22 مستودعات
Methodologies and tools for investigating wireless communication to identify vulnerabilities in embedded hardware.
Distinct from Security Testing: Distinct from general security testing: focuses on wireless protocol and radio transmission analysis.
Explore 22 awesome GitHub repositories matching security & cryptography · Wireless Security Auditing. Refine with filters or upvote what's useful.
This project provides an open-source firmware platform and complete build environment for portable multi-tool hardware. It functions as an embedded operating system designed to manage radio, infrared, and physical interface components, enabling users to develop custom applications and system logic for specialized hardware devices. The firmware distinguishes itself through a modular architecture that organizes system functionality into isolated units, allowing for the development of custom user interfaces and logic. It includes a comprehensive collection of low-level drivers and applications s
Evaluates wireless access control systems by capturing, analyzing, and replaying radio frequency signals.
Wifiphisher is a modular security framework designed for wireless penetration testing and social engineering auditing. It functions as a platform for security professionals to assess the resilience of Wi-Fi networks by simulating unauthorized access, performing man-in-the-middle interceptions, and executing credential-harvesting scenarios. The tool distinguishes itself through its ability to combine rogue access point deployment with dynamic phishing interfaces. By forcing wireless clients to associate with deceptive infrastructure, the framework can capture network metadata and inject it int
Assesses the security of wireless access points and client devices by simulating unauthorized access and interception techniques in controlled environments.
This project is a WPA Wi-Fi cracking toolkit designed for capturing authentication handshakes and recovering WPA/WPA2 passwords. It provides specialized utilities for scanning wireless networks, obfuscating hardware addresses, and generating password lists to facilitate security audits. The toolkit differentiates itself through a focused workflow that combines handshake capture tools with a password wordlist generator. It enables the interception of the four-way authentication process between wireless clients and access points and utilizes these captured credentials for recovery via dictionar
Scans for nearby Wi-Fi networks to identify hardware addresses, encryption types, and signal strengths.
This project is an integrated software suite and graphical workbench designed for capturing, visualizing, and reverse engineering wireless communication protocols and digital waveforms. It functions as a platform for software-defined radio analysis, enabling the recording of raw radio frequency data from hardware devices to facilitate the investigation of unknown or proprietary communication logic. The software distinguishes itself through a protocol-agnostic data modeling approach that represents radio transmissions as abstract bitstreams, decoupling analysis tools from specific modulation o
Provides a comprehensive environment for embedded systems security testing and wireless protocol reverse engineering.
fsociety is a penetration testing framework and security tool orchestrator designed to conduct full security audits. It functions as a wrapper that integrates external security binaries into a unified, menu-driven interface, providing a centralized system for command-line parameter mapping and execution. The project distinguishes itself by organizing specialized utilities into domain-specific collections for structured navigation. It automates the transition between different phases of an audit by chaining reconnaissance and exploitation tools through sequential workflow automation. The fram
A set of tools for exploiting access point vulnerabilities and auditing Bluetooth and Wi-Fi communication protocols.
ESP32Marauder is a suite of specialized firmware images and tools designed for wireless network auditing, packet sniffing, and Bluetooth scanning on ESP32 hardware. It functions as a wireless penetration tool used to analyze network security and monitor signal traffic. The project includes capabilities for capturing wireless handshakes and simulating access points to test infrastructure resilience. It also features a Bluetooth low energy scanner used to identify hardware signatures and detect unauthorized signals or skimming devices. The firmware supports broader security operations includin
Scans for access points and devices to identify vulnerabilities or analyze traffic patterns using ESP32 hardware.
Pwnagotchi is an AI-powered wireless auditor and handshake capture tool that uses deep reinforcement learning to autonomously collect wireless security handshakes and crackable key material. It serves as an automation framework for network instrumentation, adapting its operational parameters based on the local wireless environment to maximize data collection. The system distinguishes itself through distributed coordination, allowing multiple hardware units to share presence and divide wireless channels to optimize collective capture and perform distributed wireless mapping. It incorporates ge
Autonomously captures WPA/WPA2 handshakes for offline password recovery using an AI-driven approach.
airgeddon is a bash-based wireless network audit suite and security toolkit for Linux. It serves as a framework for testing wireless vulnerabilities and verifying network configurations across various encryption standards, including WPA, WEP, and WPS. The project functions as an orchestration layer that integrates a collection of third-party wireless security tools. It features a modular approach to attack vectorization, coordinating tasks such as evil twin simulations with captive portals, WPA handshake interception, and the execution of WPS vulnerability tests. Its capabilities cover a bro
Provides a comprehensive bash-based framework for testing wireless security vulnerabilities and verifying network configurations on Linux.
