Notices
Computer & Technology Related Post here for help and discussion of computing and related technology. Internet, TVs, phones, consoles, computers, tablets and any other gadgets.

Do you steal wifi?

Thread Tools
 
Search this Thread
 
Old 14 August 2006, 03:44 PM
  #1  
ChefDude
Scooby Regular
Thread Starter
 
ChefDude's Avatar
 
Join Date: Aug 2005
Posts: 4,290
Likes: 0
Received 0 Likes on 0 Posts
Red face Do you steal wifi?

Each time I switch on my laptop, there are at least 3 "unsecured wireless networks" in my range.

I connected to one to see if i could. i could. i then disconnected. it is stealing after all.

what do you do?

in fact if you 'steal' other people's bandwidth, how do you protect yourself?
on your own wifi network setup, how do you 'secure' it?
Old 14 August 2006, 04:14 PM
  #2  
jaytc2003
Scooby Regular
iTrader: (1)
 
jaytc2003's Avatar
 
Join Date: Aug 2005
Location: Manchester ish
Posts: 18,547
Likes: 0
Received 0 Likes on 0 Posts
Default

if you access other peoples networks, have a bit of fun by changing their router settings. Chances are the username and password are still at default. Then set up wep or wpa so that they cannot access it!!!

(obviously do this at your own risk as this could be classed as hacking )

Old 14 August 2006, 04:20 PM
  #3  
spectrum48k
Scooby Regular
 
spectrum48k's Avatar
 
Join Date: Feb 2006
Posts: 2,519
Likes: 0
Received 0 Likes on 0 Posts
Default

I reckon its RIFE all over the place. People just aren't informed enough to lock down their routers. You see all this fancy advertising by the ISP's about their latest wireless products, but I bet very few focus on security.

Assuming joe public does try and secure the router, they'll probably use WEP - which, as we know, is as much use as a chocolate fire guard.

Apparently a lot of businesses use cr*p security on their wireless too.
Old 14 August 2006, 04:22 PM
  #4  
jaytc2003
Scooby Regular
iTrader: (1)
 
jaytc2003's Avatar
 
Join Date: Aug 2005
Location: Manchester ish
Posts: 18,547
Likes: 0
Received 0 Likes on 0 Posts
Default

out of interest why is wep cr@p?

I use wep, but I also have mac ids locked in my router so only the macs that I specifiy can access the internet.
Old 14 August 2006, 04:24 PM
  #5  
NickAdams
Scooby Regular
iTrader: (5)
 
NickAdams's Avatar
 
Join Date: Mar 2001
Location: Cheshire
Posts: 2,895
Likes: 0
Received 0 Likes on 0 Posts
Default

I walked up our road with Wififofum on my pda and found 7 wireless lans,3 of which weren't secured.Lucky for me,my neighbour hasn't got his wireless lan secured and his router username and password are still set to the defaults......



For now
Old 14 August 2006, 04:25 PM
  #6  
spectrum48k
Scooby Regular
 
spectrum48k's Avatar
 
Join Date: Feb 2006
Posts: 2,519
Likes: 0
Received 0 Likes on 0 Posts
Default

Originally Posted by jaytc2003
out of interest why is wep cr@p?

I use wep, but I also have mac ids locked in my router so only the macs that I specifiy can access the internet.
do a search on google and you'll be able to find a hack tool that will defeat WEP pretty easily.

a mate of mine, who works for a certain 3 lettered computer company, is issued with said hack tool so he can effortlessly get into client's LANs.

Locking the MAC addresses down is a good move though.
Old 14 August 2006, 04:29 PM
  #7  
ScoobyDoo555
Scooby Regular
 
ScoobyDoo555's Avatar
 
Join Date: Oct 2000
Location: Does it matter?
Posts: 11,217
Likes: 0
Received 0 Likes on 0 Posts
Default

Apparently it can be done quite easily

Again, Wififofum is a great little package!!

Dan

Last edited by ScoobyDoo555; 15 August 2006 at 01:00 AM.
Old 14 August 2006, 04:30 PM
  #8  
Markus
Scooby Regular
 
Markus's Avatar
 
Join Date: Mar 1999
Location: The Great White North
Posts: 25,080
Likes: 0
Received 0 Likes on 0 Posts
Default

I can see three to five networks when I have a look under my airport menu. Some of them have a password requirement to access them, others do not. Some of them have the name of "Default" or "D-Link", and no security. So it seems someone has just got a wireless router/access point and connected it up and done nothing else with it.

