CAPEC-612: WiFi MAC Address Tracking

Detailed Draft 严重程度: Low

CAPEC版本: 3.9

更新日期: 2023-01-24

攻击模式描述

In this attack scenario, the attacker passively listens for WiFi messages and logs the associated Media Access Control (MAC) addresses. These addresses are intended to be unique to each wireless device (although they can be configured and changed by software). Once the attacker is able to associate a MAC address with a particular user or set of users (for example, when attending a public event), the attacker can then scan for that MAC address to track that user in the future.

前提条件

  • None

所需技能

Low Open source and commercial software tools are available and several commercial advertising companies routinely set up tools to collect and monitor MAC addresses.

缓解措施

Automatic randomization of WiFi MAC addresses

Frequent changing of handset and retransmission device

关键信息

CAPEC ID: CAPEC-612

抽象级别: Detailed

状态: Draft

典型严重程度: Low

相关攻击模式
相关CWE弱点