Wi-Fi WPA2 Security Vulnerable to KRACK Attacks: Nearly All Wi-Fi Devices on the Planet Vulnerable

Advertisement
By Abhinav Lal | Updated: 16 October 2017 17:51 IST
Highlights
  • WPA2 security protocol has reportedly been compromised
  • The WPA2 vulnerabilities will be detailed at 5:30pm IST
  • Anyone near your router could eavesdrop on Wi-Fi traffic, say researchers
Wi-Fi WPA2 Security Vulnerable to KRACK Attacks: Nearly All Wi-Fi Devices on the Planet Vulnerable

Security researchers claim to have found high-severity vulnerabilities in WPA2 (Wi-Fi Protected Access II), a popular security protocol used by nearly every Wi-Fi device on the planet. The vulnerabilities could potentially allow anyone near your router to eavesdrop on the Wi-Fi traffic being sent through it.

Details have been revealed on a dedicated site called krackattacks.com, named after the proof-of-concept attack called KRACK (Key Reinstallation Attacks). A total of 10 vulnerabilities have been identified, and were discovered by researcher Mathy Vanhoef of imec-DistriNet, KU Leuven.

"If your device supports Wi-Fi, it is most likely affected," Vanhoef writes on the website.

"Concretely, attackers can use this novel [KRACK] attack technique to read information that was previously assumed to be safely encrypted. This can be abused to steal sensitive information such as credit card numbers, passwords, chat messages, emails, photos, and so on. The attack works against all modern protected Wi-Fi networks," he adds.

Advertisement

All Wi-Fi Devices Vulnerable to KRACK Attacks: Your 10-Point Cheatsheet In Simple English

The attack essentially targets Wi-Fi clients using WPA2 (nearly every Wi-Fi device out there), and compromises the encryption protocol used for communicating with the router. After this, "any data or information that the victim transmits can be decrypted", Vanhoef notes, adding that event HTTPS communication have been bypassed in the past, so it may not be safe either.

Advertisement

He adds that the "attack is exceptionally devastating against Linux and Android 6.0 or higher", though devices running Apple's mobile and desktop operating system, Windows, OpenBSD etc. are all vulnerable. Note that to protect yourself against attacks, it's Wi-Fi clients like laptops, smartphones, smart home devices, and the likes, will need to install security updates.

"Our main attack is against the 4-way handshake, and does not exploit access points, but instead targets clients. So it might be that your router does not require security updates," Vanhoef notes.

Advertisement

The vulnerabilities have been assigned Common Vulnerabilities and Exposures (CVE) identifiers, specifically: CVE-2017-13077, CVE-2017-13078, CVE-2017-13079, CVE-2017-13080, CVE-2017-13081, CVE-2017-13082, CVE-2017-13084, CVE-2017-13086,CVE-2017-13087, and CVE-2017-13088. Further details of these vulnerabilities can be found on the aforementioned website, or the National Vulnerability Database of the US Department of Commerce’s NIST website.

 

For the latest tech news and reviews, follow Gadgets 360 on X, Facebook, WhatsApp, Threads and Google News. For the latest videos on gadgets and tech, subscribe to our YouTube channel. If you want to know everything about top influencers, follow our in-house Who'sThat360 on Instagram and YouTube.

Advertisement

Related Stories

Popular Mobile Brands
  1. Get Discounts on These iPhone Models During the Flipkart Freedom Sale
  2. Flipkart Freedom Day Sale: Best Deals On Samsung Smartphones
  3. Best Laptop Offers During the Ongoing Flipkart Freedom Day Sale
  4. FASTag Annual Pass Launches This Independence Day: Here's How to Apply
  5. Google Pixel 10 Series Price in India Reportedly Leaked Ahead of Launch
  6. iPhone 17 Pro May Start at Roughly Rs. 1,24,900 but Offer 256GB Storage
  7. Qubo Dashcam Pro 3K Review: A Solid Choice for Your Car
  8. Flipkart Freedom Sale: Top Deals On Oppo Smartphones Announced
  9. Rapido Launches Food Delivery App for Delivering Affordable Meals
  10. Realme P4 5G Series Camera Details Revealed Ahead of Launch in India
  1. iPhone 17 Pro May Start at Roughly Rs. 1,24,900 but Offer Double the Base Storage, Claims New Leak
  2. Rapido Launches 'Ownly' Food Delivery App With a Promise of Delivering Affordable Meals Under Rs. 150
  3. Astronomers Detect Black Hole 36 Billion Times the Sun’s Mass, Among Largest Ever Found
  4. NASA Tests Tiltwing Wing Model to Boost Advanced Air Mobility Designs
  5. Self-Adaptive Electrolytes Expand Stability for Fast-Charging High-Energy Batteries
  6. Light Pollution Threatens Global Observatories, Jeopardising Deep-Sky Astronomy
  7. Pretty Thing Now Streaming on Lionsgate Play: Everything You Need to Know About Plot, Cast, and More
  8. Sena: Guardians of the Nation is Now Available to Watch on Amazon MX Player
  9. Mr and Mrs 420 Again Now Available for Rent on Amazon Prime Video: What You Need to Know
  10. Alien Earth Now Streaming on JioHotstar: Everything You Need to Know
Gadgets 360 is available in
Download Our Apps
Available in Hindi
© Copyright Red Pixels Ventures Limited 2025. All rights reserved.