11 June, 2007 at 12:09 pm
by Phil Wiffen · Filed under Networking, Security, Wi-Fi, Windows
Update
As of version 0.9, the aircrack-ng suite natively supports the PTW attack. Download it here. To invoke the PTW attack in aircrack-ng, run it with the -z switch: aircrack-ng.exe -z mycapturefile.cap.
A French chap has compiled Aircrack-PTW for Windows. This is great for anyone using the AirPcap adapter to inject packets in Windows, as the new PTW attack dramatically reduces the amount of packets you need to collect before attempting to crack the WEP key. Notice in the screenshot below, only 83,000 packets were needed to break a 128bit key; as opposed to around 400,000 with the KoreK attack.

The executable is in French but it’s still perfectly usable; All you’re looking for is the WEP key!
Just run it with:
aircrack-ptw.exe yourcapturefile.cap
When I get some time I’ll try to compile a version in English, but for now you can grab the French version: Download Aircrack-PTW for Windows.
I’m in the process of writing up and recording a demonstration of cracking WEP in Windows with AirPcap, Cain, and aircrack-ptw. Expect to see something within a week! Update: Check it out here
Permalink
6 June, 2007 at 12:14 pm
by Phil Wiffen · Filed under Security, Troubleshooting, Windows
If you’ve ever misplaced, or forgotten to document, one of your passwords stored in an application, Asterisk Key is a free and invaluable tool.
Asterisk Key reveals saved passwords from most Windows apps and even Internet Explorer (which is probably a good reason to switch to Firefox!)
It doesn’t work on everything, but it’s worth a shot!
Permalink
26 May, 2007 at 10:15 pm
by Phil Wiffen · Filed under Security, Wi-Fi
This video tutorial demonstrates how to crack WEP in Windows using AirPcap and Cain and Abel.
Preparation
You’ll need:
Note: It is possible to get this working by using the cheaper “Classic” AirPcap, in conjunction with the old 2.0 Beta Tx Drivers for AirPcap, to enable packet injection capability, but this is entirely unsupported, and is not guaranteed to work. YMMV.
Notes
- To begin ARP injections, AirPcap must capture at least 1 ARP request from a system on the target AP. You can usually force this by sending a Deauth to a connected client.
- Make sure you have over 250,000 IVs before attempting to crack the WEP key.
- In my tests, the old AirPcap (silver-grey) appears to perform significantly faster than the new AirPcap (dark-grey). I think it’s about 10x faster.
The Video
Click Play to get things started.
Additional
Download the full resolution video (Thanks to TAz00 from the Oxid.it forums for the hosting!)
View the video on Youtube
Permalink
4 May, 2007 at 7:09 pm
by Phil Wiffen · Filed under Security, Wi-Fi, Windows
This guide demonstrates how to crack WEP in Windows using the AirPcap Wireless Capture Adapter. Read the rest of this entry »
Permalink
14 April, 2007 at 10:58 am
by Phil Wiffen · Filed under Networking, Security, Troubleshooting, Wi-Fi, Windows
A step-by-step guide to decrypting WPA with Wireshark and AirPcap in Windows. Read the rest of this entry »
Permalink