-------------------------------------------------------------------------------
aircrack documentation
-------------------------------------------------------------------------------
What is aircrack ?
aircrack is a set of tools for auditing wireless networks:
+ airodump: 802.11 packet capture program
+ aireplay: 802.11 packet injection program
+ aircrack: static WEP and WPA-PSK key cracker
+ airdecap: decrypts WEP/WPA capture files
It says "cygwin1.dll not found" when I start aircrack.exe.
You can download this library from: http://100h.org/wlan/aircrack/.
To use aircrack, drag&drop your .cap or .ivs capture file(s) over
aircrack.exe. If you want to pass options to the program you'll have to
start a shell (cmd.exe) and manually type the command line; there are no
plans to develop a GUI for aircrack.
C:\TEMP> aircrack.exe -n 64 -f 8 out1.cap out2.cap
See below for a list of options.
Note: you can also use Kismet .dump files for WEP cracking.
Where can I download peek.dll ?
Both peek.dll and peek5.sys are provided in Peek.zip. They should be put in
the same directory as airodump.exe. To use airodump, you must check your
hardware compatibility and install a supported driver.
Where to download aircrack ?
The official download location is http://www.cr0.net:8040/code/network/.
However, if you can't access port 8040 for some reason, you may use this
mirror instead: http://100h.org/wlan/aircrack/.
Also check this WEP cracking video, and this other WPA cracking video
(flash required).
Is there an aircrack discussion forum ?
There is no aircrack mailing-list, however you can post your bugreports and
feature requests on the netstumbler Linux forum which I read quite
regularly.
What is the song in that WEP cracking video ?
The name of the song is Moskau, performed by Dschinghis Khan.
How do I crack a static WEP key ?
The basic idea is to capture as much encrypted traffic as possible using
airodump. Each WEP data packet has an associated 3-byte Initialization
Vector (IV): after a sufficient number of data packets have been collected,
run aircrack on the resulting capture file. aircrack will then perform a
set of statistical attacks developped by a talented hacker named KoreK.
How many IVs are required to crack WEP ?
WEP cracking is not an exact science. The number of required IVs depends on
the WEP key length, and it also depends on your luck. Usually, 40-bit WEP
can be cracked with 300.000 IVs, and 104-bit WEP can be cracked with
1.000.000 IVs; if you're out of luck you may need two million IVs, or more.
There's no way to know the WEP key length: this information is kept hidden
and never announced, either in management or data packets; as a
consequence, airodump can not report the WEP key length. Thus, it is
recommended to run aircrack twice: when you have 250.000 IVs, start
aircrack with "-n 64" to crack 40-bit WEP. Then if the key isn't found,
restart aircrack (without the -n option) to crack 104-bit WEP.
I can't seem to capture any IVs !
Possible reasons:
+ You are standing too far from the access point.
+ There is no traffic on the target wireless network.
+ There is some G traffic but you're capturing in B mode.
+ Something is wrong with your card (firmware problem ?)
By the way, beacons are just unencrypted announcement packets. They're
totally useless for WEP cracking.
Why is there no Windows version of aireplay ?
The PEEK driver doesn't support 802.11 packet injection. In fact, there are
no windows drivers supporting injection AT ALL. And I am NOT going to write
one, so don't bother asking me.
Also, the PEEK driver is only compatible with Windows 2000 / XP. It will
not work under Windows 9x.
Is my card compatible with airodump / aireplay ?
First of all, search Google to find which chipset your card has. For
example, if you have a Linksys WPC54G search for "wpc54g chipset linux".
