随着城市无线局域网热点在公共场所大规模的部署,无线局域网安全变得尤为突出和重要,其中无线钓鱼接入点(AP:AccessPoint)攻击是无线网络中严重的安全威胁之一.本文介绍了无线钓鱼AP攻击存在的威胁,详细分析了无线钓鱼AP攻击的基本原理和实现,阐述了无线钓鱼AP攻击主要目的和构造实现方法.基于无线钓鱼AP攻击的基本原理将无线钓鱼攻击实现方式分为被动式攻击和主动式攻击,并分别从物理层和MAC层详细分析了主动式攻击.对现有无线钓鱼AP检测技术:无线端、有线端和混合式三类嗅探检测技术,重点分析了基于802.11特征指纹的检测技术.对未来工作进行了展望,介绍了下一代无线钓鱼AP检测技术的特征.
With the wide deployment of the urban wireless LAN hotspots in public places, the WLAN security has become particularly prominent and significant, and wireless rogue AP(Access Point) attack is one of the most serious security issues. This paper begins with a brief introduction of the threat of wireless rogue AP attacks. Then we make detailed analysis of the basic principles and the implementation of wireless rogue AP attacks. We discuss the main three objectives and two different configurations for wireless rogue AP attacks. According to the technologies used by wireless rogue AP attacks, the attacks can be divided into passive attacks and active attacks. Active attacks are ana- lyzed from the physical layer and MAC layer. The paper presents and analyzes the existing wireless rogue AP detec- tion methods, which can be divided into., the wireless detection, the wired detection and hybrid detection. We focus on the detection using 802.11 fingerprint. Finally, we look into the future of rogue AP detection and propose features of the next generation of wireless phishing AP detection method.