← All ALISON Flashcard Decks

Wireless & Mobile Security Flashcards

7 cards from real ALISON practice questions. Tap to flip, then mark Knew It or Still Learning — missed cards come back until you master them.

Read the first 7 Wireless & Mobile Security flashcards as text
  1. What vulnerability in WPS (Wi-Fi Protected Setup) makes it susceptible to brute-force attacks?

    Answer: The 8-digit WPS PIN is validated in two separate 4-digit halves, reducing keyspace from 10^8 to 10^4 + 10^3

    WPS PIN verification splits the 8-digit PIN into two independently verified halves, reducing the effective keyspace to 11,000 combinations rather than 100 million, making brute-force trivial.

  2. What is a wireless deauthentication attack and why is it possible?

    Answer: Sending spoofed 802.11 deauthentication frames because management frames lacked authentication before 802.11w

    Before 802.11w (Protected Management Frames), deauthentication frames were unauthenticated, allowing attackers to spoof them and forcibly disconnect clients from any AP.

  3. What is an IMSI catcher (often called a 'Stingray') used for in security contexts?

    Answer: A device that impersonates a cellular base station to intercept mobile communications and track device locations

    An IMSI catcher mimics a legitimate cell tower, forcing nearby phones to connect to it, enabling interception of calls, SMS, and location data by capturing the device's IMSI.

  4. What is the key difference between WPA2-Personal (PSK) and WPA2-Enterprise in terms of authentication?

    Answer: WPA2-Personal uses a shared password for all users; WPA2-Enterprise uses individual credentials via a RADIUS server

    WPA2-Personal (PSK) uses a single shared passphrase for all users, while WPA2-Enterprise authenticates each user individually via 802.1X and a RADIUS server, providing per-user accountability.

  5. What Bluetooth attack passively captures device information from discoverable Bluetooth devices without owner permission?

    Answer: Bluesnarfing

    Bluesnarfing involves unauthorized access to information on a Bluetooth device (contacts, messages, calendar), exploiting vulnerabilities in the OBEX protocol on discoverable devices.

  6. What does TKIP stand for and why was it introduced?

    Answer: Temporal Key Integrity Protocol — as a WPA improvement over WEP's static key reuse

    TKIP (Temporal Key Integrity Protocol) was introduced with WPA to address WEP's fatal flaw of static key reuse by dynamically generating a new encryption key for each packet.

  7. What is the purpose of a captive portal in wireless networking?

    Answer: To require users to authenticate or agree to terms before gaining full network access

    A captive portal intercepts client HTTP requests and redirects them to an authentication or terms-of-service page, commonly used in public Wi-Fi hotspots before granting internet access.