The last two weeks I have been moving into my new apartment, which is why I haven’t been able to write many articles recently. Last night after finishing the last of the unpacking I sat down, had a few beers and decided to have a little fun with my apartment’s wireless network. Here’s a  quick and simple guide on how to get on to so called “secure” networks as well as a few things you can do to amuse yourself after you are in. Enjoy!

Finding the network

Most wireless networks are configured to broadcast their SSID (Service Set Identifier), when looking for a network to have some fun with I like to start with these if they are available. If they are broadcasting the SSID there is a little bit less work required, and you can bet that those who have SSID broadcasting turned off have also taken other steps to lock down the network.
If you know that a network exists but you don’t see a SSID in your available networks, or are just curious to see if any are out there, there are a few tools that will get this job done for you.

For Linux users I recommend:

  • AirJack- A lightweight program. The only drawback is that it is not very user-friendly to those who are not experienced with these type of programs.
  • Kismet- Unquestionably the most powerful wireless program. Kismet does require you to compile it but if you can manage to get through the install this program will do just about anything you want.

For Windows users I recommend:

  • AirSnort- Another program that is a pain to get installed, but like Kismet if you can get it installed it will find networks for you.
  • AirMagnet- To be honest, I haven’t used this one in a while, but I remember that the full version was too resource hungry to run on my laptop- luckily they do have a version for non-servers.

Bypassing WEP or WPA
Let me start this section by saying that WEP encryption is a joke. The only thing turning on WEP does is add some extra information to the packets. I would also like to pre-disclose that there are several different types of WPA (WPA-PSK, WPA2,  WPA-TKIP, ect) and the tool I am discussing is limited to WPA-PSK; there are no tools to my knowledge that can crack WPA2 yet.

.
Aircrack is a free Windows/Linux  tool that can break both WEP and WPA-PSK. The installation requires you to change your wifi drivers and install their program, guides on how to do this can be found on their website. Once installed Aircrack will attempt to brute force it’s way into a network, the time this takes is dependent on the length and complexity of the passphrase.

Modifying the network

It never fails to surprise me how many routers are left configured to the default admin password and username- if this is the case you can easily hijack an entire network. Most routers can be accessed by typing in 192.168.x.x in your browser, try different combinations of 0, 1 and 2 to find the router. Once you have found the router look around for logos to identify the brand then head on over to the default router password list to find the default credentials.

.
If the default credentials work, you can easily change the passphrase, SSID or completely turn off the router. Since my apartment network was running a little slowly I got on the router and changed the SSID from Appartment5 to Appartment29. I chose to kick users off this way rather than simply changing the passphrase to be a little sneakier. If I changed the passphrase people would still see the network and their password would be rejected- this would surly cause them to go complain to the apartment staff and lead to the router being reset and/or locked down. Since I changed the SSID people will just not see the network there anymore, most people will probably assume the network “when down” and just try to get back on at a later time. By then, all my torrents should have completed and I will have reset the router back to Appartment5.

Spying on Connected Users

On a wireless network, the router effectively screams out requested information from any computer to the whole broadcast radius. This means that you can use a program to eavesdrop on other users on the network. The tools you will need for this are simple- a packet sniffer and a packet compiler. Packet sniffer/recompiler programs are very powerful, they can be used to recreate webpages, AIM conversations, emails and even some downloads. There are some programs that do both, while others only do one function. There are MANY programs available to do this, my favorite is Packet Sniffer SDK, a simple Google search for “packet sniffer” will yield many results, just do this and find one that works for your platform.

There is still lots of fun to be had on the network, I had some fun using “net send” commands to send stupid messages to me neighbors who come over to tell me about the strange pop-ups that they were getting on their machine. While wireless network security has gotten better in recent years, there are still some gaping vulnerabilities, have fun with other’s networks- but don’t get yourself into trouble!




22 Comments to “Wireless Network Hacking and Spying Made Simple”


  1. david villa — August 22, 2008 @ 8:17 pm

    I really enjoy reading your blog. Keep up the good work.

  2. j00n — September 9, 2008 @ 12:56 am

    nice one

  3. Reviews — September 11, 2008 @ 5:05 am

    Pretty detailed read.

    This may help a number of people.
    I find that airsnort tends not to recognize my built in wifi from time to time. It’s all good though.

    Speaking of which you might enjoy this guide.

    Cain ARP Poisoning, cracking and sniffing passwords and packets

  4. Daniel Craig — October 31, 2008 @ 6:05 pm

    Hi there, I was looking around for a while searching for network security programs and I happened upon this site and your post regarding Wireless Network Hacking and Spying Made Simple, I will definitely this to my network security programs bookmarks!

  5. admin — November 3, 2008 @ 2:16 pm

    Glad to hear it Daniel, we should have a lot of new articles coming out this month, and I would be happy to take any topic suggestions you may have. If you have anything in mind shoot me an email at Admin(at)BlackHatLibrary.com

  6. Digimon adventure online games — February 19, 2009 @ 1:55 pm

    All about Digimon Adventure Online Game. Digimon Adventure Fans Blog….

