NetStumbler.org Forums

Go Back   NetStumbler.org Forums > WiFi Forums > News
Register Search Today's Posts Mark Forums Read

Reply
 
LinkBack Thread Tools Display Modes
Old 07-29-2002   #1 (permalink)
g0tr00t
Welcome to my nightmare
 
g0tr00t's Avatar
 
Join Date: May 2002
Location: r00ting y0ur b0x.
Posts: 352
Wi Fi Honeypots a New Hacker Trap

More new info.

http://online.securityfocus.com/news/552
__________________
g0tr00t

"Its all fun and games until someone gets killed."
g0tr00t is offline   Reply With Quote
Old 07-29-2002   #2 (permalink)
blackwave
Do I look like I'm joking
 
blackwave's Avatar
 
Join Date: Apr 2002
Location: SoCal, OC
Posts: 4,507
Re: Wi Fi Honeypots a New Hacker Trap

Quote:
Originally posted by g0tr00t
http://online.securityfocus.com/news/552
Yummy Tastes like honey.
__________________
-=BW=-
blackwave is offline   Reply With Quote
Old 07-29-2002   #3 (permalink)
drnazo
I'm special
 
Join Date: May 2002
Location: CO / Springs
Posts: 29
at first this news pissed me off. then I realized that this really won't work very well. after all, it's said in the article that it's purpose is not to set up hackers for prosecution. while this sounds warm and fuzzy, I believe that there is a level of threat to those who get on the network.

One bit of information that will be gathered is the MAC address. We know that this info really doesn't tell them much as most have changed their MAC address to something like "02-0c-de-ad-be-ef"

The other thing that might be gathered is arbitrary names such as NetBIOS names. Pretty vague.

Yet another thing that will be a problem is the fact that they don't have internet access right now. There aren't too many wardrivers that will sit on an access point without internet access for too long before moving on to a more prosperous AP.

The other thing is that they mention "Determining Intent" as a challenge. This seems quite a large challenge.

The other thing is finding you if you are on their network. In the article it says that this guy has "two omni directional high-gain antennas for added reach to the nearby streets and alleys." If the wardriver has some sort of antenna of his own, this increases the distance between him and the AP which then makes it harder to find the wardriver.

I'm interested as to what the results are of this experiment though.
drnazo is offline   Reply With Quote
Old 07-30-2002   #4 (permalink)
blackwave
Do I look like I'm joking
 
blackwave's Avatar
 
Join Date: Apr 2002
Location: SoCal, OC
Posts: 4,507
Quote:
Originally posted by drnazo
I'm interested as to what the results are of this experiment though.
Yeah this secret project should put a URL to have their logs read realtime.. would be neat.
__________________
-=BW=-
blackwave is offline   Reply With Quote
Old 07-30-2002   #5 (permalink)
bwsaloum
Registered Member
 
bwsaloum's Avatar
 
Join Date: Jul 2002
Location: Ohio - The armpit of it all
Posts: 138
Re: Wi Fi Honeypots a New Hacker Trap

Quote:
Originally posted by g0tr00t
More new info.

http://online.securityfocus.com/news/552
About the only thing I agree with in Kevin's article is that WLAN's are horribly insecure... but that's about where it ends.

I've been doing a huge amount of research in regards to stumbling and I will reiterate a statement that I made in an earlier post. It all boils down to a couple of things:


1) Connection to the WLAN
2) Intent

If you look at federal guidlines, it's safe to say that the act of "stumbling" really isn't illegal - IF you follow the law to the letter. However, it could easily be intrepreted as unethical/immoral.

But it all boils down to what you do with the information afterwards.

If you attempt to connect to the WLAN, that's probably illegal.
If you run ethereal, in an attempt to "discover" what is there, that's probably illegal.
If you run a network mapping utility, that's probably illegal
If you surf the net, while using their bandwidth, yeah, you guessed it, it's most probably illegal.

Where you really get into trouble is when you capture data with the intent of either extorting the individual/company you obtained it from OR you use that data for your own financial gain, by selling it to someone else... THAT'S definately illegal.

Don't get me wrong, I'm not on my soapbox... yet, but, it's probably best to just limit your activities to stumbling and nothing more. And if you're running XP, turn off the "auto connect" feature and DHCP acquisition otherwise, you're looking for trouble.

Because, with all the honeypots that are out there it sounds like someone is just itching to make an example of someone who is either tremendously stupid or simply careless...

bws
bwsaloum is offline   Reply With Quote
Old 07-30-2002   #6 (permalink)
sparafina
Registered Member
 
sparafina's Avatar
 
Join Date: May 2002
Location: Julie Speed
Posts: 1,430
Quote:
Originally posted by blackwave


Yeah this secret project should put a URL to have their logs read realtime.. would be neat.
That would make a cool game - sort of an AP tag or wireless geocaching.
sparafina is offline   Reply With Quote
Old 07-30-2002   #7 (permalink)
drnazo
I'm special
 
Join Date: May 2002
Location: CO / Springs
Posts: 29
Quote:
Originally posted by blackwave


Yeah this secret project should put a URL to have their logs read realtime.. would be neat.
Well, considering that we know about the secret project in the first place I think that them reporting the results of it won't be so far fetched.
drnazo is offline   Reply With Quote
Old 07-31-2002   #8 (permalink)
conan
Registered Member
 
Join Date: Jun 2002
Location: 32.59 N, 83.64 W
Posts: 14
Fox and Hound for Wireless

You could set up a access point in a car and have a good old Fox and Hound hunt. You meet at a location, the fox runs and hides and then the hounds have to find them....

