Secret Service Goes War Driving
JSC writes "Looks like the Secret Service is taking a page from the WarDriving handbook. Your tax dollars at work includes springing for the Pringles can for the antenna."
← Back to Stories (view on slashdot.org)
They are planning on informing companies that they have leaky wireless networks. They aren't doing it to leach bandwidth like most wardrivers.
I bet they paid way too much for those Pringles cans (like their $400 hammers and $600 toilet seats).
I do it. :)
Why should I care if the SS does it
Right Kyle?
"Not my manner of thinking but the manner of thinking of others has been the source of my unhappiness." - M
Actually, most vendors advertise WEP as a security mechanism for these wireless networks, but as we all know, it is pretty much useless. I wonder if the writers of the article wrote the above statement knowing this fact, or if they just got lucky.
Warchalking PDF FAQ and check out This site
Peterson recently drove down a major Washington street and found over 20 wireless networks, many of which had no security at all. Peterson said his probes are part of good police work, like a patrolman driving through a neighborhood.
I know of someone who drove downtown in my hometown and picked up many wireless networks. This included 4 laptops with pringle can antennas. Among one of these networks he noticed the name was the state Lottery, thats right, the lottery. As he looked up, he was passing the building for the state lottery. It is interesting to see how many open wireless networks that there are in a town.
He also informed one company of the open network (he knew the network admin) and immediatly lost his ip for that network.
Is it illegal to pick up the wireless network as you drive by, if you don't do anything with it? Or is it illegal to pick it up and browse the net or both?
If companies want security let them hire someone to secure them and audit their security. How is this something that should come from taxes? It makes great sense to audit themselves or anything of key importance but just random wardriving sounds like a waste of $$$.
At what price learning? At what cost wisdom? The price is a man's peace of mind, and the cost is his life.
I find it interesting that when the Secret Service goes around wardriving and alerting network owners of insecure networks it's okay, but then Joe "gray"-hat hacker does the same thing these same network owners attempt to prosecute the individual.
-IOVAR Web Dev Platform
Ive been wanting to make one of these for awhile now. You can find some absolutely splendiferous pictures here: http://verma.sfsu.edu/users/wireless/pringles.php
The Blade Itself
Im glad my tax dollars are going to someything like this. Not that they are war driving but they are using pringles cans. I mean i personally wouldn't spend my money on a nice antannea so why should the govt. spend my money on one. if a pringles can is good enough for me than its good enouh for the govt.
unzip; strip; touch; finger; mount; fsck; more; yes; unmount; sleep
A quasi-mainstream news source called warchalkers "independent security researchers." That's gotta be a first.
-a
How to rationalize theft.
Maybe this publicity will create some market for a security product to be used for wireless. A lot of companies don't realize that wireless networks allow potential hackers an easy way around a firewall, and as such, there's little demand for a product to prevent such a breach. If the SS can bring that to light with their Pringles can, maybe that will change. And maybe Pringles will get into network hardware too. That'd be ironic.
*munch*munch*munch**munch*munch*munch**munch*munch *munch*
n ch *munch*
n ch *munch*
"Hey Agent 423.. got any more Pringles?"
*munch*munch*munch**munch*munch*munch**munch*mu
"No, but I could sure use another Coke.."
*munch*munch*munch**munch*munch*munch**munch*mu
Stories about wardialing are popping up everywhere now. So how do you prevent unauthorized access to your wireless LAN? I have 128-bit encryption enabled. Is that enough to prevent bandwidth stealing/snooping or is there something else?
Peterson recently drove down a major Washington street and found over 20 wireless networks, many of which had no security at all. Peterson said his probes are part of good police work, like a patrolman driving through a neighborhood.
"I feel it is part of crime prevention to knock on the door," Peterson said.
So that's what port scans are, just knocking on the door, part of crime prevention, and not malicious in and of itself.
Once upon a time, the military-government-corporate-et cetera complex had ALL the cool toys. Now, they are ripping off tricks that are widely posted by juveline nerdophiles. Now, if the government could only figure out how to clone gold, we could get out of our national debt. Best they go to the nearest MUD forum and get a crack off of some script-kiddies.
Voodoo Girl is the bomb!
from the article: But they are sold with no security measures, and protecting a wireless network from hackers takes more knowledge than what network installation guides typically offer.
Every access point I've ever setup had simple instructions for enabling WEP. Granted, WEP isn't the end-all of wireless security, but I'll bet that the the SS's definition of "secure" and "not secure" is equivilent to "wep" or "no wep". Granted, most of the networks I see wardriving (airboxing!) have a default ssid like "linksys" or "WLAN", so I guess a lot of users probably never even attempt to configure their AP. But it certainly doesn't require "more knowledge than network installation guides typically offer".
__
Choose mnemonic identifiers. If you can't remember what mnemonic means, you've got a problem. - Larry Wall
For physical crime, you simply cannot protect yourself easily: there is no low-cost, convenient technology to protect yourself from a bullet or a fist.
But you have complete and easy control over most kinds of cyber crimes: if anything, you save money by going with the safer solution.
In different words, it looks to me like our tax dollars are making up for software deficiencies created by companies that rush products to market and by companies that install technology without understanding it.
Let's get realistic about this - The SS is doing this because they can. They have a huge budget and lots of nifty toys. They're supposed to know "what's going on" around DC, so they have license to snoop around to an extent. Their basic job description probably leaves many of them plenty of free time. Someone probably read an article in Wired, and thought it was cool. That's kind of what happens when you empower virtually unaccountable branches of the government; in this dept the SS has nothing on the CIA, for example....
Actually that's only part of the govt's job, a small part at that (thoughtfully named "Border Patrol" so they wouldn't be confused with the "Secret Service.")
the corporations should be in charge of securing their own networks and hiring their own wardrivers, not making joe taxpayer foot the bill.
I agree with that fully, but not because I'm afraid of the country being taken over by people who come here to be cooks and gardners. The dude who wrote the letter to the article you linked is smoking crack. National emergency - give me a break. This guy claims to respect the Bill of Rights yet he advocates a mass expulsion, Milosevic-style. Keep your pants on, man, you're talking about a large disenfranchised and easily exploitable pool of cheap labor -- a problem, perhaps, but hardly a "massive army of invasion and occupation." Get real.
Doubt it. They can claim National Security, which can allow them to boss around anyone they want..
- This isn't the sig you're looking for. Move along, move along..
"...and we're here to help you." Is a phrase that ought to strike fear into anybody's heart! Dollars to doughnuts this is not the "helpful" measure it is being made out to be.
Be careful out there!
Dog is my co-pilot.
I don't think that it is their job to go around and tell people that their network is open to the public.
On the other hand, maybe the builders of these items will start including some real default security in their products.
Or maybe people will wake up and start taking some responiblity for their actions! (yeah, right...)
III.IIVIVIXIIVIVIIIVVIIIIXVIIIXIIIIIIIIVIIIIVVIII
...this being done by or under the NSA? After all, this sounds exactly like what their charter calls for. I am confused as to why the SS is involved with performing these tests as it is clearly the NSA's domain. On top of all that, I'm not really sure that this is a role I want to see our goverment actively persuing.
"I feel it is part of crime prevention to knock on the door," Peterson said.
No, its acting like an annoying neighbor to knock on the door. It doesn't even occur to this guy that he might just be annoying people who have open networks on purpose.
that they are allowed to do this withthe sirens OFF. Fucking speeding cops.
All Troll + "offtopic" mods are meta moderated as "Unfair", because you abused the system.