LLC. We respect the intellectual property of others. The information provided is believed to be reliable, but we cannot guarantee that the procedures and information given here will work correctly for your specific situation.
If you would like help with a computer or software problem you face, contact us. Send an email to request@stoneyhillassociates.com.
Want to subscribe to this newsletter? Just join our mailing list: |
||||||||||
© 2006 Stoney Hill Associates, LLC |