Section 17: Enterprise Mobility Flashcards
Wi-Fi Protected Access 3 (WPA3)
Latest and most secure version of wireless network encryption currently available
SAE
Simultaneous authentication of equals (SAE)
▪ A secure password-based authentication and password authenticated key agreement that relies on forward secrecy
● AP and client use a public key system to generate a pair of long-
term keys (this only happens once)
● AP and client exchange a one-time use session key
● AP sends client messages and encrypts them using the created
session key
● Client decrypts received messages using the same one-time use
session key
● Process repeats for each message being sent, starting at Step 2
The one time session key in step 2 is constantly being generated, so if it gets compromised once, it will not be able to be used again.
Bluejacking vs Bluesnarfing vs Blueborne
● Bluejacking
o Sending unsolicited messages to a Bluetooth device
● Bluesnarfing
o Making unauthorized access to a device via Bluetooth
connection
BlueBorne
Allows the attacker to gain complete control over a device
without even being connected to the target device
DNS Over HTTPS (DoH)
▪ Encrypts DNS requests by tunneling through a TLS tunnel using the HTTPS protocol
▪ Initial request is made on Port 53
▪ DNS lookups on port 443
▪ Increases privacy but bypasses some corporate restrictions