+-------------------------------------------------------------------+
| | Supported by | Supported by | Supported by |
| Chipset | airodump for | airodump for | aireplay for |
| | Windows ? | Linux ? | Linux ? |
|------------+----------------+-------------------+-----------------|
| | YES (Agere | YES (patched | NO (firmware |
| HermesI | driver) | orinoco driver) | corrupts the |
| | | | MAC header) |
|------------+----------------+-------------------+-----------------|
| | | YES (HostAP or | YES (either |
| | NO, but see | wlan-ng driver), | with HostAP or |
| Prism2/3 | LinkFerret for | STA firmware | wlan-ng, driver |
| | an alternative | 1.5.6 or newer | patching |
| | | required | required) |
|------------+----------------+-------------------+-----------------|
| | NO, but see | YES (prism54 | YES (driver |
| PrismGT | LinkFerret for | driver, FullMAC | patching |
| | an alternative | cards only!) | recommended) |
| | (FullMAC only) | | |
|------------+----------------+-------------------+-----------------|
| | YES (Atheros | YES (madwifi | YES (driver |
| Atheros | driver) | driver) | patching |
| | | | required) |
|------------+----------------+-------------------+-----------------|
| | | | YES (driver |
| | YES (Realtek | YES ( | patching |
| RTL8180 | driver) | rtl8180-sa2400 | required), but |
| | | driver) | somewhat |
| | | | unreliable |
|------------+----------------+-------------------+-----------------|
| | YES (Cisco | YES (airo driver, | |
| Aironet | driver) | firmware 4.25.30 | NO |
| | | recommended) | |
|------------+----------------+-------------------+-----------------|
| | | | YES (driver |
| Ralink | NO | YES (rt2500 / | patching |
| | | rt2570 driver) | required for |
| | | | rt2570) |
|------------+----------------+-------------------+-----------------|
| | | PARTIAL: the | |
| Centrino b | NO | ipw2100 driver | NO |
| | | doesn't discard | |
| | | corrupted packets | |
|------------+----------------+-------------------+-----------------|
| Centrino b | NO | YES (ipw2200 | NO (firmware |
| /g | | driver) | drops packets) |
|------------+----------------+-------------------+-----------------|
| | | NO (and by the | |
| Br
ymxdba
- 粉丝: 0
- 资源: 2
最新资源
- 四通道电子负载,电池容量测试仪器,全套资料,包含,原理图pcb 和bom程序源码非常全和宝贵资料
- 有需要学习基于分布式驱动电动汽车的搭建,附着系数估计,车辆状态参数估计(包括扩展卡尔曼,无迹卡尔曼,容积卡尔曼,高阶容积卡尔曼,平方根容积卡尔曼等方法)和电机无传感器控制等方向的内容
- 蒙特卡洛模拟研究,CFA模型,SEM模型,潜变量增长模型,统计功效,样本量,模拟研究 在matlab中用蒙特卡洛算法对电动汽车充电负荷进行模拟,可自己修改电动汽车数量,lunwen复现 参考lun
- 基于分布式驱动电动汽车的车辆状态估计,采用的是容积卡尔曼(ckf)观测器,可估计包括纵向速度,质心侧偏角,横摆角速度,侧倾角四个状态 模型中第一个模块是四轮驱动电机;第二个模块是carsim输出的真
- 七自由度整车模型 分别采用魔术公式和dugoff 两种轮胎模型建立的七自由度整车模型 包含模型所有文件和魔术公式轮胎模型和说明文档以及参考资料 本模型可进行角阶跃、制动、等速圆周等工况验证 可加入相应
- MATLAB Simulink仿真平台,蓄电池控制 包括蓄电池双向DC DC控制,采用电压外环电流内环控制,使输出电压稳定,也可采用功率外环电流内环控制,使输出功率稳定
- 自动驾驶,carsim,simulink联合仿真,基于lqr算法的路径跟踪控制, carsim2019,matlab2018,以上
- 基于深度强化学习的混合动力汽车能量管理策略 1.利用DQN算法控制电池和发动机发电机组的功率分配 2.状态量为需求功率和SOC,控制量为EGS功率 3.奖励函数设置为等效油耗和SOC维持
- FMCW激光雷达 正弦波 三角波 目标检测 双模调制
- 安-川7-内部资料,包含源码与详细说明,以及运行环境软件. 电流环扰动观测器、速度补偿、摩擦扰动观测器、标幺化计算、转矩补偿、位置环、速度环、电流环 三环分析、参数计算.....
- (Matlab)基于贝叶斯(bayes)优化卷积神经网络-门控循环单元(CNN-GRU)回归预测,BO-CNN-GRU Bayes-CNN-GRU多输入单输出模型 1.优化参数为:学习率,隐含层节点
- 运动控制卡 倒R角程序 G代码 halcon联合运动控制卡联合相机 运动控制卡内容: 回原点 单轴运动 速度控制 位置控制 直线插补 圆弧插补 直线圆弧插补 G代码计算 根据输入参数生产R角参数,并且
- C#联合halcon深度学习源码 继电器识别 在halcon等图像处理算法不稳定的情况下,需要用深度学习来解决 下面这个案例非常有参考价值,是基于深度学习来识别工厂的零件 因为这个零件种类比较多
- 永磁同步电机基于SVPWM改进的直接转矩控制 针对传统直接转矩控制存在的转矩脉动大、采样率高等问题,基于SVPWM改进的DTC可以解决上述存在的问题 模型仿真效果良好,可提供和对应的参考文献,适合入
- C#联合halcon条形码识别源代码 缺陷检测 飞拿 海康相机 海康相机,传感器检测到条形码后,触发相机拿照,识别二wei码,查找二wei码缺陷,发现缺陷后,通过串口发送指令停机并且报告
- 基于 Qt5.14+OpenCV4.6.0 的通用化视觉软件,qt编译器直接运行, qt编译器直接运行 支持多相机多线程,每个工具都是单独的DLL,主程序通过 公用的接口访问以及加载各个工具 算法工
资源上传下载、课程学习等过程中有任何疑问或建议,欢迎提出宝贵意见哦~我们会及时处理!
点击此处反馈