Reply
Thread Tools
Posts: 12 | Thanked: 0 times | Joined on Apr 2007 @ Eureka, Montana
#1
Haven't found many open networks in my part of the world. I am wondering if there are any hacker tools for the N800 to capture and crack the WPA/WEP key exchange?

Takes me back to my ol' wardriving days. http://www.internettablettalk.com/fo...es/biggrin.gif
 
barry99705's Avatar
Posts: 641 | Thanked: 27 times | Joined on Apr 2007
#2
You could try over at www.fellonsR'us.com
 
Posts: 37 | Thanked: 2 times | Joined on May 2007 @ Wimer, Oregon
#3
Originally Posted by griz View Post
Haven't found many open networks in my part of the world. I am wondering if there are any hacker tools for the N800 to capture and crack the WPA/WEP key exchange?
I doubt you'll find any... WEP cracking is pretty much a "done deal," so no one's that interested in it anymore, and WPA cracking is pretty much undoable, and the folks who might still be trying to crack it are almost assuredly using desktops or laptops for the faster CPUs.

If you do a little war driving these days, realistically you're going to see lots of unsecured networks and lots using WPA or WPA2. Very few will still use WEP.
 
Posts: 71 | Thanked: 6 times | Joined on Jan 2006
#4
Speaking on clearly theoretical points here:

Actually, WPA cracking just got easier thanks to some new discoveries. If you want some wardriving tools, check out kismet, which is available for your N800. It requires a beefy CPU to do any kind of encryption cracking though, so it's best to just grab your laptop and crack the network in question, then save those connection settings to your N800. However, if you are trying this with a network where you do not have authorization to connect, I suggest you speak with your lawyer and / or consult your local laws about the subject.
 
barry99705's Avatar
Posts: 641 | Thanked: 27 times | Joined on Apr 2007
#5
Wpa cracking on a handheld is going to be pretty much impossible. The dictionary file's size alone stop this. Then you have to look at the processor speed. I've done my linksys router with a dictionary word of "password", took about 5 minutes. As soon as I changed it to "p@ssword", couldn't do it with the hash table I was using. So while yes, it's possible to crack the password, it's really not worth it.
 

The Following User Says Thank You to barry99705 For This Useful Post:
Posts: 309 | Thanked: 51 times | Joined on Apr 2007
#6
Originally Posted by JKolstad View Post
I doubt you'll find any... WEP cracking is pretty much a "done deal," so no one's that interested in it anymore, and WPA cracking is pretty much undoable, and the folks who might still be trying to crack it are almost assuredly using desktops or laptops for the faster CPUs.

If you do a little war driving these days, realistically you're going to see lots of unsecured networks and lots using WPA or WPA2. Very few will still use WEP.
Did a walk in the neighbourhood with my N800 and that's what I found:

About 10% of all WLANS were open, readily usable.
80% used WEP keys. Readily crackable.
10 % used WPA.

I didn't expect that. And that was a mid size town only. I will do a similar check at a bigger town with many apartment blocks. I expect open WIFI en mass
 
Posts: 3,401 | Thanked: 1,255 times | Joined on Nov 2005 @ London, UK
#7
kismet, airsnort, airodump, metasploit. Search this forum for kismet and also metasploit.

You'll probably have to do your own legwork to get it all working as you're almost certainly breaking the law in your neck of the woods if you go around cracking secure WiFi networks.
 
YoDude's Avatar
Posts: 2,869 | Thanked: 1,784 times | Joined on Feb 2007 @ Po' Bo'. PA
#8
Couldn't you just clone the mac addy of a device that is connected already?

I don't know as I have had no real need. I seem to always find an open WLAN when I have down time. In the city they are popping up all over and in the 'burbs just about every Dunkin' Donuts or bagel shop/cafe has one.

Other than casual surfing, I wouldn't trust any WLAN that isn't a VPN because of the availability of information like this that can be viewed and used by anyone.
 
Posts: 3,401 | Thanked: 1,255 times | Joined on Nov 2005 @ London, UK
#9
Just a word of caution...

WiFi hotspots are becoming increasinly prone to SSID spoofing and man-in-the-middle attacks. Anyone considering passing confidential information over a random WiFi link (even one that uses WPA security and your browser connection is using https) should think again...
 
barry99705's Avatar
Posts: 641 | Thanked: 27 times | Joined on Apr 2007
#10
Originally Posted by YoDude View Post
Couldn't you just clone the mac addy of a device that is connected already?

I don't know as I have had no real need. I seem to always find an open WLAN when I have down time. In the city they are popping up all over and in the 'burbs just about every Dunkin' Donuts or bagel shop/cafe has one.

Other than casual surfing, I wouldn't trust any WLAN that isn't a VPN because of the availability of information like this that can be viewed and used by anyone.
No, you still don't know the password.
 
Reply


 
Forum Jump


All times are GMT. The time now is 02:17.