计算机技术与发展
計算機技術與髮展
계산궤기술여발전
COMPUTER TECHNOLOGY AND DEVELOPMENT
2015年
1期
143-146
,共4页
夏国卿%李长远%苏子松%陈伟
夏國卿%李長遠%囌子鬆%陳偉
하국경%리장원%소자송%진위
无线局域网%钓鱼攻击%AP识别%设备指纹
無線跼域網%釣魚攻擊%AP識彆%設備指紋
무선국역망%조어공격%AP식별%설비지문
wireless local area network%phishing attack%AP identification%equipment fingerprints
无线局域网因其架设方便、易于扩展的特点获得了较快的发展,而针对无线局域网的攻击形式也逐渐增多。无线钓鱼攻击是指攻击者架设一个伪装的无线接入点,诱骗用户连接从而进一步窃取用户敏感信息或发动其他主动攻击。文中针对无线局域网中的虚假钓鱼AP攻击提出一种基于设备指纹的AP识别方法。通过向AP发送一系列探测请求帧,记录AP对不同帧的响应结果作为识别AP的特征信息,以此区分合法AP与非法钓鱼AP。实验结果表明基于设备指纹的钓鱼AP检测方法能有效地检测出无线钓鱼AP设备。
無線跼域網因其架設方便、易于擴展的特點穫得瞭較快的髮展,而針對無線跼域網的攻擊形式也逐漸增多。無線釣魚攻擊是指攻擊者架設一箇偽裝的無線接入點,誘騙用戶連接從而進一步竊取用戶敏感信息或髮動其他主動攻擊。文中針對無線跼域網中的虛假釣魚AP攻擊提齣一種基于設備指紋的AP識彆方法。通過嚮AP髮送一繫列探測請求幀,記錄AP對不同幀的響應結果作為識彆AP的特徵信息,以此區分閤法AP與非法釣魚AP。實驗結果錶明基于設備指紋的釣魚AP檢測方法能有效地檢測齣無線釣魚AP設備。
무선국역망인기가설방편、역우확전적특점획득료교쾌적발전,이침대무선국역망적공격형식야축점증다。무선조어공격시지공격자가설일개위장적무선접입점,유편용호련접종이진일보절취용호민감신식혹발동기타주동공격。문중침대무선국역망중적허가조어AP공격제출일충기우설비지문적AP식별방법。통과향AP발송일계렬탐측청구정,기록AP대불동정적향응결과작위식별AP적특정신식,이차구분합법AP여비법조어AP。실험결과표명기우설비지문적조어AP검측방법능유효지검측출무선조어AP설비。
Wireless local area network has gained fast development these years due to its being easy to set up and extend. There have more and more WLAN threats. Wireless phishing attack occurs when an attacker sets up a wireless access point disguised to trick the user to connect. Then the attacker can further steal sensitive information or launch other active attacks. In this paper,present an AP fingerprints i-dentification method based on equipment fingerprints for WLAN rogue AP phishing attacks. The proposed method sends a series of probe request frame to the AP,then records the response of different frames as the identification feature information of an AP,in order to distin-guish between the legal AP and illegal fishing AP. Experimental results show that phishing AP detection method based on equipment fin-gerprints can effectively detect wireless phishing AP.