Extending Automated Protocol State Learning for the 802.11 4-Way Handshake

被引:26
|
作者
Stone, Chris McMahon [1 ]
Chothia, Tom [1 ]
de Ruiter, Joeri [2 ]
机构
[1] Univ Birmingham, Sch Comp Sci, Birmingham, W Midlands, England
[2] Radboud Univ Nijmegen, Nijmegen, Netherlands
来源
COMPUTER SECURITY (ESORICS 2018), PT I | 2018年 / 11098卷
基金
英国工程与自然科学研究理事会;
关键词
D O I
10.1007/978-3-319-99073-6_16
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
We show how state machine learning can be extended to handle time out behaviour and unreliable communication mediums. This enables us to carry out the first fully automated analysis of 802.11 4-Way Handshake implementations. We develop a tool that uses our learning method and apply this to 7 widely used Wi-Fi routers, finding 3 new security critical vulnerabilities: two distinct downgrade attacks and one router that can be made to leak some encrypted data to an attacker before authentication.
引用
收藏
页码:325 / 345
页数:21
相关论文
共 18 条
  • [1] Security verification of 802.11i 4-way handshake protocol
    Liu, Jing
    Ye, Xinming
    Zhang, Jun
    Li, Jun
    2008 IEEE INTERNATIONAL CONFERENCE ON COMMUNICATIONS, PROCEEDINGS, VOLS 1-13, 2008, : 1642 - +
  • [2] The security proof of a 4-way handshake protocol in IEEE 802.11i
    Zhang, F
    Ma, JF
    Moon, S
    COMPUTATIONAL INTELLIGENCE AND SECURITY, PT 2, PROCEEDINGS, 2005, 3802 : 488 - 493
  • [3] Addressing the Vulnerability of the 4-way Handshake of 802.11i
    Zhao, Songhe
    Shoniregun, Charles A.
    Imafidon, Chris
    2008 THIRD INTERNATIONAL CONFERENCE ON DIGITAL INFORMATION MANAGEMENT, VOLS 1 AND 2, 2008, : 359 - 364
  • [4] 4-way handshake attack analysis and improvement in 802.11i
    Dalabaev, Senbai
    Sun Quanfu
    Li Qinghua
    He Zhuping
    Yue Shilian
    Zukhra, Abdiakhmetova
    2013 CROSS STRAIT QUAD-REGIONAL RADIO SCIENCE AND WIRELESS TECHNOLOGY CONFERENCE (CSQRWC), 2013, : 455 - 458
  • [5] Analysing and Attacking the 4-Way Handshake of IEEE 802.11i Standard
    Alabdulatif, Abdullah
    Ma, Xiaoqi
    Nolle, Lars
    2013 8TH INTERNATIONAL CONFERENCE FOR INTERNET TECHNOLOGY AND SECURED TRANSACTIONS (ICITST), 2013, : 382 - +
  • [6] A Key Refreshing Technique to Reduce 4-way Handshake Latency in 802.11i Based Networks
    Singh, Rajeev
    Sharma, Teek Parval
    2013 4TH IEEE INTERNATIONAL CONFERENCE ON COMPUTER & COMMUNICATION TECHNOLOGY (ICCCT), 2013, : 157 - 162
  • [7] A KRC ENCRYPTION SOLUTION PROTECTING IEEE 802.11I 4-WAY HANDSHAKE FROM DOS ATTACKS
    Li, Gen
    Ma, Maode
    2011 4TH IEEE INTERNATIONAL CONFERENCE ON BROADBAND NETWORK AND MULTIMEDIA TECHNOLOGY (4TH IEEE IC-BNMT2011), 2011, : 586 - 591
  • [8] AUTOMATED HEMATOLOGY ANALYZERS - A 4-WAY COMPARISON
    WARNER, BA
    REARDON, DM
    MARSHALL, DP
    MEDICAL LABORATORY SCIENCES, 1990, 47 (04): : 285 - 296
  • [9] Two-way Handshake protocol for improved security in IEEE 802.11 wireless LANs
    Park, Chang-Seop
    COMPUTER COMMUNICATIONS, 2010, 33 (09) : 1133 - 1140
  • [10] 4-Way Handshake Solutions to Avoid Denial of Service Attack in Ultra Wideband Networks
    Bai, Zhongying
    Bai, Yuan
    2009 THIRD INTERNATIONAL SYMPOSIUM ON INTELLIGENT INFORMATION TECHNOLOGY APPLICATION, VOL 3, PROCEEDINGS, 2009, : 232 - 235