WPS security Vulnerability

Discuss the technical details of Gargoyle and ongoing development

Moderator: Moderators

Post Reply
jaykumar2001
Posts: 27
Joined: Thu Oct 13, 2011 1:16 pm

WPS security Vulnerability

Post by jaykumar2001 »

Can the future release of Gargoyle fix this vulnerability? Should be easy to implement some kind of rate limiting WPN PIN tries, and enable option to disable WPS altogether.

Source: https://threatpost.com/en_us/blogs/atta ... ity-122911
TL-WR1043ND - Gargoyle 1.5.2
DIR-300 - DD-Wrt v24 preSP2 (Build14896)

ispyisail
Moderator
Posts: 5185
Joined: Mon Apr 06, 2009 3:15 am
Location: New Zealand

Re: WPS security Vulnerability

Post by ispyisail »

Nothing is ever perfect, the internet is a bad place

If you need extra security use VPN and or https

Eric
Site Admin
Posts: 1443
Joined: Sat Jun 14, 2008 1:14 pm

Re: WPS security Vulnerability

Post by Eric »

This vulnerability does not affect any version of gargoyle.

This is not a security vulnerability in WPA security (which Gargoyle uses), it's a vulnerability in cracking the PIN code for "WPS", a system some factory firmware uses to make WPA security configuration easier (which Gargoyle does not use).

bbjayo
Posts: 8
Joined: Tue May 03, 2011 2:05 am

Re: WPS security Vulnerability

Post by bbjayo »

Thanks for the clarification Eric.

bb

Post Reply