Wifite2 is an automated wireless network security auditor and password recovery suite. It coordinates multiple external auditing tools to scan for wireless networks and execute attacks to recover WEP, WPA, and WPS passwords. The project specializes in a variety of encryption attack vectors, including the interception of four-way handshakes and PMKID hash extraction for offline cracking. It provides dedicated capabilities for breaking legacy WEP encryption via fragmentation and packet replay, as well as recovering wireless keys through WPS PIN brute-force and Pixie-Dust attacks. The tool auto
Automates the process of scanning for wireless networks and testing their security by coordinating multiple external auditing tools.
Aircrack-ng is a wireless security auditing suite used for monitoring, attacking, testing, and cracking wireless network encryption keys and passwords. It functions as an 802.11 packet analysis tool, a wireless frame injection tool, and a network mapper to identify vulnerabilities and active clients within a wireless environment. The suite includes a dedicated WPA/WPA2 password cracker that recovers network keys by analyzing captured handshakes through dictionary and brute-force attacks. It enables the construction and transmission of fabricated 802.11 packets to trigger specific network resp
Investigates wireless communication and encryption keys to identify security vulnerabilities in networks.
This project is a custom firmware for the Flipper Zero that provides an embedded plugin ecosystem, a hardware pentesting toolkit, and a multi-protocol emulation layer. It modifies the device's operating system to include a Sub-GHz radio suite for expanded frequency range and the ability to build and deploy third-party applications directly onto the hardware. The firmware extends the device's native capabilities through a Sub-GHz radio suite that allows for frequency extension and signal capture beyond factory defaults. It implements specialized emulation for BadUSB and BLE keyboards and inclu
Tests target systems using HID emulation, wireless signal capture, and NFC or RFID security analysis.
Fluxion is a wireless security auditing framework that tests WPA/WPA2 networks by capturing handshakes and deploying rogue access points with captive portals. It operates by deauthenticating clients from legitimate access points, forcing them to reconnect to a cloned network where a fake authentication page collects the network passphrase. The tool distinguishes itself through a plugin-based attack lifecycle with mandatory hook functions for consistent execution, multilingual metadata scripts that load attack descriptions based on locale, and a handshake verification pipeline that validates c
Tests WPA/WPA2 wireless networks by capturing handshakes and launching captive portal attacks for security assessment.
This firmware transforms an ESP32 device into a portable penetration testing platform by combining an embedded JavaScript runtime with multi-protocol wireless attack capabilities, USB and Bluetooth HID emulation, and a menu-driven user interface. It is designed as a unified system that integrates persistent storage, hardware abstraction for external radio modules, a serial command protocol for headless operation, and a web-based remote desktop that streams the device screen and relays button inputs for remote control. The custom JavaScript scripting environment enables users to write and run
Captures and cracks WPA/WPA2 handshakes using a wordlist to recover network passwords.
lscript is a wireless network pentesting framework and keyboard-driven command console. It functions as a security tool orchestrator for installing and managing reconnaissance frameworks, alongside an automation toolkit for executing wireless attacks. The project distinguishes itself through a keyboard-driven interface that maps specific keystrokes to complex security scripts and system-level shell operations. This allows for the automation of wireless reconnaissance, handshake capture, and password recovery workflows without manual command typing. The system covers wireless adapter manageme
Intercepts security frames from wireless networks to capture handshakes for offline password recovery.
wlan-sec-test-tool هي مجموعة من أدوات الأمن اللاسلكي المتخصصة المصممة لمسح نقاط الوصول، وتدقيق أمن WPA و WPA2 و WPA3، وإجراء كسر كلمات المرور الآلي واختبار الاتصال. تعمل كماسح شبكة لاسلكية، وكسارة كلمات مرور، ومدقق أمني لتقييم ثغرات بروتوكول اللاسلكي. تتميز الأداة باستخدام مختبر اتصال متزامن ينفذ محاولات اتصال متعددة في وقت واحد. تستخدم قوائم كلمات مرور مخصصة وتكراراً قائماً على القاموس للتحقق من أمن الشبكة اللاسلكية وتحديد ما إذا كان يمكن الوصول إلى الشبكات بشكل غير مصرح به. يغطي المشروع إمكانيات أوسع في الاكتشاف اللاسلكي، بما في ذلك التقاط معلومات نقطة الوصول واكتشاف معيار التشفير. كما يوفر تكوين واجهة الشبكة ومراقبة حالة الاتصال لإدارة محولات اللاسلكي أثناء التحليل الأمني.
