Tech

DEF CON Crowd Suspected In Fake-Hotspot Attack On Delta Flight

Published

on

An anonymous reader quotes a report from Ars Technica: On Monday, passengers aboard Delta flight 591 going from Las Vegas to Atlanta allegedly spoofed the onboard Wi-Fi, raising the attention of federal law enforcement. The incident came one day after the DEF CON security conference concluded in Las Vegas, and was first described on social media accounts that follow publicly available air-to-ground messages, known as ACARS.

According to the “ACARS Drama” account, a message was sent by pilots from the plane stated: “NO INFO AS OF NOW WE HAVE A BUNCH OF PAX THAT WERE AT A CYBER CONFERENCE IN LAS THEY WERE ABLE TO JAM OUR WIFI AND BROADCAST THEIR SIGNAL.” A description of the incident posted to Reddit further stated that these passengers created a fake hotspot (“Delta WiFi Fast”), with a phishing landing page “designed to harvest passengers’ personal credentials.”

This technique, sometimes known as an “evil twin” attack, has been long-known to the IT security community. It involves setting up a fake Wi-Fi network and then capturing login credentials and other data. “One initial finding is an unauthorized WiFi network, which was not provided, operated, or supplied by Delta, was present onboard the aircraft for a short time during the flight,” said a Delta spokesperson. Delta further noted that the flight’s safety was “never in question and no aircraft operating systems were affected,” and that no emergency was declared.

Ars notes that the “actual onboard Wi-Fi was disabled for 30 minutes.”

Advertisement

Read more of this story at Slashdot.

Source link

Advertisement

You must be logged in to post a comment Login

Leave a Reply

Cancel reply

Trending

Exit mobile version