Table 1.
Code Injectable Fields in Wireless Technologies.
| Wireless Technology |
Standard | Injectable Field |
Injectable Field Format |
Maximum Field Size | OSI-Reference Layer | Vulnerability Level |
|---|---|---|---|---|---|---|
| Wi-Fi | IEEE 802.11 | SSID | Character String (UTF-8) | 32 Octets | Data Link | Without network credentials |
| BSSID | Hexadecimal Number | 6 Octets | ||||
| Bluetooth | Bluetooth Core specifications | Device Name | Character String (UTF-8) | 248 Octets | Data Link | Without network credentials |
| Low-Rate Wireless Networks (IEEE802.15.4) |
IEEE 802.15.4 | PAN ID | Hexadecimal Number | 2 Octets | Data Link | Without network credentials |
| Zigbee | IEEE 802.15.4 | PAN ID | Hexadecimal Number | 2 Octets | Data Link | Without network credentials |
| Zigbee Specifications |
EPID | 8 Octets | Network | |||
| UserDescriptor | Character String (ASCII) | 16 Octets | Application | With network credentials | ||
| Thread | IEEE 802.15.4 | PAN ID | Hexadecimal Number | 2 Octets | Data Link | Without network credentials |
| Thread Specifications |
XPANID | 8 Octets | Network | |||
| Network Name | Character String (UTF-8) | 16 Octets | ||||
| LoRaWAN | ITU-T Y.4480 | DevEUI | Hexadecimal Number | 2 Octets | Data Link | Without network credentials |
| JoinEUI | 8 Octets | |||||
| home_NetID | 16 Octets | |||||
| Z-Wave | ITU-T G.9959 | HomeID | Hexadecimal Number | 4 Octets | Data Link | Without network credentials |
| WirelessHART | IEC 62591 | Gateway HART Tag | Character String (Any in ISO Latin-1) |
32 Octets | Application | Without network credentials |
| Wireless Body Area Networks | IEEE 802.15.6 | BAN ID | Hexadecimal Number | 1 Octet | Data Link | Without network credentials |
| Sender Address field of the beacon frame |
6 Octets | |||||
| Short-Range Optical Wireless Communications |
IEEE 802.15.7 | OWPAN ID | Hexadecimal Number | 2 Octets | Data Link | Without network credentials |
| NFC | NDEF Technical Specification | Payload Type | Character String (UTF-8) | 32 Octets | Application | Without network credentials |
| Payload | Character String (UTF-8 or -16) | (232–1) Octets or more | ||||
| RFID | No specific standard | Payload | Various encoding formats |
16 Octets or more |
Application | Without network credentials |