Out of curiousity I did try connecting to unsecured networks, and found that I could obtain the gateway address, pop that into my browser and be prompted to login to the wireless router. A quick search on the internet gave me the default username and passwords for the routers (the authentication dialog listed the product model) and I was able to connect and could have reconfigured things had I wished to.

I've got my own internet connection, so have no desire to steal someone elses. If I were to decide to do that then I'd probably look at software that could mask/change the MAC Address and network name of my computer.

I also have my own wireless network, an Airport Extreme Base Station and an Airport Express. I have them secured by using a WPA Personal password. A WEP password would probably be ok in my case as I work from home, so I doubt there would be too many people trying to hack the connection, however, I chose WPA just in case .

I *do* have my network name visible, though I could if I wished hide this and made the network closed, thus you'd need to know the network name and the password to connect.

There was an interesting article on slashdot a couple of weeks back where a chap found his neighbour stealing his bandwidth and decided to have some fun. Basically, all the images from any site the neighbour went to would be upside down

There was a whole debate about the "stealing" issue, some argued if you left the network unsecured, it stated that you did not mind if people hopped onto it (yeah right, like if my garden has no fences that means you can use it for your BBQ).

If you wanted to be rather restrictive then you could use WPA, closed (hidden) network with a cryptic name, and also have MAC Address filtering enabled.

Last edited by Markus; 14 August 2006 at 04:42 PM.
Old 14 August 2006, 04:37 PM
  #9  
Mick
Scooby Senior
iTrader: (1)
 
Mick's Avatar
 
Join Date: Nov 1998
Posts: 2,655
Received 4 Likes on 2 Posts
Lightbulb

The bandwidth is so huge now I have downgraded mine from 2 to 1 Mb - saves me £10 a month - I am quite happy to share it with my neighbour if it reaches - is this legal?

- I do have it secured by WPA and MAC address link only

cheers

Mick
Old 14 August 2006, 04:46 PM
  #10  
RichB
Scooby Regular
 
RichB's Avatar
 
Join Date: Apr 1999
Location: Bore Knee Muff
Posts: 3,666
Likes: 0
Received 0 Likes on 0 Posts
Default

no point kicking them out of their own network, they'll realise, reset it and get someone to secure it, best to just leave it be and carry on.

A relative of mine may have been doing this but her Mac just automatically connected to it and worked out the box... *snigger*
Old 14 August 2006, 05:27 PM
  #11  
Markus
Scooby Regular
 
Markus's Avatar
 
Join Date: Mar 1999
Location: The Great White North
Posts: 25,080
Likes: 0
Received 0 Likes on 0 Posts
Default

One issue that was raised was if someone was using your connection without your permission or knowledge to download/share copyrighted material. Who would the RIAA come after?
Old 14 August 2006, 05:29 PM
  #12  
ru'
Scooby Regular
 
ru''s Avatar
 
Join Date: Feb 2005
Location: Brighton no more
Posts: 2,170
Likes: 0
Received 0 Likes on 0 Posts
Default

I've heard it could be advisable to leave your router unsecured if you're using it for dodgy purposes, i.e. bittorrent music downloads where you do not hold the copyright.

After all, how would they prove it was you, and not your neighbour downloading it?

(edit - took too long reading the thread and replied too late!)
Old 14 August 2006, 06:20 PM
  #13  
GaryK
Scooby Regular
 
GaryK's Avatar
 
Join Date: Sep 1999
Location: Bedfordshire
Posts: 4,037
Likes: 0
Received 0 Likes on 0 Posts
Default

I 'borrowed' a neighbours connection for about six months! Only surfed really and I dont secure mine so happy to return the favour!

