Wireless Security: 6 Ways to Stop and Catch Hackers and War Drivers

War drivers are in the business of finding wirelessoccupied until you can track them down. There
access points, documenting them and uploadingare many honeypot programs free and
their locations to the web. Why would someonecommercial that will simulate networks or servers
do this, well for several reasons:First they wantbut are really just recording all the hackers'
free internet access. Next they could just be warinformation and types of attacks.6. Use a RADIUS
driving as a hobby; finally they could be targetingServer - RADIUS servers require Wireless clients
your network for financial gain.to authenticate with a username and password
One of the most asked questions is how do younot just with a PSK (Pre- Shared Key). With out a
stop hackers from trying to hack your wirelessRADIUS server you really don't know who is on
lan and how to catch them in the act.Stoppingyour WLAN. With a RADIUS server you know
Wardrivers:1. Use directional antennas: One of thewho is accessing your WLAN and when they
most under stated uses of directional antennasaccessed it. Also a RADIUS server gives you the
are how they keep your wireless signal withinability of creating policies for times your WLAN
your area of operation. If you are using a Omnican be accessed and other required security
directional antenna that is causing half the signal tofeatures the wireless clients must have enabled
travel outside your building, you have a majortheir computers.Now let's put this all together to
security problem. Also while using your wirelesscatch our hacker. First you are going through your
directional antenna turndown transmit power todaily routine of checking logs on your Kismet IDS
reduce your signal strength if you can.2. Blendserver and you notice the same MAC address
your wireless antennas into your buildingsprobing networks but not joining. Next you check
architecture or keep them low profile. This is notyour help tickets and notice that in one area of
expensive, the whole point is not letting yourthe building clients were having trouble connecting
antennas stick out like a sore thumb so anyoneto the wireless network or they had trouble
driving by doesn't say, wow they have a wirelessstaying connected.
network. Once again the best way to stop peopleFlags go up in your head, so you go over to
from trying to hack your wireless network is toyour honeypot server and check that . You notice
keep it hidden.3. Use Kismet or Airsnort - Make ait was accessed around the same time of the
cheap wireless Intrusion detection system. Use anKismet logs showed a client probing the network.
older desktop computer install Linux, install a USBThe honey pot recorded the MAC address of the
wireless adapter or PCI wireless adapter andWAR driver and the operating system and the
boom you have your wireless war driver stopper.computer name.Next you check your security
Both Kismet and airsnort will alert you whencameras for that time but don't really notice
wireless clients are probing your network. If aanything. So for the next couple days you keep
wireless client is using netstumber and not joiningmonitoring your honey pot server and watch the
networks they will be found by Kismet. Theirhacker try and crack the WLAN and the
wireless adapters MAC address will be logged anddatabase server. The whole process of cracking
other details of the operating system. Most of thewireless encryption is actually two steps. The first
time these could be false hits but if you notice astep is gathering enough packets for your
pattern of the same MAC address probingcracking program to crack. This whole process of
networks you could have hacker issues.4.gathering enough packets can takes days or
Security Cameras - No matter how hard you tryweeks not five minutes. Now once you do have
not to have your signal bleed outside yourenough packets 64 bit WEP encryption can be
operations area it will...to a point. Probe your owncracked in less that five minutes. 128 bit
network as if you were a wardriver. Don't justencryption can take many times longer, WPA
use a standard wireless adapter to find out wherewith TKIP and AES encryption can takes months
you still can detect your network. You will wantto crack.My whole point is that you have some
to use a highly directional antenna to see how fartime to catch your hacker because he will be
away you can detect your own network. Onceback many times, assuming that you already
you know your weak points setup some cheaphave at least the basic security features in place.
security cameras to monitor those areas.5. SetupNow once you have all your logs compiled and
a Honey Pot - Give the Wardriver what theyyour honey pot data you should have a good idea
want, a network to hack. Take an access pointhow the hacker behaves. Check your security
connect it to a standalone switch with anothercameras and you probably notice the same car or
junk computer connected to that switch. Nameperson in the area around that time. Take that
the SSID something sounding important likeinformation to your in house security and tell
server WLAN and name the computer Database.them to watch for that vehicle or person and call
Finally use a weak password or just leave thethe police.If you are lucky security or police will
access point without any security. Script kiddiesspot him and apprehend him. Convicting him or
who say they "hack networks" really are onlyher will be tough but with your compiled logs and
connecting to open wireless lans with no security.video you should have a lot of evidence to help
If you give them a "Important sounding SSIDyour case.Simple and secure wireless solutions.
with a "database to hack" this will keep them