    I am trying to put together a list of succesful attacks against Client devices that were caused by poor implementations of either of these standards on the Client device (only).
    An example might be:
    1) not correctly implementing the CCMP Packet replay detection action of dropping duplicate frames
    2) not implementing TKIP countermeasures (eg not transmitting Deauth frames after 2 valid MIC errors)
    3) anything else along these lines

    All this on the clients - not on AP's

