Hacker demonstrates risks of using public Wi-Fi

Computer hacker Jonathan Singer wants to remind everyone that not all hackers are of the so-called "black hat" variety who have sinister intent.
"White hat" is what I do in my industry and profession, to help secure networks and bring awareness to make it safer," said Singer.

The longtime computer enthusiast tells Local 6 that one way "black hat" hackers can steal information from smart phones and other mobile devices is through free public Wi-Fi hotspots, like the kind found in coffee shops, gyms, and airports.


A skilled hacker with a laptop and some free software can intercept data being shared on a Wi-Fi network, similar to someone eavesdropping on conversations at a cocktail party.
"It's called 'sniffing,'" said Singer. "Your computer determines whether information (shared on a Wi-Fi network) is meant for you or is meant for somebody else. For the most part, your computer is going to say 'this isn't meant for me' and discard it. What we're saying is, 'everything is meant for me.'
To demonstrate how a hacker can view data on a mobile device, realtor Charlene Larney accessed a free public Wi-Fi hotspot along the Sanford Riverwalk using her iPhone. It did not require her to enter a password.
Larney then navigated her phone's web browser to Realtor.com, a website she visits several times a day. She pulled up a map showing home listings in East Orange County. Within seconds, Singer was able to view that exact same map on his laptop, along with other data Larney's phone was sharing on the public Wi-Fi.
"We can basically reconstruct what her web page looks like," said Singer. "Anything that is appearing on her phone screen when she visits the website, I get a copy of that information, too."
Larney then navigated to another website with her iPhone, where she typed a secret message in a text box. Almost instantaneously, Singer's laptop displayed the phrase, "Hi, how are you?"
"I couldn't believe he could pull it up in just seconds and see everything I'm looking at," said Larney, who had never given much thought to security using public Wi-Fi. "They can see where you're going, where you're traveling to, where you live, your bank information."
To demonstrate how a hacker can create a phony Wi-Fi hotspot, Singer attached a small device with antennas to his laptop called a Wi-Fi Pineapple. With it, he is able to broadcast his own Wi-Fi signal. By naming it something enticing like "Free Wi-Fi," a mobile device user might be tricked into logging onto it.
"It's what we call 'man-in-the-middle'," said Singer. "You can provide that free internet service, but you're monitoring all of the traffic."
With the Wi-Fi Pineapple, Singer can also mimic a legitimate Wi-Fi hotspot and force the mobile device to log on without the user's knowledge.
After a mobile device accesses a Wi-Fi network, such as one at Orlando International Airport, it constantly sends out signals trying to automatically establish contact with that Wi-Fi network again. Using the Wi-Fi Pineapple, Singer is able to see all of the places a mobile device has accessed Wi-Fi previously. He can then create his own Wi-Fi signal using one of the legitimate Wi-Fi hotspot names, tricking the mobile device into logging on to his network.
"Because I'm in control of the wireless access point, and you're connected to my device, I rule that thing," said Singer.
Once a mobile device is connected to a hacker's Wi-Fi network, a phony software update can be sent to the phone, giving the hacker access to text messages, photos, and other private information, according to Singer.
So how can mobile device users protect their data?
“I don't want people feeling hopeless,” said Singer. “With a little bit of awareness they can surf safely online and they can transmit information they consider sensitive, as long as they know what to look for.”
He recommends avoiding free public Wi-Fi that does not require a password. By requiring a password to access the internet, the Wi-Fi provider has also likely enabled encryption on the network, making it more difficult for hackers to view the data being shared.
Big-name companies that provide free Wi-Fi without passwords, such as Starbucks and McDonalds, probably have additional security features in place to protect its customers, according to Singer.
“They're going to invest in the hardware to prevent these kinds of attacks,” he said.
When transmitting sensitive data on a mobile device, Singer makes sure the website uses encryption, usually noted by a padlock icon and green text in the address bar.
“Everybody in the social media game these days has enabled encryption,” said Singer, suggesting sites like Facebook and Instagram have additional security measures in place.
And Singer urges mobile device users to be selective about their online activity while connected to a public Wi-Fi network.
“If its sensitive information, such as banking, personal notes, even medical information, that's generally something you don't want to share in public,” said Singer. “You wouldn't have that conversation in public, so you wouldn't transmit it in public either.”

