Wirless Atheros Card Hack

In the news, at the Blackhat 2006 security conference, someone demonstrated that computers with the Atheros wireless card (the one that comes built-in with my MacBook) are vulnerable to being hacked. Is there any way to protect my computer from this despite disabling my wireless card whenever I'm not using my computer?

The jury is still out on this one. The "hack" shown on a blog on the Washington Post website, purportedly showed a MacBook being "exploited" through a third party wireless card. While the so called researchers claimed that the built-in card is vulnerable, they never proved this in their demo.
The demo involved using a Dell laptop as the attacking vehicle. In the video, they claimed that the target machine did not need to be 'associated' with an Access Point (AP); it only needed to be searching for a wireless AP. But they then proceeded to use the MacBook to connect (using an open Terminal shell) to the Dell (the attacking PC) as an open AP!
They then demonstrated connecting to the shell, and creating and then deleting several files, one of which was named 'password', with content of "This is a secret password!" as a "demo" of further vulnerability - an unencrypted text file! None of these activities was anything that would have required either admin or root privileges, which they never claim to have elevated the shell to, anyway.
At no time did they prove or demonstrate that they had the ability to connect to the target computer:
- without using a created shell on the target
- without creating the connection from the target
- if the target was already connected to a wireless network
- while the target's network settings were in default mode
While it is possible that there may be some vulnerability in the third party drivers, the demo gave no indication that the drivers included in the Mac OS for the built-in Airport Extreme card are open to the same issue, in spite of a spurious claim that they "may be". In fact, the demo really did not prove that the third party drivers were vulnerable at all without an existing connection being present first.
My advice to anybody that is worried is to calm down and stop listening to FUD from reporters that have no technical expertise and "researchers" that from their comments in the article, have an axe to grind about Apple and its users.
As always, understand that wireless communication is inherently insecure, simply due to physics. Take reasonable precautions, such as turning your card off when not using wireless, turning your firewall on and not opening unnecessary ports. Use strong passwords and backup your stuff to a safe location. Turn on Filevault, as it will protect your data on a mobile computer.
Above all, step back, take a deep breath, and don't believe everything you read in the newspaper.
MDD dual 1 gig/Macbook 2.0 gig   Mac OS X (10.4.7)  

Similar Messages

  • Was my card hacked ? What should I do ??

    I hv bought an app for 1.99 my card was charged 3.99 was my card hacked??

    That's a question only your credit card company can anwer.  No one here can determine that.

  • At first.Them credit card hack two card account lost, and no place to report its.

    4 time i was victims of fraud, as far its seen a 5 time is in progress now. Everywherey look i cant find place to report its, always the same technique. Your order good.They ship in your country, exp is 2000 kilometre from you home, to some strangerNot always the same name. But same post office. Time and money lost. At first.Them credit card hack two card account lost, and no place to report its. I don’t even no who are involve, certainly not the store them self, goshthou-sen of customers. I can believe its the seller, but some employer.How to report its. Whitout accusing the store(seler) them self. They’re something missingSome fraud is actually in progress, no place to report its untilsis too late,...  

    There are deadlines but you can open a Dispute about a transaction with eBay for 45 days.The Resolution Centre is at the bottom of this page. Your credit card information cannot be accessed if you paid by Paypal. They anonymize your financial information.However, you can open a Dispute about a transaction with Paypal through their Resolution Centre on the left side of your account page. If you believe your credit card has been stolen or otherwise compromised, call the 1-800 number on the back of the card. Explain your problem to the clerk. She will cancel your card and issue a new one.It is possible that she can reverse fraudulent charges to the compromised card. Since English is not your first language, it might be helpful to ask a friend to read and translate any information.  And whatever you are buying, stop. 

  • Support status of atheros cards and Authen. fingerprint reader?

    Hi guys, sorry for the possible waste of your time. I post this just want to know the support status of two specific hardware on my laptop, I've googled but with no result.
    First it's about atheros wireless card:
    03:00.0 Ethernet controller [0200]: Atheros Communications Inc. AR5001 Wireless Network Adapter [168c:001c] (rev 01)
        Subsystem: Atheros Communications Inc. Device [168c:0035]
        Flags: bus master, fast devsel, latency 0, IRQ 17
        Memory at f4300000 (64-bit, non-prefetchable) [size=64K]
        Capabilities: <access denied>
        Kernel driver in use: ath5k
        Kernel modules: ath5k
    This card works totally fine, except that wireless LED on the panel didn't work. I know it's not a big issue, but I just want to figure it out. There is a thread in ath5k-dev mailing list claiming that it's possible to get it work through manually edit led_pin variable in base.c. However it's nearly a year ago and I now cannot find this variable anymore in current kernel codes. Anybody with the same card have your wireless LED working?
    The second one is about finger print reader on my laptop:
    Bus 004 Device 002: ID 08ff:2810 AuthenTec, Inc.
    Thinkwiki.org said(also a year ago) it is not supported yet. What about now?
    Thanks for your input.

