MeetTheGeeks.Org Official Forums
 

Go Back   MeetTheGeeks.Org Official Forums > Hardware > Networking & Wireless Networking

Reply
 
Thread Tools Rate Thread
  #1  
Old 05-31-2008, 11:08 PM
slayer's Avatar
slayer slayer is offline
Bad To Da'Bone
(Enlightens Virgins)
 
Join Date: Feb 2008
Location: behind the laser sight trained on your head
Posts: 785
Blog Entries: 1
slayer has a spectacular aura aboutslayer has a spectacular aura about
Default airpcap and cain wep/wpa crack

ok here goes....

if you really cant get the hang of wep/wpa cracking with linux then there is an alternative........BUT it will cost you!!!

£200 quid infact... but we ask today.. is it worth it??

we shall be using the airpcap tx adapter from
www.crownhill.co.uk

this is a monitor mode enabled wifi dongle for the windows interface
this is at present the only way to achieve monitor mode in windows

we shall be using this in conjunction with another program called
cain and able...............download it here

http://www.oxid.it/cain.html

then go pay £200 quid for an adapter and when it arrives you must follow the install instructions to a tee
once that is done we shall continue....
__________________
if you cant laugh at yourself then i'll do it for you
Reply With Quote
  #2  
Old 05-31-2008, 11:23 PM
slayer's Avatar
slayer slayer is offline
Bad To Da'Bone
(Enlightens Virgins)
 
Join Date: Feb 2008
Location: behind the laser sight trained on your head
Posts: 785
Blog Entries: 1
slayer has a spectacular aura aboutslayer has a spectacular aura about
Default step 1

right you have your adapter installed and you have cain and able installed
we hope.......... if you aint then the rest wont work

open up cain .....(with your adapter plugged in)

and navigate to the wireless tab
where it says "adapter for dialup and vpn capture" you must choose the airpcap00

then simply click "passive scan"

when its found all the networks you can click "stop"

ok now note the channel number of the network you wish to target

where it says channel hopping..... change this to the channel of your target

and check the box that says "wep injection" arp requests

the tx rate should be 2

now click "passive scan" and wait for the rest of the night to collect enough "unique WEP iv's"

you will need around 500.000 of these and then you can click "stop"

now click the "analyze" button and choose your file

choose korek's attack and then hit start.......

thats it..... wep cracked
__________________
if you cant laugh at yourself then i'll do it for you
Reply With Quote
  #3  
Old 05-31-2008, 11:25 PM
Admin's Avatar
Admin Admin is offline
TheDaliFarmer
(EvilGenius)
 
Join Date: Jun 2007
Location: Deepest, Darkest Devon
Posts: 8,381
Blog Entries: 22
Admin has a spectacular aura aboutAdmin has a spectacular aura aboutAdmin has a spectacular aura about
Send a message via Yahoo to Admin
Default

I'll email them and see if I can get my hands on one mate.. I certainly would like a look at one of them
__________________

Live fast, Die Young, Leave only Beautiful code...

.....This Christmas...... I want Santa's list of naughty girls......
Reply With Quote
  #4  
Old 05-31-2008, 11:43 PM
slayer's Avatar
slayer slayer is offline
Bad To Da'Bone
(Enlightens Virgins)
 
Join Date: Feb 2008
Location: behind the laser sight trained on your head
Posts: 785
Blog Entries: 1
slayer has a spectacular aura aboutslayer has a spectacular aura about
Default wpa with airpcaptx

ok so you want to crack wpa with the airpcap and cain solution

read on and i shall show you how

its pretty much the same as cracking wep but there are a few rules to adhere to with wpa

your target network MUST have a WIRELESS client connected to it
this is because we need to kick this person off the network and then capture the info it creates when they rejoin 5 seconds later.... its called a 4way handshake

and you must also have a massive dictionary file containing as many words as possible... the complete brittanica is NOT enough...
you will need a file of millions of words and phrases..english and foriegn..every language known to man..including cling-on and swahili
round about the 40gig level......SERIOUSLY

