This is wonderful. WPA2 has a critical flaw. One more reason to continue to distrust wireless.
[Update a few minutes later]
Well, apparently, so far Netgear is not on the case, so not clear what the implications are for our Orbi mesh. Guess until our phones get patched, good idea to not use wifi.
[Update a while later]
Here’s more information. My new phone is Android 7, so it’s affected, but I don’t generally use it with wifi. I’ll definitely avoid it, or at least avoid it for anything mission critical (like bank accounts), until it patches.
[Update a while later]
Now wondering about the Sony Blu-Ray player. Does this make it vulnerable to becoming a DDOS attacker? Wonder if there’s any way to patch it, and if there is, or will be a patch?
[Mid-morning update]
Nothing on line about patching the player; I’ve tweeted a request to @SonyElectronics. Meanwhile, here’s more info at Ars Technica.
[Update a few minutes later]
Here is the web site for the attack technique, with a lot of technical detail.