Cisco’s wireless LANs could be open to a ‘SkyJack’
Attackers have the potential to cause enterprise disruption through denial of service.

Some Cisco LAN (Local Area Network) devices have a vulnerability that could allow a hacker to hit them with a Denial of Service (DoS) attack.
According to a Cisco alert, the flaw is due to the devices not having enough security for wireless access point association sequences.
An attacker could exploit the vulnerability by injecting malicious packets into the wireless network, where newly added access points are seeking controllers.
With the exploit the attacker could make the LAN device associate with a rogue' controller, preventing the device from servicing network clients and resulting in a DoS.
Security firm AirMagnet originally found the vulnerability, calling it SkyJacking'. It said that if the Cisco access point connected to the rogue' controller, it could lead outside an enterprise and therefore be under outside control.
"This same mechanism could be done intentionally by a hacker to purposely SkyJack access points and take control of an enterprise's access point," said the company.
However, Cisco replied that there was no risk of data loss or interception at the rogue access point or wireless LAN controller, and that a DoS would be the only problem.
Get the ITPro daily newsletter
Sign up today and you will receive a free copy of our Future Focus 2025 report - the leading guidance on AI, cybersecurity and other IT challenges as per 700+ senior executives
The Cisco Lightweight Wireless Access Point 1100 and 1200 series devices are affected. Cisco said that software updates were not yet available.
-
NHS set for huge tech investment boost in latest spending review
News The government spending review will fund the NHS App, the single patient record, the Federated Data Platform, and other initiatives
-
Everything we know so far about the United Natural Foods cyber attack
News The attack on United Natural Foods, a major US distributor, severely disrupted systems
-
Cisco polishes its platform but the network is still king
Analysis Cisco still believes its integrated platform will drive new value for customers, but its historic strength in networking is where it will have the edge in the AI era
-
‘Divorced from reality’: HPE slams DOJ over bid to block Juniper deal, claims move will benefit Cisco
News HPE has criticized the US Department of Justice's attempt to block its acquisition of Juniper Networks, claiming it will benefit competitors such as Cisco.
-
Cisco wants to capitalize on the ‘DeepSeek effect’
News DeepSeek has had a seismic impact, and Cisco thinks it has strengths to help businesses transition to AI-native infrastructure
-
Cisco Live EMEA 2025: All the news and updates as they happen
Live Blog Stay up to date with the latest information live from Amsterdam at Cisco’s annual EMEA conference
-
How embracing flash storage helped Mississippi’s tax authority boost critical apps
Case study By ditching legacy systems and switching to flash storage, Mississippi’s Department of Revenue improved its backup strategy and cut restore times by more than a day
-
The US just expanded funding for 5G Open RAN in a bid to help telecoms firms crack Huawei dominance
News The funding for 5G Open RAN aims to help US companies get a bigger slice of the network infrastructure market – and challenge Huawei’s dominance
-
Cisco wants customers to ramp up AI adoption, so it’s partnering with Nvidia to bridge infrastructure hurdles
News Cisco has announced a new partnership with Nvidia to offer enterprises integrated, secure, and scalable data center solutions in a bid to drive AI adoption
-
Cisco Live 2024: All the updates and announcements as they happen
Live Blog Stay up-to-date with the latest news and announcements from Cisco Live 2024 in Amsterdam