AAP’s ‘free Wi-Fi Delhi': Here is a reality check

Delhi is filled with hope, and expectation, as it waits for the Aam Aadmi Party to take charge. One of the things on top of the AAP government’s agenda is its promise to make Delhi a Wi-Fi city. A good chunk of Delhi’s youth also seem to be waiting to see this promise become a reality.
However, the idea seems to have trickled down to the Delhi janta in a distorted form. As AAP ideologue Yogendra Yadav says, in a democracy there is a gap between “what you say and what people hear”.
There is no mention of free where the AAP manifesto mentions Wi-Fi. But it says Wi-Fi will be freely available.
Here is a reality check:
1. Will the Wi-Fi be free?
Yes and no. Yes, if you are trying to access government websites and other public services. No if you are trying to download a movie or watch a YouTube video. Like most free public Wi-fi services there will be free service for a limited period, most probably 15 or 30 minutes. There will most probably be an option to get a paid package to use the Wi-Fi beyond this time period. So don’t think of getting rid of your Internet connection for AAP’s free Wi-Fi.
Before Delhi Elections, this was spotted at Pragati Maidan Metro Station. (Source: Debashis Sarkar)
2. Will the entire city be covered?
Yes. But that does not mean you will be able to connect to the network on the go. Delhi the Wi-Fi city will essentially be a city with lots of Wi-Fi hotspots. A good example is Taipei, which has one of the best public Wi-Fi systems in the world. The capital of Taiwan has over 4,000 hotspots. So essentially, the Wi-Fi in Delhi will be limited to public zones.
3. What will it cost the city?
Wi-Fi is not an expensive technology to acquire or execute. AAP MLA Adarsh Shastri says the project will cost around Rs 250 crore as they have envisaged it. The manifesto says the party has already done a feasibility study on consultation with Internet companies.
4. How long will it take?
Shastri says it will take six months from the time the contract is awarded.
5. What does AAP hope to achieve from free Wi-Fi?
The AAP manifesto says a citywide Wi-Fi can “help hugely in bridging the digital divide”. The party thinks it will also provide an “impetus to education, entrepreneurship, business, employment and also tie in with women’s safety initiatives”.
6. Can it really help women’s safety?
While the manifesto says ready access to Wi-Fi will allow the victim of an assault to reach out for help, we are not sure this will be possible unless you have coverage in all places. A lot of such attacks happen in desolate areas, which are beyond even mobile networks.
Note: All information on Group Of Oceninfo is for educational purposes only. 

