home.social

#wpa3 — Public Fediverse posts

Live and recent posts from across the Fediverse tagged #wpa3, aggregated by home.social.

fetched live
  1. Inspired by Proton's post, I decided to get a new router instead of using just my modem/router combo. The primary driver was that while my #cable modem's modem functionality is fine for my service, the features on the router/wifi side were lacking, so it's not like I haven't been thinking about this for a while. The idea that my #ISP could be using my router's wifi antennas to spy on me was what got me going.

    Routers aren't that expensive. I got my Cudy for just $40. It did take a few hours to get switched over, mainly because I like to go through every setting before I consider the installation complete.

    Basically the steps are to go through the modem/router's UI and copy down anything you want to carry forward. Then you switch it to bridge mode, swap in the new router, and reboot the lot. Then it's just going through the router's UI to set everything up.

    There were lots of improvements. The big one was getting
    #WiFi7 and #WPA3, which has Perfect Forward Secrecy. That means that even your encrypted data can only be decrypted for a certain time before it becomes worthless. This is important when you realize that in the near future with quantum computing and such, everyone's encrypted data captured now will be trivial to crack.

    Another big improvement was the ability to force everyone to use DNS-over-HTTPS (
    #DoH). Not using DoH means your ISP can see every domain that you visit or even think about visiting. I went with Quad9, which is a Swiss DNS host, which focuses on privacy (duh, it's Swiss).

    The third big improvement was
    #mesh support. I was able to connect it with my access point via CAT7/8 cables and a switch for backbone. So now as I walk around the house, my devices move between the two access points.

    Don't forget to turn off
    #TR069 or your ISP will still have control over your router. I'm still working on how to get WiFi into my backyard.

    RE: https://mastodon.social/users/protonprivacy/statuses/116962426790206038

  2. ⚠️ Still running WPA3 Personal Transition Mode?

    📶 It supports legacy devices—but also keeps WPA2-era risk in play. Review segmentation, PMF, and legacy client access before calling your Wi-Fi secure.

    👉 7asecurity.com/blog/2026/07/wp

  3. Privacy check: Is your home IoT setup leaking data? 🌐

    If you are still using WPA2 or default SSID broadcasts, you are making it too easy for intruders. It’s time to move to WPA3 encryption and implement Network Segmentation.

    By isolating your IoT devices on a dedicated VLAN or Guest Network.

    Check out our 7-step hardware-focused guide to hardening your home network:

    securelylife.com/secure-smart-

    #IoT #Privacy #WPA3 #CyberSecurity #FOSS #Infosec #SecurelyLife

  4. 𝐇𝐨𝐰 𝐭𝐨 𝐜𝐫𝐞𝐚𝐭𝐞 𝐚 𝐖𝐏𝐀3 𝐖𝐢-𝐅𝐢 𝐩𝐫𝐨𝐟𝐢𝐥𝐞 𝐟𝐨𝐫 𝐖𝐢𝐧𝐝𝐨𝐰𝐬 𝐢𝐧 𝐌𝐢𝐜𝐫𝐨𝐬𝐨𝐟𝐭 𝐈𝐧𝐭𝐮𝐧𝐞

    Microsoft Intune still cannot natively create a Wi-Fi profile with WPA3-Personal security at this time. Within the configuration templates, there is only Wi-Fi with WPA/WPA2 security, but WPA3 is missing.

    If you have a Wi-Fi where WPA3 is enforced without hybrid mode with WPA2, then if you create a profile as WPA2, the device will not connect to it. So, if you have WPA3 enforced, you need to configure Wi-Fi using a custom profile and OMA-URI.

    cswrld.com/2026/03/how-to-crea

    #cswrld #microsoft #intune #wifi #wpa3

  5. Ich habe hier ja neben #Fairphone schon mehrfach #Shift mit dem #Shiftphone für nachhhaltige Technik mit modularer, selbst reparierbarer #Hardware empfohlen.

    Diese Empfehlung muss ich leider revidieren, zumindest was das
    #Shiftphone 8.1 betrifft. Ich hatte mir das Mitte Oktober 2025 gekauft- Auslieferung sollte im November 2025 erfolgen. Erhalten habe ich es vorgestern. Ja ich weiß, dass Shift auf Basis von #Crowdfunding arbeitet und als sehr kleiner Hersteller sicher nicht an erster Stelle bei den tatsächlichen Herstellern in Fernost dran kommt, aber knapp 5 Monate bei einem angeblich schon in der ersten Auslieferungswelle befindlichen Gerät ist schon krass. Gut, das könnte man verschmerzen, wenn man dann ein wirklich gutes Gerät bekommt.

