Sinisterly
Tutorial Cracking WPA/WPA2 with Reaver. - Printable Version

+- Sinisterly (https://sinister.li)
+-- Forum: Hacking (https://sinister.li/Forum-Hacking)
+--- Forum: Network Hacking (https://sinister.li/Forum-Network-Hacking)
+--- Thread: Tutorial Cracking WPA/WPA2 with Reaver. (/Thread-Tutorial-Cracking-WPA-WPA2-with-Reaver)

Pages: 1 2


Cracking WPA/WPA2 with Reaver. - zombiefied - 12-15-2015



Cracking WPA and WPA2 with Reaver
What you need:
  1. A computer with a *nix Operating system.
  2. A wireless c@rd that supports monitor mode.
  3. aircrack-ng
  4. Reaver
  5. Some spare time

Okay, so first of all you want to put your wireless c@rd into monitor mode. This can by typing
Code:
sudo ifconfig wlan0 down
Code:
sudo iwconfig wlan0 mode monitor
Code:
sudo ifconfig wlan0 up
into your terminal. Most network c@rds call themselves wlan0, if your c@rd goes by another name, replace wlan0 with its name.

Our c@rd is now in monitor mode, and it is called mon0. We are going to look for networks with WPS enabled, so type
Code:
wash -i mon0
into your terminal, after a while you can stop the scan with ctrl+c. If you see a Access Point with no under "WPS locked", write down the bssid.

Now we are going to start bruteforcing the WPS key! Type
Code:
reaver -i mon0 -c 1 -b (BSSID of AP) -vv
This will probably take quite a while, it usually takes between 2 to 8 hours so have patience.

When this is finished, it will show you the WPS key and the WPA password! Enjoy your newly cracked network connection!

Excuse my leetspeak, apparently i'm typing spam words.




RE: Cracking WPA/WPA2 with Reaver. - mothered - 12-17-2015

Provided the AP Is vulnerable to WPS, I personally found Reaver to be very effective Indeed.

It 's great you've Included the "wash -i" command to find WPS APs.
A simple, yet very effective tutorial.
A job well done.


RE: Cracking WPA/WPA2 with Reaver. - swatterhat - 02-08-2016

Too bad, My NIC does not support this. Thanks anyway.


RE: Cracking WPA/WPA2 with Reaver. - DestructoSphere - 02-18-2016

I prefer to use bully for a few reasons, mainly because it is more verbose and can auto resume interrupted sessions.


RE: Cracking WPA/WPA2 with Reaver. - zorrophreak - 02-18-2016

Maybe I can become more active at my other house now that I might be able to get into its WiFi, and I might be able to get faster WiFi up at the school! Nice share. Also going to check out what @DestructoSphere mentioned.


RE: Cracking WPA/WPA2 with Reaver. - Cyber Warrior - 03-09-2016

Nice tutorial, you could write more informations so the beginners can understand what they are typing. Thanks for sharing btw.


RE: Cracking WPA/WPA2 with Reaver. - BiscuitEdi - 03-23-2016

Honestly I haven't seen a lot of wps vulnerable routers since 2014.


RE: Cracking WPA/WPA2 with Reaver. - mothered - 03-25-2016

(03-23-2016, 10:28 AM)BiscuitEdi Wrote: Honestly I haven't seen a lot of wps vulnerable routers since 2014.

I have to agree with this.

Back when I was cracking WPS PINs sometime In 2009/2010, when scanning wireless APs, there were quite a few available. In fact, probably the majority were WPS-enabled.


RE: Cracking WPA/WPA2 with Reaver. - The_Joker - 09-05-2016

I just scanned near my house yesterday. Found 5/6 WPS-enabled and 1 with good old WEP security.


RE: Cracking WPA/WPA2 with Reaver. - pvnk - 09-05-2016

The l33t was too much for me.