Tests WPA, WPA2, and WPA3 encryption to identify wireless protocol vulnerabilities.
Kali NetHunter هي منصة لاختبار الاختراق عبر الهاتف المحمول مصممة لتشغيل أدوات تقييم الأمان وتدقيق الشبكة مباشرة على أجهزة Android. توفر بيئة متخصصة لإجراء أبحاث الثغرات الأمنية، وتحليل الشبكات اللاسلكية، واختبار الأمان على كل من الأنظمة المحلية والبعيدة. تعمل المنصة عن طريق نشر توزيعة Linux كاملة جنباً إلى جنب مع نظام تشغيل الهاتف المحمول المضيف، باستخدام عزل نظام الملفات وتكامل التراكب للحفاظ على الوصول إلى موارد النظام. وهي تتيح التفاعل المباشر مع أجهزة الهاتف المحمول عن طريق تجاوز قيود التطبيقات القياسية، مما يسمح باستخدام الأجهزة الطرفية الخارجية وواجهات الشبكة المتخصصة. تدعم مجموعة الأدوات تحليل النظام العميق واختبار أمان الأجهزة من خلال الاستفادة من صلاحيات الجذر (root) للبيئة المحمولة الأساسية. وهي تسهل تدقيق الشبكات اللاسلكية من خلال شم الحزم (packet sniffing) وحقن حركة المرور، مع تمكين تنفيذ الملفات الثنائية الأصلية لإجراء تقييمات أمنية شاملة.
Implements methodologies and tools for investigating wireless communication to identify vulnerabilities.
EHole is a specialized toolkit for network asset parsing, binary transformation, payload generation, and vulnerability research. It functions as an asset discovery and fingerprinting tool designed to identify software versions and high-value assets across IP ranges and URLs using custom fingerprints. The project provides a vulnerability research toolkit for decrypting software credentials and retrieving factory default passwords for security devices and web applications. It also includes a security payload generator for encoding and escaping command strings to bypass shell tokenization and ex
Cleans and sorts IP address lists and CIDR blocks to create organized target sets for security assessments.
Maskphish is a comprehensive security toolkit that integrates capabilities for digital forensics, network vulnerability scanning, open-source intelligence, penetration testing, and social engineering. It functions as a multi-purpose framework for automating reconnaissance and executing security audits across diverse network environments. The project features a specialized phishing and social engineering toolkit used for cloning websites, masking URLs, and deploying deceptive pages to capture user credentials. It also includes a remote access Trojan builder for generating platform-specific exe
Implements a comprehensive suite for analyzing wireless traffic and testing security via handshake capture and rogue access points.
This project is a wireless network security toolkit designed for monitoring wireless traffic and exploiting vulnerabilities in network authentication protocols. It provides a suite of tools for scanning networks, capturing authentication handshakes, and testing the security of wireless access points. The toolkit includes a password wordlist generator to create custom lists for offline key recovery and a handshake cracker to recover encrypted keys using brute-force methods. It also features a vulnerability scanner specifically for testing the security of the Wireless Protected Setup pin system
Scans nearby Wi-Fi networks and analyzes signal strengths to identify security vulnerabilities.
ESP32-DIV is a handheld wireless pentesting platform designed for analyzing and disrupting a wide range of wireless protocols. It functions as a multi-band radio analyzer, RFID and NFC tag manipulator, and GPS wardriving logger, providing a unified interface for security auditing and signal research. The project distinguishes itself through a modular radio abstraction that allows switching between Wi-Fi, BLE, Sub-GHz, RFID/NFC, and infrared hardware modules. It features a touch-driven TFT interface for navigating toolsets and managing signal profiles, as well as the ability to emulate Bluetoo
Acts as a handheld platform for auditing wireless communication and identifying vulnerabilities in radio protocols.