Researcher: BT Home Hub Wi-Fi security easy to crack

1 comment | 5I like it!
April 14, 2008, 10:49 AM —  IDG News Service — 

A security researcher claims to have found a significant weakness in the wireless
encryption of a DSL home gateway made by Thomson and distributed to broadband
subscribers in the U.K. by network operator BT.

Exploiting the weakness could enable someone to connect to a victim's Wi-Fi
router for malicious purposes such as snooping on their Internet traffic or
hacking other machines using the same network, according to GNUCitizen, a group
of blogging security researchers.

BT's Home Hub ships with default encryption keys to encrypt wireless network
traffic using either WEP (Wired Equivalent Privacy) or WPA (Wi-Fi Protected
Access).

Router manufacturers use an algorithm to generate those WEP and WPA default
keys, wrote Adrian Pastor, one of the GNUCitizen's researchers, on
their blog
. But the algorithm is predictable and only creates a limited
number of easily-guessed keys, Pastor wrote.

"Chances are that if you own a wireless router which uses a default WEP
or WPA key, such keys can be predicted based on publicly-available information
such as the router's MAC [Media Access Control] address or SSID [Service Set
Identifier]," Pastor wrote.

"In other words: it's quite likely that the bad guys can break into your
network if you're using the default encryption key," he wrote.

Pastor wrote that the information was passed to GNUCitizen by Kevin Devine,
who has previously done research into wireless security. Using a software tool
built by Devine in addition to information already known about the router, it's
possible to come up with 80 possible default encryption keys for WEP, Pastor
wrote. Devine created another software tool to try each of those keys on the
router until the valid one is found.

The attack worked on three different BT Home Hubs, Pastor wrote. The researchers,
however, are not publishing the software tools used in the attack.

But BT Home Hub users can take two steps to avoid this kind of attack: Change
the default encryption key, and also opt to use the WPA standard, which is considered
stronger encryption than WEP.

A BT spokesman said in an e-mail that the company is aware of the problem,
but that no customers had reported they had been affected.

"It's important to realise that although it has been possible to demonstrate
a scenario where the hub may be vulnerable, we don't believe it is something
that should affect the majority of BT customers in real life," the spokesman
said.

BT has published a
set of security guidelines
for BT Home Hub users. Like GNUCitizen, BT recommends
changing the default encryption key as well as using WPA encryption rather than
WEP.

IDG News Service

Sign up for ITworld's Daily newsletter
Follow ITworld on Twitter @IT_world

I like it!
Comments

Protect your PC.

Are you searching for antispyware at an affordable price? Then look no further. I have the perfect solution for you. I have found a scan that works as well as Norton and other scans that are more expensive. If you are interested in learning more then you can go to http://www.Search-and-destroy.com and see for yourself what the antispyware solution from Search-and-destroy has to offer. I’m sure that you will be very happy with Search-and-destroy Antispyware because I was and I have tried many different types of scans in the past. It’s a wonderful solution to that will help protect your PC.
| reply
peer-to-peer

Esther Schindler
If the comments are ugly, the code is ugly

claird
SVG a graphics format for 21st century

pasmith
Take Chrome OS for a test spin

Sandra Henry-Stocker
Solaris Tip: Have Your Files Changed Since Installation?

sjvn
64-bits of protection?

jfruh
Android fragments vs. the iPhone monolith

mikelgan
What Gizmodo missed about the Pro WX Wireless USB disk drive

 

Sidekick: The Good News & the Bad News
Either way you look at it Microsoft Data Center management did not follow standards or best practices in this failure. In which case it makes me wonder more about the outsourcing of corporate data much less personal data.
- mburton325

Join the conversation here

The Daily Tip

The Daily TipQuick, practical advice for IT pros. Made fresh daily.

Hot tips:

Want to cash in on your IT savvy? Send your tip to tips@itworld.com. If we post it, we'll send you a $25 Amazon e-gift card.

Newsletters

Subscribe to ITWORLD TODAY and receive the latest IT news and analysis.

I would like to receive offers via email from ITworld partners.
By clicking submit you agree to the terms and conditions outlined in ITworld's privacy policy.
Featured Sponsor

AISO founders envisioned a Web hosting company that was environmentally friendly. While the company employed energy-efficient innovations like solar panels, its infrastructure produced unacceptable power and cooling requirements. Find out how AISO leveraged AMD technology to overcome their challenge in this case study white paper.

In this whitepaper, Scalar explores the opportunity to change the landscape with respect to mission critical databases built around Oracle. Leveraging technologies such as Linux, high-end commodity processing power and Oracle RAC technology to architect, design, build and maintain database infrastructure that delivers maximum availability, reliability and performance at a fraction of traditional cost.

On a typical day, weather.com, the Web site for The Weather Channel in Atlanta, serves up between 15 million and 20 million page views. But in September 2004, when back-to-back hurricanes ransacked Florida, the peak traffic on one day more than tripled: over 70 million page views by more than 7 million unique visitors. Read the full success story now.

Marketplace