What is WPA3?

WPA3 has finally arrived -- and Wi-Fi security is about to get a lot safer

coffee shop wifi
Monkey Business Images/Shutterstock

For years now, the best personal Wi-Fi protection you could enable was known as WPA2 — or the second generation of Wi-Fi Protected Access. It’s a standard network security feature that enables AES encryption through a password.

Now the Wi-Fi Alliance has announced a new security protocol called WPA3, an updated standard that provides more security — and a very timely upgrade in a world that’s increasingly threatened by data hacks and wireless data theft.

Recommended Videos

How WPA works

WPA uses what’s usually called a “handshake” security check system. This handshake is designed to make sure that all the devices involved in the wireless connection are on the same page and working correctly.

In WPA2, that means a four-way handshake between the two client devices connected and the two wireless access points those devices are using to. The WPA2 system takes a look at all these devices and asks, “All right, does everyone have the same password? Good. Now I’m going to encrypt this data as it’s transferred through, and help you decrypt it at the other end when the transfer is complete. Let’s get started.”

The big advantage to this system is that it prevents many casual types of data theft that could otherwise occur—or at least makes them too difficult to be worth the effort. You see, many Wi-Fi hacking attempts use man-in-the-middle hacks or similar approaches that attempt to intercept wireless data as it is being transferred. WPA2 technology encrypts that data during that stage, making it essentially useless to hackers even if they manage to obtain it.

How WPA3 differs from WPA2

Image used with permission by copyright holder

WPA2 worked very well for a long time, but it is starting to get a little outdated by the progress of technology, and the latest efforts of determined hackers trying steal your sweet data. WPA3 adds four new features to the encryption process to keep it current.

Better guest access encryption: You know those guest Wi-Fi networks where you sign in and use the internet at a coffee shop or library? They are really unsafe. WPA3 adds what it calls individualized data encryption, which means that your individual connection to an open wireless network will be encrypted, even if that network is not protected by an overarching password. This is a very big and absolutely necessary change.

Updated handshake: The old WPA2 security has been proven vulnerable to hardware-level attacks and password vulnerabilities (using an easy password is still a dumb move). To help prevent new vulnerabilities from affecting WPA, the updated standard uses a new type of handshake that adds extra protection against password-crackers and similar brute force types of hacking.

Better relations with the Internet of Things: WPA2 was primarily designed to work with traditional mobile devices like phones and laptops-devices with screens you could use to input passwords and control wireless settings. But now we have a vast crop of smart devices that don’t have their own screens for inputs, with apps that aren’t really made to manage wireless connections in detail. To make everything much simpler, WPA3 includes new measures to configure security for devices without screens. We don’t know exactly how this is going to work yet, but it probably involves some sort of pairing the way you pair Bluetooth devices or game controllers.

192-bit security suite: What does this mean? Basically, it’s extra-advanced security that uses CNSA (Commercial National Security Algorithm). That means it meets requirements for high-level government work, defense agencies, and super secret industrial projects. Basically, those organizations will be more free to use Wi-Fi networks with the new standard.

How manufacturers get WPA3

Simon Hill/Digital Trends

Okay, the real question here is, “When can I, the consumer, have access to this new standard?” The answer depends. WPA3 is a very big upgrade for wireless devices, so it’s not like a simple patch can upgrade all your current devices. Manufacturers will need to build devices from the ground up to comply with WPA3, and they have to include all four major changes to qualify for full WPA certification.

Additionally, a single WPA3 device isn’t going to do you much good. You need end user devices (laptops, phones, etc.) and all access points to also use WPA3 to get useful protection. That’s probably not going to happen for at least several years.

However, the first WPA3 devices, like routers, should be making an appearance in 2018, allowing the conversion process to begin. In the beginning, such routers will no doubt support by WPA3 and WPA2 so devices that use either can connect.

Editors' Recommendations

Topics
Former Digital Trends Contributor
If it can be streamed, voice-activated, made better with an app, or beaten by mashing buttons, Tyler's into it. When he's not…
4 CPUs you should buy instead of the Ryzen 7 7800X3D

The Ryzen 7 7800X3D is one of the best gaming processors you can buy, and it's easy to see why. It's easily the fastest gaming CPU on the market, it's reasonably priced, and it's available on a platform that AMD says it will support for several years. But it's not the right chip for everyone.

Although the Ryzen 7 7800X3D ticks all the right boxes, there are several alternatives available. Some are cheaper while still offering great performance, while others are more powerful in applications outside of gaming. The Ryzen 7 7800X3D is a great CPU, but if you want to do a little more shopping, these are the other processors you should consider.
AMD Ryzen 7 5800X3D

Read more
Even the new mid-tier Snapdragon X Plus beats Apple’s M3

You might have already heard of the Snapdragon X Elite, the upcoming chips from Qualcomm that everyone's excited about. They're not out yet, but Qualcomm is already announcing another configuration to live alongside it: the Snapdragon X Plus.

The Snapdragon X Plus is pretty similar to the flagship Snapdragon X Elite in terms of everyday performance but, as a new chip tier, aims to bring AI capabilities to a wider portfolio of ARM-powered laptops. To be clear, though, this one is a step down from the flagship Snapdragon X Elite, in the same way that an Intel Core Ultra 7 is a step down from Core Ultra 9.

Read more
Gigabyte just confirmed AMD’s Ryzen 9000 CPUs

Gigabyte spoiled AMD's surprise a bit by confirming the company's next-gen CPUs. In a press release announcing a new BIOS for X670, B650, and A620 motherboards, Gigabyte not only confirmed that support has been added for next-gen AMD CPUs, but specifically referred to them as "AMD Ryzen 9000 series processors."

We've already seen MSI and Asus add support for next-gen AMD CPUs through BIOS updates, but neither of them called the CPUs Ryzen 9000. They didn't put out a dedicated press release for the updates, either. It should go without saying, but we don't often see a press release for new BIOS versions, suggesting Gigabyte wanted to make a splash with its support.

Read more