[QCLUG] Recent article on Slashdot and VPN setup

Arron Lorenz arronlorenz@gmail.com
Mon, 13 Oct 2008 10:07:28 -0500


---------------------- multipart/alternative attachment
I read the article you mentioned and the method for cracking is still the
same method they just figured out that if you use hundreds/thousands of
networked pc's that it goes faster.
>From the article:

"The 100-fold increase in speed is achieved with two GeForce GTX280's per
workstation"

Now that is two (2) Nvidia GTX 280's per workstation. They also said you
would need 20 of these workstations.

They also mentioned in the article that:
"This will, of course, mainly affect simple ascii keys. And it will only
work against static keys; anyone using more complicated authentication
schemes will not be at risk for now. But since that takes a couple of extra
minutes when installing, smaller businesses or departments often skip
setting this up."

I hope that no one is using simple keys for their passwords. "abcd1234" will
be cracked quickly whereas "a^b#c$d*1.2,3?4" will take a lot longer.

original article:
http://securityandthe.net/2008/10/12/russian-researchers-achieve-100-fold-increase-in-wpa2-cracking-speed/

So I would say make sure your WPA keys are updated to a good password. Make
sure that you change it regularly (The Ron Popeil "Set it and forget it"
method of security is not good). Also don't put important financial data
over wireless. I also would make sure to not piss off anyone with $20,000 in
top of the line nvidia graphics cards.

Thanks,
Arron



On Mon, Oct 13, 2008 at 9:46 AM, Mark Riedesel <mriedesel@gmail.com> wrote:

> Those ingenious Russians. I plan to be there!
>
>
> On Mon, Oct 13, 2008 at 9:18 AM, agamotto <agamotto@sbcglobal.net> wrote:
>
>>        I read last night that apparently gfx cards can now be used to hack
>> WEP and WPA networks with relative ease.  Anyone coming to the meeting
>> tomorrow care to discuss setting up a VPN with the usual DSL or Cable
>> router/modem setup?  I am a bit confused as to where the VPN sits in terms
>> of setup.
>>
>>        I figured this might be a good discussion topic!
>>
>> _______________________________________________
>> QCLUG mailing list
>> QCLUG@qclug.org
>> http://qclug.org/mailman/listinfo/qclug
>>
>
>


-- 
From:
Arron James Lorenz
Reel to Reel Drive In
http://www.DavenportDriveIn.com
563-579-7046

---------------------- multipart/alternative attachment
An HTML attachment was scrubbed...
URL: http://qclug.org/pipermail/qclug/attachments/a00cd788/attachment.htm

---------------------- multipart/alternative attachment--