<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
		>
<channel>
	<title>Comments on: Airport Snooping</title>
	<atom:link href="http://adam.rosi-kessel.org/weblog/2007/01/27/airport_snooping/feed" rel="self" type="application/rss+xml" />
	<link>http://adam.rosi-kessel.org/weblog/2007/01/27/airport_snooping</link>
	<description>Technology, law, and personal stories</description>
	<lastBuildDate>Tue, 27 Jul 2010 16:21:10 +0000</lastBuildDate>
	<generator>http://wordpress.org/?v=2.9.2</generator>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
		<item>
		<title>By: gouki</title>
		<link>http://adam.rosi-kessel.org/weblog/2007/01/27/airport_snooping/comment-page-1#comment-2767</link>
		<dc:creator>gouki</dc:creator>
		<pubDate>Sun, 28 Jan 2007 22:05:06 +0000</pubDate>
		<guid isPermaLink="false">http://adam.rosi-kessel.org/weblog/security/airport_snooping.html#comment-2767</guid>
		<description>&lt;p&gt;Ewan Marshall,&lt;/p&gt;

&lt;p&gt;I don&#039;t believe there is a solution. If the homepage of a Access Point is well designed, pretty much everyone will fall for that and give in their password.&lt;/p&gt;

&lt;p&gt;Like bonobo said, even SSL can be tricked. A simple Man-in-the-Middle attack will work.&lt;/p&gt;

&lt;p&gt;What I&#039;ve startad to do what is use ICMP tunneling. Most of  the AP&#039;s are not configured to block ICMP traffic, so I connect to one of them and then use ptunnel to SSH into a computer I own. Lynx, Mutt, IRSSI and NAIM. All work like a charm! (=&lt;/p&gt;
</description>
		<content:encoded><![CDATA[<p>Ewan Marshall,</p>

<p>I don&#8217;t believe there is a solution. If the homepage of a Access Point is well designed, pretty much everyone will fall for that and give in their password.</p>

<p>Like bonobo said, even SSL can be tricked. A simple Man-in-the-Middle attack will work.</p>

<p>What I&#8217;ve startad to do what is use ICMP tunneling. Most of  the AP&#8217;s are not configured to block ICMP traffic, so I connect to one of them and then use ptunnel to SSH into a computer I own. Lynx, Mutt, IRSSI and NAIM. All work like a charm! (=</p>]]></content:encoded>
	</item>
	<item>
		<title>By: gouki</title>
		<link>http://adam.rosi-kessel.org/weblog/2007/01/27/airport_snooping/comment-page-1#comment-1</link>
		<dc:creator>gouki</dc:creator>
		<pubDate>Thu, 01 Jan 1970 00:00:00 +0000</pubDate>
		<guid isPermaLink="false">http://adam.rosi-kessel.org/weblog/security/airport_snooping.html#comment-1</guid>
		<description>&lt;p&gt;Hi Adam,&lt;br/&gt;&lt;br/&gt;Regarding the use of &#039;real&#039; infrastructure-mode for &#039;evil&#039; purposes I&#039;m affraid to tell you that it is already done. A couple of months ago I tried a little something which can be done with some ease on airports.&lt;br/&gt;&lt;br/&gt;It consists of using a WRT54G router and a firmware from the The Shmoo Group[0].&lt;br/&gt;&lt;br/&gt;[0] - http://airsnarf.shmoo.com/rogue_squadron/index.html&lt;/p&gt;
</description>
		<content:encoded><![CDATA[<p>Hi Adam,<br /><br />Regarding the use of &#8216;real&#8217; infrastructure-mode for &#8216;evil&#8217; purposes I&#8217;m affraid to tell you that it is already done. A couple of months ago I tried a little something which can be done with some ease on airports.<br /><br />It consists of using a WRT54G router and a firmware from the The Shmoo Group[0].<br /><br />[0] &#8211; <a href="http://airsnarf.shmoo.com/rogue_squadron/index.html" rel="nofollow">http://airsnarf.shmoo.com/rogue_squadron/index.html</a></p>]]></content:encoded>
	</item>
	<item>
		<title>By: bonobo</title>
		<link>http://adam.rosi-kessel.org/weblog/2007/01/27/airport_snooping/comment-page-1#comment-2</link>
		<dc:creator>bonobo</dc:creator>
		<pubDate>Thu, 01 Jan 1970 00:00:00 +0000</pubDate>
		<guid isPermaLink="false">http://adam.rosi-kessel.org/weblog/security/airport_snooping.html#comment-2</guid>
		<description>&lt;p&gt;Even standard SSL based browser can be easily tricked, even for advance users. The router can run a croaked DNS which redirects everything to its own password capturing site. All it need is a verisign signed cert.&lt;br/&gt;&lt;br/&gt;Who would check if the server is the real one(and how as many banks choose oddball domain names).&lt;/p&gt;
</description>
		<content:encoded><![CDATA[<p>Even standard SSL based browser can be easily tricked, even for advance users. The router can run a croaked DNS which redirects everything to its own password capturing site. All it need is a verisign signed cert.<br /><br />Who would check if the server is the real one(and how as many banks choose oddball domain names).</p>]]></content:encoded>
	</item>
	<item>
		<title>By: Ewan Marshall</title>
		<link>http://adam.rosi-kessel.org/weblog/2007/01/27/airport_snooping/comment-page-1#comment-3</link>
		<dc:creator>Ewan Marshall</dc:creator>
		<pubDate>Thu, 01 Jan 1970 00:00:00 +0000</pubDate>
		<guid isPermaLink="false">http://adam.rosi-kessel.org/weblog/security/airport_snooping.html#comment-3</guid>
		<description>&lt;p&gt;Solution?&lt;br/&gt;&lt;br/&gt;GNU/Linux / Macos&lt;/p&gt;
</description>
		<content:encoded><![CDATA[<p>Solution?<br /><br />GNU/Linux / Macos</p>]]></content:encoded>
	</item>
</channel>
</rss>
