Also if the network is wep, it would be much much more convenient to get access to the Network and then sniff/MiTM/DNS Spoof, etc. It makes much more sense than intercepting packets, and keep in mind if the packet is encrypted, what's inside might also be, it's unlikely that creds are put in plain text inside the packet