Detailedseverity: LowDraft

CAPEC-613WiFi SSID Tracking

Abstraction
Detailed
Status
Draft
Severity
Low

Description

In this attack scenario, the attacker passively listens for WiFi management frame messages containing the Service Set Identifier (SSID) for the WiFi network. These messages are frequently transmitted by WiFi access points (e.g., the retransmission device) as well as by clients that are accessing the network (e.g., the handset/mobile device). Once the attacker is able to associate an SSID with a particular user or set of users (for example, when attending a public event), the attacker can then scan for this SSID to track that user in the future.

Related weaknesses· 2

CWE-201CWE-300

Related attack patterns· 1

CAPEC-292 (ChildOf)

Exploits2

TypeTargetConfidenceTier
WeaknessInsertion of Sensitive Information Into Sent Datacwe-201100%live
WeaknessChannel Accessible by Non-Endpointcwe-300100%live

Related by meaning· 6

Nearest entities by semantic similarity across the cs-graph corpus.

CAPEC
WiFi MAC Address Tracking
CAPEC
Signal Strength Tracking
CAPEC
Wi-Fi Jamming
CAPEC
Sniffing Network Traffic
CAPEC
Evil Twin Wi-Fi Attack
CAPEC
Cellular Traffic Intercept
Sourced from MITRE CAPEC. Curated by Adam Lundqvist, SQUR.