Pages

Tuesday, September 4, 2012

Recon and Attack tools

Here is the list of tools we commonly use in pentesting wireless networks or just wardriving for fun and no profit. All these tools are covered in the book in sufficient details. Some of them may become obsolete at the time the book hits the shelf and so are not possible to find anywhere anymore, so they are located on our site. The reason for it is the dialectic approach we endorse: to understand things as they are now, you are ought to know where did they come from and how did they develop. Besides, you may find the snippets of code from these tools to be useful for your own projects.
As to the code, everything on our list is Open Source and is distributed under GPL, BSD or similar licenses. Close Source tools are not included on purpose, even though they may be mentioned in the book where appropriate. This work is not commercial, does not favour particular vendors, and has only became possible due to the work and collaboration within the Open Source community. We are profoundly grateful to the authors of the listed tools for the feats of wonder they performed to make "theoretical" wireless security practical.
If you think we have missed on something that should be included in that list please e-mail authors at wifoo@arhont.com
Wireless Network Discovery, Mapping and Traffic Analysis - the "classical" wardriving tools for discovering wireless LANs, positioning them on the map, sniffing, logging and analyzing packets in the air.
AirFartLocal mirrorv 0.2.1
AirTrafLocal mirrorv 1.1
AphunterLocal mirrorv
APradarLocal mirrorv 0.52
BSD-airtools (dstumbler)Local mirrorv 0.2
Classic Stumbler (mac)Local mirrorv 1.7
GtkskanLocal mirrorv 0.2
HermesAP monitor patchLocal mirrorv
iStumbler (mac)Local mirrorv 96
KisMAC (mac)Local mirrorv R65
KismetLocal mirrorv 2005-08-R1
Kismet Log ViewerLocal mirrorv 0.9.7
Kismet parseLocal mirrorv 0.2
MacStumbler (mac)Local mirrorv 075b
MognetLocal mirrorv 1.16
PerlskanLocal mirrorv 0.1
PrismdumpLocal mirrorv 20001122
PrismstumblerLocal mirrorv 0.7.3
PrismsnortLocal mirrorv 2.0
SSIDsniffLocal mirrorv 0.42
THC-WardriveLocal mirrorv 2.3
WaveStumblerLocal mirrorv 1.2.0
WellenreiterLocal mirrorv 1.9
Wellenreiter for OPIEnot mirroredv 1.0RC2
Wi-FindLocal mirrorv 0.2.1
WifiScannerLocal mirrorv1.0.2
Wispy-ToolsLocal mirrorv 2006-01-R1
WistumblerLocal mirrorv
Wlan-scanLocal mirrorv 0.0.1
   
Client evaluation tools - utilities to check security state of wireless clients.
Airsnarf Rogue SquadronLocal mirrorv 0.1
HotspotterLocal mirrorv 0.4
ProbemapperLocal mirrorv 0.5
Karma ToolsLocal mirrorv 0.4
Wlan-webauthNot mirrored
   
RF signal strength monitoring - utilities for monitoring the signal strengh of the WLAN you are associated to.
WavemonLocal mirrorv 0.4.0b
Wireless Power MeterLocal mirrorv 0.00
WscanLocal mirrorv 1.00
Wscan (familiar/linux/ipaq)Local mirror v 1.00
Wscan (BSD)Local mirrorv 2.00experimental
XnetworkStrengthLocal mirrorv 0.4.2
   
Wireless-specific encryption cracking - tools for gaining access to protected wireless networks. At the moment include WEP crackers, WEP-encrypted traffic injectors and practical implementations of attacks against certain 802.1x types.
AirsnortLocal mirrorv 0.2.7e
AircrackLocal mirrorv 2.41
AsleapLocal mirrorv 1.4
BSD-airtools (dwepcrack)Local mirrorv 0.2
coWPArtyLocal mirrorv 2.0
LeapLocal mirrorv
anwrap (Leapcrack)Local mirrorv 0.1
LucentRegCryptoLocal mirrorv 0.3
THC-LEAPcrackerLocal mirrorv 0.1
weplabLocal mirrorv 0.1.5
WEP_ToolsLocal mirrorv
WepAttackLocal mirrorv 0.1.3
WepDecryptLocal mirrorv 0.7
WEPcrackLocal mirrorv 0.1.0
WEPWedgieLocal mirrorv 0.1.0
Wnet (reinj)Local mirrorv
WPA CrackerLocal mirrorv 0.1
   
Wireless custom frame generation - these allow layer two attacks on wireless LANs including a variety of man-in-the-middle attacks and unstoppable denial of service.
AirJack26Local mirrorv 0.1a
AirJackLocal mirrorv 0.6.6b
chopchopLocal mirrorv 0.1
DissassociateLocal mirrorv
FakeAPLocal mirrorv 0.3.2
FakeAP BSDLocal mirrorv 0.3.1
FataJackLocal mirrorv
File2AirLocal mirrorv 0.1
LibradiateLocal mirrorv 0.02
LibwlanLocal mirrorv 0.1
OmertaLocal mirrorv
WifitapLocal mirrorv 0.2.0
Void11Local mirrorv 0.2.0
Wnet (dinject)Local mirrorv
   
Miscellaneous difficult-to-categorise software that comes handy in wireless penetration testing.
ApplewepkeyLocal mirrorv
AirpwnLocal mirrorv 0.50c
AirsnarfLocal mirrorv 0.2
Auditor Security Collectionnot mirroredv 200605-02
AP-utilsLocal mirrorv 1.5
ApHopperLocal mirrorv 0.3
APToolsLocal mirrorv 0.1.0
DMZS-carteLocal mirrorv 0.9rc1
Ethereal/Tetheralnot mirroredv 0.10.14
EttercapLocal mirrorv NG-0.7.3
GpsdLocal mirrorv 2.31
GpsdriveLocal mirrorv 2.10pre2
Orinoco MM Patchnot mirroredv
Macfld.plLocal mirrorv
Morinoco PatchLocal mirrorv 14.2
Packetyzernot mirroredv 4.03
Wifi2ethLocal mirrorv 0.10

No comments: