Vault 7: Projects

This publication series is about specific projects related to the Vault 7 main publication.
Device
<01:02:03:04:05:06>
Network Profile
<café_net>
Network Profile
<café_net>
Network Profile
<café_net>
Device Type
<Asus/WL500G>
Device Type
<Asus/WL500G>
Device Type
<Asus/WL500G>
Network
and
Survey
Settings
Default
Device
Settings
1
2
3
4
5
1
Figure 1 Profile Interaction Diagram
1. Network and Device Type profiles are added to a Mission by the operator.
2. Sundew begins scanning and a device having a BSSID (MAC) address of
01:02:03:04:05:06 and a SSID of “café_net” is discovered.
3. Sundew automatically generates a Device Profile for the newly discovered device.
This Device has a BSSID address of 01:02:03:04:05:06 and a SSID value of
“café_net”.
4. The SSID of the new Device matches the name of a Network Profile. The
network and survey settings for the matching Network Profile are applied to the new
Device.
5. The operator requests a survey of the device and Sundew successfully identifies
the device as an Asus WL500G. The device type identification occurs early in the
survey process, so Sundew automatically looks up values from an Asus/WL500G
Device Type profile. The values from the Device Type profile may help complete the
rest of the survey tasks.
2.5.1 Device Profile
The Device Profile describes a single network in a WLAN. Any information gathered
about a device during a scan or survey is added to the Device Profile. Device Profiles are
either created by the operator from a previous survey data set or are generated
automatically by Sundew when a new device is discovered.
- 4 -