Security Basics mailing list archives

RE: wireless access point


From: Luiz Otávio Duarte <lod () acmesecurity org>
Date: Thu, 5 Jun 2003 22:53:34 -0300

Hi,

Is there any way of detecting wireless access point that doesn't broadcast 
the SSID?

Yep, It's possible. I will tell you why:

   We have two probing modes for channels in a 802.11 network.

  - Activing probe - Is when the prober machine exchange some probe frames 
with the AP.

  - RFMON - Radio Frequency Monitor (Passive probe) - when the probe machine 
capture all data in the channel and try to find some SSID (Service Set 
Identification)

  You can find AP that does not broadcast the SSID using any probe technique.

  You can use: Netstumbler, DStumbler, Kismet, Wellenreiter, THC-RUT, 
WEPCrack, AirSnort, .... 

That's All Folks! 

-- 
##
# Luiz Otávio Duarte (lod at acmesecurity dot org)
# www.acmesecurity.org/~lod
##
# ACME! (Computer Security Research)
# www.acmesecurity.org
##
# Unesp - São José do Rio Preto - São Paulo - Brazil
##

---------------------------------------------------------------------------
----------------------------------------------------------------------------


Current thread: