20 Apr

For example, an attacker might be able to inject ransomware or other malware into websites.The weaknesses are in the Wi-Fi standard itself, and not in individual products or implementations.Therefore, any correct implementation of WPA2 is likely affected.To prevent the attack, users must update affected products as soon as security updates become available.By forcing nonce reuse in this manner, the encryption protocol can be attacked, e.g., packets can be replayed, decrypted, and/or forged.The same technique can also be used to attack the group key, Peer Key, TDLS, and fast BSS transition handshake. Concretely, attackers can use this novel attack technique to read information that was previously assumed to be safely encrypted.

The research behind the attack will be presented at the Computer and Communications Security (CCS) conference, and at the Black Hat Europe conference.The attack works against all modern protected Wi-Fi networks.Depending on the network configuration, it is also possible to inject and manipulate data.Each time it receives this message, it will reinstall the same encryption key, and thereby reset the incremental transmit packet number (nonce) and receive replay counter used by the encryption protocol.We show that an attacker can force these nonce resets by collecting and replaying retransmissions of message 3 of the 4-way handshake.