U Arizona Engineers Intend To Tighten Wi-Fi

A University of Arizona research project hopes to figure out how to stop the eavesdropping that can take place in wireless transmissions. Researchers Marwan Krunz and Loukas Lazos recently received $660,000 from the National Science Foundation for reducing "information leakage" through a number of approaches. Krunz is a professor and Lazos an associate professor in the Department of Electrical and Computer Engineering.

The problem of leakage is a critical aspect of wireless communications. With a bit of know-how and specialized equipment unauthorized people can virtually drop in on over-the-air transmissions and breach the privacy of others by tracking certain types of information.

Eavesdroppers may be hackers intent on stealing information; but they may also be corporate networks, government agencies and phone makers installing encryption software that can't be tracked by law enforcement.

Even encryption can't prevent intruders from accessing the content or parts of the data packet header. Using commercially available radio hardware, they can intercept transmissions and capture attributes, such as packet size, duration and radio frequency. Those elements can be analyzed and correlated to identify a user's transmission "signature," the pattern that the user follows in online activities, such as typical Web sites, their associations and preferences. That information can be used to capture and steal personal information.

"Transmission signatures present a huge threat to security in wireless communications," said Krunz. "In five seconds of eavesdropping on encrypted Wi-Fi traffic, eavesdroppers can achieve 80 percent accuracy in guessing what Web sites users are visiting and which applications they are running."

The four-year U Arizona research project will have broad objectives: to test "novel physical-layer obfuscation techniques" to make data packets and their headers "undecodable," and to investigate "colluding eavesdroppers" who monitor and mine wireless transmissions over long periods.

The researchers are developing "friendly jamming" methods to inject artificial noise into wireless transmissions and "beamforming," enabling a device to pinpoint precisely where its signal can be received.

"This is a very new area of study," Krunz said. "We really don't fully understand the kind and extent of harm that is possible through leakage of transmission signatures."

Until users have access to privacy-preserving technologies, such as those under development by the team, Krunz offers advice for maintaining security: Create long passwords that are hard to guess and change them often. Use virtual private networks, which aren't failsafe but are better than nothing. And when using a wireless device in a public place, where most eavesdropping occurs, think twice about what you do and what you post online.

About the Author

Dian Schaffhauser is a former senior contributing editor for 1105 Media's education publications THE Journal, Campus Technology and Spaces4Learning.

Featured

  • widescreen computer monitor displaying an AI-powered search engine interface with a search bar and futuristic icons

    Google, Microsoft Expand AI-Driven Search Capabilities

    Recent announcements from Google and Microsoft highlight a slough of AI capabilities for their search tools.

  • illustration of a futuristic building labeled "AI & Innovation," featuring circuit board patterns and an AI brain motif, surrounded by geometric trees and a simplified sky

    Cal Poly Pomona Launches AI and Innovation Center

    In an effort to advance AI innovation, foster community engagement, and prepare students for careers in STEM fields and business, California State Polytechnic University, Pomona has teamed up with AI, cloud, and advisory services provider Avanade to launch a new Avanade AI & Innovation Center.

  • lock with a glowing keyhole integrated with a transparent, layered server stack against a dark background with a subtle grid pattern

    Cohesity Integration Adds Protection for Red Hat OpenShift Virtualization Workloads

    AI-powered data security company Cohesity has expanded its collaboration with Red Hat to enhance data protection and cyber resilience for Red Hat OpenShift Virtualization workloads.

  • modern college building with circuit and brain motifs

    Anthropic Launches Claude for Education

    Anthropic has announced a version of its Claude AI assistant tailored for higher education institutions. Claude for Education "gives academic institutions secure, reliable AI access for their entire community," the company said, to enable colleges and universities to develop and implement AI-enabled approaches across teaching, learning, and administration.