ok select your airpcap adapter as the wireless capture adapter..
check the box marked "WPA-PSK auths..send to cracker
then click "passive scan"
then click your target network
when you click the network the wireless client will show up in the box beneath

you need to then right click the client and choose "deauth"
do this 2 or 3 times....
this action kicks the client pc for a few seconds and then captures its handshake as it rejoins the network...you have your 4 way hand shake

ok now click the cracker tab
and browse down the left hand side till you reach WPA-PSK auths..(click it)
now choose the relative file and right click it
then choose dictionary attack
navigate to your massive dictionary file and click add
then click start

the way wpa is cracked is that the password for the network MUST be in your dictionary file... hence the need to have such a large extensive file..
brute force is an option but you will need to live till your about 15 million and i dont think that is gonna happen do you
__________________
if you cant laugh at yourself then i'll do it for you
Reply With Quote
  #5  
Old 05-31-2008, 11:53 PM
Admin's Avatar
Admin Admin is offline
TheDaliFarmer
(EvilGenius)
 
Join Date: Jun 2007
Location: Deepest, Darkest Devon
Posts: 8,381
Blog Entries: 22
Admin has a spectacular aura aboutAdmin has a spectacular aura aboutAdmin has a spectacular aura about
Send a message via Yahoo to Admin
Default

Im trying to remember where the best place for dictionary libraries are.. the only ones I can think of that are safe enough for the normal home user to navigate to and find are

http://astalavista.box.sk

Or maybe torrent downloads/emule

I know some of the sites offering them need a higher level of security because of unauthorised downloads in the background and I dont want anyone to blame us here..

The important thing to realise with dictionary attacks is the variety a simple word like 'spam' makes massive variables

spam
SPAM
Spam
sPam
spAm
spaM
SPam
sPAm
spAM
SpAm
sPaM

this goes on until we reach 64 variables. For four characters! These are all different variables, a password is case sensitive This is simplified as well, words of 5 characters only using the basic lowercase alphabet can generate thousands of options, then 8 characters can product millions, billions if you throw in any glyphs..

When slayer says you need masses of words and different spellings.. hes not joking.. this really is something that people sell on the internet, dictionary files amongst crackers sell for big bucks..

stealing many of them and combining them into one compound volume on a set drive with a secure backup is NOT uncommon in this type of work...
__________________

Live fast, Die Young, Leave only Beautiful code...

.....This Christmas...... I want Santa's list of naughty girls......
Reply With Quote
  #6  
Old 06-01-2008, 12:06 AM
slayer's Avatar
slayer slayer is offline
Bad To Da'Bone
(Enlightens Virgins)
 
Join Date: Feb 2008
Location: behind the laser sight trained on your head
Posts: 785
Blog Entries: 1
slayer has a spectacular aura aboutslayer has a spectacular aura about
Default

you may wish to download "gibberish" word files too

by this i mean dictionary files containing special characters and nonsense words

it will also help if you have 2 copies of all your files..1 with no spaces in it between words and the other with spaces....

not as easy as ya thought is it....

you have to put the effort in to get rewards out
__________________
if you cant laugh at yourself then i'll do it for you
Reply With Quote
  #7  
Old 06-01-2008, 12:19 AM
Admin's Avatar
Admin Admin is offline
TheDaliFarmer
(EvilGenius)
 
Join Date: Jun 2007
Location: Deepest, Darkest Devon
Posts: 8,381
Blog Entries: 22
Admin has a spectacular aura aboutAdmin has a spectacular aura aboutAdmin has a spectacular aura about
Send a message via Yahoo to Admin
Default

I didnt cover that for a reason, it makes it complicated



But its correct, add all the characters on the keyboard, all of them, the weird ones too (glyphs) ^|`¬ all of them

They need to be added to the fastest HDD you can get solely for the dictionary libray.. ideally raid it, stripe it so it can read faster. This is how you make it better. Some brute force systems can hit at a rate of 300-500 words a second. The likes of zip file crackers, rar file crackers 500-1000 per second... the normal dictionary up to the letter E using only the words below 4 characters, standard words only will take the best part of an hour and a half....

