Showing posts with label Wireless. Show all posts
Showing posts with label Wireless. Show all posts

Sunday, February 5, 2012

wifite - WEP/WPA Password Cracker for BT4

introduction

designed for Backtrack4 distribution of Ubuntu; works great with BlackBuntu! Linux only; no windows or osx support.

downloads
http://code.google.com/p/wifite/downloads/list

purpose

to attack multiple WEP and WPA encrypted networks at the same time. this tool is customizable to be automated with only a few arguments. wifite can be trusted to run without supervision.  

features

  • this project is available in French: all thanks goto Matt² for his excellent translation!
  • sorts targets by power (in dB); cracks closest access points first
  • automatically deauths clients of hidden networks to decloak SSIDs
  • numerous filters to specify exactly what to attack (wep/wpa/both, above certain signal strengths, channels, etc)
  • customizable settings (timeouts, packets/sec, channel, change mac address, ignore fake-auth, etc)
  • "anonymous" feature; changes MAC to a random address before attacking, then changes back when attacks are complete
  • all WPA handshakes are backed up to wifite.py's current directory
  • smart WPA deauthentication -- cycles between all clients and broadcast deauths
  • stop any attack with Ctrl+C -- options: continue, move onto next target, skip to cracking, or exit
  • switching WEP attack methods does not reset IVs
  • intel 4965 chipset fake-authentication support; uses wpa_supplicant workaround
  • SKA support (untested)
  • displays session summary at exit; shows any cracked keys
  • all passwords saved to log.txt
  • built-in updater: ./wifite.py -upgrade

requirements

  • linux operating system (confirmed working on Ubuntu 8.10 (BT4R1), Ubuntu 10.04.1)
  • tested working with python 2.4.5 and python 2.5.2; might be compatible with other versions,
  • wireless drivers patched for monitor mode and injection: backtrack4 has many pre-patched drivers,
  • aircrack-ng (v1.1) suite: available via apt: apt-get install aircrack-ng or by clicking here,
  • xterm, python-tk module: required for GUI, available via apt: apt-get install python-tk
  • macchanger: also available via apt: apt-get install macchanger
  • pyrit: not required, optionally strips wpa handshake from .cap files

execution

download the latest version:
wget -O wifite.py http://wifite.googlecode.com/svn/trunk/wifite.py
change permissions to executable:
chmod +x wifite.py
execute:
python wifite.py
or, to see a list of commands with info:
./wifite.py -help

snapshot

console mode:

gui mode (default):

video tutorial

capturing WPA handshake using Wifite (and then cracking with oclHashCat).

 

video credit: Maurizio Schmidt

examples

the program contains lots of interactivity (waits for user input). these command-line options are meant to make the program 100% automated -- no supervision required.
to crack all WEP access points:
./wifite.py -all -nowpa
to crack all WEP access points with signal strength greater than (or equal to) 50dB:
./wifite.py -p 50 -nowpa
to attack all access points, use 'darkc0de.lst' for cracking WPA handshakes:
./wifite.py -all --dict /pentest/passwords/wordlists/darkc0de.lst
to attack all WPA access points, but do not try to crack -- any captured handshakes are saved automatically:
./wifite.py -all -nowpa --dict none
to crack all WEP access points greater than 50dB in strength, giving 15 minutes for each WEP attack method, and send packets at 600 packets/sec:
./wifite.py --power 50 -wepw 15 -pps 600
to attempt to crack WEP-encrypted access point "2WIRE752" endlessly -- program will not stop until key is cracked or user interrrupts with ^C):
./wifite.py -e "2WIRE752" -wepw 0