    It is possible to work-around the issue, but some manual steps are needed:
    1.  delete "smihlp.sys" from "c:\program files\thinkvantage fingerprint software"
    2.  run "services.msc" and stop the service "Windows Biometric Service"
    3.  delete the file "031D23AD-15AF-4e25-B7B3-DE34893097ED.DAT" from "c:\Windows\system32\WinBioDatabase"
    4.  reboot the computer  (important!!)
    5.  now try to enroll some fingers
    This should make it possible to enroll fingerprint and use it to log into Windows, until the bug can be fixed in some future version of BIOS and/or Fingerprint software.

  • Credit card hacked, thru Safari?

    Greetings. Recently my credit card was hacked for plane tickets on an airline that doesn't fly to or from the U.S. where I live. I'm guessing it was somehow taken when I used my credit card for whatever reason on my Macbook Pro with Snow Leopard.
    I'm wondering what I can do to stop this from happening again. Is it possible there is something on my computer that is allowing someone to see when I use my credit card online? I've never had something like this happen so I'm really just grasping at straws for any way to protect myself. Thanks for any help.

    Has FoxFith says the card could have been compromised many ways, have you reasons to suspect the MacBook. The MacBook could be the weak point if you have been using software with known vulnerabilities but unless you have good reason to suspect it the problem is probably elsewhere.
    if you know the MacBook is definitely the problem, like any other operating system the only sure way is a software reload from known clean sources and a clean formatted hard disk drive to start with.
    if you go down this route make sure you have known tested backups of your user data and reliable sources for the OS and software.
    Edit. Just noticed your second post, just because the card was compromised in the US does not mean that data would be used there, it could have been sold to anywhere in the world.
    hope you get it sorted, not a nice thing to happen to anyone.

  • Credit card hacked thru iTunes?

    I have a credit card that wasn't stolen, and has no balance on it. However, the day after I made an iTunes purchase for $1 (I bought one song), someone tried to charge $2,700 on my card. My credit card company called me to ask if I authorized that charge (I didn't even know about it) and consequently that card has been closed.
    Coincidence?
    Is there any way that credit card information, which I typed into iTunes store the day I bought that song and the day before the fraudulent charge, could have been hacked?

    I'm on here trying to find out if I can track who's account those songs went to. Anybody have any tips?
    There's no way you're going to be able to do that yourself. You'll need to have your credit card company's security division get in touch with Apple; the CC company and law enforcement officials are the only ones to whom Apple would release any such account information (and then perhaps only with a court order).
    Strange that both of you have had the same amount - $2700.00 - illegally charged.

  • New credit card hacked on macbook

    think i have a virus
    new credit card hacked

    You're account having been hacked is not in anyway related to a computer virus.
    If you have not already done so, change your Apple ID password >  Apple ID: Changing your password
    Contact your bank to report any unauthorized transactions.
    For the time being, change your payment method to None >  Mac App Store: Changing your account information
    Why can’t I select None when I edit my payment information?

  • Windows 7 x64 802.11n Wirless LAN Card #2 Randomly stops working

    Hello, I've had a re-occurring issue with my network card over the past 2 weeks, it randomly started after I received a windows update. Often as I'm playing a game / surfing the web I will experience a moment where I lose all connectivity and my wireless
    connection is telling me it is "Limited connectivity". Although this happens if I go to my Device Manager and scan for available hardware changes to my network adapters, my Wireless LAN Card adapter disappears, after scanning a couple more times
    it will return and I will regain all of my connectivity and the issue will not happen again until I reboot my computer. 
    I'm not sure how I can fix this as I have opened my computer to check if the network card was loose, and everything seems like it should be working properly. It is also strange that it began occurring after an update.

    Download and install the latest Wireless LAN Card driver from the website of the manufacturer.
    S.Sengupta, Windows Entertainment and Connected Home MVP
    Turned out that the manufacturer switched websites which must have messed up something with the auto updating, thanks.

