Care about your clients...and your business
Care about your clients...and your business
#openwifi
Originally shared by Randy Milanovic
Why you probably shouldn’t be doing work on that in-flight Wi-Fi - arstechnica
"When you're on any public Wi-Fi, you're bound to give up some personal information to anyone who might be watching the traffic (whether that be the company providing the service, for marketing purposes, or someone with more malicious intent). For example, in previous tests (such as the ones we conducted with NPR), we saw iPads and iPhones that identified themselves to the network by their owner's name, and Web requests to websites and mobile app traffic (some including personal data) were also visible. And as might have happened to Petrow, old-school POP/SMTP e-mail messages could be practically read off the wire."
"In designing its existing network, Gogo worked closely with law enforcement to incorporate functionalities and protections that would serve public safety and national security interests. Gogo’s network is fully compliant with the Communications Assistance for Law Enforcement Act (“CALEA”). The Commission’s ATG rules do not require licensees to implement capabilities to support law enforcement beyond those outlined in CALEA. Nevertheless, Gogo worked with federal agencies to reach agreement regarding a set of additional capabilities to accommodate law enforcement interests. Gogo then implemented those functionalities into its system design."
"Using SSL would, in theory, still protect people from others aboard an aircraft tapping into their sessions. But it wouldn't prevent an attacker from overcoming that protection."
http://arstechnica.com/information-technology/2016/02/why-you-probably-shouldnt-be-doing-work-on-that-in-flight-wi-fi/
#openwifi
Originally shared by Randy Milanovic
Why you probably shouldn’t be doing work on that in-flight Wi-Fi - arstechnica
"When you're on any public Wi-Fi, you're bound to give up some personal information to anyone who might be watching the traffic (whether that be the company providing the service, for marketing purposes, or someone with more malicious intent). For example, in previous tests (such as the ones we conducted with NPR), we saw iPads and iPhones that identified themselves to the network by their owner's name, and Web requests to websites and mobile app traffic (some including personal data) were also visible. And as might have happened to Petrow, old-school POP/SMTP e-mail messages could be practically read off the wire."
"In designing its existing network, Gogo worked closely with law enforcement to incorporate functionalities and protections that would serve public safety and national security interests. Gogo’s network is fully compliant with the Communications Assistance for Law Enforcement Act (“CALEA”). The Commission’s ATG rules do not require licensees to implement capabilities to support law enforcement beyond those outlined in CALEA. Nevertheless, Gogo worked with federal agencies to reach agreement regarding a set of additional capabilities to accommodate law enforcement interests. Gogo then implemented those functionalities into its system design."
"Using SSL would, in theory, still protect people from others aboard an aircraft tapping into their sessions. But it wouldn't prevent an attacker from overcoming that protection."
http://arstechnica.com/information-technology/2016/02/why-you-probably-shouldnt-be-doing-work-on-that-in-flight-wi-fi/
Comments
Post a Comment