RE: KRACK attack ~ New WPA2 Attack! 10-17-2017, 10:05 PM
#16
(10-17-2017, 10:02 PM)$ynthx Wrote: I watched the Hak5 ThreatWire video about it, this seems very interesting, and I actually didn't know that WPA2 failed requests sometimes like that. Hope to see this patched quickly for the sake of many people's privacy!
Edit: Here's the video...
The resubmission thing actually comes down to an old 802.1x spec, which specifies that packets should be retransmitted if timeout or lost. It was carried into WPA, the issue is they reused the nonce string, probably out of laziness.