SmallNetBuilder Forums

Go Back   SmallNetBuilder Forums > Wireless Networking > Wireless Article Discussions

Reply
 
Thread Tools Rating: Thread Rating: 1 votes, 4.00 average. Display Modes
  #1  
Old 09-24-2008, 02:07 PM
thiggins's Avatar
thiggins thiggins is offline
Mr. Easy
 
Join Date: May 2008
Posts: 2,977
Default How To Crack WPA / WPA2

Wireless networks secured by WPA / WPA2 can be cracked. But it's not as easy as cracking WEP. [article link]
Reply With Quote
  #2  
Old 09-24-2008, 06:02 PM
Ash-lee
Guest
 
Posts: n/a
Default WEP crackin:easy...WPA its solid. how is it done?

im a newbie to this hackin lark really. its them live help vids that got me successful at the WEP crack. with the permition of my neighbour, i had a go of there WEP network and succeeded. Now im tryna do the dreaded WPA network and i cant seem to get it off the ground. i cant even get the 'handshake' thing. Does that only happen when the user is logging on or can it work if there online, period? or doesnt it matter? and how do i know in the program kismet/airodump that they are; going online/online already/not online? ive tried doin the dictionary thing aswell by puttin a text file in root directory called dictionary, filled it up with 5,200 words, one word per start line, used it in the commands and it just says: 'no such directory'. Its doin me nut in! what am i doin wrong? email me @ ash_lee_g@hotmail.com or reply to this thread if u can help. thanx alot...

Ash-Lee
Edit/Delete Message Reply With Quote
  #3  
Old 09-24-2008, 06:26 PM
jdabbs's Avatar
jdabbs jdabbs is offline
Very Senior Member
 
Join Date: May 2008
Location: al.us
Posts: 355
Default

Set up a network of your own and play around with the tools. A hour or two to familiarize yourself will help you understand what's going on in the background.
__________________
"No battle plan survives contact with the enemy." - Field Marshall von Moltke
Reply With Quote
  #4  
Old 09-30-2008, 11:15 AM
Esurnir Esurnir is offline
New Member
 
Join Date: Sep 2008
Posts: 7
Default

The original handshake will happen when one of the users connect to the wifi network (typically, when he start his computer or after a connection loss).

You can check if you captured an handshake by going in wireshark opening the dump files and using the filter eapol.
Reply With Quote
  #5  
Old 10-13-2008, 06:50 PM
Unregistered
Guest
 
Posts: n/a
Default

Erm, call me silly but

"..poor little laptop can only crunch about 35 hashes a second.."

is commented at one point, and then:

"..testing 3740 keys took 35 seconds.."

One's 35, the other is 100... So which is correct?
Edit/Delete Message Reply With Quote
  #6  
Old 11-22-2008, 10:44 AM
ronnald smith ronnald smith is offline
New Member
 
Join Date: Nov 2008
Posts: 2
Default

hi,crack wpa very difficult to me because want read the password very long time.1 time i read 12hour around 8million key but fail.
now i just focus for wep.very simple to get the key.
i use vmware in windows+usb wifi..no need type command.just type 1,2,3,4 and finish..i can crack around 3 minute..
for newbie can find here Tutorial WEP Cracking In 3 Minute

can someone help me what the best software to read the handshake very fast?i use aircrack but just 200key/second.take long time to read the hankshake.i use dual core processor and aircrack make my notebook cpu 100% usage..helpp...
Reply With Quote
  #7  
Old 11-23-2008, 01:17 PM
jdabbs's Avatar
jdabbs jdabbs is offline
Very Senior Member
 
Join Date: May 2008
Location: al.us
Posts: 355
Default

Deauthing a client is a fast way to force an EAPOL handshake.
If by "read" you meant "crack," the fastest method is the Church of WiFi's WPA hash tables, located here. The tables are precomputed hashes of one million passwords, for a thousand of the most common SSIDs.

If your target network isn't one of the thousand SSIDs in the hash tables, you'd have to manually compute the hashes, which is what it sounds like you're doing now. The recently-introduced Pyrit allows hash computation to be performed by CUDA-supporting GPUs (newer Nvidia cards). The current top of the line card, the GTX 280 (~$450), can break 11k keys/second.
__________________
"No battle plan survives contact with the enemy." - Field Marshall von Moltke
Reply With Quote
  #8  
Old 11-27-2008, 03:16 AM
Unregistered
Guest
 
Posts: n/a
Default WPA Help

I've followed the instructions for cracking WPA w/ no clients;
airmon-ng stop...start ....
airodump-ng ....
aireplay-ng -0 5 -a"" ath0
aircrack-ng -w ....

I've never gotten a handshake can someone please help me through the steps.

Thanks
Edit/Delete Message Reply With Quote
  #9  
Old 11-29-2008, 05:45 PM
jdabbs's Avatar
jdabbs jdabbs is offline
Very Senior Member
 
Join Date: May 2008
Location: al.us
Posts: 355
Default

Reread the tutorial; you won't find a clientless technique as the handshake is conducted between the client and the AP.
You won't get very far without a client.
__________________
"No battle plan survives contact with the enemy." - Field Marshall von Moltke
Reply With Quote
  #10  
Old 12-18-2008, 09:34 PM
Unregistered
Guest
 
Posts: n/a
Default capturing the handshake

im very new at this, and I dont actually have any of this stuff running...but once a client authenticates, how do you capture the handshake into the .dump file? or does it do it automatically?
Edit/Delete Message Reply With Quote
Reply

Tags
None


Thread Tools
Display Modes Rate This Thread
Rate This Thread:

Posting Rules
You may post new threads
You may post replies
You may not post attachments
You may edit your posts

BB code is On
Smilies are On
[IMG] code is Off
HTML code is Off


All times are GMT -4. The time now is 03:25 AM.




Powered by vBulletin® Version 3.7.3
Copyright ©2000 - 2009, Jelsoft Enterprises Ltd.
© 2006-2009 Pudai LLC All Rights Reserved.
Comscore