More reason for us to say use the best security, and to pick something weird!!

average keyboard has 103 or 108 key options.. it may take time to find it...

108 key keyboard offers 10,077,696 options basically
__________________

Live fast, Die Young, Leave only Beautiful code...

.....This Christmas...... I want Santa's list of naughty girls......
Reply With Quote
  #8  
Old 06-01-2008, 12:27 AM
slayer's Avatar
slayer slayer is offline
Bad To Da'Bone
(Enlightens Virgins)
 
Join Date: Feb 2008
Location: behind the laser sight trained on your head
Posts: 785
Blog Entries: 1
slayer has a spectacular aura aboutslayer has a spectacular aura about
Default

complicated ........yes........

the process may seem easy
but cracking a mainstream encryption algorithm is not something to be sniffed at

AES is one of the most complex encryptions out there at the mo
even the government use it to encrypt TOP SECRET info

now you see why the penalties are so high for smashin it

but it does feel bloody good when you do it
__________________
if you cant laugh at yourself then i'll do it for you
Reply With Quote
  #9  
Old 06-01-2008, 12:37 AM
Admin's Avatar
Admin Admin is offline
TheDaliFarmer
(EvilGenius)
 
Join Date: Jun 2007
Location: Deepest, Darkest Devon
Posts: 8,381
Blog Entries: 22
Admin has a spectacular aura aboutAdmin has a spectacular aura aboutAdmin has a spectacular aura about
Send a message via Yahoo to Admin
Default

The government in the US and UK has a key to unlock all major public release encryption protocols.. it prevents terrorism or so they claim.. the likes of software a few years back called Kremlin gave home users that top rated encryption systems on the market and beyond..

Odd how the company does no public trading anymore..

coincidence??
__________________

Live fast, Die Young, Leave only Beautiful code...

.....This Christmas...... I want Santa's list of naughty girls......
Reply With Quote
  #10  
Old 06-01-2008, 12:38 AM
Admin's Avatar
Admin Admin is offline
TheDaliFarmer
(EvilGenius)
 
Join Date: Jun 2007
Location: Deepest, Darkest Devon
Posts: 8,381
Blog Entries: 22
Admin has a spectacular aura aboutAdmin has a spectacular aura aboutAdmin has a spectacular aura about
Send a message via Yahoo to Admin
Default

Quote:
Originally Posted by slayer View Post
even the government use it to encrypt TOP SECRET info


Yes but they still leave the bloody laptops on the ferkin train systems!! and one in a cafe with details of all major under cover military personel...

tw@ts...
__________________

Live fast, Die Young, Leave only Beautiful code...

.....This Christmas...... I want Santa's list of naughty girls......
Reply With Quote
Reply

Bookmarks

Thread Tools
Rate This Thread
Rate This Thread:

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off

Forum Jump

Similar Threads
Thread Thread Starter Forum Replies Last Post
France to crack down on "pro-anorexia" Web sites Admin Bizarre News 0 04-16-2008 12:29 AM


All times are GMT +1. The time now is 01:14 PM.


Powered by vBulletin® Version 3.8.4
Copyright ©2000 - 2010, Jelsoft Enterprises Ltd.
Copyright 1997-2010:MeetTheGeeks.Org & MeetTheGeeks.co.uk:-All images, text, or other media contained on this website are the property of MeetTheGeeks. Replication or duplication of the materials contained within MeetTheGeeks Articles, website, forums, including the MeetTheGeeks logo are strictly forbidden without express written permission. Please see MeetTheGeeks Terms & Conditions for more information. MeetTheGeeks May NOT Be Viewed By Chancellor of the Exchequer Darling, Gordon Brown, Tony Blair, George W Bush or anyone from Sitel