5 Steps Wifi Hacking – Cracking WPA2 Password security
Today we will learn about 5 Steps Wifi Hacking – Cracking WPA2 Password.After the long time I come back with very importent topic that is how to hack wifi even in wpa2 password security, first I want to give some idea about wifi security so ...
what Wikipedia say about security of wifi:
Wi-Fi Protected Access (WPA) and Wi-Fi Protected Access II (WPA2) are two security protocols and security certification programs developed by the Wi-Fi Alliance to secure wireless computer networks. The Alliance defined these in response to serious weaknesses researchers had found in the previous system, WEP (Wired Equivalent Privacy).A flaw in a feature added to Wi-Fi, called Wi-Fi Protected Setup (WPS), allows WPA and WPA2 security to be bypassed and effectively broken in many situations. Many access point they have a Wifi Protected Setup enabled by default (even after we hard reset the access point).
what is your Requirements ?
1. ) first of all you need Wireless card (support promiscuous mode)
note:In this tutorial I use ALFA AWUS036H from Amazon.
2.) Access point with WPA2 and WPS enables
5 Steps Wifi Hacking – Cracking WPA2 Password:
step:1.) first of all you Open our terminal if you don't know how simply press (CTRL+ALT+T) and typeairmon-ng (this command will lists our wireless card that attached with our system.
step:2.)after that our next step is ,we need to stop our wireless monitor mode by running
airmon-ng stop wlan0
airmon-ng stop wlan0
step:3.) Now we ready to capture the wireless traffic around us. By running airodump-ng wlan0 our wireless interface will start capturing the data.
after exicuting proper commmand ,From the picture above, we can see many available access point with all the information. you see In the green box is our victim access point but here it is my own access point :-)
some Information you want to need:
BSSID (Basic Service Set Identification): the MAC address of access point
PWR: Signal level reported by the card.
Beacons: Number of announcements packets sent by the AP
#Data: Number of captured data packets (if WEP, unique IV count), including data broadcast packets.
#/s: Number of data packets per second measure over the last 10 seconds.
CH: Channel number (taken from beacon packets).
MB: Maximum speed supported by the AP. If MB = 11, it's 802.11b, if MB = 22 it's 802.11b+ and higher rates are 802.11g.
ENC: Encryption algorithm in use.
CIPHER: The cipher detected. TKIP is typically used with WPA and CCMP is typically used with WPA2.
AUTH: The authentication protocol used.
ESSID: Shows the wireless network name. The so-called “SSID”, which can be empty if SSID hiding is activated.
step:4.) From the step 3 above, we can find access point with encryption algorithm WPA2 and make sure you note the AP channel number. Now we will find out whether target AP has WPS enabled or not.execute following command
wash -i wlan0 -c 8 -C -s
here you see WPS Locked status is No, then we ready to crack and move to step 5 without wasting time.
step:5) after that The last step is cracking the WPA2 password for this we use reaver. exicute following command
reaver -i -b –fail-wait=360
note: Because we already get the information from step 3 above, so my command look like bellow format:
reaver -i wlan0 -b E0:05:C5:5A:26:94 –fail-wait=360
importent: it took about 5 hours to crack 19 characters WPA2 password from my Kali virtualBox, but it depend with our hardware and wireless card.
security tips:
1. WPA and WPA2 security implemented without using the Wi-Fi Protected Setup (WPS) are unaffected by the security vulnerability.
2. To prevent this attack, just turn off our WPS/QSS feature on our access point.
Instruction for you: this is make sure that Only practice this tutorial on your own lab and your own device. Hacking can be a crime if you don't know where to put it.me and this website is not responsible for the action taken by your victim if you harm him/her.
if you like this article please share it with your friends and share also in social networking site like facebook,twitter,google plus. thank you.....