Looks interesting, tho as far as I could tell you need physical (or remote with login) access to the victims router.. Which makes things a lot harder.
Yeah, if it was local, this wouldn't really be a problem. Most end users don't know how to log into their AP, and if they did, they hardly ever change the default password.