PDA

View Full Version : Beware of the big - bad wolf!!!!


Toyotathon
08-23-2003, 12:31 AM
Windows 2000 and Windows XP come with drivers for several wireless network adapters; installation requires only insertion of one of those adapters. Administrative privileges are not required, as no new drivers must be registered with the operating system. WaveLock assists in enforcing security policies by blocking access to these wireless network adapters, making it harder to circumvent firewalls, filters, proxies, and other required safeguards.


If you or a friend, are running one of the following wireless NWA - Please upgrade ASAP to a Linksys 128 bit wireless device or disable the wireless feature of your device and go to a hard wire system (Linksys - Is my personal choice......I have read, as of this post - no Linksys (properly configured Linksys- that is) WLAN devices have successfully been exploited.

Please be careful and secure your wireless devices - they will soon be national news......!!! Toy

If you have one of the adapters - listed below - I would first recommend - get rid of it......!!! If not - load wavelock below at least!!!

Adapters recognised and blocked by WaveLock

For Windows 2000:

Nortel BayStack 660 in 802.11 Mode
BreezeCOM Wireless LAN PC Card
Symbol Spectrum24 WLAN Adapter
Raytheon RayLink Wireless LAN Adapter
WaveLAN/IEEE PC Card (5 volt)
WaveLAN/IEEE PC Card (3.3 and 5 volt)
WaveLAN/IEEE PC Card (3.3 volt)
WaveLAN/IEEE PC Card (NCR, 5 volt)
WaveLAN/IEEE PC Card (NCR, 3.3 and 5 volt)
Cabletron RoamAbout 802.11 PC Card
Aironet PC2500 DS Wireless PCMCIA LAN Adapter
Aironet PC2500 DS Wireless ISA LAN Adapter (Legacy Mode)
Aironet PC2500 DS Wireless ISAPNP LAN Adapter
Aironet PC3100 FH Wireless PCMCIA LAN Adapter
Aironet PC3100 FH Wireless ISA LAN Adapter (Legacy Mode)
Aironet PC3100 FH Wireless ISAPNP LAN Adapter
Aironet PC3500 FH Wireless PCMCIA LAN Adapter
Aironet PC3500 FH Wireless ISA LAN Adapter (Legacy Mode)
Aironet PC3500 FH Wireless ISAPNP LAN Adapter
Aironet PC4500 DS Wireless PCMCIA LAN Adapter
Aironet PC4500 DS Wireless ISA LAN Adapter (Legacy Mode)
Aironet PC4500 DS Wireless ISAPNP LAN Adapter
Aironet PC4800 DS Wireless PCMCIA LAN Adapter
Aironet PC4800 DS Wireless ISA LAN Adapter (Legacy Mode)
Aironet PC4800 DS Wireless ISAPNP LAN Adapter

For Windows XP:

3Com 3CRWE62092A Wireless LAN PC Card
Sierra Wireless AirCard 300 CDPD Adapter
Nortel BayStack 660 Wireless PCMCIA Adapter
BreezeNET Wireless LAN PC Card
Symbol Spectrum24 WLAN PC Card
Symbol LA-41x1 Spectrum24 Wireless LAN PC Card
Symbol LA-41x3 Spectrum24 Wireless LAN PCI Card
Intel(R) PRO/Wireless 2011 LAN PC Card
Intel(R) PRO/Wireless 2011 LAN PCI Card
Ericsson DSSS Wireless LAN PC Card
Ericsson DSSS Wireless LAN PCI Card
Nortel Networks e-mobility 802.11b Wireless LAN PC Card
Nortel Networks e-mobility 802.11b Wireless LAN PCI Card
3Com 3CRWE737A AirConnect Wireless LAN PC Card
3Com 3CRWE777A AirConnect Wireless LAN PCI Card
Raytheon RayLink WireLess PCMCIA LAN Adapter
Compaq WL110 Wireless LAN PC Card
Dell TrueMobile 1150 Series Wireless LAN Card
Dell TrueMobile 1150 Series Wireless LAN Mini PCI Card
IBM High Rate Wireless LAN PC Card
IBM High Rate Wireless LAN Mini PCI Card
IBM Internal High Rate Wireless LAN PC Card
ELSA Airlancer MC11 High Rate Wireless LAN PC Card
ORiNOCO Wireless LAN PC Card (5 volt)
ORiNOCO Wireless LAN PC Card (3.3 and 5 volt)
ORiNOCO Wireless LAN PC Card (3.3 volt)
Sony PCWA-C100 Wireless PC Card
Toshiba Wireless LAN Card
Toshiba Wireless LAN Mini PCI Card
NCR-WaveLAN Wireless LAN PC Card
Buffalo WLI-PCM-L11 Wireless LAN Adapter
RoamAbout 802.11 DS (Cabletron)
RoamAbout 802.11 DS (Enterasys)
Cisco Wireless ISAPNP LAN Adapter (Generic PC2500 DS)
Cisco Wireless ISAPNP LAN Adapter (Generic PC3100 FH)
Cisco Wireless ISAPNP LAN Adapter (Generic PC3500 FH)
Cisco Wireless ISAPNP LAN Adapter (Generic PC4500 DS)
Cisco Wireless ISAPNP LAN Adapter (Generic PC4800 DS)
Cisco PC2500 DS Wireless PCMCIA LAN Adapter
Cisco PC3100 FH Wireless PCMCIA LAN Adapter
Cisco PC3500 FH Wireless PCMCIA LAN Adapter
Cisco PC4500 DS Wireless PCMCIA LAN Adapter
Cisco PC4800 DS Wireless PCMCIA LAN Adapter
Cisco Systems 340 Series Wireless LAN Adapter
Cisco Systems 350 Series Wireless LAN Adapter
Cisco Systems 340 Series PCI Wireless LAN Adapter
Cisco Systems 350 Series PCI Wireless LAN Adapter
Cisco PC4800 DS Wireless PCI LAN Adapter


