summaryrefslogtreecommitdiff
path: root/wired/old/published/Webmonkey/Monkey_Bites/2007/07.30.07/Fri/blackhat.txt
diff options
context:
space:
mode:
authorluxagraf <sng@luxagraf.net>2020-04-28 10:24:02 -0400
committerluxagraf <sng@luxagraf.net>2020-04-28 10:24:02 -0400
commitf343ef4d92352f9fc442aeb9c8b1abee27d74c62 (patch)
tree4df5c497e7caeab1f8932df98ad3d00fef228a3e /wired/old/published/Webmonkey/Monkey_Bites/2007/07.30.07/Fri/blackhat.txt
parenta222e73b9d352f7dd53027832d04dc531cdf217e (diff)
cleaned up wired import
Diffstat (limited to 'wired/old/published/Webmonkey/Monkey_Bites/2007/07.30.07/Fri/blackhat.txt')
-rw-r--r--wired/old/published/Webmonkey/Monkey_Bites/2007/07.30.07/Fri/blackhat.txt17
1 files changed, 17 insertions, 0 deletions
diff --git a/wired/old/published/Webmonkey/Monkey_Bites/2007/07.30.07/Fri/blackhat.txt b/wired/old/published/Webmonkey/Monkey_Bites/2007/07.30.07/Fri/blackhat.txt
new file mode 100644
index 0000000..62fc1b0
--- /dev/null
+++ b/wired/old/published/Webmonkey/Monkey_Bites/2007/07.30.07/Fri/blackhat.txt
@@ -0,0 +1,17 @@
+Black Hat Report: All Your Wifi Are Belong To Us
+
+The Black Hat conference is in full swing down in Las Vegas and already there's some scary stuff coming out, the BBC [reports][1] that one demonstrated exploit allows the attacker to see cookies via wifi.
+
+Robert Graham of Errata Security has created two programs, named "Hamster" and "Ferret," which sniff wifi traffic and grab cookies as people log in to and out of their webmail or social network accounts.
+
+Although the attack doesn't allow the perpetrator to reset your password, it does allow them near full access to your account.
+
+Naturally, if you're using say GMail and forcing it to connect via https, then you aren't at risk. If you'd like to force secure connections to GMail and your browser supports Greasemonkey, check out Mark Pilgrim's [handy script][3].
+
+If you're not a GMail user, check to see what sort of security options your favorite webmail and other online accounts offer, and remember nearly anything you do on public wifi that isn't to a secure site can be snooped using Graham's tools.
+
+If you'd like to check out Hamster and Ferret, Graham says they'll be available later this week from the [Errata site][2].
+
+[1]: http://news.bbc.co.uk/1/hi/technology/6929258.stm
+[3]: http://erratasec.blogspot.com/
+[2]: http://userscripts.org/scripts/show/1404 \ No newline at end of file