We used to have these once and a while in the HAM clubs with the Amatuer Radio Bunch...

Don't forget to bring a directional antenna for searching, all thought signal strength with a omni works also.....

Conan

conan is offline   Reply With Quote
Old 07-31-2002   #9 (permalink)
Thorn
Did you do the math?
 
Thorn's Avatar
 
Join Date: Apr 2002
Location: Villa Straylight
Posts: 10,096
conan, search for "fox hunt", "war rally" and "rallying" Some of us have talked about doing those things. I don't know if anyone has done it yet, but I think we may hear some tales from DCX.

Hmmm... That would be an excellent thread for next week, if we could get some of the participants to post:

"Tales of DCX"
__________________
Thorn
"I'm The Doctor. I'm a Time Lord. I am from the planet Gallifrey in the constellation Kasterborous. I'm 903 years old and I am the man who is going to save your lives and all 6 billion people on the planet below... You got a problem with that?"
Thorn is offline   Reply With Quote
Old 07-31-2002   #10 (permalink)
rogerRabbit
Peripatetic Stumbler
 
rogerRabbit's Avatar
 
Join Date: Jun 2002
Location: Motueka
Posts: 219
Quote:
"Tales of DCX"
I'll wanna see the pix!
rogerRabbit is offline   Reply With Quote
Old 07-31-2002   #11 (permalink)
blackwave
Do I look like I'm joking
 
blackwave's Avatar
 
Join Date: Apr 2002
Location: SoCal, OC
Posts: 4,507
Quote:
Originally posted by rogerRabbit
I'll wanna see the pix!
Certainly you should get more than pictures, how about video footage?
__________________
-=BW=-
blackwave is offline   Reply With Quote
Old 07-31-2002   #12 (permalink)
rogerRabbit
Peripatetic Stumbler
 
rogerRabbit's Avatar
 
Join Date: Jun 2002
Location: Motueka
Posts: 219
Quote:
Originally posted by blackwave
how about video footage?
It's the least we deserve !
rogerRabbit is offline   Reply With Quote
Old 07-31-2002   #13 (permalink)
rogerRabbit
Peripatetic Stumbler
 
rogerRabbit's Avatar
 
Join Date: Jun 2002
Location: Motueka
Posts: 219
. . . just don't make legal history.
rogerRabbit is offline   Reply With Quote
Old 08-27-2002   #14 (permalink)
nashr
Uber Geek
 
nashr's Avatar
 
Join Date: Aug 2002
Location: Virginia
Posts: 1,615
Thumbs up Check out NodeRunner

I think everyone needs to go check out http://www.noderunner.com/ and see the latest wardriving game. This would be awesome in any community. I work in DC and live in VA. Any takers?
nashr is offline   Reply With Quote
Old 08-27-2002   #15 (permalink)
blackwave
Do I look like I'm joking
 
blackwave's Avatar
 
Join Date: Apr 2002
Location: SoCal, OC
Posts: 4,507
Re: Check out NodeRunner

Quote:
Originally posted by nashr
I think everyone needs to go check out http://www.noderunner.com/ and see the latest wardriving game. This would be awesome in any community. I work in DC and live in VA. Any takers?
Nice... hopefully DigitalMDX will be able to cut out a war tag type game out of his spyglass software:
NetStumbler.com Forums > NetStumbler Forums > Windows Version > NSSpyglass - NetStumbler Detection Software
http://forums.netstumbler.com/showth...&threadid=3531
__________________
-=BW=-
blackwave is offline   Reply With Quote
Reply


Thread Tools
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

vB code is On
Smilies are On
[IMG] code is Off
HTML code is Off
Trackbacks are On
Pingbacks are On
Refbacks are On



Google
 
Web NetStumbler.org

All times are GMT -7. The time now is 06:51 PM.


Powered by vBulletin® Version 3.6.8
Copyright ©2000 - 2008, Jelsoft Enterprises Ltd.
Content Relevant URLs by vBSEO 3.0.0 ©2007, Crawlability, Inc.


All messages express the views of the author and are for entertainment purposes only. Netstumbler.org cannot be held responsible for the authenticity of the content or the actions of its members. By using this site and its services, you warrant that you will not post any messages that are discriminating, obscene, hateful, threatening, or otherwise violates any laws and you release Netstumbler.org from any future claims of any kind whatsoever including, but not limited to, addiction and loss of productivity. All forum messages, private messages and any other content are properties of Netstumbler.org. Even if publicly available, personal or copyrighted information are not to be posted without the consent of the owner. Distribution of licensed and copyrighted materials in any way not endorsed by the copyright owner is strictly prohibited. You may not use this site and its resources to spam other sites or individuals or perform any action that violates any law. Items sold or bought in the For Sale forum are sold as is and no warranty or insurance of any kind is provided. Netstumbler.org cannot be held responsible for the outcome of any transactions and no warranty of any kind is provided, either express or implied. Vulgar words are not allowed in the subject lines ; they may be used in the message body in any forum. The Administrator, Super Moderators and Moderators of Netstumbler.org have the right to remove, edit, move or close any thread for any reason and to reveal your identity and other known information in the event of a complaint or legal action arising from any message posted by you.