Over-the-Air Runtime Wi-Fi MAC Address Re-randomization (2405.15747v1)
Abstract: Medium Access Control (MAC) address randomization is a key component for privacy protection in Wi-Fi networks. Current proposals periodically change the mobile device MAC addresses when it disconnects from the Access Point (AP). This way frames cannot be linked across changes, but the mobile device presence is exposed as long as it remains connected: all its communication is trivially linkable by observing the randomized yet same MAC address throughout the connection. Our runtime MAC re-randomization scheme addresses this issue, reducing or eliminating Wi-Fi frames linkability without awaiting for or requiring a disconnection. Our MAC re-randomization is practically 'over-the-air': MAC addresses are re-randomized just before transmission, while the protocol stacks (at the mobile and the AP) maintain locally the original connection MAC addresses - making our MAC layer scheme transparent to upper layers. With an implementation and a set of small-scale experiments with off-the-shelf devices, we show the feasibility of our scheme and the potential towards future deployment.
- IEEE Std 802.11-2020. 2021. IEEE Standard for Information Technology–Telecommunications and Information Exchange between Systems - Local and Metropolitan Area Networks–Specific Requirements - Part 11: Wireless LAN Medium Access Control (MAC) and Physical Layer (PHY) Specifications. (2021).
- AR5414 Dual-Band, Multi-Mode MAC/BB/Radio for IEEE 802.11 a/b/g Wireless LAN. 2005. https://atoma.spb.ru/sites/default/files/documents/ar5414_data_sheet_05_04.pdf
- Alastair R Beresford and Frank Stajano. 2003. Location privacy in pervasive computing. IEEE Pervasive computing 2, 1 (2003), 46–55.
- Three Years Later: A Study of MAC Address Randomization In Mobile Devices And When It Succeeds. PoPETs 3 (2021), 164–181.
- Improving wireless privacy with an identifier-free link layer protocol. In ACM MobiSys. Breckenridge, Colorado.
- RoMA: Rotating MAC Address for privacy protection. In SIGCOMM Demo. Amsterdam, Netherlands.
- MAC Randomization Behavior. 2023. https://source.android.com/docs/core/connect/wifi-mac-randomization-behavior
- A Study of MAC Address Randomization in Mobile Devices and When it Fails. PoPETs 4 (2017), 365–383.
- Defeating MAC address randomization through timing attacks. In ACM WiSec. Darmstadt, Germany.
- Panos Papadimitratos. 2019. Mix-Zones in Wireless Mobile Networks. Springer.
- Why MAC address randomization is not enough: An analysis of Wi-Fi network discovery mechanisms. In Asia CCS. Xi’an, China.
- Mathy Vanhoef and Frank Piessens. 2018. Release the Kraken: new KRACKs in the 802.11 Standard. In ACM CCS. Toronto, Canada.
- Wi-Fi privacy. 2021. https://support.apple.com/guide/security/wi-fi-privacy-secb9cb3140c/web
- WPA3 Specification. 2022. https://www.wi-fi.org/system/files/WPA3%20Specification%20v3.1.pdf
- Randomized and Changing MAC Address. Technical Report. IETF. https://datatracker.ietf.org/doc/draft-ietf-madinas-mac-address-randomization/09/