bk99.de entertain the web since 1997

Broadcom hole lets attackers knock out entire Wi-Fi networks

Summary

In January 2026 researchers from Black Duck found a hole in Broadcom Wi-Fi chipsets through which an attacker within radio range can knock out a 5 GHz network with a single packet, without logging in and regardless of WPA2 or WPA3. All clients lose their connection until the router is restarted, and the attack can be repeated immediately. Testing was done on an Asus RT-BE86U; Broadcom had already patched, but how far manufacturers had passed this on remained unclear.

Ideas

  • A single prepared packet is enough to disrupt an access point permanently.
  • Encryption does not protect against attacks on the management level of the wireless network.
  • A Wi-Fi network that has been knocked out can be replaced by the attacker’s “evil twin”.
  • The researchers deliberately held back technical details.

Insights

  • Holes in chipset firmware only reach users if every device manufacturer passes on the patch.
  • Availability is a security goal that Wi-Fi encryption does not cover.

Facts

  • Only 5 GHz networks were affected; 2.4 GHz apparently was not.

References

Critique

  • Without details and a list of affected chips, operators can hardly assess their risk.

Recommendations

  • Keep router and access point firmware up to date and check manufacturers’ advice on Broadcom chips.
  • Additionally protect logins against evil twin phishing with HTTPS with HSTS and two-factor methods.

Read the original article

Search the Web Archive