Securing Wi-Fi 6 Connection Establishment Against Relay and Spoofing Threats
Naureen Hoque, Hanif Rahbari

TL;DR
This paper introduces a backward-compatible physical-layer scheme with digital signatures to secure Wi-Fi 6 connection establishment against relay and spoofing attacks, demonstrating high detection accuracy and formal security validation.
Contribution
A novel PHY-layer signature embedding method for Wi-Fi 6 CE phase that enables concurrent verification and robust attack detection without increasing frame size.
Findings
Achieves 96-100% true positive rate in relay attack detection
Supports concurrent connection establishment with high accuracy
Validated security and correctness through formal analysis
Abstract
Wireless local area networks remain vulnerable to attacks initiated during the connection establishment (CE) phase. Current Wi-Fi security protocols fail to fully mitigate attacks like man-in-the-middle, preamble spoofing, and relaying. To fortify the CE phase, in this paper we design a backward-compatible scheme using a digital signature interwoven into the preambles at the physical (PHY) layer with time constraints to effectively counter those attacks. This approach slices a MAC-layer signature and embeds the slices within CE frame preambles without extending frame size, allowing one or multiple stations to concurrently verify their respective APs' transmissions. The concurrent CEs are supported by enabling the stations to analyze the consistent patterns of PHY-layer headers and identify whether the received frames are the anticipated ones from the expected APs, achieving 100%…
Peer Reviews
No public reviews on file for this paper yet. If you reviewed it on a platform where reviews are public (OpenReview, ICLR, NeurIPS, ICML), you can paste yours below so the community can read it here.
Videos
No videos yet. Explain this paper in a talk, walkthrough, or lecture? Add one.
Taxonomy
TopicsWireless Communication Security Techniques · Opportunistic and Delay-Tolerant Networks · Cooperative Communication and Network Coding
