The vulnerability, identified as CVE-2023-52424, enables a service set identifier confusion attack on enterprise, mesh and some home Wi-Fi networks. The SSID confusion attack itself provides an attacker with a method of tricking a user into connecting to a less secure network than the one they think they are connecting to. The only version of the Wi-Fi Protected Access security protocol vulnerable to this SSID confusion attack is WPA3, which is generally considered more secure than the older WPA1 and WPA2 protocols. A flaw in the design of the Wi-Fi standard means that an attacker can, in certain circumstances, divert your connection to a less secure network, disable your VPN and intercept traffic. Should WPA1 and WPA2 protocols be faced out ?

