Thursday, June 15, 2006

Rising Threats to Public Wi-Fi Hotspot Security

Hackers are able to easily exploit vast security vulnerabilities inherent in most public hotspot deployments. What follows are four specific security vulnerabilities along with "best practice" recommendations to overcome them. Wade McMunn, President of Wireless Internet Provider – 82nd Street Wireless, gives guidance on the issues.

Check out what Wade had to say on the following four issues:
Threat #1: The Evil Twin
Threat #2: Unencrypted Wireless Data
Threat #3: Inappropriate Configuration of Wireless Network Settings
Threat #4: Operating System Vulnerabilities


Security Threat #1: The Evil Twin

An "evil twin" can be a laptop in a hacker’s backpack set-up to trick users into logging onto the Internet via their "rogue" connection by mimicking the legitimate hotspot’s network name and login page (where applicable). Once logged on, the hacker can create fake login prompts for popular email and banking applications thereby stealing the user’s most valued login credentials.

What can be done to guard against such attacks? Look for connections that offer an SSL-encrypted login page (evidenced by https versus http in the address bar and a lock in the lower right hand corner of your web browser) that has been verified as authentic by public authorities such as Thawte or Versign. Wireless Internet Provider – 82nd Street Wireless offers such a secure connection.

Security Threat #2: Unencrypted Wireless Data

Most public Wi-Fi hotspots disable wireless data encryption standards such as WEP and WPA as one user’s "secret key" can be used by a hacker to decrypt the entire network’s traffic thus making such keys both ineffective and unnecessarily complex for public deployments. What this means is that a hacker can view your data (email and web pages) as they travel through the air between your laptop and the wireless router using command line utilities found in certain operating systems.

The solution is to use a VPN (Virtual Private Network) which creates a secure encrypted connection between your laptop and the VPN server. You can find such solutions at 82nd Street Wireless.

Security Threat #3: Inappropriate Configuration of Wireless Network Settings

Wireless local area networks were designed so that computers sharing the network could easily access and share data amongst themselves. As such, in many public hotspot deployments, a hacker can obtain direct access to your computer unless you configure your wireless network settings as follows: turn your firewall on, disable file sharing and turn ad-hoc mode off. Those setting can be found in Windows XP via Start > Settings > Network Connections > Wireless Network Connection.

82nd Street Wireless automatically disables others from accessing your device via what is referred to as "client isolation".

Security Threat #4: Operating System Vulnerabilities

As hackers are well know for exploiting operating system vulnerabilities, you’ll want to stay on top of both operating system updates and anti-virus updates which fortunately can be automated through the "automatic update" feature offered by the major brands in both product categories.

By employing the afore-mentioned security tips, your data will stay out of the unscrupulous hands of hackers while you continue to enjoy the benefits of public wireless Internet at your favorite Wi-Fi hotspot location.

Click read more below to see the full news item

No comments: