Yes Man!
Jasager is actually a German word that means "yes man", as in the man who always says "Yes". There is a utility of the same name that sits and listens to the networks your laptop or mobile device tries to connect to, and it simply responds "Yes, that's me. Connect." and your device tries to connect.
This is really only a problem if your device has profiles for open, unencrypted, unpassworded networks on it as if your home network was "Eye of the Tiger" with a WPA2 PSK of "ROCKY", then when Jasager responds "Yes, I'm 'Eye of the Tiger'. Connect." your laptop would try to start the authentication process with this WPA2 network, which it can't possibly know the answer to.
Therefore ... If you've ever connected to a hotel's wifi, or a store's free [open] wifi, or any one of those networks that are open to connect to, but then they prompt you to accept terms/conditions or ask you to pay ... Those guys. Those are the ones that you're vulnerable to.
Imagine this - You're waiting at the bus station, waiting for ... the bus ... when you notice your iPhone's on a wifi network. Upon closer inspection, you're connected to "GoGo InFlight", which as some of you may have guessed is a paid network while you're on an airplane. It's free to connect to, then it asks for credit card details, which opens it up. You know you can't possibly be in an airplane because you're waiting for a bus!
Moral of the story: Delete your open wifi profiles from your devices as soon as you're done with them. Problem solved.
No comments:
Post a Comment