Text Widget

Followers

Archives

Blogger Tutorials

Sunday, July 26, 2009

Essential wireless hacking tools

Locating a wireless network is the first step in trying to exploit it. There are two tools that are commonly used in this regard:
Network Stumbler a.k.a NetStumbler – This Windows based tool easily finds wireless signals being broadcast within range – A must have. It also has ability to determine Signal/Noise info that can be used for site surveys. I actually know of one highly known public wireless hotspot provider that uses this utility for their site surveys.

(NetStumbler Screenshot) 
Kismet – One of the key functional elements missing from NetStumbler is the ability to display Wireless Networks that are not broadcasting their SSID. As a potential wireless security expert, you should realize that Access Points are routinely broadcasting this info; it just isn’t being read/deciphered. Kismet will detect and display SSIDs that are not being broadcast which is very critical in finding wireless networks.

(Kismet Screenshot) 

Attaching to the Found Wireless Network

Once you’ve found a wireless network, the next step is to try to connect to it. If the network isn’t using any type of authentication or encryption security, you can simply connect to the SSID. If the SSID isn’t being broadcast, you can create a profile with the name of the SSID that is not being broadcast. Of course you found the non-broadcast SSID with Kismet, right? If the wireless network is using authentication and/or encryption, you may need one of the following tools.
Airsnort – This is a very easy to use tool that can be used to sniff and crack WEP keys.  While many people bash the use of WEP, it is certainly better than using nothing at all.  Something you’ll find in using this tool is that it takes a lot of sniffed packets to crack the WEP key. There are additional tools and strategies that can be used to force the generation of traffic on the wireless network to shorten the amount of time needed to crack the key, but this feature is not included in Airsnort.

(Screenshot of Airsnort in Action) 
CowPatty – This tool is used as a brute force tool for cracking WPA-PSK, considered the “New WEP” for home Wireless Security. This program simply tries a bunch of different options from a dictionary file to see if one ends up matching what is defined as the Pre-Shared Key.

(Cowpatty Options Screenshot) 
ASLeap – If a network is using LEAP, this tool can be used to gather the authentication data that is being passed across the network, and these sniffed credentials can be cracked.  LEAP doesn’t protect the authentication like other “real” EAP types, which is the main reason why LEAP can be broken.

(Asleap Options  Screenshot) 

Sniffing Wireless Data

Whether you are directly connected to a wireless network or not, if there is wireless network in range, there is data flying through the air at any given moment. You will need a tool to be able to see this data.
Wireshark (formerly Ethereal) – While there has been much debate on the proper way to pronounce this utility, there is no question that it is an extremely valuable tool. Ethereal can scan wireless and Ethernet data and comes with some robust filtering capabilities. It can also be used to sniff-out 802.11 management beacons and probes and subsequently could be used as a tool to sniff-out non-broadcast SSIDs.

(Screenshot of Ethereal in Action) 
(Yahoo IM Session being sniffed in Ethereal) 
The aforementioned utilities, or similar ones, will be necessities in your own wireless security toolkit. The easiest way to become familiar with these tools is to simply use them in a controlled lab environment. And cost is no excuse as all of these tools are available freely on the Internet.

About the Author

Lorem ipsum dolor sit amet, consectetur adipiscing elit. Pellentesque volutpat volutpat nibh nec posuere. Follow me @Bloggertheme9
View all posts by admin →

Get Updates

Subscribe to our e-mail newsletter to receive updates.

Share This Post

3 comments:

  1. Whoo Weee! Raya Hari http://www.rayahari.com/hack-facebook-password.php are fast! Easy and straight up business to facebook password hacking. The information obtained may have helped change/save a life. Thank you so much Raya Hari! I'll contact again for sure! Cheers! facebook password hacking



    BTW, I found another website that can hack yahoo passwords and other one specialized in hack into hotmail passwords.



    Diane Calhoun, New York


    US

    ReplyDelete
  2. hacking passwords hotmail Yeah eventually I got the aol password after 10 bloody days. I was told by some from their staff ? http://www.activehackers.com/hacking-hotmail-passwords.php that they will URL anywhere from 1 to 3 days but it took them 5. customer service wes very friendly but I got 4 replies out of 5 emails I sent to them. At end of the day I am very happy and will use their hacking hotmail passwords service again. Thanks for being very professional and fast.



    facebook password hack on mac - yahoo hack password

    how do u take an account away in yahoo messenger - best free way to hack hotmail password



    Paula Robinson, Lincoln


    England

    ReplyDelete
  3. Amazing http://www.activehackers.com/cracking-hotmail-passwords.php !!!! I am surprise how quickly these guys got hacking passwords hotmail for me. I just got the hotmail password hacked in minutes after sending payment through credit card. Very impressed. You did an awesome job and so fast. Highly recommended service of hack hotmail password free. GREAT JOB!!



    facebook password hacking - find a yahoo password

    how to hack into someones yahoo email for real free - can you hack your hotmail messenger passwords?



    Paula Robinson, Lincoln


    England

    ReplyDelete

Recent news

Text Widget

PocketCents Local Online Advertising

Blogroll

Discussion