'War Biking' San Francisco Reveals Lousy Wi-Fi Security

Status
Not open for further replies.

Darkk

Distinguished
Oct 6, 2003
253
0
18,930
This really didn't surprise me as most people aren't tech savvy enough to know how to secure their wi-fi router. All they care about is plug it in and make it easy to connect. They don't realize the legal implications when some criminal use their connection to conduct illegal activities.
 

weatherdude

Distinguished
Jan 13, 2010
14
0
18,560
It's unfortunate that many people care little about the security of their tech devices. The conecept of it being a serious risk is simply not there and there's little that can be done other than public education. This is a novice question but is it actually safe to use HTTPS and VPN's on an unsecured Wi-Fi?
 

jasonelmore

Distinguished
Aug 10, 2008
47
0
18,580
All this guy is using is a Raspberry PI running PwnPi running on a iAnker 12,000 Mah External Battery. Using the GPIO interface for his lcd screen on the handlebar.Anyone can do this fairly easy.
 

renaisuru

Estimable
Feb 28, 2014
1
0
4,510
i thought San Fran had free wifi for the entire city... so this would make the test irrelevant and stupid? biased in any way? btw sophos sucks.
 

rpmrush

Distinguished
May 22, 2009
56
0
18,580
To that...Mac address filtering looks like an open WIFI connection until you attempt to connect. I wonder how many unsecured were actually filtered.
 

Camikazi

Distinguished
Jul 20, 2008
745
0
18,930
I use Mac Address filtering. Annoying for new people in the house, but it's a fortress AFAIK.
You can find out what MAC addresses are whitelisted on a router rather easily, it is in no way good security alone. Using MAC filtering plus adding in WPA2 or another encryption with a strong password is much more secure though, but like I said the filtering alone is rather easy to bypass.
 

itsnotmeitsyou

Honorable
Aug 10, 2012
16
0
10,560
The thing about open wifi, whether you are limiting MAC address connections or not, you are still transmitting your data unencrypted. Yeah, you might gain a single ms of reduced latency avoiding encryption, but I anyone can watch what you're watching if it is unencrypted. Fortunately for your bank account those pages are all typically SSL encrypted to begin with. Get some WPA up at least.
 
Status
Not open for further replies.