Quite funny on holiday where we were staying they had a cyber cafe and locked down the machines so you had to pay. I managed to overcome the locking software so we browsed for free for a fortnight when we wanted to. When we got back the router was fooked so had to shell out for a new one, bad vibes biting my ***? You never know (cue The Twilight Zone music)

Gary
Old 14 August 2006, 07:24 PM
  #14  
Dracoro
Scooby Regular
 
Dracoro's Avatar
 
Join Date: Sep 2001
Location: A powerslide near you
Posts: 10,261
Likes: 0
Received 0 Likes on 0 Posts
Default

However, are you opening up your computer to the network you're on?

e.g. you jump onto my unencrypted connection, I notice (I'm lying in wait you see ) and **** your PC up big time, bmup you off then encrypt my network so you can't take revenge
Old 14 August 2006, 07:56 PM
  #15  
Chris L
Scooby Regular
 
Chris L's Avatar
 
Join Date: May 2000
Location: MY00,MY01,RX-8, Alfa 147 & Focus ST :-)
Posts: 10,371
Likes: 0
Received 0 Likes on 0 Posts
Default

WEP is easy to break because of a flaw in the encryption process. 64 bit WEP can be broken in under 10 mins (I've seen it done on many occassions). My (former) boss was on a local BBC programme a few months back. He did some basic scans and found roughly 50% of home WiFi and 25% of business WiFi networks unsecured.

Before you go admitting stuff like this on a public website, if you gain unauthorised access (even if there isn't a warning message) to a wireless network, you are technically in breach of the Computer Misuse Act. There was a guy last year fined £500 and given a 12 month conditional discharge for doing as exactly described by a few people on this thread.

BTW, if they can't do you under the CMA, it is also possible to be prosecuted under the Communications Act for illeagally obtaining a wireless signal

Chris (IT Security Consultant)

Last edited by Chris L; 14 August 2006 at 08:11 PM.
Old 14 August 2006, 08:25 PM
  #16  
KiwiGTI
Scooby Regular
 
KiwiGTI's Avatar
 
Join Date: Aug 2004
Posts: 4,631
Likes: 0
Received 0 Likes on 0 Posts
Default

Originally Posted by spectrum48k
Locking the MAC addresses down is a good move though.
Not really, MAC spoofing is one of the easiest things to do. As is finding hidden SSIDs.
Old 14 August 2006, 08:35 PM
  #17  
jaytc2003
Scooby Regular
iTrader: (1)
 
jaytc2003's Avatar
 
Join Date: Aug 2005
Location: Manchester ish
Posts: 18,547
Likes: 0
Received 0 Likes on 0 Posts
Default

Originally Posted by KiwiGTI
Not really, MAC spoofing is one of the easiest things to do. As is finding hidden SSIDs.
but if you assign static ips that are not in the standard range through your router mapped to the mac then that makes it more difficult
Old 14 August 2006, 08:57 PM
  #18  
TopBanana
Scooby Regular
 
TopBanana's Avatar
 
Join Date: Jan 2001
Posts: 9,781
Likes: 0
Received 0 Likes on 0 Posts
Default

Originally Posted by KiwiGTI
Not really, MAC spoofing is one of the easiest things to do. As is finding hidden SSIDs.
Not by your average punter - not by any means.
Old 14 August 2006, 10:56 PM
  #19  
KiwiGTI
Scooby Regular
 
KiwiGTI's Avatar
 
Join Date: Aug 2004
Posts: 4,631
Likes: 0
Received 0 Likes on 0 Posts
Default

Originally Posted by TopBanana
Not by your average punter - not by any means.
No, but easily by your average delinquent teenager who would probably be the most likely malicious attacker.
Old 14 August 2006, 11:38 PM
  #20  
JackClark
Scooby Senior
 
JackClark's Avatar
 
Join Date: Dec 2000
Location: Overdosed on LCD
Posts: 20,852
Received 51 Likes on 34 Posts
Default

Old 14 August 2006, 11:42 PM
  #21  
Chris L
Scooby Regular
 
Chris L's Avatar
 
Join Date: May 2000
Location: MY00,MY01,RX-8, Alfa 147 & Focus ST :-)
Posts: 10,371
Likes: 0
Received 0 Likes on 0 Posts
Default

A 5 min search on Google will give you the tools and techniques to do MAC address spoofing to be honest. If you're targeted by a good hacker (and not some numpty script kiddie who downloads the latest tool from a second rate hacker site), then they can probably get in. Chances are that this is highly unlikely (why go to the trouble to be honest?). People should just be aware of what they are doing though.

