Journal of Information Security Research ›› 2016, Vol. 2 ›› Issue (4): 361-366.

Previous Articles     Next Articles

Man in the Middle Attack in Wireless Network

  

  • Received:2016-04-14 Online:2016-04-15 Published:2016-04-14

无线网络的中间人攻击研究

刘桂泽   

  1. 腾讯科技(北京)有限公司
  • 通讯作者: 刘桂泽
  • 作者简介:高级工程师,主要研究方向为恶意代码分析、移动安全及无线网络安全. alvinliu@tencent.com

Abstract: With the popularity of wireless network, wifi Internet connection has become necessary for the public in everyday life. In a wireless network, due to the invisible network nodes and transmission channels, attacks are more subtle. Among them, the middle attacks (MITM), due to the ease of implementation, high success rate, difficulty to detect, become an attack with the most wide harm in wireless network. In this paper, we will analyze the implementation of the middle attack method in a wireless network, the 80211 protocol analysis, attacks against sslside strategy, and finally give prevention recommendations.

Key words: maninthemiddle, fake AP, http strict transport security, ssl wiretapping

摘要: 随着无线网络的普及,连接WiFi网络已经成为公众日常生活所必须.在无线网络中,由于网络节点和传输通道的无形,攻击方式也更加隐蔽.其中,中间人攻击(MITM)由于易于实施、成功率高、难于察觉等优点,成为无线网络中危害最广的一种攻击方式.就中间人攻击在无线网络中的实施方法、802.11的协议分析、针对ssl的攻击策略等进行研究分析,最后给出防范建议.

关键词: 中间人攻击, 伪造热点, http strict transport security, ssl窃听