Zoom
Trash
Related:
Main Aircrack-ng is an 802.11 WEP and WPA-PSK keys cracking program that can recover keys once enough data packets have been captured. It implements the standard FMS attack along with some optimizations like KoreK attacks, as well as the all-new PTW attack, thus making the attack much faster compared to other WEP cracking tools. In fact, Aircrack-ng is a set of tools for auditing wireless networks. If you are impatient and want to know how to get started, jump to the Getting Started Tutorial. Aircrack-ng is the next generation of aircrack with lots of new features: More cards/drivers supported More OS and platforms supported WEP dictionary attack Fragmentation attack WPA Migration mode Improved cracking speed Capture with multiple cards Optimizations, other improvements and bug fixing … Note: Check trac for planned and requested features More news... Current version Latest version: 1.2 Beta 3 Zaurus (1.0-dev r830; older than beta2) Changelog Finally properly fixed the buffer overflow. Virtual Machine
OSSP: Welcome! Wirelessdefence.org "coWPAtty is designed to audit the pre-shared key (PSK) selection for WPA networks based on the TKIP protocol." - Joshua Wright. Project Homepage: also see: Local Mirror: cowpatty-4.6.tgz MD5: b90fd36ad987c99e7cc1d2a05a565cbd Installing coWPAtty coWPAtty Dictionary Attack Precomputing WPA PMK to crack WPA PSK coWPAtty Precomputed WPA Attack coWPAtty Tables NOTE: coWPAtty 4.0 and above also include WPA2 attack capabilities (usage remains the same). Download the latest coWPAtty (currently coWPAtty-4.2) to /tools/wifi tar zxvf cowpatty-4.2.tgz cd cowpatty-4.2 make To perform the coWPAtty dictionary attack we need to supply the tool with a capture file that includes the TKIP four-way handshake, a dictionary file of passphrases to guess with and the SSID for the network. . wpa-test-01.cap is the capture containing the four-way handshake dict is the password file cuckoo is the network SSID . hashfile is our output file
AirSnort Homepage #!/bin/the hacker's choice - THC Troy Hunt: The beginners guide to breaking website security with nothing more than a Pineapple You know how security people get all uppity about SSL this and SSL that? Stuff like posting creds over HTTPS isn’t enough, you have to load login forms over HTTPS as well and then you can’t send auth cookies over HTTP because they’ll get sniffed and sessions hijacked and so on and so forth. This is all pretty much security people rhetoric designed to instil fear but without a whole lot of practical basis, right? That’s an easy assumption to make because it’s hard to observe the risk of insufficient transport layer protection being exploited, at least compared to something like XSS or SQL injection. But it turns out that exploiting unprotected network traffic can actually be extremely simple, you just need to have the right gear. Say hello to my little friend: This, quite clearly, is a Pineapple. What is this “Pineapple” you speak of?! Huh? This isn’t the only way of configuring the thing, but being tethered to the attacker’s PC is the easiest way of understanding how it works. Karma, baby
stumbler dot net QuickStego - Free Steganography Software Free Steganography Software - QuickStego What is Steganography? Steganography is the science of writing hidden messages in such a way that no one apart from the sender and intended recipient even realizes there is a hidden message. An Example of Image Steganography ... A perfectly innocuous picture? QuickStego - Screenshots Load the image from above into QuickStego (or QuickCrypto), and the secret text that was hidden in the photograph is revealed: Download QuickStego Now - It's Free! System Requirements & FAQ * Operating System - Windows XP or Vista or 7. * Display - 32 bit color depth required * Image Types that can be opened - .jpg/.jpeg, .gif, or .bmp formats * Saved Hidden Text Images - .bmp format only * Approximately 2MB of free hard disk space (plus extra space for any images) What does QuickStego let me do? QuickStego lets you hide text in pictures so that only other users of QuickStego can retrieve and read the hidden secret messages. What does QuickStego NOT do? Why is QuickStego free?
aireplay-ng [Aircrack-ng] Description Aireplay-ng is used to inject frames. The primary function is to generate traffic for the later use in aircrack-ng for cracking the WEP and WPA-PSK keys. There are different attacks which can cause deauthentications for the purpose of capturing WPA handshake data, fake authentications, Interactive packet replay, hand-crafted ARP request injection and ARP-request reinjection. With the packetforge-ng tool it's possible to create arbitrary frames. Most drivers needs to be patched to be able to inject, don't forget to read Installing drivers. Usage of the attacks It currently implements multiple different attacks: Usage This section provides a general overview. Usage: aireplay-ng <options><replay interface> For all the attacks except deauthentication and fake authentication, you may use the following filters to limit which packets will be presented to the particular attack. Filter options: When replaying (injecting) packets, the following options apply. Replay options: Source options: or
How To Crack A Wi-Fi Network's WPA Password With Reaver Your Wi-Fi network is your convenient wireless gateway to the internet, and since you’re not keen on sharing your connection with any old hooligan who happens to be walking past your home, you secure your network with a password, right? Knowing, as you might, how easy it is to crack a WEP password, you probably secure your network using the more bulletproof WPA security protocol. Here’s the bad news: A new, free, open-source tool called Reaver exploits a security hole in wireless routers and can crack most routers’ current passwords with relative ease. Here’s how to crack a WPA or WPA2 password, step by step, with Reaver — and how to protect your network against Reaver attacks. In the first section of this post, I’ll walk through the steps required to crack a WPA password using Reaver. After that, I’ll explain how Reaver works, and what you can do to protect your network against Reaver attacks. Please enable JavaScript to watch this video. What You’ll Need The BackTrack 5 Live DVD. iwconfig