Wireless Access Point Legitimacy Detection via Profile Comparison
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
Traditional technologies for connecting computing devices to wireless access points lack reliable methods to verify the legitimacy and identity of access points, making them vulnerable to attacks from malicious devices that mimic legitimate access points.
Innovation Solution
A computer-implemented method that detects potentially illegitimate wireless access points by comparing the current surrounding access points with a previously established set, identifying discrepancies, and determining if the target access point is potentially illegitimate based on these comparisons, which can block access or prompt user intervention.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Ease of operation
If computing devices automatically connect to wireless access points using stored configuration details, then connection speed and ease of operation are improved, but security and reliability deteriorate because devices cannot verify the legitimacy of access points
Solution Approach 1:
The system performs preliminary actions by creating a wireless profile that documents the set of surrounding access points before the device attempts to connect to a target access point. This baseline profile is established in advance and stored for later comparison, enabling the device to verify the legitimacy of access points it automatically connects to by checking whether the current surrounding access points match the previously recorded profile.
2Device complexity
If traditional connection methods are used without verification, then device complexity is reduced, but vulnerability to malicious attacks increases
Solution Approach 1:
The system introduces an intermediary verification mechanism that compares the current set of surrounding wireless access points against a previously stored wireless profile. This intermediary check occurs automatically in the background during the connection process, adding security verification without significantly increasing user-facing complexity or altering the basic connection workflow.
3Reliability
If the system compares surrounding access points to verify legitimacy, then security is improved, but processing time and system complexity increase
Solution Approach 1:
The wireless profile comparing logic is executed in advance and results are stored before the actual connection attempt occurs. By performing the comparison operation beforehand and caching the results, the system minimizes the time required during the actual connection process, as the verification can quickly reference pre-computed profile data rather than performing extensive real-time analysis.
Data Source
AI summary
The disclosed computer-implemented method for detecting potentially illegitimate wireless access points may include (1) detecting, at a current point in time, an attempt by a computing device to automatically connect to a target wireless access point that resembles a known wireless access point with which the computing device has established a previous connection at a previous point in time, (2) detecting at least one suspicious discrepancy between the target wireless access point and the known wireless access point, and then (3) determining, based at least in part on the suspicious discrepancy, that the target wireless access point is potentially illegitimate. Various other methods, systems, and computer-readable media are also disclosed.


