New type of wireless attack surfaces

By
Follow google news

AirMagnet researchers are tracking a new kind of wireless attack that can flood a company's central authentication server.

AirMagnet, a supplier of Wireless LAN security and management products, has dubbed the new exploit "phlooding," said Rich Mironov, the company's vice president of marketing.


The exploit involves multiple attackers in different locations launching dictionary attacks against the wireless access points of a distributed enterprise by trying a series of usernames and password combinations, he said.

Those requests are sent to a central authentication server, such as an LDAP or RADIUS server, and can flood it with hundreds of incoming login requests per second.

"It potentially could slow down or flood the central authentication server with enough traffic that it keeps other people from getting into the applications they need," Mironov said.

While phlooding is not a critical threat, it does indicate that "there is continuing innnovation on the dark side," he said.

www.airmagnet.com

Add iTnews as your trusted source

Got a news tip for our journalists? Share it with us anonymously here.
Copyright © SC Magazine, US edition
Tags:

Most Read Articles

Poor WA gov M365 security led to $71k theft and children's data breached

Poor WA gov M365 security led to $71k theft and children's data breached

US medical device maker Stryker's Microsoft environment attacked

US medical device maker Stryker's Microsoft environment attacked

CBA chief impersonated in global investment fraud on Facebook

CBA chief impersonated in global investment fraud on Facebook

Services Australia describes fraud, debt-related machine learning use cases

Services Australia describes fraud, debt-related machine learning use cases

Log In

  |  Forgot your password?