New type of wireless attack surfaces

By
Follow google news

AirMagnet researchers are tracking a new kind of wireless attack that can flood a company's central authentication server.

AirMagnet, a supplier of Wireless LAN security and management products, has dubbed the new exploit "phlooding," said Rich Mironov, the company's vice president of marketing.


The exploit involves multiple attackers in different locations launching dictionary attacks against the wireless access points of a distributed enterprise by trying a series of usernames and password combinations, he said.

Those requests are sent to a central authentication server, such as an LDAP or RADIUS server, and can flood it with hundreds of incoming login requests per second.

"It potentially could slow down or flood the central authentication server with enough traffic that it keeps other people from getting into the applications they need," Mironov said.

While phlooding is not a critical threat, it does indicate that "there is continuing innnovation on the dark side," he said.

www.airmagnet.com

Add iTnews as your trusted source

Got a news tip for our journalists? Share it with us anonymously here.
Copyright © SC Magazine, US edition
Tags:

Most Read Articles

JB Hi-Fi Group finds new cyber security leader

JB Hi-Fi Group finds new cyber security leader

Services Australia describes fraud, debt-related machine learning use cases

Services Australia describes fraud, debt-related machine learning use cases

Microsoft's July security patch fest brings on the 'bug apocalypse'

Microsoft's July security patch fest brings on the 'bug apocalypse'

Russian spies hunt for routers running legacy protocols with default credentials

Russian spies hunt for routers running legacy protocols with default credentials

Log In

  |  Forgot your password?