Postby Kaligraphic » Tue Mar 15, 2005 5:15 pm
If some random guy over the internet got in through my wireless settings, then I'd be surprised indeed. If someone got in from nearby, however, well, he'd have to be nearby to access the stuff, and he'd have to clone my mac address, and he'd have to do it when I'm not on or take over my ip address, and if he did that, he'd have difficulty carrying on a two-way conversation with "himself"/me. As I maintain good host-level security, even if he got on my network, he'd have to be pretty good to compromise my machine, and if he was that good, chances are he could just as easily compromise my router from the outside. Actually, that would probably be easier, because it wouldn't bump my machine from the connection. I'm not saying that security isn't important, just that encryption isn't always necessary on every link.
The important thing to remember is that encryption only protects from people trying to connect to the inside of your network - which is, what, maybe 500 feet? (more if they're pros with directional antennas and fcc-defying amps, and less if you've got a variable-strength AP)
Trojans come by user interaction. Viruses come by bad host- or application-level security, and most crackers worth their salt won't be wasting their time compromising an unimportant laptop. In a corporate setting, I would advocate a much stronger policy, but for a personal laptop, where any attacker wouldn't necessarily even be able to predict whether the machine would be available at a given time, I think that there's a lot less risk.
Encryption isn't everything, and for a single-machine network, if you have to replace an existing host in order to connect, all you've gained for your trouble is the 'Net connection. Meanwhile, you could've just connected to 'DEFAULT' or 'LINKSYS' up the street or a few blocks over, and had no trouble at all. Gee, I wonder which our theoretical villainous friend is going to choose. (Yes, there are a lot of default configurations around. Most wardrivers, if they see a network with no visible ssid versus one with an ssid of 'default', will prefer to connect through default.)
The cake used to be a lie like you, but then it took a portal to the deception core.