Serangan AirSnitch baru melewati isolasi klien Wi-Fi

Peneliti telah mengungkap AirSnitch, serangkaian serangan yang merusak isolasi klien di jaringan Wi-Fi, memungkinkan komunikasi tidak sah antar perangkat. Teknik ini mengeksploitasi perilaku jaringan tingkat rendah dan memengaruhi router dari produsen besar termasuk Netgear, D-Link, dan Cisco. Dipresentasikan di Simposium Keamanan Sistem Jaringan dan Terdistribusi 2026, temuan ini menyoroti kerentanan di pengaturan rumah, kantor, dan perusahaan.

Jaringan Wi-Fi, yang menghubungkan lebih dari 6 miliar pengguna di seluruh dunia, bergantung pada isolasi klien untuk mencegah perangkat berkomunikasi langsung satu sama lain, bahkan ketika dienkripsi. Namun, penelitian baru menunjukkan bahwa serangan AirSnitch dapat melewati perlindungan ini dengan menargetkan Lapisan 1 dan 2 tumpukan jaringan, menyebabkan desinkronisasi identitas lintas lapisan.

Artikel Terkait

Dramatic server room scene illustrating the SSHStalker Linux botnet infecting thousands of vulnerable servers via SSH exploits.
Gambar dihasilkan oleh AI

Researchers discover SSHStalker botnet infecting Linux servers

Dilaporkan oleh AI Gambar dihasilkan oleh AI

Flare researchers have identified a new Linux botnet called SSHStalker that has compromised around 7,000 systems using outdated exploits and SSH scanning. The botnet employs IRC for command-and-control while maintaining dormant persistence without immediate malicious activities like DDoS or cryptomining. It targets legacy Linux kernels, highlighting risks in neglected infrastructure.

One week after the FCC banned sales of new foreign-made Wi-Fi routers over national security risks, new details emerge on implicated cyberattacks and growing criticism of the broad policy's effectiveness.

Dilaporkan oleh AI

A hacking technique called DarkSword, used by Russian hackers, can compromise iPhones running iOS 18 simply by visiting infected websites. Discovered in the wild, this tool has been deployed in espionage and cybercriminal campaigns to target thousands of devices indiscriminately. It is now available online in a reusable form, risking a large portion of iPhone users worldwide.

New research from ETH Zurich and USI Lugano reveals vulnerabilities in popular password managers, challenging their assurances that servers cannot access user vaults. The study analyzed Bitwarden, Dashlane, and LastPass, identifying ways attackers with server control could steal or modify data, particularly when features like account recovery or sharing are enabled. Companies have begun patching the issues while defending their overall security practices.

Dilaporkan oleh AI

Windscribe has introduced a new Android beta version of its VPN app featuring native support for AmneziaWG. This update aims to help users bypass deep packet inspection and counter internet censorship in countries like Iran and Russia. The launch addresses ongoing challenges faced by individuals seeking secure online access in restrictive environments.

Security researchers have uncovered critical vulnerabilities in the n8n automation tool. A previously released patch failed to fully address the issues, leaving users exposed. Experts provide guidance on protecting systems amid these discoveries.

Dilaporkan oleh AI

A straightforward hack enabled the owner of a new DJI Romo robot vacuum to connect with thousands of other devices worldwide. The incident highlights an ongoing security vulnerability in the product. TechRadar reported the details on February 18, 2026.

 

 

 

Situs web ini menggunakan cookie

Kami menggunakan cookie untuk analisis guna meningkatkan situs kami. Baca kebijakan privasi kami untuk informasi lebih lanjut.
Tolak