Friday, July 25, 2025
  • Hype
  • Murai
  • Lipstiq
  • Miss Murai
  • Varnam
  • Moviedash
  • Autofreaks
Lowyat.NET
  • News
    • Lifestyle
    • Computing
    • Hardware
    • Internet
    • Rumours & Leaks
    • Software
  • Forums
    • Kopitiam
    • Tradezone
    • Property Talk
    • Finance & Business
    • Fast and Furious
  • Gaming
    • PC Gaming
    • Console
    • Esports
  • Mobile
    • Apps
    • OS
    • Tablets
    • Phones
    • Telco
      • Celcom
      • DiGi
      • Maxis
      • Tune Talk
      • U Mobile
      • Buzzme
  • Pricelists
    • Compu-zoneUpdated
    • ViewnetUpdated
    • Sri ComputersUpdated
    • StartecUpdated
  • More
    • Automotive Tech
    • Drone
    • Enterprise
    • Entertainment
    • Fashion
    • E-Hailing
    • Wearables
No Result
View All Result
Lowyat.NET
  • News
    • Lifestyle
    • Computing
    • Hardware
    • Internet
    • Rumours & Leaks
    • Software
  • Forums
    • Kopitiam
    • Tradezone
    • Property Talk
    • Finance & Business
    • Fast and Furious
  • Gaming
    • PC Gaming
    • Console
    • Esports
  • Mobile
    • Apps
    • OS
    • Tablets
    • Phones
    • Telco
      • Celcom
      • DiGi
      • Maxis
      • Tune Talk
      • U Mobile
      • Buzzme
  • Pricelists
    • Compu-zoneUpdated
    • ViewnetUpdated
    • Sri ComputersUpdated
    • StartecUpdated
  • More
    • Automotive Tech
    • Drone
    • Enterprise
    • Entertainment
    • Fashion
    • E-Hailing
    • Wearables
No Result
View All Result
Lowyat.NET
No Result
View All Result
Home Security

WiFi WPA2 Encryption Cracked; Android Devices Particularly Vulnerable

by Vijandren
October 16, 2017
894
SHARES
Share on FacebookShare on Twitter

Just to add on to your Monday morning blues, WPA2 (Wi-Fi Protected Access 2), which is the de-facto encryption method used by the majority of Wi-Fi routers around the world, is rumored to have been cracked.

While the actual exploit, called KRACK – short for Key Reinstallation AttaCK, has yet to be released, developers who have reviewed the flaw have confirmed that it is serious and could have widespread implications around the globe.

WiFi traffic between your computer, mobile phone and even right down to your CCTV cameras are encrypted to ensure that nobody else is able to intercept the data while it is transmitted. This is especially critical when sensitive data (for example, passwords) are passed from your device to the sites where it is intended to go.

Fortunately, most sites that handle sensitive data these days run on HTTPS, which means that on top of the WiFi encryption, the data is also encrypted again via a certificate unique to each site.

https://twitter.com/kennwhite/status/919522184384729089

However, there are still millions of sites and services online which are still running on the non-secure HTTP protocol, and a broken WPA2 encryption protocol could essentially allow someone with enough knowledge of the flaw to intercept and decipher all traffic flowing through that particular WiFi network.

US-CERT has become aware of several key management vulnerabilities in the 4-way handshake of the Wi-Fi Protected Access II (WPA2) security protocol. The impact of exploiting these vulnerabilities includes decryption, packet replay, TCP connection hijacking, HTTP content injection, and others. Note that as protocol-level issues, most or all correct implementations of the standard will be affected. The CERT/CC and the reporting researcher KU Leuven, will be publicly disclosing these vulnerabilities on 16 October 2017.

According to Mathy Vanhoef, who disclosed the vulnerabilities earlier today, the attack works against almost all unpatched WiFi networks currently being deployed around the world, and Android devices are notably vulnerable to an “exceptionally devastating” variant of the Wi-Fi attack.

ALSO READ:  Apple AirPlay Vulnerabilities Allow Malware Spread Over WiFi

The exploit itself is patchable by router manufacturers, but at this point in time, only Mikrotik seems to have rolled out a patch for vulnerabilities which first came to light in early August.

The researches also caution against switching to WPA or WEP as these protocols have even less security compared to WPA2. They recommend continuing to use WPA2 until patches are delivered.

For more information, this FAQ on the vulnerability by Aruba Networks is a recommended read – especially if you’re a System or Networks Administrator in charge of networks that require immediate attention.

Filed Under EncryptionExploitkrackWiFiwpa2
Updated 12:19 am, Tue, 17 October 17
http://lowy.at/IoWh7
Share358Tweet224SendShare

Follow us on Instagram, Facebook, Twitter or Telegram for more updates and breaking news. 

No Result
View All Result

TRENDING THIS WEEK

  1. 1
    Apps

    Public Bank’s PB engage MY App No Longer Accessible From 15 August 2025

  2. 2
    Mobile Phones

    HONOR Introduces “Worry-Free” Service For Magic V5

  3. 3
    News

    Four Remanded In RM180 Million Data Centre Bribery Probe

  4. 4
    Automotive

    Tesla Model 3 Highland Updated In Malaysia With More Range And New Features

  5. 5
    Mobile Phones

    HONOR Magic V5 Review: Multitasking Maniac

NETWORK

  • Hype
  • Murai
  • Lipstiq
  • Miss Murai
  • Varnam
  • Moviedash
  • Autofreaks

ABOUT

  • Advertise
  • Careers
  • Privacy Statement
  • Contact Us
  • Editorial Policy
  • Terms & Conditions

©2025 VIJANDREN RAMADASS. ALL RIGHTS RESERVED.

No Result
View All Result
  • News
    • Lifestyle
    • Computing
    • Hardware
    • Internet
    • Rumours & Leaks
    • Software
  • Forums
    • Kopitiam
    • Tradezone
    • Property Talk
    • Finance & Business
    • Fast and Furious
  • Gaming
    • PC Gaming
    • Console
    • Esports
  • Mobile
    • Apps
    • OS
    • Tablets
    • Phones
    • Telco
      • Celcom
      • DiGi
      • Maxis
      • Tune Talk
      • U Mobile
      • Buzzme
  • Pricelists
    • Compu-zone
    • Viewnet
    • Sri Computers
    • Startec
  • More
    • Automotive Tech
    • Drone
    • Enterprise
    • Entertainment
    • Fashion
    • E-Hailing
    • Wearables

©2025 VIJANDREN RAMADASS. ALL RIGHTS RESERVED.

No Result
View All Result
  • News
    • Lifestyle
    • Computing
    • Hardware
    • Internet
    • Rumours & Leaks
    • Software
  • Forums
    • Kopitiam
    • Tradezone
    • Property Talk
    • Finance & Business
    • Fast and Furious
  • Gaming
    • PC Gaming
    • Console
    • Esports
  • Mobile
    • Apps
    • OS
    • Tablets
    • Phones
    • Telco
      • Celcom
      • DiGi
      • Maxis
      • Tune Talk
      • U Mobile
      • Buzzme
  • Pricelists
    • Compu-zone
    • Viewnet
    • Sri Computers
    • Startec
  • More
    • Automotive Tech
    • Drone
    • Enterprise
    • Entertainment
    • Fashion
    • E-Hailing
    • Wearables

©2025 VIJANDREN RAMADASS. ALL RIGHTS RESERVED.