ZyXEL Communications NWA3160-N Guía de usuario Pagina 160

  • Descarga
  • Añadir a mis manuales
  • Imprimir
  • Pagina
    / 350
  • Tabla de contenidos
  • SOLUCIÓN DE PROBLEMAS
  • MARCADORES
  • Valorado. / 5. Basado en revisión del cliente
Vista de pagina 159
Chapter 13 Rogue AP
ZyXEL NWA-3160 Series User’s Guide
160
Figure 96 Rogue AP: Example
13.2.1 “Honeypot” Attack
Rogue APs need not be connected to the legitimate network to pose a severe security threat. In
the following example, an attacker (X) is stationed in a vehicle outside a company building,
using a rogue access point equipped with a powerful antenna. By mimicking a legitimate
(company network) AP, the attacker tries to capture usernames, passwords, and other sensitive
information from unsuspecting clients (A and B) who attempt to connect. This is known as a
“honeypot” attack.
If a rogue AP in this scenario has sufficient power and is broadcasting the correct SSID
(Service Set IDentifier) clients have no way of knowing that they are not associating with a
legitimate company AP. The attacker can forward network traffic from associated clients to a
legitimate AP, creating the impression of normal service. This is a variety of “man-in-the-
middle” attack.
This scenario can also be part of a wireless denial of service (DoS) attack, in which associated
wireless clients are deprived of network access. Other opportunities for the attacker include
the introduction of malware (malicious software) into the network.
Vista de pagina 159
1 2 ... 155 156 157 158 159 160 161 162 163 164 165 ... 349 350

Comentarios a estos manuales

Sin comentarios