    Das Positive:
    Das Gerät sieht gut aus und liegt gut in der Hand
    Startzeit und Akkulaufzeit scheinen ok.

    Das war's aber auch schon so ziemlich.

    Erster Systemstart zur Einrichtung - Verbindung mit dem
    #WLAN. Die Verbindung wird als gespeichert angezeigt, aber das Shiftphone 8.1 verbindet sich nicht mit dem WLAN. Neustart und Factoryreset nutzen nichts, immer das gleiche Problem.
    Nach einiger Recherche hat dann das manuelle Eingeben der
    #SSID und Auswahl von #WPA3 personal geholfen. So was habe ich aber noch bei keinem Gerät erlebt, nicht mal bei sehr alten oder exotischen.

    Daten vom alten
    #Smartphone übernehmen: Hat erst mit dem 3. Kabel im 5. Anlauf geklappt.

    Aktivierung von Bankapps mittels scannen eines
    #QRCode / #Aktivierungsgrafik vom alten Gerät scheitert, da die Kamera, egal bei welcher Displayhelligkeit des alten Gerätes und egal welchem Umgebungslicht und welcher Entfernung nicht fokusieren kann. Auch mit der #Kameraapp und alternativ #Opencamera lässt sich die Kamera nur widerwillig zu einem scharfen Bild bewegen. Auch das habe ich noch nie erlebt. Die #Kamera im Shiftphone 8.1 ist gelinde gesagt unbrauchbar. Da helfen auch keine Hinweise, die ich nun im Netz gefunden habe, dass der Kamerahersteller #Sony noch irgendwas liefern muss. Sorry, dann darf man ein Gerät halt einfach noch nicht auf dem Markt schmeißen. Auch bei einem Hersteller wie Shift erwarte ich dann doch, dass ich zumindest ein fertiges und in allen Punkten funktionierendes Gerät erhalte und nicht als Versuchskarnikel für Beta-Hardware herhalten muss.

    Ich habe Shift bereits geschrieben. Das Gerät geht sehr wahrscheinlich zurück.

    #Erfahrungsbericht

    @[email protected]

  6. for anyone that may see this in the future, I believe Wi-Fi Protected Access 3 (#WPA3) may be part of the 802.11 ax also known as #wifi6 <en.wikipedia.org/wiki/Wi-Fi_6>. WPA3 provides Forward Secrecy <wpa3 <en.wikipedia.org/wiki/Wi-Fi_Pr>. Continued...

  7. If a #wifi router comes with #wpa2 support, could you install something like #openwrt and potentialy have access to #wpa3 on the device? or is there a hardware limitation for wpa2/3? Continued...

    #network #networking #WizardsAnonymous

  8. * A #FritzBox to use as wifi2lan bridge to get a lan connection in "remote" areas for embedded devices. Esp. the ones that don't support #WPA3 and therefore fail to connect to the #39C3 wifi networks

    Anyone know if the repurposed cigaret automat that is selling #IOT parts also has wifi7 dongles? So far a handful of people I met for sure could have been saved from searching for people willing to setup mobile hotspots for them (which the @c3noc probably hates because of interference - I'd assume)

  9. Mercusys wprowadza ME25BE. To wzmacniacz sygnału z nowym standardem Wi-Fi 7

    Marka Mercusys, należąca do TP-Link, poszerzyła swoją ofertę o wzmacniacz sygnału ME25BE. To dwupasmowe urządzenie, które obsługuje najnowszy standard Wi-Fi 7 i ma na celu eliminację tzw. martwych stref w zasięgu sieci domowej.

    Nowy repeater pracuje w dwóch pasmach, oferując prędkości do 2882 Mb/s w paśmie 5 GHz oraz do 688 Mb/s w paśmie 2,4 GHz. Urządzenie wspiera kluczowe technologie dla Wi-Fi 7, takie jak kanał o szerokości 160 MHz, modulację 4K-QAM oraz Multi-Link Operation (MLO), które mają zwiększać przepustowość i stabilność połączenia.

    ME25BE jest także kompatybilny ze standardem EasyMesh. Pozwala to na stworzenie jednolitej, rozległej sieci Wi-Fi (typu mesh) przy użyciu kilku współpracujących urządzeń, co umożliwia płynne przemieszczanie się po domu bez zrywania połączenia.

    Wzmacniacz wyposażono również w gigabitowy port Ethernet. Dzięki niemu można podłączyć przewodowo starsze urządzenia bez modułu Wi-Fi, takie jak konsole do gier, komputery stacjonarne czy telewizory. Urządzenie może także pracować w trybie punktu dostępowego (AP), udostępniając sieć Wi-Fi w miejscu, gdzie mamy tylko łącze przewodowe.