  • Anyone's credit card hacked in Apple Store 6/24/10 purchasing iPhone4?

    Anyone have this issue? Today I picked up my iPhone 4 at Upper West Side Store in NYC. A few hours later I received 5 fraudulent charges for songs and albums on iTunes, iTune receipts sent on my email. This is the first time my credit card has been compromised. How could that be? My credit card was swiped in front of me for my legitimate charges. How was security breached?

    This just happened to me with my 3GS iPhine on 6/24/2010. Three charges, each for the same amount, all just under $740.00 each on the same day. Thankfully, my credit card company was very good, unlike Apple, and got a hold of me on the same day to verify. Apple was no help and even claimed my card was not charges and canceled the card. Now I load an iTunes card on my account so if this happens again, and I hear it has happened a lot, again, with no help for Apple, the thieves won't get much. Apple needs to take responsibility for security of its online customers.

  • Atheros card gets an address but can't do anything

    My wireless card is able to get a dhcp address from an AP, but after that I can't do anything. Pinging most anywhere just hangs, and trying to ping the gateway comes up with 100% lost packets. It is, however, the proper gateway.
    Other connections to APs of the same model are okay, and other computers are able to connect to this AP. Mine has been able to connect to it in the past, but I'm not sure what change caused the problem.

    Try removing:
    nat  (outside,inside) source static NETWORK_OBJ_192.168.80.0_24  NETWORK_OBJ_192.168.80.0_24 destination static inside-network  inside-network no-proxy-arp route-lookup
    nat  (outside,outside) source static inside-network inside-network  destination static NETWORK_OBJ_192.168.0.0_16 NETWORK_OBJ_192.168.0.0_16  no-proxy-arp route-lookup

  • Down loaded Itunes and got my credit card hacked anyone else have that problem?

    It would appear from my research that a lot of people are having money stolen from them when they purchase items from ITunes stores has anyone else experienced this problem and if so what if anything is Apple doing about it. I got ripped off for $70.00 over the weekend.

    Hello TroubadourSounds,
    If you are missing music, check out the following article that will assist with looking for the music on your computer.
    iTunes: Finding lost media and downloads
    http://support.apple.com/kb/ts1408
    Thanks for using Apple Support Communities.
    Regards,
    -Norm G.

  • Ath9k Atheros wireless card problem

    Hello everyone!
    A friend of mine just bought an awesome laptop, and wanted me to help him setup a new Archlinux installation.
    Everything went smooth, except for the wireless network card.
    From the Device Manager of Windows Vista of the laptop, i saw it is an Atheros card, with the AR9820 chipset, which is supposed to work just fine with the latest ath9k driver (or the madwifi one).
    The respective lspci -vvv output is:
    14:00.0 Network controller: Atheros Communications Inc. Device 002a (rev 01)
    Subsystem: Askey Computer Corp. Device 7136
    Control: I/O+ Mem+ BusMaster+ SpecCycle- MemWINV- VGASnoop- ParErr- Stepping- SERR- FastB2B- DisINTx-
    Status: Cap+ 66MHz- UDF- FastB2B- ParErr- DEVSEL=fast >TAbort- <TAbort- <MAbort- >SERR- <PERR- INTx-
    Latency: 0, Cache Line Size: 64 bytes
    Interrupt: pin A routed to IRQ 19
    Region 0: Memory at f2100000 (64-bit, non-prefetchable) [size=64K]
    Capabilities: <access denied>
    Kernel driver in use: ath9k
    Kernel modules: ath9k
    It is bizzare that the module of the card is not recognized (in the first line, it does not indicate anything apart from the Atheros thing, no AR9820 sign)..
    The rc.conf of interest part:
    MOD_AUTOLOAD="yes"
    MODULES=(... ath_hal ath9k ...)
    wlan0="dhcp"
    wlan_wlan0="wlan0 essid BlaBla_essid key BlaBla_key"
    INTERFACES=(eth0 wlan0)
    gateway="default gw 192.168.1.1"
    ROUTES=(gateway)
    With this setup, he can connect to the router, acquire a valid IP address (192.168.1.2), but he can ping to nowhere.
    He keeps getting a host unreachable error.
    Any ideas what has gone wrong?
    Thnx!
    Last edited by avoulk (2008-10-22 19:49:37)

