[LEDE-DEV] KRACK (Key Reinstallation Attacks), now patched upstream in hostapd

Nick Lowe nick.lowe at gmail.com
Mon Oct 16 02:48:51 PDT 2017


Referencing https://www.krackattacks.com/

Patches can be found at: https://w1.fi/security/2017-1/ and an
advisory at http://seclists.org/oss-sec/2017/q4/83

Patches can also be found committed at https://w1.fi/cgit/hostap/log/

I think we need to get these patches integrated in to LEDE asap, or
move to the hostapd development branch where there are currently
committed.

A "Key Reinstallation Attacks: Forcing Nonce Reuse in WPA2" paper is
available from: https://papers.mathyvanhoef.com/ccs2017.pdf

Best regards,

Nick



More information about the Lede-dev mailing list