[kismac] Re: Getting hidden SSID's

  • From: Brad Knowles <brad.knowles@xxxxxxxxx>
  • To: kismac@xxxxxxxxxxxxx
  • Date: Tue, 11 May 2004 23:04:11 +0200

At 1:10 PM -0400 2004/05/11, Ray Haque wrote:

 It may be a little far fetched, but I see many suggestion hidden SSID's
 as a method of security in place of WEP (because of speed loss with WEP).
 I have also seen some hidden SSID networks (around a local University),
 and it would be fun to try and hop on them.   ;-)

Using only hidden SSIDs and no WEP (or other form of encryption) is no real security at all. Anyone with any kind of passive scanner (e.g., KisMac, kismet, BSD airtools, etc...) could sniff all the traffic with trivial ease.

The only time that using hidden SSIDs and no WEP is okay, is if you put a software layer of encryption on top, such as a VPN.

Brad Knowles

"They that can give up essential liberty to obtain a little temporary
safety deserve neither liberty nor safety."
    -Benjamin Franklin, Historical Review of Pennsylvania.

SAGE member since 1995. See <http://www.sage.org/> for more info.

