A town hall WLAN still has Wi-Fi Protected Setup enabled on corridor APs used for guest and staff onboarding. Which mitigation best addresses enrollment PIN attacks?
Select an answer to reveal the explanation.
Short Explanation
WPS PIN is the flimsy side door next to the vault—attackers love it because short PINs are guessable. On city gear, shut WPS off. Fancy SSID renames and printing the PIN on badges just leave that door propped open.
Full Explanation
WPS enrollment mechanisms, especially PIN-based pairing, have well-known brute-force weaknesses and should not remain enabled on enterprise or municipal infrastructure. Disabling WPS removes that attack surface. Renaming SSIDs, distributing PINs, or coupling WPS to Enterprise login does not mitigate WPS PIN attacks.