CVE-2023-52424 – New WiFi Vulnerability: The SSID Confusion Attack

by scentonion 5/15/2024, 8:15 PMwith 3 comments

by BobbyTables2on 5/16/2024, 1:05 PM

I don’t get it…

Aren’t they basically saying they make an unauthenticated AP with the same SSID as the trusted network?

If so, this isn’t a new idea, at least not in the past two decades…

They dress it up with a MITM attack but I don’t see how MITM is useful here… They just seem to be doing direct SSID mapping without anything else going on.

Feels like more that a less-than-desired VPN related company is trying to get attention.

by scentonion 5/15/2024, 8:16 PM

> Affected software: All WiFi clients

> Affected platforms: All operating systems