Skip to main content

2024 | OriginalPaper | Buchkapitel

Bl0ck: Paralyzing 802.11 Connections Through Block Ack Frames

verfasst von : Efstratios Chatzoglou, Vyron Kampourakis, Georgios Kambourakis

Erschienen in: ICT Systems Security and Privacy Protection

Verlag: Springer Nature Switzerland

Aktivieren Sie unsere intelligente Suche, um passende Fachinhalte oder Patente zu finden.

search-config
loading …

Abstract

Despite Wi-Fi is at the eve of its seventh generation, security concerns regarding this omnipresent technology remain in the spotlight of the research community. This work introduces two new denial of service (DoS) attacks against contemporary Wi-Fi 5 and 6 networks. Differently from similar works in the literature which focus on 802.11 management frames, the introduced assaults exploit control frames. Both these attacks target the central element of any infrastructure-based 802.11 network, i.e., the access point (AP), and result in depriving the associated stations of any service. We demonstrate that, at the very least, the attacks affect a great mass of off-the-self AP implementations by different renowned vendors, and they can be mounted with inexpensive equipment, little effort, and a low level of expertise. With reference to the latest standard, namely, 802.11-2020, we elaborate on the root cause of the respected vulnerabilities, pinpointing shortcomings. Following a coordinated vulnerability disclosure process, our findings have been promptly communicated to each affected AP vendor, already receiving positive feedback, as well as, at the time of writing, a reserved common vulnerabilities and exposures (CVE) identifier, namely CVE-2022-32666.

Sie haben noch keine Lizenz? Dann Informieren Sie sich jetzt über unsere Produkte:

Springer Professional "Wirtschaft+Technik"

Online-Abonnement

Mit Springer Professional "Wirtschaft+Technik" erhalten Sie Zugriff auf:

  • über 102.000 Bücher
  • über 537 Zeitschriften

aus folgenden Fachgebieten:

  • Automobil + Motoren
  • Bauwesen + Immobilien
  • Business IT + Informatik
  • Elektrotechnik + Elektronik
  • Energie + Nachhaltigkeit
  • Finance + Banking
  • Management + Führung
  • Marketing + Vertrieb
  • Maschinenbau + Werkstoffe
  • Versicherung + Risiko

Jetzt Wissensvorsprung sichern!

Springer Professional "Technik"

Online-Abonnement

Mit Springer Professional "Technik" erhalten Sie Zugriff auf:

  • über 67.000 Bücher
  • über 390 Zeitschriften

aus folgenden Fachgebieten:

  • Automobil + Motoren
  • Bauwesen + Immobilien
  • Business IT + Informatik
  • Elektrotechnik + Elektronik
  • Energie + Nachhaltigkeit
  • Maschinenbau + Werkstoffe




 

Jetzt Wissensvorsprung sichern!

Springer Professional "Wirtschaft"

Online-Abonnement

Mit Springer Professional "Wirtschaft" erhalten Sie Zugriff auf:

  • über 67.000 Bücher
  • über 340 Zeitschriften

aus folgenden Fachgebieten:

  • Bauwesen + Immobilien
  • Business IT + Informatik
  • Finance + Banking
  • Management + Führung
  • Marketing + Vertrieb
  • Versicherung + Risiko




Jetzt Wissensvorsprung sichern!

Anhänge
Nur mit Berechtigung zugänglich
Literatur
1.
Zurück zum Zitat Schepers, D., Ranganathan, A., Vanhoef, M.: On the robustness of wi-fi deauthentication countermeasures. In: Proceedings of the 15th ACM Conference on Security and Privacy in Wireless and Mobile Networks, pp. 245–256 (2022) Schepers, D., Ranganathan, A., Vanhoef, M.: On the robustness of wi-fi deauthentication countermeasures. In: Proceedings of the 15th ACM Conference on Security and Privacy in Wireless and Mobile Networks, pp. 245–256 (2022)
2.
Zurück zum Zitat Chatzoglou, E., Kambourakis, G., Kolias, C.: How is your wi-fi connection today? dos attacks on wpa3-sae. J. Inf. Secur. Appl. 64, 103058 (2022) Chatzoglou, E., Kambourakis, G., Kolias, C.: How is your wi-fi connection today? dos attacks on wpa3-sae. J. Inf. Secur. Appl. 64, 103058 (2022)
7.
Zurück zum Zitat IEEE standard for information technology–telecommunications and information exchange between systems - local and metropolitan area networks–specific requirements - part 11: Wireless lan medium access control (mac) and physical layer (phy) specifications. IEEE Std 802.11-2020 (Revision of IEEE Std 802.11-2016), pp. 1–4379 (2021). https://doi.org/10.1109/IEEESTD.2021.9363693 IEEE standard for information technology–telecommunications and information exchange between systems - local and metropolitan area networks–specific requirements - part 11: Wireless lan medium access control (mac) and physical layer (phy) specifications. IEEE Std 802.11-2020 (Revision of IEEE Std 802.11-2016), pp. 1–4379 (2021). https://​doi.​org/​10.​1109/​IEEESTD.​2021.​9363693
9.
Zurück zum Zitat Kampourakis, V., Chatzoglou, E., Kambourakis, G., Dolmes, A., Zaroliagis, C.: Wpaxfuzz: sniffing out vulnerabilities in wi-fi implementations. Cryptography 6(4), 53 (2022)CrossRef Kampourakis, V., Chatzoglou, E., Kambourakis, G., Dolmes, A., Zaroliagis, C.: Wpaxfuzz: sniffing out vulnerabilities in wi-fi implementations. Cryptography 6(4), 53 (2022)CrossRef
Metadaten
Titel
Bl0ck: Paralyzing 802.11 Connections Through Block Ack Frames
verfasst von
Efstratios Chatzoglou
Vyron Kampourakis
Georgios Kambourakis
Copyright-Jahr
2024
DOI
https://doi.org/10.1007/978-3-031-56326-3_18

Premium Partner