    Konfiguracja ma być uproszczona dzięki przyciskowi WPS , a zaawansowane zarządzanie odbywa się przez aplikację Mercusys. Bezpieczeństwo sieci zapewnia standard szyfrowania WPA3.

    Mercusys ME25BE jest już dostępny w sprzedaży w cenie około 270 zł i został objęty 3-letnią gwarancją producenta.

    #4KQAM #EasyMesh #MercusysME25BE #MLO #news #punktDostępowy #repeater #TPLINK #WiFi7 #WPA3 #wzmacniaczSygnału

  10. Технологии, которые держат мир на связи. Как атакуют современный Wi-Fi

    Когда речь заходит о беспроводных сетях, злоумышленники часто сосредотачивают усилия на поиске брешей в механизмах аутентификации и на атаках на них: подобным способом они пытаются проникнуть в корпоративную сеть. На прошлой неделе мы рассказали, как устроен процесс аутентификации и какие протоколы для этого применяются. В зависимости от выбранного протокола используются определенные методы шифрования и проверки данных. Так, у широко распространенного протокола WPA2 есть ряд известных уязвимостей. Среди них — подбор пароля по захваченному рукопожатию (handshake), восстановление ключа при слабом пароле (перехват PMKID), атаки на WPS (в том числе перебор PIN‑кода). В корпоративных сетях также возможны атаки на механизмы аутентификации, например downgrade‑атаки при использовании устаревших методов вроде EAP‑GTC. Ни один протокол не идеален, и даже WPA3 не стал исключением. Хотя он действительно более безопасен, чем предшественники, исследователи обнаружили в нем уязвимости под общим названием Dragonblood. Например, одна из них позволяет провести атаку на точку доступа в режиме WPA3-Transition Mode. В этом режиме точка доступа поддерживает одновременно WPA2 и WPA3, что позволяет злоумышленнику понизить уровень безопасности до уровня WPA2 и обойти защиту. Дополнительно существует инструмент DragonShift , который автоматизирует процесс такой атаки, еще больше упрощая задачу хакеру. Чтобы нагляднее показать, как распределяются атаки на беспроводные сети (в том числе на WPA2 и WPA3), можно условно выделить несколько категорий.

    habr.com/ru/companies/pt/artic

    #атаки_на_wifi #wpa2 #wpa3 #pmkid #downgrade_attacks #handshake #karma #wps #перехват #сканирование_wifi

  11. Технологии, которые держат мир на связи. Как выглядит современный WiFi и что влияет на его безопасность

    Привет, Хабр! На связи команда PT Cyber Analytics. Мы подготовили для вас материал по устройству и безопасности современных беспроводных сетей. В его основе — результаты проведенных проектов и экспертиза наших исследователей. Представьте, что вы вернулись в 1995 год. Там, где вместо гигабитных скоростей — dial-up, вместо Netflix — видеокассеты, а Wi-Fi — это магия, передающая данные со скоростью всего лишь 1–2 Мбит/с. Сейчас все иначе: беспроводные сети — от домашнего Wi-Fi до корпоративных инфраструктур, поддерживающих сотни устройств одновременно, — стали неотъемлемой частью нашей цифровой жизни. Что же могло пойти не так

    habr.com/ru/companies/pt/artic

    #wifi #wifi6 #ieee #wpa2 #wpa3 #sae #ieee_8021x #authentication

  12. Wireless Security Protocols Explained: WEP, WPA, WPA2 & WPA3 📡🔐

    Understanding wireless security protocols is essential for protecting your network from unauthorized access and ensuring data confidentiality.

    📘 Key Protocols & Their Characteristics:

    1. WEP (Wired Equivalent Privacy)
    • Introduced in 1997
    • Weak encryption (RC4), easily cracked
    • Deprecated and insecure

    2. WPA (Wi-Fi Protected Access)
    • Interim solution after WEP
    • Improved encryption with TKIP
    • Still vulnerable to certain attacks

    3. WPA2
    • Widely used today
    • Uses AES-based CCMP encryption
    • Supports enterprise (RADIUS) and personal (PSK) modes

    4. WPA3
    • Latest standard with stronger security
    • Resistant to brute-force attacks
    • Supports SAE (Simultaneous Authentication of Equals)
    • Enhanced encryption and forward secrecy

    Why it matters:
    Choosing the right wireless protocol significantly affects your network’s resilience against common attack vectors such as packet sniffing, replay attacks, and credential theft.

