ZDNet UK


Skip to Main Content

ZDNet.co.uk - Winner of Best Business Website 2007
  1. Home
  2. News
  3. Blogs
  4. Reviews
  5. Prices
  6. Resources
  7. Community
  8. My ZDNet

 

ZDNet UK RSS Feeds


IT Jobs

Online business Toolkit

Wi-Fi 'wartrappers' snare the drive-by hackers

Peter Judge ZDNet.co.uk

Published: 09 Oct 2002 12:21 BST

  • Email
  • Trackback
  • Clip Link
  • Print friendly
  • Post Comment

A "honeypot" trap consisting of a Wi-Fi-equipped laptop is the latest weapon against drive-by hackers. Set up at the London headquarters of consultants KPMG, the laptop looks to the outside world like a simple wireless access point, but contains monitoring software designed to determine the level of illicit activity.

"We are trying to measure the number of wardrivers, and the level of attack they are attempting," said Michael van Strien of KPMG, revealing the device at the RSA security conference in Paris. He plans to publish some results in the next month or two, which will give an idea of the level of the much discussed threat of "wardriving", where hackers outside an office gain access to unsecured wireless access points. "We're looking at the number of hits and how many try to get network addresses," said van Strien.

The honeypot will be a laptop with a Prism wireless LAN card, which can act as a Wi-Fi access point. The laptop will have no other network connection, but will appear to the hacker as a possible entry point to the corporate network.

Van Strien plans to run several honeypots in different offices across London, and move them about within the buildings, so that if wardrivers become aware of their existence they will not know for sure which are real access points and which are honeypots. If successful, he plans to package the honeypot up as a security tool for corporate Wi-Fi users. "It needs a beautiful user interface," he said.

One conference delegate noted that if the idea takes off, it is easy to imagine that the hacker community will respond with a new warchalking symbol. Perhaps, he remarked, this would be a "Pooh" style honeypot marked on the pavement where a honeypot is suspected.

KPMG also launched a managed security service at the RSA conference. "This goes beyond monitoring services such as those offered by Counterpane or Unisys," said KPMG partner Malcolm Marshall. "People were wary of handing security over to a third party, but those people have done a great job of raising awareness." The service already has six customers but, as with most such services, they are not keen for their names to be made public.

Peter Judge reported from the RSA Conference in Paris.


For all security-related news, including updates on the latest viruses, hacking exploits and patches, check out ZDNet UK's Security News Section.

Have your say instantly, and see what others have said. Go to the Security forum.

Let the editors know what you think in the Mailroom.

  • Email
  • Trackback
  • Clip Link
  • Print friendly Print with Dell

Did you find this article useful?
79 out of 146 people found this useful


Full Talkback thread

0 comments

Company/Topic Alerts

Create a new alert from the list below:










Related Jobs

Clinical Research Associate II - International trials *Field Based*

With numerous sites at various locations in England and Scotland you can be fully set you up from a home office and ensure that broadband, telephone, ...

SAP FI/CO process analyst for multinational company, Gloucester.

Acting as the key point of contact between finance and IT and looking after the data integrity your role day to day will be to analyse the business ...

FI / CO / FICO Consultants / Senior Consultants / Managing Consultants UK (Permanent)

FI / CO / FICO Consultants / Senior Consultants / Managing Consultants UK (Permanent) Location: UK ITJB333 We are currently looking for experienced ...

Sentry Posts Blog

Skype - The Roach Motel

Here is an interesting article from The National Business Review, pointing out once again that you can never delete a Skype account. Never. Period. This is something I am familiar... More

Post a comment

The vPhone: Why Visa Should Go Mobile

The vPhone: Why Visa Should Go Mobile Author: Eric Everson, Founder MyMobiSafe.com With all of the success of Apple’s iPhone, there is a growing case to support a company like Visa... More

Post a comment

The Google Apple Merger: Fantasy or Fu...

The Google Apple Merger: Fantasy or Future? Author: Eric Everson, Founder MyMobiSafe.com Market research suggests that Microsoft controls upwards of 90% of the respective computer-based... More

2 comments

Featured Talkback

I wonder, who needs .asia domain? I cannot imagine, what would be useful for Microsoft.asia? Toyota.asia? Then let's register .europe (if .eu is too short). Or perhaps Microsoft.southamerica, Dell.australiaandnewzealand, Coca-Cola.africa... Sound funny? Then why not just use the global and country domains? Or perhaps it is time to drop the domains at all?

By: LadyRoot

Read full story:
Businesses advised to register .asia domains