Re: [null] WPA/WPA2 without dictionary , no WPS

1,098 views
Skip to first unread message

Swaroop YermalkaR

unread,
Sep 27, 2012, 11:40:01 AM9/27/12
to null-...@googlegroups.com
you can brute-force the wpa handshake.

On Thu, Sep 27, 2012 at 7:55 AM, Himanshu Sharma <himpoj...@gmail.com> wrote:
Hi null, i did a lot of googling
i found almost everything on WiFi Penetration testing like Cracking WEP, Cracking WPA/WPA2 with dictionary attack,pyrit and WPS with reaver
but what if the passphrase is not a dictionary work, and the Victim is not using WPS
So are there any ways to crack that Wifi security ?

--
Get ready for the Dilli Shakedown!
nullcon security conference Delhi Sept 26-29th 2012
http://nullcon.net
 
null - Spreading the right Information
null Mailing list charter: http://null.co.in/section/about/null_list_charter/
 
 



--
Regards,
Swaroop YermalkaR

Himanshu Jangra

unread,
Sep 27, 2012, 12:22:38 PM9/27/12
to null-...@googlegroups.com

Hi swaroop.
Bruteforce with crunch will tke years .. can u suggest some other tools . I emailed u personally on swaroop...@gmail.com too ..

sanket jain

unread,
Sep 28, 2012, 2:46:25 AM9/28/12
to null-...@googlegroups.com
can u mail me some tools 2
Sanket R Jain

corrupt

unread,
Sep 28, 2012, 3:09:19 AM9/28/12
to null-...@googlegroups.com
You can try using services like cloudcracker
Cheers,
corrupt

Himanshu Jangra

unread,
Sep 28, 2012, 3:53:45 AM9/28/12
to null-...@googlegroups.com
@Corrupt@null
Thank you for replying sire but the problem is i dont want to share my WPA handshake file , i might tamper the security policies. So i needed a solution which will find a non-dictionary word in a non WPS enabled environment
Regards ,
Himanshu Jangra
Senior Network Security Consultant
+919988661192

Shubham Mittal

unread,
Sep 29, 2012, 2:53:58 AM9/29/12
to null-...@googlegroups.com
A variation to this attack could be, 

Make a small program to mix up bruteforce and dictionary approach, i.e. Make a dictionary file with 
bruteforce logic so as to include all the possible passwords. To make it easier, I classified the files in characters (4 characters, 5 characters, etc.) to reduce efforts.
With Regards, 

Shubham Mittal
Information Security Researcher

Himanshu Jangra

unread,
Sep 29, 2012, 3:22:45 AM9/29/12
to null-...@googlegroups.com
@Shubham Will you please elaborate on it sire, Please mail me on himans...@gmail.com

pratik mahadik

unread,
Sep 29, 2012, 10:33:24 AM9/29/12
to null-...@googlegroups.com

hi,

it will take years to brk it....is it feasible solution..?

regards
pratik

Himanshu Jangra

unread,
Sep 29, 2012, 10:49:31 AM9/29/12
to null-...@googlegroups.com
@Pratik Hi Sire, It may take some days , Thats what i meant actually.
So i was looking for an alternative
Reply all
Reply to author
Forward
0 new messages