COMMENTS

Name

©2012 Oceninfo.co.cc,2,10:29 IST,1,2012,1,Adfly Bot,2,AFCEH,1,Ajax security,1,all posts for education purpose only...www.facebook.com/princebhalani,1,Android,1,android developer,1,android phone,1,android phone-1,1,anonymous email,1,Anti-Trojan software,8,Antivirus,1,Apple,1,article marketing,1,at risk,1,attacks,1,australian federal police,1,Auto Clicker,1,Auto surfer,1,backtrack link,2,Bank Hacking,2,BCMSN,2,BIOS Update,1,Blockchain,1,Blog and tagged Ransomware,1,boot fast...,1,boot xp faster,1,Business Deals,1,Bypass Antivirus and Hack Window Systems,1,CCIE,2,CCNA,2,CCNP,2,CEH,2,challenge-response system,1,Changing Root Bridge Election Results,2,code,2,commands,1,company deals,1,Computer Hacking,3,Connect,1,cookie stealing,3,Country,1,Crack,1,Credit Card Fraud,2,credit cards,1,Cryptography,1,cyber cell updated,1,cyber security,1,DATA CARD TRICK,1,delhi,1,Digital Marketing,1,direct admission in any colleges,2,Direct Link,3,Directory Traversal Attacks,1,Dos and Ddos,1,DotNetNuke Remote File Upload Vulnerability,1,Earn Lots of money,3,EARN MONEY PART2,1,earnings in$,1,email hacking,4,email spoofing,2,Er Prince Bhalani jobs,1,Ethical Hacker job,1,ethical hacking,8,exploit,1,facebook autoliker,1,Facebook tricks,3,Fake Mail,1,fake sms,1,FB hackz,1,FBI,1,FBI HACKERS,2,FBI Jobs,2,featured,6,Finger scan,1,fingerprint Hacking,1,format without pain,1,Free Download,1,Free Flash Templates,1,free hacking book,5,Free Recharge,1,free sms,2,Freebeacon,1,friendship day,2,friendship day image,2,friendship image,1,Future Computer,2,future of hacking,1,Gadgets,1,good clean fun,1,google,3,Google Ads,1,google adsense account,1,Google hacking,3,google hacks,1,google search,1,hack,2,hack the world,2,HACK WEBSITES USING SQL INJECTION,2,hacker,1,hacker uni,1,hacker/LPT/etc,1,hackers,2,Hackerz info,1,hacking,4,hacking games,1,hacking matterial,1,HACKING OFER,1,hacking softwares,1,hacking tools,2,Hacking with Mobile phones,1,HackingTeacher Security Solutions,1,hacks,1,hijack,1,history of hacking,1,How to,8,How to Hack,37,how to play,1,How to sniff,1,html,1,HTTPS/SSL secured sites,1,I LOVE YOU VIRUS,1,i-phone hacking,1,ICITAM 2012,1,iCloud Era,1,In Flow,1,indian cyber cell,4,information security,1,interesting,1,inurl:fcklinkgallery.as,1,IP hacks,1,iphone,1,IT Act,1,IT Decision Maker,1,IT Implem_App/LOB Spec,1,IT Implem_Desktop/EndUser Spec,1,IT Implem_Infrastructure Spec,1,IT Implem_IT Generalist and IT Manager.,1,it security,1,java,1,jobs for ethical hacker,3,jobs in hacking,5,Joe job,1,Just for education purpose only,1,Kaspersky,1,kaspersky crack 2013,1,keyboard hacking,1,keyloggers,1,keywords,1,Laptop Tracking,1,Laws of computer crime,1,Learn Cracking,1,Learn Website Hacking,7,Linkbucks Bot,1,Macromedia Flash,1,make some rules...|||_|||,1,malicious code,1,Malware,1,malware analysis,1,man in the middle attack (LAN),1,master,1,master list,1,metasploit,3,Microsoft scams,1,mobile,1,mobile recharge,1,moblie phone hacking,1,munging,1,network hack,1,Network Sniffers,1,new command set,1,new projects,1,nmap,1,No Survey,1,not infrequent,1,online scanners,1,paisa live hack,1,panetration for educational purpose only,1,Parental Controls,1,password hacking,4,Password sniffing with arp poisoning,1,PC TIPS,1,PE_PARITE (Trend Micro),1,penetration testing,1,pharming,1,phishing,1,phone hacking charged,1,PHP,1,pin ball,1,Play WMV Files,1,Press Trust of India / New Delhi Aug 15,1,Prime minister,1,prince