Software Engineering Institute (SEI) Podcast Series · Members of Technical Staff at the Software Engineering Institute

Orchestrating the Chaos: Protecting Wireless Networks from Cyber Attacks

·37 min·25 clips
The episode starts from a simple premise: wireless signals are everywhere. That makes them an engineering convenience and a security headache at the same time. An APT28 intrusion from early 2022 through late 2024 gives the topic immediate weight. The actor used a known Windows print spooler privilege escalation vulnerability and came in through less secure Wi-Fi networks owned by nearby organizations. Nothing had to be planted next to the victim network. The attack stayed remote, thousands of miles away, and ended with backdoor access and stolen credentials. From there, the conversation shifts to the difference between interception and robustness. Interception is what an attacker can see. Robustness is how hard it is to break the link. The speaker contrasts wireless and wired systems to make that distinction clear. Wired links usually need physical access for a tap. Wireless links broadcast in the open. Both still rely on channel coding and signal processing. Encryption helps, but it does not wipe out what can still be learned below the OSI stack. Frequency selection, hopping rates, broadcast timing, patterns of life, and triangulation can all leak useful information. The episode closes with the role of software in securing modern wireless communications for military and civilian use, plus the resources mentioned in the episode.

As heard by us

A tight look at why wireless defense depends on software as much as signal strength.

An episode about wireless security that treats it like a full systems problem, not just a radio one. The APT28 case gives it real bite, and the strongest stretch is the one that connects a software flaw, nearby Wi-Fi networks, and privilege escalation into backdoor access and…

Read the full review in PlayNext →

Why you'd press play

Remote Wi-Fi attacks feel abstract until this episode makes the remote compromise path concrete for you.

Read the full recommendation in PlayNext →
Listen to the show on