Secret Service 'war driving' for unsecure WLANs
Computerworld -
The U.S. Secret Service has hooked up Pringles cans to notebook computers equipped with wireless LAN access cards and begun "war driving" around Washington and other cities in an effort to sniff out unsecured WLANs.
That puts the Secret Service, whose primary mission is to guard the president, in the company of hobbyist WLAN war drivers who cruise cities and towns around the world to detect and map unsecured WLAN systems.
(The term war driving is derived from the "war-dialing" exploits of the teenage hacker character in the 1983 movie WarGames, who has his computer randomly dial hundreds of numbers and eventually winds up tapping into a nuclear command-and-control system. )
Brian Marr, a Secret Service spokesman, said the agency conducts its war drives as part of its protective mission and is searching for unsecured WLAN systems in venues in "close proximity" to its protective assignments, including hospitals, convention centers and hotels. Besides Pringles cans -- which Marr said make "fairly good" antennas -- Secret Service agents also use commercial high-gain antennas to sniff out unsecured LANs.
When the agents from the Secret Service Electronic Crimes Task Force detect an unsecure WLAN, they contact the enterprise operating the system, identify themselves and inform the business of any vulnerabilities they have detected. Marr described this as a "community outreach program," in the same spirit as local police officers going door to door in a neighborhood to talk to residents about physical vulnerabilities.
Sarosh Vesuna, chairman of the technical committee for the Wi-Fi Alliance (formerly the Wireless Ethernet Compatibility Alliance) in Mountain View, Calif., viewed the Secret Service war driving as a good idea. "It raises the bar for security," he said.
Vesuna, who is also director of strategic alliances at Symbol Technologies Inc. in Holtsville, N.Y., said the Secret Service war-driving and notification project is the electronic version of a police officer "telling someone their door is unlocked."
The Secret Service will soon have a lot of war-driving competition. A loosely organized band of WLAN sniffer hobbyists plans to conduct what it bills as the "World-Wide War Drive" from Oct. 26 through Nov. 2. So far, hobbyists covering a wide swath of the U.S. and Canada -- as well as in Barcelona, Spain; Germany; Wellington, New Zealand; and Perth, Australia -- have indicated that they plan to participate in the exercise.
Using notebooks equipped with WLAN cards and sniffing freeware, such as NetStumbler, the hobbyists detected and precisely mapped (using Global Positioning System receivers) 9,374 WLAN access points in the firstWorld-Wide War Drive, which ran from Aug. 31 to Sept. 7. Almost 70%, or 6,549 of the access points, didn't have the simplest form of WLAN security, Wired Equivalent Protocol, turned on.
Additional Resources


White Papers & Webcasts
iPhone for the Enterprise
One of the biggest concerns of using the iPhone for the enterprise is the security and manageability issues. Read this white paper to...
5 Architecture Issues that Impact BES performance
This Live webinar will identify critical log file errors, performance counters, and configurations to pay close attention to when optimizing BES server performance....
Yankee Group Mobile WAN Optimization Report
Mobile work continues to evolve. Learn how to keep up with the demands of your organization's mobile workforce....
Managing Laptops Outside the Office
(Source: Absolute Software) In this webinar, learn how you can reduce costs by tracking mobile computers no matter where they are located. Featuring...
Mobile Device Management for Dummies
Did you know that up to 70% of enterprise data exists in various frontline settings, from laptops to handheld devices, to store and...
What Are 'Free' Remote Support Tools Really Costing You?
(Source: LogMeIn) In this webinar from LogMeIn, discover how "next generation" remote support tools are optimized to provide advanced capabilities like scripting, system...
Ponemon Study: The Business Risk of Lost Laptops
Employees can access and store enormous amounts of confidential data on your organization's laptops, leaving your company vulnerable to substantial business risk when...
IT Strategies for Remotely Supporting a Distributed Workforce
(Source: Citrix Online) Today's workforce is a distributed one - workers across industries are telecommuting, working out of satellite offices and connecting into...
Airport Insecurity: The Case of Lost Laptops
(Source: Dell) Business travelers lose more than 12,000 laptops each week in U.S. airports, yet most admit they don't take steps to protect...
Strategic ECM Webinar
Learn what new strategic business benefits can be realized through ECM!...
Subscribe to Computerworld