Edit to say nice one JC
Old 15 August 2006, 08:52 AM
  #22  
dowser
Scooby Senior
 
dowser's Avatar
 
Join Date: Oct 2000
Location: Zurich, Switzerland
Posts: 3,105
Likes: 0
Received 0 Likes on 0 Posts
Default

As above, MAC address security makes it difficult enough to thwart all but those specifically targetting you, IMHO
Old 15 August 2006, 09:19 AM
  #23  
ChefDude
Scooby Regular
Thread Starter
 
ChefDude's Avatar
 
Join Date: Aug 2005
Posts: 4,290
Likes: 0
Received 0 Likes on 0 Posts
Default

re picture, why did someone advertise free wifi? or did someone put it there unknown to the owners?
Old 15 August 2006, 09:28 AM
  #24  
TopBanana
Scooby Regular
 
TopBanana's Avatar
 
Join Date: Jan 2001
Posts: 9,781
Likes: 0
Received 0 Likes on 0 Posts
Default

They were probably advertising it. Probably commies or something.
Old 15 August 2006, 09:39 AM
  #25  
BigGT3Fan
Scooby Regular
 
BigGT3Fan's Avatar
 
Join Date: Jul 2001
Posts: 464
Likes: 0
Received 0 Likes on 0 Posts
Default

My view on this is I have my own b-band connection, and (secured) wifi. However, I have surfed onto an unsecured neighbour on 2 occasions when Telewaste went t*ts up and I needed/wanted to use the web.

I've also done similar when on holiday, in fact just returned from Edinburgh for the fringe, and "borrowed" the wifi from the B&B to check out events/venues/restaurants etc

Wouldn't ever do anything malicious, what's the point, but when you are used to 24/7 broadband it's funny how disconnected you feel when you want to look something up and can't get on line. Other peoples un-secured network solve this nicely
Old 15 August 2006, 10:08 AM
  #26  
James Neill
Scooby Senior
iTrader: (1)
 
James Neill's Avatar
 
Join Date: Apr 1999
Posts: 2,889
Likes: 0
Received 0 Likes on 0 Posts
Default

So how secure is WPA then as an alternative to WEP?
Old 15 August 2006, 10:33 AM
  #27  
mike1210
Scooby Regular
 
mike1210's Avatar
 
Join Date: Apr 2004
Location: Cardiff
Posts: 1,928
Likes: 0
Received 0 Likes on 0 Posts
Default

WPA is far more secure. I think "home user wise", the only possible weakness is the strength of the password that you use. i.e. using "password" as your password would be very easy to guess. WPA is still open to dictionary attacks (trying to guess your password by going through a list of words, phrases etc)

http://www.kurtm.net/wpa-pskgen/

so use that to make a decent WPA password

also using WEP is better than nothing, but use WPA equipment permits

Last edited by mike1210; 15 August 2006 at 10:37 AM.
Old 15 August 2006, 05:23 PM
  #28  
jowl
Scooby Regular
 
jowl's Avatar
 
Join Date: Aug 2004
Posts: 1,882
Likes: 0
Received 0 Likes on 0 Posts
Default

When I was on an unlimited account, I used to leave my Wireless unsecured and broadcast the name.

I don't do that anymore, now I have a limit. As I'm in a cul-de-sac it's not so bad. Sometime, I connect to across the road's wireless...as I set it up
Old 15 August 2006, 06:24 PM
  #29  
spectrum48k
Scooby Regular
 
spectrum48k's Avatar
 
Join Date: Feb 2006
Posts: 2,519
Likes: 0
Received 0 Likes on 0 Posts
Default

Originally Posted by KiwiGTI
Not really, MAC spoofing is one of the easiest things to do. As is finding hidden SSIDs.
I'm not prescribing methods for a bullet proof LAN - just adding that the more security methods he looks into, the better.
Old 15 August 2006, 10:22 PM
  #30  
HHxx
Scooby Regular
 
HHxx's Avatar
 
Join Date: Nov 2001
Posts: 2,576
Likes: 0
Received 0 Likes on 0 Posts
Default

Leave mine wide open Run a transparent proxy and firewall restricting what they can do. Must say, err, intersting url attempts I vpn in..


Quick Reply: Do you steal wifi?



All times are GMT +1. The time now is 12:31 AM.