    Just something that MAY be related...
    excerpt from Kernel Changelog for 2.6.27.3:
    commit f76f2408cccf448917c8a2a2b775571fd60aee30
    Author: Johannes Berg <[email protected]>
    Date: Thu Oct 16 19:05:12 2008 +0000
    ath9k/mac80211: disallow fragmentation in ath9k, report to userspace
    commit 4233df6b748193d45f79fb7448991a473061a65d upstream
    [b]As I've reported, ath9k currently fails utterly when fragmentation
    is enabled.[/b] This makes ath9k "support" hardware fragmentation by
    not supporting fragmentation at all to avoid the double-free issue.
    The patch also changes mac80211 to report errors from the driver
    operation to userspace.
    That hack in ath9k should be removed once the rate control algorithm
    it has is fixed, and we can at that time consider removing the hw
    fragmentation support entirely since it's not used by any driver.
    Signed-off-by: Johannes Berg <[email protected]>
    Acked-by: Luis R. Rodriguez <[email protected]>
    Signed-off-by: John W. Linville <[email protected]>
    Signed-off-by: Greg Kroah-Hartman <[email protected]>
    Since you're using the same card....thought i'd let you know
    Last edited by TjPhysicist (2008-10-23 01:55:03)

  • Can not use Atheros WLAN card on my Satellite A100-784

    I install the Atheros WiFi driver from the Toshiba drivers folder and I get a message saying "The device is not present or could have been ejected/unplugged from the system-Insert or reinsert now".
    The WiFi switch is switched on while it was being installed but t still does not work.
    Can someone help please...

    Hi,
    so you installed a mini-pci atheros card into your A100? Usually there shouldnt be any problems with that card. I have a couple of machines here at home, and my tecra 9100 which was
    primarly equipped with an intel card, works flawlessly with that atheros AR5005G card.
    Maybe you should re-seat the card and try it again. And try (if available) the old card, to make sure that the slot is working properly.
    greets

  • How forced Atheros wifi card for work ? at fresh installation ?

    hi
    so my arch after 5 yares crashed and i have no chice i need installa new and fresh. but problem is i need internet connection at installation, but i dont have fisicly acces to router to connect cable. i have install Atheros AR 5600 card, but i try start up and no work. i read official guide https://wiki.archlinux.org/index.php/In … e#Wireless i read sub page but its not possible because i need extra package but i cant download anyway... so my question is, can i run atheros card and configure connection from boot live CD ?? without access to internet ??
    thanks

    if iwconfig doesn`t detect your card then arch desn`t support it out-of-box and you need to check if there is any driver, note that some cards may no be supported by linux yet, expecially if new

  • Driver for Atheros AR9565 wifi Soalris 11.1 x86 url?

    Where I can find the driver for Driver for Atheros AR9565 wifi Soalris 11.1 x86
    Regards
    Amin

    Hello,
    The only wifi/Atheros card that is on S11 HCL list is AR242x 802.11 agb Wirless PCI Express Adapter:
    http://www.oracle.com/webfolder/technetwork/hcl/data/components/details/atheros/sol_11_11_11/7066.html
    So I assume there are no official drivers for AR9565 from Oracle.
    Have you tried Atheros (vendor) page?
    HTH,
    Wojciech

Maybe you are looking for

  • My mac is running vert slow all of a sudden

    I reinstalled 10.7.4 last month with a clean install today my mac mini is very slow all of a sudden. I have made no changes and have not installed any software since the clean install. When I click on anything the mouse cursor becomes the rainbow cir

  • Upgrade from 11.2.0.1 to 11.2.0.3

    We are currently running in production Oracle DBMS 11.2.0.1 on RHEL5.6. We have been looking at the CPUs (Critical Patch Update) for 11.2.0.1... but all we can find are CPUs for 11.2.0.2 or 3. This begs a few questions... 1) are there CPUs for 11.2.0

  • White Balance Adjustment question

    I have about 800 images from a wedding, and am now ready to go thru them and adjust the white balance. However, am I missing something? I click on the white balance option, then the dropper, then click on the image to adjust the white balance ... But

  • Service Request Authorizations

    Hi, I would like to ask if there is an equivalent of transaction code SU53 in the Web UI? I am not familiar with the PFCG role set-up and our process that whenever we don't have authorizations to transactions, we send SU53 screen shots to the securit

  • How do you post a Garageband tune on the Internet (also how do you email it

    Please bear with a neophyte on how to do this (see title). I did send it to Itunes, but found nothing in Itunes to either post it or send it in an email. Thanks much!!