Computer Engineering and Applications ›› 2013, Vol. 49 ›› Issue (21): 87-89.

Previous Articles     Next Articles

Security analysis of WPS in WLAN

LIU Yonglei1,2, JIN Zhigang3   

  1. 1.School of Computer Science and Technology, Tianjin University, Tianjin 300072, China
    2.Department of Electronic and Information, Tianjin Institute of Urban Construction, Tianjin 300384, China
    3.School of Electronic and Information Engineering, Tianjin University, Tianjin 300072, China
  • Online:2013-11-01 Published:2013-10-30

无线局域网WPS安全性分析

刘永磊1,2,金志刚3   

  1. 1.天津大学 计算机科学与技术学院,天津 300072
    2.天津城市建设学院 电子与信息工程系,天津 300384
    3.天津大学 电子信息工程学院,天津 300072

Abstract: In this paper, an overview of Wi-Fi Protected Setup(WPS) is supplied. A brute force attack is pointed out. Using Colored Petri Nets(CPN), the WPS protocol and the improvement are modeled and it is proven that the security flaws exist and the brute force attack is available. Moreover, under setting retry times of connection authentication to be three times, the original protocol can be completely breached and the success breach probability of the improved protocol is only about 3/108.

Key words: Wireless Local Area Network(WLAN), Wi-Fi protected setup, brute force, colored Petri nets, personal identification number, protocol formal analysis

摘要: 介绍了Wi-Fi联盟的WPS标准并给出了对应的攻击方法——暴力破解攻击,使用CPN对WPS协议及改进协议进行形式化分析并证明AP限制重新发起连接认证的次数为3次时,原协议可完全被攻破而给出的改进协议成功概率仅约为3/108。

关键词: 无线局域网, Wi-Fi受保护安装, 暴力破解, 着色Petri网, 个人识别码, 协议形式化分析