    …Digimon is a small virtual pet. You can download and play an online RPG in the Digimon universe. It looks and feels like 2D graphic RPG adventure. You can train and level up your Digimon, make hundreds of quests, and travel through a huge universe a…

  7. shag Haircut and styles — February 27, 2009 @ 4:11 am

    Shag Hairstyles and Haircuts…

    shag hairstyle basically gotits name from the word “shaggy” since …once the hair is cutand layered it gives off a shaggy look. The shag hairstyle has always been apopular hairstyle, and there are plenty ofshag hairstyles to choose from…

  8. Websites tagged "passphrase" on Postsaver — March 1, 2009 @ 8:17 pm

    [...] - Wireless Network Hacking and Spying Made Simple saved by roboperson2009-02-20 - GNU Privacy Assistant saved by suedtirol2009-02-19 - Client and [...]

  9. Arbonne Skin Care health — March 25, 2009 @ 11:55 pm

    Huge exhibits of Arbonne Skin Care Products…

    Arbonne is one of the leading companies in the world when it comes to beauty and skin care. Its skin care product line is one of the best in the world that many women. The products of Arbonne skin care products are manufactured in Switzerland….

  10. how to make shag haircuts — March 28, 2009 @ 6:55 pm

    Stars Shag Haircut and Styles…

    Stylists of the above celebrities are haircut gods, capturing each of their personalities and presenting them in sophisticated fun loving shag haircuts. Wish we’ll see more and more celebrities with their gorgeous shags….

  11. User links about "wpa" on iLinkShare — April 5, 2009 @ 7:33 am

    [...] saved by Luke 21 days ago6 votesNavy Pop Art WPA WWII>> saved by cosmorenfro 29 days ago5 votesWireless Network Hacking and Spying Made Simple>> saved by fabioscarsi 32 days ago3 votesDownloading the latest game versions>> saved by [...]

  12. fixed-rate mortgage in Arizona — April 15, 2009 @ 11:41 pm

    mortgage company…

    If you are thinking about a mortgage refinance, you should consider a lot of mortgage refinance program types. For example, you might want to look into a 15-year fixed-rate mortgage refinance program. In this plan your mortgage payments are a bit highe…

  13. paper representations of people — April 18, 2009 @ 5:55 pm

    Fashion printable paper dolls…

    Fashion printable paper dolls - are printable paper dolls made for reflecting fashion trends or occasionally fantasy play. The dolls are made of paper, and are created both as toys and as collectibles. They are enjoyed by many people. The fashion dolls…

  14. tobacco smoker — April 21, 2009 @ 11:55 am

    Smoking and Food Insecurity among People…

    All kind of cigarette is dangerous, no matter how it is manufactured, said researchers. For example they found that smoking tobacco described as ‘light’ and ‘mild’ is not better than regular cigarettes. Researchers announced that the tobacco indust…

  15. most popular cigarettes — April 26, 2009 @ 9:55 am

    Boston Expected to Prohibit Cigarette Sales at Colleges, Drugstores…

    Researchers daclared in a study that heart attacks are hitting the overweight people more often than a decade sooner than “normal” weight….

  16. Recent Links Tagged With "wpa" - JabberTags — April 27, 2009 @ 3:34 am

    [...] public links >> wpa WPA and NSSE Partnership Saved by Velektra on Fri 17-4-2009 Wireless Network Hacking and Spying Made Simple Saved by UzumakiRasengan on Thu 09-4-2009 Cubs take 2 of 3 from Cardinals Saved by dnxlinks on [...]

  17. Swine flu symptoms — April 30, 2009 @ 9:55 pm

    Swine flu vaccine side effects…

    Recommendations to prevent spread of the swine influenza among people include using standard infection control against influenza. This includes frequent washing of hands with water and soap or with alcohol-based hand sanitizers, especially after being …

  18. Short Hairstyles — May 5, 2009 @ 12:42 pm

    The hottest short hairstyles…

    Kylie Bax has a very cool new short hairstyle with lots of layers that is very short at the back….

  19. Buy Mega Hoodia online — May 8, 2009 @ 3:42 am

    we deliver viagra directly to your door…

    Scientist stated no relative afferent pupil defect indicating that the right afferent pupil buy cheap viagra online pathway was intact and localised the lesion to the right efferent pupil pathway. The differential diagnosis was therefore Adie’s tonic…

  20. Kaila Yu short hairstyle — May 13, 2009 @ 10:25 pm

    Short Hair styles - cons and pros…

    A short hair style can expose some things about your face that you are not quite fond of. That’s why, this is something to be aware of for those who might be more introverted about some of our facial features. It is also observed that it may take time…

  21. Urspr ngliche verwendung von viagra — May 18, 2009 @ 3:03 am

    premium medicine online…

    The child’s world life needs to buy viagra support his or her educational goals. An organized, quiet study area is needed. A balance between diet, rest, play, and study should be maintained….

  22. burglar alarm leeds — December 3, 2009 @ 5:34 pm

    burglar alarm leeds…

    People often dont realise that the cost of burgalr alarms have come down rapidly in recent years because of technological advancements. If you need a burglar alarm in Leeds UK get his free guide now and save yourself time and money…



Write a comment


You need tologin.

    
Black Hat Library is based on WordPress platform, RSS tech , RSS comments design by Gx3.