KRACK

lore

securitynetworking

A 2017 attack on WPA2 Wi-Fi that resets encryption keys to replay traffic.

Key Reinstallation Attack abused the WPA2 four-way handshake by forcing reinstallation of an already-used key, resetting nonces and enabling replay or decryption. It affected essentially every Wi-Fi client and drove firmware patches worldwide.

Also known as: KRACK, Key Reinstallation Attack, CVE-2017-13077

Sources

  • CVE-2017-13077 (2017)

All glossary entries