Please save and scan the wavelock download before opening, because hackers will be hackers - the link could change and become un-safe!!!! The follow info is info - and I am sharing it (not advertising it) AS ALWAYS - USE AT YOUR OWN RISK!!!!!!



WaveLock

The following program is unsupported. That means:

You alone are responsible for what happens when the program is run.
SecureWave offers no warranties on the program.
SecureWave grants you a free license to use this program within your organization; we do not commit to offer any updates, bug fixes, changes, or anything else.
What you see is what you get; there is no elaborate manual explaining this program.
Details are in the license agreement which will be presented to you when you run the installation program.

That said, you may find WaveLock useful:

Summary

Windows 2000 and Windows XP come with drivers for several wireless LAN ("WLAN") adapters; installation requires only insertion of one of those adapters. Administrative privileges are not required, as no new drivers must be registered with the operating system. WaveLock assists in enforcing security policies by blocking access to these adapters, making it harder to circumvent firewalls, filters, proxies, and other required safeguards.

To install WaveLock, download and uncompress wavelock.zip. Execute the resulting wavelock.msi file (a Windows Installer setup), which installs wavelock.sys. Reboot to load and activate WaveLock.

A list of the wireless network adapters supported out-of-the-box on Windows 2000 and Windows XP can be found below. Note that WaveLock cannot know about and will therefore not block additional drivers installed by administrators.

The Risk

In corporate environments, the network infrastructure is usually carefully secured against attacks from the outside, and abuse from the inside. Yet all these precautions can be worked around if a second network, parallel to the corporate one, can be created. Nothing makes this easier than a wireless network adapter: Notebook computers now often have WLAN adapters built-in; and those that don't can have a PCcard (formerly PCMCIA) adapter installed in literally a flick of the wrist.

These adapters, so far, all lack in security due to deficient WLAN standards -- programs to search for and hack into wireless networks are freely available from a number of web and FTP sites. Especially in networks with security-sensitive information, broadcasting that information to anyone with a notebook, one of those hacking programs, and a few minutes of time is probably undesirable.

In addition to the risk of disclosing sensitive data, WLAN adapters also open computers to the introduction of malicious software, effectively making an end-run around the expensive and carefully maintained firewall that is supposed to prevent just that malicious software from reaching the network.

Like all hardware devices, WLAN adapters require drivers to work. A driver is a program module that "knows" how to communicate with the device; drivers are loaded by Windows upon booting the system or activating a device.

Such drivers can normally only be installed by administrators, which would prevent the installation of WLAN adapters. Unfortunately, that restriction does not apply to the WLAN drivers that are included with Windows 2000 and Windows XP: Anyone can insert one of the WLAN adapters supported by out-of-the-box Windows and have it working in seconds, without being an administrator.

The Solution

WaveLock, when installed, is loaded by Windows before any WLAN adapter drivers. From then on, it examines every device for which Windows tries to load a driver, as well as the drivers themselves.

If a driver (and device) being loaded by Windows are on the list of WLAN adapters that can be installed without requiring administrative privileges, WaveLock will not allow the driver to load, rendering the wireless network adapter inoperative.

We have created a list of the WLAN adapters that Windows may load without an administrator's permission; this is also the definitive list of devices whose use will be prevented by WaveLock. You can find that list in the Readme file that is part of the WaveLock software, and we have duplicated it below for your convenience (Windows 2000, Windows XP).

With no configuration beyond the installation of the WaveLock software itself, and with no negative consequences for any other part of the system, WaveLock is among the easiest solutions that security threats ever had.