Before even starting to read this make sure you have compatible wireless adapter!
For this tutorial you will need backtrack, you can download from here (I am using Backtrack 5 for this tutorial).
Once downloaded you can either burn the .ISO to a cd and boot it, or you can make a frugal install using UNetbootin.
Ok, when you successfully start backtrack go to Applications > Exploitation Tools > Wireless Exploitation Tools > Wlan Exploitation > gerix-wifi-cracker-ng.
![[Image: 86437852.png]](https://lh3.googleusercontent.com/blogger_img_proxy/AEn0k_stZOrVeOpPPxs1_fTgY1fO2ntFTuxa0V7h8t3mm186fJxTdlj4cDyrBK2GLmrOaAQTOxgeg6VtTIVjQ_1s5_Ual-M_orOWlFqASIBdnPOYSEOgbNk=s0-d)
Once the program is started go to "Configuration" tab.
![[Image: 79399926.png]](https://lh3.googleusercontent.com/blogger_img_proxy/AEn0k_sFHooQLWELK8zjIi-yeavI7F_iZ5jnyhKqbz09yk2RdcF6yT-wTnCAjOmUNdp-uQCiGDDyG3gXGlR63aUeNSYOlJKYBtsfUoQWkw6zz5Kp0aeqlVJ0PPU=s0-d)
Press "Set random MAC address"
![[Image: 12150512.png]](https://lh3.googleusercontent.com/blogger_img_proxy/AEn0k_vRraqyjKG3GkDfVT8NklIWUzSxTxEpv1Cl8dz-SaY5hld0ILod1RdemRcUqPf21qSxFKkTSHBrPAWRoQh-opI593Ovt8c2ug7-6FHaMOcHRit2PFwz=s0-d)
Then "Enable/Disable Monitor Mode"
![[Image: 21993618.png]](https://lh3.googleusercontent.com/blogger_img_proxy/AEn0k_vQqNbG5xKHtNqxvSVBtf-NsyBZCqAFCYT7SjJkJRhFnP-bQG7cTt7Z96kSO29Z9ofZov_Jrx1X0hHYeBVDylAAh4EyGi77oj-FQECsoT8iFMhGbYthZdc=s0-d)
Now press "Rescan networks" and choose the slave.
![[Image: 48030887.png]](https://lh3.googleusercontent.com/blogger_img_proxy/AEn0k_siW44eLPkkoguAYPr8hgv_oO-qjL2exHuwavmt-zc1uFJN7nP9v8TgOEPMgHLQ5fG9c_7-PIuJuHMTR0K4pbJVTaOGDhelXWUZ2mMkj7_DKIZt17o=s0-d)
Then press the "WEP" tab, you will see the "Start Sniffing and logging" button, press that. A new window will pop-up that's airodump console. Look at the "Data" you will need 10000-20000 Data/IV's to crack the wep key (Sometimes more).
![[Image: 42338878.png]](https://lh3.googleusercontent.com/blogger_img_proxy/AEn0k_tbKysHMLnDU61c5bSpmPkhvZhYtFrissoyRFUrQsoeeVunG3qJmwqRlvUy3G5iKclYzNU7iSkrMSY63ObC5oV7GNYTbQNjq8ILNWFxrpcFTK8Kex7gSA=s0-d)
Now we are gonna speed up the proccess of getting necessary Data/IV's. Press the "WEP Attacks (No-Client)"
![[Image: 20865461.png]](https://lh3.googleusercontent.com/blogger_img_proxy/AEn0k_tUVNIleOAsYggH-2uKkvIAVykSILWYqn32s9KhksbvDgFT5vzWPve0LSGyEhdG2irTCnjfm30nsgey6hRr3H6uqPtX_1boI-fwiSvFMeQKMIuNZ4l2sO0=s0-d)
Then press "Associate with AP using fake auth"
![[Image: 72909853.png]](https://lh3.googleusercontent.com/blogger_img_proxy/AEn0k_t1Vl5bwhcAumPKNVW-hmHhxeLJyKLRe0gWbXYr5afzq7bLT3SNXPaKtYgCW3Esr5XfSf1zZgosxO-tXI0JrggT05aAdc2EGDJwNWOOyDMWH7MabNsL=s0-d)
A new shell console will pop-up, wait untill it asks you "Use this packet? Type "Y" and hit enter.
![[Image: 39811637.png]](https://lh3.googleusercontent.com/blogger_img_proxy/AEn0k_t_d2mcOLYFi_PoguyFq4w5iTv3ZxC4so7yW9qfeFldwMsZuX4Gyvco3CJHO4l2eloOmVTayT0ndPyj3wQQpTMcoJWdtyNwoFot8LryXS96YJ0f5hol=s0-d)
Now press "Fragmented Attack" again a new shell console will pop-up and it will ask you "Use this packet? Type "Y" and hit enter.
![[Image: 66665680.png]](https://lh3.googleusercontent.com/blogger_img_proxy/AEn0k_t-bRnMj3S9M6bPftJhUb7Q0vtNaYiup7Gx8uXUk5TQjCfkpKJzK2vmid4CKmsmdBsnZ7RaJFqRcI_-MS6IPb3C1XDXjxj_AytkGyrlZStQWunepY1tjIg=s0-d)
Wait 20-30 seconds until you get enough Data/IV's to crack the WEP key.
![[Image: 38943479.png]](https://lh3.googleusercontent.com/blogger_img_proxy/AEn0k_tv6mykz1t1WEmWjK8mBlauB9H8SLWF2Fy31YKahIWRKoPhb7cV2rmooW-0uGbWB0hOHT2XHcj5p-U78CP90hwwFnyFV9Vc_f0J56LcdPUjNvmBZbdXfRk=s0-d)
Once you get enough Data/IV's go to "Cracking" tab and press "Aircrack-ng Decrypt WEP Password" New shell console will pop-up, when finished decrypting it will look something like this.
For this tutorial you will need backtrack, you can download from here (I am using Backtrack 5 for this tutorial).
Once downloaded you can either burn the .ISO to a cd and boot it, or you can make a frugal install using UNetbootin.
Ok, when you successfully start backtrack go to Applications > Exploitation Tools > Wireless Exploitation Tools > Wlan Exploitation > gerix-wifi-cracker-ng.
Once the program is started go to "Configuration" tab.
Press "Set random MAC address"
Then "Enable/Disable Monitor Mode"
Now press "Rescan networks" and choose the slave.
Then press the "WEP" tab, you will see the "Start Sniffing and logging" button, press that. A new window will pop-up that's airodump console. Look at the "Data" you will need 10000-20000 Data/IV's to crack the wep key (Sometimes more).
Now we are gonna speed up the proccess of getting necessary Data/IV's. Press the "WEP Attacks (No-Client)"
Then press "Associate with AP using fake auth"
A new shell console will pop-up, wait untill it asks you "Use this packet? Type "Y" and hit enter.
Now press "Fragmented Attack" again a new shell console will pop-up and it will ask you "Use this packet? Type "Y" and hit enter.
Wait 20-30 seconds until you get enough Data/IV's to crack the WEP key.
Once you get enough Data/IV's go to "Cracking" tab and press "Aircrack-ng Decrypt WEP Password" New shell console will pop-up, when finished decrypting it will look something like this.
Video Tutorial:

0 comments:
Post a Comment