Saturday, September 17, 2011

Wireless Lan Security Megaprimer By Vivek Ramachandran



1 Wireless Lan Security Megaprimer Part 1: Getting Started
2 Wireless Lan Security Megaprimer Part 2: Bands, Channels And Sniffing
3 Wireless Lan Security Megaprimer Part 3: Pwning Beacon Frames
4 Wireless Lan Security Megaprimer Part 4: Dissecting Ap-Client Connections
5 Wireless Lan Security Megaprimer Part 5:Dissecting Wlan Headers
6 Wireless Lan Security Megaprimer Part 6: Pwning Hidden Ssids
7 Wireless Lan Security Megaprimer Part 7: Laughing Off Mac Filters
8 Wireless Lan Security Megaprimer Part 8: Hacking Wlan Authentication
9 Wireless Lan Security Megaprimer Part 9: Hotspot Attacks
10 Wireless Lan Security Megaprimer Part 10: Hacking Isolated Clients
11 Wireless Lan Security Megaprimer Part 11:Alfa Card Kung-Fu
12 Wireless Lan Security Megaprimer Part 12: Man-In-The-Middle Attack
13 Ssl Mitm Attack Over Wireless
14 Ssl Mitm Attack Over Wireless Demo
15 Wireless Lan Security Megaprimer Part 13 : Ssl Man-In-The-Middle Attacks
16 Custom Wireless Regulation Database
17 Wireless Lan Security Megaprimer Part 14: Wep In-Depth
18 Wireless Lan Security Megaprimer Part 15: Wep Cracking
19 Wireless Lan Security Megaprimer Part 16: Caffe Latte Attack Basics
20 Wireless Lan Security Megaprimer Part 17: Caffe Latte Attack Demo
21 Caffe Latte Attack On The Iphone
22 Wireless Lan Security Megaprimer Part 18: Korek's Chopchop Attack
23 Wireless Lan Security Megaprimer Part 19: Fragmentation And Hirte Attack
24 Wireless Lan Security Megaprimer Part 20: Understanding Wpa/Wpa2
25 Wi-Fi Challenge 1 (Level Easy) : There Is No Patch For Stupidity!
26 Wi-Fi Challenge 1 Solution : There Is No Patch For Stupidity!
27 Wi-Fi Challenge 2 (Level - Intermediate) : Know Thy Packets
28 Wi-Fi Challenge 2 Solution : Know Thy Packets
29 Wi-Fi Challenge 3 (Level Advanced): Never Underestimate Your Enemy!
30 Wireless Lan Security Megaprimer Part 22: Wpa-Psk
31 Wireless Lan Security Megaprimer Part 22: Wpa-Psk Cracking
32 Wireless Lan Security Megaprimer Part 23: Wpa2-Psk Cracking
33 Wireless Lan Security Megaprimer Part 24: Speeding Up Wpa/Wpa2 Psk Cracking
34 Wi-Fi Challenge 3 Solution: Never Underestimate Your Enemy!
35 Wlan Security Megaprimer Part 25: Mood Swings Of A Wandering Client
36 Wlan Security Megaprimer Part 26: Cracking Wpa/Wpa2-Psk With Just The Client
37 Wlan Security Megaprimer: Questions And Answers
38 Wireless Lan Security Megaprimer Part 28: Wpa_Supplicant
39 Wireless Lan Security Megaprimer Challenge 4: Crack Wpa-Personal With Only Ap
40 Wireless Lan Security Megaprimer 29: Setting Up Freeradius-Wpe On Backtrack
41 Wireless Lan Security Megaprimer 30: Eap-Md5 Basics And Demo
42 Wireless Lan Security Megaprimer 31: Cracking Eap-Md5 With Eapmd5Pass And Eapmd5Crack
43 Wireless Lan Security Megaprimer 32: Eap Types And Peap Demo
44 Wireless Lan Security Megaprimer 33: Cracking Peap
45 Wireless Lan Security Megaprimer 34: Cracking Peap In A Windows Network
46 Wireless Lan Security Megaprimer 35: Cracking Eap-Ttls
47 Wireless Lan Security Megaprimer 36: Insecurity In 3Rd Party Wi-Fi Utilities
48 Wireless Lan Security Megaprimer : Conclusion And The Road Ahead