Author Topic: Cracking my neighbors wifi  (Read 5345 times)

0 Members and 1 Guest are viewing this topic.

aes256

  • Guest
Re: Cracking my neighbors wifi
« Reply #15 on: August 13, 2015, 09:02:23 pm »
I use ALFA (blah blah enter some shit here). It's very powerful, and I've had a ton of success in wireless penetration.

I recommend an Evil Twin attack. Here's a simple definition of it, you make a duplicate of the original one and deauthenticates everyone from the original one and broadcasts the fake one (Evil Twin one) so they automatically connect to that one. Then that rogue access point you have your victims on, the options are endless. Redirect them to a security page asking for the WPA/WPA2 password, or ask them for credit card info to log in (lol), etc.

There are many videos on YouTube explaining how to do the attack. Scripts like wifiphisher automates the task for you as well. A nice script, quite handy. Automates setting up iptables, mysql, etc.
« Last Edit: August 13, 2015, 09:03:14 pm by aes256 »

Offline Avengers

  • Serf
  • *
  • Posts: 21
  • Cookies: -1
  • S.H.I.E.L.D
    • View Profile
Re: Cracking my neighbors wifi
« Reply #16 on: August 13, 2015, 09:28:29 pm »
I use ALFA (blah blah enter some shit here). It's very powerful, and I've had a ton of success in wireless penetration.

I recommend an Evil Twin attack. Here's a simple definition of it, you make a duplicate of the original one and deauthenticates everyone from the original one and broadcasts the fake one (Evil Twin one) so they automatically connect to that one. Then that rogue access point you have your victims on, the options are endless. Redirect them to a security page asking for the WPA/WPA2 password, or ask them for credit card info to log in (lol), etc.

There are many videos on YouTube explaining how to do the attack. Scripts like wifiphisher automates the task for you as well. A nice script, quite handy. Automates setting up iptables, mysql, etc.
Yeah I'm starting to think that may be my only option... especially if the router is the actiontec one I think it is, the password is going to be like 16-digits long as the default. I'll look into the attack and see what I can do... maybe I'll say something along the lines of "A router firmware update has been downloaded. Please enter your wireless password below to authorize installation." if I decide to do it. I'm still on the fence as to whether I really want to chance messing with them this much when I live right next to them...

aes256

  • Guest
Re: Cracking my neighbors wifi
« Reply #17 on: August 13, 2015, 09:41:07 pm »
Yeah I'm starting to think that may be my only option... especially if the router is the actiontec one I think it is, the password is going to be like 16-digits long as the default. I'll look into the attack and see what I can do... maybe I'll say something along the lines of "A router firmware update has been downloaded. Please enter your wireless password below to authorize installation." if I decide to do it. I'm still on the fence as to whether I really want to chance messing with them this much when I live right next to them...

There is an MDK3 attack that allows you to deauthenticate them repeatly until they downgrade their encryption standards to WEP. However, this requires social engineering. Like, "Hey Bob, have you had some issues with your internet? I had, but I fixed it by downgrading the encryption to WEP." He responds, "Yes. Can you show me how to fix it?" You say, "Sure!", then just downgrade the encryption and bam! You got access after decrypting the WEP key.

The Evil Twin attack can be difficult to pull as you need to write up a custom HTML file that resembles the router. However, if he's not tech savvy, you might just write up something very basic, he'll most likely fall for it.

Also, if you are willing to try to crack it, try using rainbow tables. Research more on it if you aren't familiar.

Edit: Once your in, and you want data, remember to use SSLSTRIP to decrypt the encryption mechanism of sites using HTTPS, or you wont be able to capture it. Most sites use TLS now, but some are still vulnerable, including Yahoo, MSN, etc. Or use Armitage to break into the devices on the network by automatically having Armitage exploit them for you.
« Last Edit: August 13, 2015, 09:43:13 pm by aes256 »

Offline Avengers

  • Serf
  • *
  • Posts: 21
  • Cookies: -1
  • S.H.I.E.L.D
    • View Profile
Re: Cracking my neighbors wifi
« Reply #18 on: August 14, 2015, 12:49:59 pm »
There is an MDK3 attack that allows you to deauthenticate them repeatly until they downgrade their encryption standards to WEP. However, this requires social engineering. Like, "Hey Bob, have you had some issues with your internet? I had, but I fixed it by downgrading the encryption to WEP." He responds, "Yes. Can you show me how to fix it?" You say, "Sure!", then just downgrade the encryption and bam! You got access after decrypting the WEP key.

The Evil Twin attack can be difficult to pull as you need to write up a custom HTML file that resembles the router. However, if he's not tech savvy, you might just write up something very basic, he'll most likely fall for it.

Also, if you are willing to try to crack it, try using rainbow tables. Research more on it if you aren't familiar.

Edit: Once your in, and you want data, remember to use SSLSTRIP to decrypt the encryption mechanism of sites using HTTPS, or you wont be able to capture it. Most sites use TLS now, but some are still vulnerable, including Yahoo, MSN, etc. Or use Armitage to break into the devices on the network by automatically having Armitage exploit them for you.
Gotcha, I'll look into all of that ASAP. thanks a ton for all the help man, this noob appreciates it a ton!

Offline Day_dreamer

  • Serf
  • *
  • Posts: 45
  • Cookies: -20
    • View Profile
Re: Cracking my neighbors wifi
« Reply #19 on: September 04, 2015, 07:53:00 am »
I know this may sound strange but you can actually drop usb(s) of memory card(s) that contain a backdoor that connects back to your home pc, but you got to port forward your router, wait 4 days and pray they become curious on that storage device (btw you can make it as alluring as possible). By the time you have established an encrypted connection you can work you way up to root privileges and dump their network keys. I have not tried it yet tho  8) 8) gudluck brother
Don't trust anyone.

Offline 0E 800

  • Not a VIP
  • VIP
  • Baron
  • *
  • Posts: 895
  • Cookies: 131
  • • тнε ιηтεяηεт ιs мү яεcүcℓε-вιη •
    • View Profile
Re: Cracking my neighbors wifi
« Reply #20 on: September 04, 2015, 07:43:46 pm »
Just post the captured handshake .cap file.

Try running Revdk3

https://github.com/0x90/wps-scripts/blob/master/ReVdK3-r2.sh

The invariable mark of wisdom is to see the miraculous in the common.

Offline proxx

  • Avatarception
  • Global Moderator
  • Titan
  • *
  • Posts: 2803
  • Cookies: 256
  • ФФФ
    • View Profile
Re: Cracking my neighbors wifi
« Reply #21 on: September 05, 2015, 03:02:58 am »
Just post the captured handshake .cap file.

Try running Revdk3

https://github.com/0x90/wps-scripts/blob/master/ReVdK3-r2.sh
Do we need automated scripts to crack a handshake these day's , :'(
Wtf where you thinking with that signature? - Phage.
This was another little experiment *evillaughter - Proxx.
Evilception... - Phage