I-WPA3 ayiqinisekanga ukuba bayipeyintile njani, kufuneka ilungiswe ngoku

wpa3 ikrwada

Inkqubo entsha ukukhusela iinethiwekhi zeWi-Fi ezibhengezwe yiWi-Fi Alliance ngoJanuwari 2018. WPA3, kulindeleke ntoni usasazwe ngokubanzi phambi kokuphela kwalo nyaka.

Oku eyakhelwe kumacandelo asisiseko eWPA2 kwaye iya kuzisa amanqaku ongezelelweyo ukwenza lula ukuseta kukhuseleko lweWi-Fi kubasebenzisi kunye nabanikezeli beenkonzo, ngelixa usomeleza ukhuseleko.

Oku kubandakanya izinto ezine ezintsha zenethiwekhi zeWi-Fi zobuqu.

Ngokwe-Wi-Fi Alliance, ezimbini zezi zinto ziya kubonelela ngokhuseleko olomeleleyo nokuba abasebenzisi bakhetha iipassword ezingahambelani neengcebiso ezifanayo ezintsokothileyo.

Ngamanye amagama, I-WPA3 inokwenza uthungelwano lukawonke-wonke lwe-Wi-Fi lukhuseleke ngakumbi.

Kodwa ingxelo entsha ipapashiwe ngabaphandi ababini abavela kwiYunivesithi yaseNew York kunye neYunivesithi yaseTel Aviv, kubonakala ngathi bathi ngenye indlelaNjengakwezinye iindlela zokhuseleko ezisetyenziswa kwiprotocol entsha ngokuqaqambisa ezinye zeengxaki ezinxulumene nazo.

I-WPA3 ayikenziwa kwaye sele i-buggy

Uhlalutyo lwakho, luchaziwe Inqaku ligxile kwi-SAE Handshake WPA3 protocol. Olu hlalutyo ibonise ukuba iWPA3 ichaphazeleka ziziphene zoyilo ezahlukeneyo ngakumbi, iya kuba semngciphekweni "wolwahlulo lokwahlula iphasiwedi"

Nangona kunjalo, olunye lweenguqu ezibaluleke kakhulu olwenziwe ngumgaqo we-WPA3 yi-SAE (UkuQiniseka ngokuQiniseka koontanga) indlela yokuqinisekisa.

Le yindlela ebeka ugxininiso ngakumbi kubungqina, ixesha elibuthathaka apho kufuneka kugadwe inkqubo yokhuseleko ukwahlula phakathi konxibelelwano oluqhelekileyo kunye nokungena ngaphakathi.

Le ndlela intsha, yomelele ngakumbi ithathe indawo yePSK (Ukwabelana ngeSitshixo) ngaphambi kokukhutshwa kweWPA2 ngo-2004.

Le ndlela yokugqibela yafunyanwa yindlela ye-KRACK. I-SAE iyaluchasa olu hlaselo, kunye nokuhlaselwa kwesichazi-magama kusetyenziswa i-cryptanalysis ukufumana iphasiwedi, ngokwe-IEEE Spectrum.

Ngamanye amagama, Ngokwengxelo yaba baphandi babini Ukusuka kwiYunivesithi yaseNew York uMathy Vanhoef, Isiqinisekiso seWPA3 sijolise ekukhuseleni iinethiwekhi zeWi-Fi kwaye inikezela ngeenzuzo ezininzi ngaphezulu kwe-WPA2 eyandulelayo, njengokukhuselwa kuhlaselo lwesichazi-magama ngaphandle kweintanethi.

Nangona kunjalo,, ngokukaVanhoef noRonen, WPA3 ineempazamo ezinkulu, ngakumbi ngokwemiqathango Oomatshini Ukuqinisekiswa kweSAE, ekwabizwa ngokuba yi-Dragonfly.

Ngokwabo, I-Dragonfly iya kuchaphazeleka kuhlaselo olubizwa ngokuba Msgstr "Uhlaselo lokwahlula igama lokugqithisa".

Bacacisa ukuba ezi uhlaselo lukhangeleka njengokuhlaselwa kwesichazi-magama kwaye vumela umchasi ukuba abuye negama eligqithisiweyo ngokusebenzisa gwenxa icala okanye ukuvuza kwamajelo asekondari.

Ukongeza koku, baveze inkcazo epheleleyo nequlethwe yi-WPA3 kwaye bakholelwa ukuba iindlela zokulwa ukuxinana kwe-SAE azikuthinteli ukwala uhlaselo lwenkonzo.

Ukuhlaselwa kwabasebenzi kusebenza njani?

Ngokukodwa Ngokusebenzisa ngaphezulu kwentloko ye-SAE yokukhuselwa kwesandla ngokuchasene namajelo aziwa ngaphambili, isixhobo ngezixhobo ezinqongopheleyo inokulayisha ngaphezulu iprosesa yendawo yokufikelela ingcali.

Ukongeza, baqhuba inani elikhulu lokuhlaselwa kwiindlela ezahlukeneyo ezenza umthetho olandelwayo we-WPA3, ofana nokuhlaselwa kwesichazi-magama ngokuchasene ne-WPA3 xa usebenza kwimowudi yotshintsho, uhlaselo lwecala elisekwe kubuchwephesha obusecaleni kwe-SAE Handshake, kunye uthathe ithuba lokubonisa ukuba lingasetyenziswa njani ixesha elibuyisiweyo kunye ne-cache yolwazi ukwenza "ukwahlulahlula iphasiwedi" ngaphandle kweintanethi.

Oku kuvumela umhlaseli ukuba afumane kwakhona igama eliyimfihlo elisetyenziswa lixhoba.

Okokugqibela, bachaza ukuba bafundile ukubakho kohlaselo lwangexesha ngokuchasana ne-WPA3 SAE.

Ngokwabo, Oku kuqinisekisa ukuba uhlaselo lokuvumelanisa lunokwenzeka kwaye ulwazi lwegama eligqithisiweyo lilahlekile. Ingxelo ichaza olu hlaselo kaVanhoef noRonen kwaye ucebisa ngeendlela zesisombululo ukwenza umgangatho ukhuseleke ngakumbi.

Ngokwesiphelo sabo, iWPA3 iswele ukhuseleko olufunekayo ukuba luqwalaselwe njengomgangatho wokhuseleko wale mihla kwaye kuya kufuneka ukuba iphuculwe ngakumbi ngaphambi kokuba yamkelwe ngokubanzi.


Shiya uluvo lwakho

Idilesi yakho ye email aziyi kupapashwa. ezidingekayo ziphawulwe *

*

*

  1. Uxanduva lwedatha: UMiguel Ángel Gatón
  2. Injongo yedatha: Ulawulo lwe-SPAM, ulawulo lwezimvo.
  3. Umthetho: Imvume yakho
  4. Unxibelelwano lwedatha: Idatha ayizukuhanjiswa kubantu besithathu ngaphandle koxanduva lomthetho.
  5. Ukugcinwa kweenkcukacha
  6. Amalungelo: Ngalo naliphi na ixesha unganciphisa, uphinde uphinde ucime ulwazi lwakho.