UMathy Vanhoef no-Eyal Ronen
Masikhumbule ukuthi ngo-April ababhali abafanayo
Kodwa-ke, ukuhlaziya kubonise ukuthi ukusetshenziswa kwe-Brainpool kuholela ekilasini elisha lokuvuza kwesiteshi eseceleni ku-algorithm yezingxoxo zokuxhuma ezisetshenziswa ku-WPA3.
Uma usebenzisa ijika eliyielliptic le-Brainpool, Ujekamanzi ubhala iphasiwedi ngokwenza iziphindaphindo ezimbalwa zokuqala zephasiwedi ukuze ubale ngokushesha i-hashi emfushane ngaphambi kokufaka ijika eliyielliptic. Kuze kutholakale i-hashi emfushane, imisebenzi eyenziwe incike ngokuqondile kuphasiwedi yeklayenti nekheli le-MAC. Isikhathi sokwenza (esihlobene nenani lokuphindaphinda) kanye nokubambezeleka phakathi kwemisebenzi phakathi kweziphindaphindo zokuqala kungalinganiswa futhi kusetshenziselwe ukunquma izici zephasiwedi ezingasetshenziswa ungaxhunyiwe ku-inthanethi ukuze kuthuthukiswe ukukhethwa kwezingxenye zephasiwedi kwinqubo yokuqagela iphasiwedi. Ukuze wenze ukuhlasela, umsebenzisi oxhuma kunethiwekhi engenantambo kufanele abe nokufinyelela ohlelweni.
Ukwengeza, abacwaningi bahlonze ukuba sengozini kwesibili (CVE-2019-13456) okuhlobene nokuvuza kolwazi ekusetshenzisweni kwephrothokholi.
Kuhlanganiswe nendlela ethuthukisiwe yokuhlunga umsindo enqubweni yokulinganisa ukubambezeleka, izilinganiso ezingama-75 ngekheli ngalinye le-MAC zanele ukunquma inani lokuphindaphinda. Uma usebenzisa i-GPU, izindleko zensiza zokuqagela iphasiwedi yesichazamazwi esisodwa zilinganiselwa ku-$1. Izindlela zokuthuthukisa ukuphepha kwephrothokholi ukuvimba izinkinga ezikhonjiwe sezivele zifakiwe kuzinguqulo ezisalungiswa zamazinga e-Wi-Fi azayo (
Source: opennet.ru