×

UPSC Courses

DNA banner

DAILY NEWS ANALYSIS

  • 03 March, 2020

  • 3 Min Read

KrOOk vulnerability

KrOOk vulnerability

Syllabus subtopic: Basics of Cyber Security

Prelims and Mains focus: about KrOOk and its threat

News: At the RSA 2020 security conference in San Francisco, security researchers from Slovak antivirus company ESET will present details about a new vulnerability that impacts WiFi communications.

What is it?

  • Named Kr00k, this bug can be exploited by an attacker to intercept and decrypt some type of WiFi network traffic (relying on WPA2 connections).

  • According to ESET, Kr00k affects all WiFi-capable devices running on Broadcom and Cypress Wi-Fi chips. These are two of the world's most popular WiFi chipsets, and they are included in almost everything, from laptops to smartphones, and from access points to smart speakers and other IoT devices.

  • ESET researchers said they personally tested and confirmed that Kr00k impacts devices from Amazon (Echo, Kindle), Apple (iPhone, iPad, MacBook), Google (Nexus), Samsung (Galaxy), Raspberry (Pi 3) and Xiaomi (Redmi), but also access points from Asus and Huawei.

  • ESET said it believes that more than a billion devices are vulnerable to Kr00k, and they consider this number "a conservative estimate."

What’s Kr00K and how does it work?

  • At the technical level, Kr00k is just a bug, like many other bugs that are being discovered on a daily basis in the software that we all use.

  • The difference is that Kr00k impacts the encryption used to secure data packets sent over a WiFi connection.

  • Typically, these packets are encrypted with a unique key that depends on the user's WiFi password. However, ESET researchers say that for Broadcom and Cypress Wi-Fi chips, this key gets reset to an all-zero value during a process called "disassociation."

  • Disassociation is something that occurs naturally in a WiFi connection. It refers to a temporary disconnection that usually happens due to a low WiFi signal.

  • WiFi devices enter into disassociated states many times a day, and they're automatically configured to re-connect to the previously used network when this happens.

  • ESET researchers say that attackers can force devices into a prolonged disassociated state, receive WiFi packets meant for the attacked device, and then use the Kr00k bug to decrypt WiFi traffic using the all-zero key.

  • This attack scenario allows hackers to actively intercept and decrypt WiFi packets, normally considered to be secure.

  • The good news is that the Kr00k bug only impacts WiFi connections that use WPA2-Personal or WPA2-Enterprise WiFi security protocols, with AES-CCMP encryption.

  • This means that if you use a device with a Broadcom or Cypress WiFi chipset, you can protect yourself against attacks by using the newer WPA3 WiFi authentication protocol.

Not as bad as KRACK

  • All in all, the Kr00k vulnerability should be easier to protect against than KRACK -- a major vulnerability that impacted the WPA2 WiFi protocol and forced most device vendors to switch to using WPA3 by default.

  • A new KRACK attack, named Dragonblood, was later discovered to impact even some newer WPA3 connections, but this newer attack didn't impact the entire WiFi ecosystem as the original KRACK attack did.

  • ESET researchers said they discovered Kr00k while looking into the devastating effects of the KRACK attack; however, the two -- KRACK and Kr00K -- should not be considered the same.

Source: The Hindu


Oceanic Anoxic Event 1a and MASS EXTINCTION

Oceanic Anoxic Event 1a from the Paris Basin (Environment) Paper-3 PMP OAE 1a refers to a period during the Cretaceous Period (145 million years ago and ended 66 million years ago) when Earth's oceans became depleted of oxygen, causing a significant disruption in marine life.  Cause: The event is believed to have been

Viksit Panchayat Karmayogi (Good governance)

Viksit Panchayat Karmayogi (Good governance) Governance GS PAPER-2 PMP Dr. Jitendra Singh launched the ‘Viksit Panchayat Karmayogi’ initiative on Good Governance Day, celebrated to mark the 100th birth anniversary of former Prime Minister Atal Bihari Vajpayee. The initiative, which is part of the broader ‘Prashasan Gaon

Major programmes to control Air Pollution

Major programmes to control Air Pollution National Clean Air Programme? It was launched by the Ministry of Environment, Forests and Climate Change (MoEFCC) in January 2019. It is the first-ever effort in the country to frame a national framework for air quality management with a time-bound reduction target. The

Air pollution and Air quality Measures in India

Air pollution and Air quality Measures in India (Environment) GS Paper-3 P-M-P Air pollution may be defined as the presence of any solid, liquid or gaseous substance including noise and radioactive radiation in the atmosphere in such concentration that may be directly and/or indirectly injurious to humans or other l

Geopolitical Significance of Ports

Geopolitical Significance of Ports (IR)  Act as geopolitical assets: Ports enhance the projection of strategic reach, which helps strengthen the country’s control over important sea and energy supply routes.  E.g. Indian Navy’s staging base at Agalega Islands will enable marine patrols

Toppers

Search By Date

Newsletter Subscription
SMS Alerts

Important Links

UPSC GS Mains Crash Course - RAW Prelims Answer Key 2024