چكيده به لاتين
Due to the use of air as a medium of communication and lack of a specified physical path, security in wireless networks which its applications had significant growth in recent years is inherently more challenging than wired networks. Although several attempts have been made to design and develop intrusion detection, prevention and response systems in wireless networks, but study shows that these efforts have not enough and motivation for further work in this direction still remains. After an overview of known attacks in the IEEE 802.11x wireless networks, which is one of
the most widely protocols for wireless networks implementation, we concentrated on one of the most important vulnerabilities of this protocol that is transferring management packets via unencrypted channels. In this research we tried to propose an idea to confront MITM and Evil Twin attacks. In the aforementioned attacks, in order to finish an attack successfully, an adversary has to pass two phases: 1) disconnect the victim from legitimate access point and 2) connect the victim to forged access point. The proposed intrusion prevention idea is based on the received signal powers from the APs in a short period of time and tries to counter the occurred
attack and disrupt the attacker to accomplish the first step of the intrusion. This method can be implemented with low cost. In the proposed prevention idea which has deployed in the wireless host's radio layer, we could eliminate %31 until %96 of forged signals at the same layer with a minimum overhead and reforms. The proposed response method is a network-based method and will counter with the second step of attack. The intrusion response system will free and try to disconnect the victim from the forged AP, after receiving the attack alerts from the IDS. The response solution can reduce forged information acception for less than %3. Albeit in
some situations this value may increase until %35. By the way, results show this solution is able to encounter these attacks and even recover the victim's status after a succees attack.