bhalani,1,princebhalani,1,Professional job in FBI,1,Professional Penetration Testing,1,Programming,1,Programming of virus,2,protect my pc against hackin,1,proxy list by http,1,Proxy SOCKS Port,1,R-Admin With Key,1,Radmin,1,RAW Jobs,1,Real Hackers vs fake ethical hackers. ..:),1,Register of Known Spam Operations (ROKSO),1,repair corrupt hard disk,1,RFT,1,Robbery,1,Rupert Murdoch,1,SAMPLE,1,Sample dynamic flash template from TM website,1,Scams,2,Scanned Vulnerabilities,1,SEA,2,search engine hacking,1,Search Operators,1,Security,2,Security breach,1,security code brack,1,SEM,4,SEO,112,SEO Mistakes,1,SEO TOOLS,1,SEO Tricks,3,SERM,1,SERP,1,Session Hijacking,4,SET,1,shell commands...,1,shell list with download,1,SITES,1,Smart Home,1,Smartphones,1,SMM,1,SMO,2,sms spoofing,1,SMTP Servers,1,Sniffing passwords,1,Sothink SWF Decompiler,1,spam cocktail (or anti-spam cocktail),1,spam trap,1,spear phishing,2,SQL hacking,2,SQL Injection Attacks by Example,2,SSL,1,SSL Analysis,1,starting of help,1,System Information,1,System Restore,1,Tablet in 1000,1,Tablets,1,Temporary Email Service,1,time need,1,timer,1,tracing,1,Traffic,3,tricks,5,Tricks and Tips,1,Trojan,1,Trojan tools,1,Trojans and Backdoors,2,trojon,7,Turbo C++,1,UK phone hacking,1,UK phone hacking arrest,1,USA JOBS,4,Virus,2,virus writing,2,VPN,1,vulnerabilities,1,vulnerability assessment,1,W32/Pate (McAfee),1,W32/Pinfi (Symantec),1,Washington,2,web hacking,6,web security,1,Website Development,1,Website Hacking,3,White House,1,wifi hacking,3,Win32 : parite (Avast),1,Win32.Parite (Kaspersky),1,Win32/Parite,1,windows,2,Windows 8 event for IT Professionals,1,wirless hack,1,WordPress,1,WordPress hacking,1,working with Virus and worm,9,XP Hacking,1,xp hacking-1,1,XP part 3,1,xss hacking,1,
ltr
item
Group Of Oceninfo: Hacker demonstrates risks of using public Wi-Fi
Hacker demonstrates risks of using public Wi-Fi
Hacker demonstrates risks of using public Wi-Fi
https://blogger.googleusercontent.com/img/b/R29vZ2xl/AVvXsEgPBGPnuv-Hi5BjoftCBXexHDn7kktaISqyuqBdv-ybhiIlT9E985vns0eeygKLCRPDKayPtC2k8FEXSZsNR75TkxBFeqnkwjTb_UGQdLFpPTa8BEXEBeRWApjmYdajmUfGpAvrozOeT_7E/s1600/danger-free-wi-fi.jpg
https://blogger.googleusercontent.com/img/b/R29vZ2xl/AVvXsEgPBGPnuv-Hi5BjoftCBXexHDn7kktaISqyuqBdv-ybhiIlT9E985vns0eeygKLCRPDKayPtC2k8FEXSZsNR75TkxBFeqnkwjTb_UGQdLFpPTa8BEXEBeRWApjmYdajmUfGpAvrozOeT_7E/s72-c/danger-free-wi-fi.jpg
Group Of Oceninfo
https://oceninfo.blogspot.com/2015/02/hacker-demonstrates-risks-of-using.html
https://oceninfo.blogspot.com/
https://oceninfo.blogspot.com/
https://oceninfo.blogspot.com/2015/02/hacker-demonstrates-risks-of-using.html
true
6415817773321450103
UTF-8
Loaded All Posts Not found any posts VIEW ALL Readmore Reply Cancel reply Delete By Home PAGES POSTS View All RECOMMENDED FOR YOU LABEL ARCHIVE SEARCH ALL POSTS Not found any post match with your request Back Home Sunday Monday Tuesday Wednesday Thursday Friday Saturday Sun Mon Tue Wed Thu Fri Sat January February March April May June July August September October November December Jan Feb Mar Apr May Jun Jul Aug Sep Oct Nov Dec just now 1 minute ago $$1$$ minutes ago 1 hour ago $$1$$ hours ago Yesterday $$1$$ days ago $$1$$ weeks ago more than 5 weeks ago Followers Follow THIS CONTENT IS PREMIUM Please share to unlock Copy All Code Select All Code All codes were copied to your clipboard Can not copy the codes / texts, please press [CTRL]+[C] (or CMD+C with Mac) to copy