Archive for Security

Aircrack-PTW for Windows

Update

As of version 0.9, the aircrack-ng suite natively supports the PTW attack. Download it here. To invoke the PTW attack in aircrack-ng, run it with the -z switch: aircrack-ng.exe -z mycapturefile.cap.

A French chap has compiled Aircrack-PTW for Windows. This is great for anyone using the AirPcap adapter to inject packets in Windows, as the new PTW attack dramatically reduces the amount of packets you need to collect before attempting to crack the WEP key. Notice in the screenshot below, only 83,000 packets were needed to break a 128bit key; as opposed to around 400,000 with the KoreK attack.

aircrack-ptw on Windows

The executable is in French but it’s still perfectly usable; All you’re looking for is the WEP key!

Just run it with:

aircrack-ptw.exe yourcapturefile.cap

When I get some time I’ll try to compile a version in English, but for now you can grab the French version: Download Aircrack-PTW for Windows.

I’m in the process of writing up and recording a demonstration of cracking WEP in Windows with AirPcap, Cain, and aircrack-ptw. Expect to see something within a week! Update: Check it out here

Comments

Asterisk Password Recovery

If you’ve ever misplaced, or forgotten to document, one of your passwords stored in an application, Asterisk Key is a free and invaluable tool.

Asterisk Key reveals saved passwords from most Windows apps and even Internet Explorer (which is probably a good reason to switch to Firefox!)

It doesn’t work on everything, but it’s worth a shot!

Comments

Cracking WEP with AirPcap and Cain and Abel

This video tutorial demonstrates how to crack WEP in Windows using AirPcap and Cain and Abel.

Preparation

You’ll need:

Note: It is possible to get this working by using the cheaper “Classic” AirPcap, in conjunction with the old 2.0 Beta Tx Drivers for AirPcap, to enable packet injection capability, but this is entirely unsupported, and is not guaranteed to work. YMMV.

Notes

  • To begin ARP injections, AirPcap must capture at least 1 ARP request from a system on the target AP. You can usually force this by sending a Deauth to a connected client.
  • Make sure you have over 250,000 IVs before attempting to crack the WEP key.
  • In my tests, the old AirPcap (silver-grey) appears to perform significantly faster than the new AirPcap (dark-grey). I think it’s about 10x faster.

The Video

Get the Flash Player to see the wordTube Media Player.

Click Play to get things started.

Additional

Download the full resolution video (Thanks to TAz00 from the Oxid.it forums for the hosting!)

View the video on Youtube

Comments (42)

How to Crack WEP in Windows with Aircrack-ng and AirPcap

This guide demonstrates how to crack WEP in Windows using the AirPcap Wireless Capture Adapter. Read the rest of this entry »

Comments (8)

Decrypting WPA with AirPcap in Windows

A step-by-step guide to decrypting WPA with Wireshark and AirPcap in Windows. Read the rest of this entry »

Comments (1)