27. Vulnerabilities assessment of WPA3-enterprise in Evil Twin attacks // IEEE AIoT 2025
Tleuberdin S., Satybaldina D., Aidynov T., Nurusheva A., Issainova A., Abisheva G.
Vulnerabilities assessment of WPA3-enterprise in Evil Twin attacks // 2025 IEEE Annual Congress on Artificial Intelligence of Things (AIoT). — Osaka, Japan, 2025. — Pp. 888–893. — DOI: 10.1109/AIoT66900.2025.00144.
Abstract: As increasing numbers of wireless networks and Internet of Things (IoT) devices are being used, it is becoming more important to protect wireless communications. WPA3 was out in 2018 to fix the problems with WPA2. Even with these enhancements, evil twin attacks, which try to steal credentials by pretending to be a business network, can still be very dangerous. In this paper, we present an experimental vulnerability assessment in a WPA3-Enterprise environment to test the latest WPA3 security mechanisms perform on various devices and operating systems, such as iOS, macOS, Ubuntu, and Windows. We built a test platform based on Kali Linux and used the ALFA AWUS036AXML adapter, as well as Hostapd and FreeRADIUS tools, to deploy RADIUS servers and a rogue access point (rogue AP). We tested several client connection scenarios to a rogue AP using three device configurations: Safe (mandatory CA certificate verification), Weak (server certificate verification is disabled or the CA is not installed), and Mixed (the device trusts the CA, but the certificate is expired). The results of the experiments showed that Evil Twin attacks were successful on clients running Ubuntu 24.04.2 and Windows 10 due to insecure certificate verification settings. We developed recommendations for mitigating information security risks for these cases.
Link / DOI: https://doi.org/10.1109/AIoT66900.2025.00144
Отправить комментарий