Tuesday, April 28, 2020

Blog 13

This chapter was about Wi-Fi, Bluetooth, and Mobile Devices

Wi-Fi

  • Message integrity code: Uses verifiers that detect any changes to a message's content. 
  • Wigle.net can be used to find out where hotspots are in a geographic area.
  • Aircrack -ng is used on Linux to brute force a password for a Wi-Fi network.
  • Use Wi-Fi predictive planning tools. It can help you place access points, wires, etc.
  • Use RF scanning such as wireless intrusion prevention and wireless intrusion detection.
  • DHCP snooping can be configured to drop DHCP requests that aren't from a trusted source.

Bluetooth

  • BlueSmacking is a bluetooth denial of service attack.
  • Bluejacking is sending unwanted data to a bluetooth device.
  • Bluesnarfing is a way to gain access to a bluetooth device.
  • Bluebugging is an attack that installs a backdoor into a device.
  • Btlejuice is a framework used to perform man-in-the-middle attacks using a bluetooth device.
  • Super Bluetooth Hack is an application that can be used to view files on another bluetooth device. It is an android application and you need to have JBED running on your device in order to use it.

Mobile Devices

  • Rooting is overriding security features on an Android device to modify, remove, or change applications, run apps with admin privileges, change system settings, and gain low-level access to device hardware.
  • Jailbreaking is essentially rooting but on iOS devices. 
  • Hackode: The Hacker's Toolbox is an android application that can perform reconnaissance, scanning, and Google dorking.

Article

The article I read was about a security breach at Nintendo that compromised 160,000 accounts. Attackers hacked a legacy login system. Personal information as well as credit card numbers were leaked. I chose this article because I had gotten an email saying my Nintendo account was accessed from a strange location and I had to go in and change my password.

 https://threatpost.com/nintendo-confirms-breach-of-160000-accounts/155110/

No comments:

Post a Comment