    Disclaimer: This post is for educational and awareness purposes only. Always secure your wireless networks using the latest standards.

    #WirelessSecurity #WPA3 #WEP #WPA2 #CyberSecurity #InfoSec #EducationOnly #WiFiProtocols #NetworkSecurity #WiFiEncryption

  13. Ich habe jetzt einen #Asus USB-AC53-Nano #WiFi-Stick ausprobiert:

    Unter #Debian musste ich selbst ein Kernel-Modul kompilieren: github.com/RinCat/RTL88x2BU-Li scheint in der Test-VM soweit zu funktionieren - ich tue mich aber immer sehr schwer mit auf GitHub gefundenen Treibern, deren Autoren ich nicht einschätzen kann.

    Der #RasPi erkennt den Stick erstaunlicherweise direkt ohne Treiber-Gebastel.

    Hilft mir allerdings auch nicht weiter, das #WLAN, das der RasPi mit dem Onboard-WLAN-Chip im Metallgehäuse(!) erkennt (sich wegen #WPA3 aber nicht verbinden mag), mag der USB-WiFi-Stick außerhalb des Gehäuses trotz USB-Verlängerung für etwas mehr Abstand einfach nicht finden. 🙁

    Vielleicht sollte ich meine Switches auf VLAN-fähige Modelle upgraden und alles per Kabel-LAN machen. Das ist zwar eigentlich mit Kanonen auf Spatzen geschossen, aber mein Bedarf an unzuverlässigen Drahtlosverbindungen ist langsam wirklich gedeckt.

  14. Turn off WEP on your Galaxy S25 to increase security

    One of the new features introduced in the brand new Samsung flagship, the Galaxy S25, allows you to determine whether your phone is allowed to connect to Wired Equivalent Privacy (WEP) Wi-Fi networks. Unfortunately, it’s turned on by default, despite the option that says that WEP is “an older security protocol that’s less secure.”

    Over the years, people and security experts have constantly discouraged using WEP as a security protocol for Wi-Fi access points as it can be hijacked very easily due to weaknesses related to RC4 that were disclosed back in 2001. This document explained how such cipher, along with the initialization vector (IV), were exploited that resulted in a passive attack that could recover the RC4 key.

    In general, WEP is insecure. Luckily, on your Galaxy S25, you can configure your smartphone to forbid connections to WEP-protected access points using this new configuration switch in the below menu:

    Follow the steps to disallow connections to WEP networks:

    1. Open the Settings app
    2. Navigate to Connections > Wi-Fi > three dotted menu button > Advanced settings
    3. Toggle the Allow WEP networks entry off

    Upon turning it off, your phone will no longer be able to connect to such networks. You’ll then be only able to connect to WPA-protected networks, especially those protected with WPA3. We recommend doing this after either obtaining the Galaxy S25 or updating your eligible device to One UI 7.

    The best solution to those relying on those networks is to either switch to WPA3 protection if you’re managing them yourself, or contact your network administrator for more info. You can consult your router manual for more info about changing the network protection method.

    #Android #Network #Networking #news #oneUi #OneUI7 #Samsung #smartphone #Tech #Technology #update #WEP #WPA #WPA2 #WPA3

  15. Les Freebox et les répéteurs de Free améliorent la sécurité en WPA3 (mais pas nécessairement la compatibilité) dlvr.it/TJf6Kk #Freebox #WPA3

  16. Multi-Link Betrieb bei eero ab sofort verfügbar
    Das neue Update von eero bringt den Multi-Link Betrieb (MLO) in den Alltag. Die Funktion unterstützt gleichzeitige Datenübertragung auf mehreren Frequenzbändern. Optimierte Verbindungen und höhere Geschwindigkeit
    apfeltalk.de/magazin/news/mult
    #News #Tellerrand #Datenbertragung #Eero #energieeffizient #Frequenzbnder #MeshWLAN #MultiLinkBetrieb #Netzwerksicherheit #Router #WiFi7 #WPA3

  17. Any #smarthome freaks around that know if #shelly Gen4 will be able to use #wpa3 enterprise wifi encryption?

  18. 🚨 Breaking News! 🚨 Cybersecurity experts reveal vulnerabilities in WPA3 security protocols, exposing users to downgrade attacks and social engineering tactics. 🔐💻 Stay informed and protect your data! Read more here: cyberinsider.com/breaking-wpa3 #CyberSecurity #WPA3 #DataProtection #TechNews #newz

  19. MegaWiFi now supports #WPA3. So no excuses to upgrade your home WiFi security!

    (NOTE: MegaWiFi is my Open Source/Hardware WiFi cart for the #SegaGenesis / #Megadrive)