Looks serious. It’s claimed there’s a protocol issue, and either client devices or access points need to be patched. If two unpatched devices come into contact, all the traffic becomes transparent for analysis, including https. A Mitm-type attack due to protocol imperfections. They promise to present it at a conference on November 1st, the article is already available
Let’s see if it’s as bad as the authors claim.
