Wireless security not taken seriously

Friday, 4 July 2003, 2:06 PM EST

Wireless is attracting many users for its flexibility and power to deliver quality service at high speed. But the security built into the 802.11 protocol in all its flavours is inadequate on its own, warns security expert Rogan Dawes of Deloitte & Touche Enterprise Risk Services.

Speaking at a joint marketing breakfast designed to spur acceptance of Centrino notebooks, hosted by Intel and NEC, Dawes provided welcome perspective on the security hoodoo surrounding wireless – a topics which along with legalities and business models is still clouding the issue.

Dawes says wireless networks are by definition a broadcast technology, enabling one to pick up the transmission and the content of the network session.

“The Wireless Equivalent Protocol (WEP), which is an integral, albeit optional part of the 802.11 standard, is not worth much on its own,” Dawes says. “It has been badly designed and cannot provide adequate security by itself. It is possible to recover the encryption key once sufficient information is intercepted, from the safety and comfort of your own car, parked outside the wireless premises.”

[ Read more ]

Related items


Pen-testing drone searches for unsecured devices

You're sitting in an office, and you send a print job to the main office printer. You see or hear a drone flying outside your window. Next thing you know, the printer buzzes to life and, after spitting out your print job, it continues to work and presents you with more filled pages than you expected.

Weekly newsletter

Reading our newsletter every Monday will keep you up-to-date with security news.

Daily digest

Receive a daily digest of the latest security news.

Fri, Oct 9th