22 dépôts
Methodologies and tools for investigating wireless communication to identify vulnerabilities in embedded hardware.
Distinct from Security Testing: Distinct from general security testing: focuses on wireless protocol and radio transmission analysis.
Explore 22 awesome GitHub repositories matching security & cryptography · Wireless Security Auditing. Refine with filters or upvote what's useful.
This project provides an open-source firmware platform and complete build environment for portable multi-tool hardware. It functions as an embedded operating system designed to manage radio, infrared, and physical interface components, enabling users to develop custom applications and system logic for specialized hardware devices. The firmware distinguishes itself through a modular architecture that organizes system functionality into isolated units, allowing for the development of custom user interfaces and logic. It includes a comprehensive collection of low-level drivers and applications s
Evaluates wireless access control systems by capturing, analyzing, and replaying radio frequency signals.
Wifiphisher is a modular security framework designed for wireless penetration testing and social engineering auditing. It functions as a platform for security professionals to assess the resilience of Wi-Fi networks by simulating unauthorized access, performing man-in-the-middle interceptions, and executing credential-harvesting scenarios. The tool distinguishes itself through its ability to combine rogue access point deployment with dynamic phishing interfaces. By forcing wireless clients to associate with deceptive infrastructure, the framework can capture network metadata and inject it int
Assesses the security of wireless access points and client devices by simulating unauthorized access and interception techniques in controlled environments.
This project is a WPA Wi-Fi cracking toolkit designed for capturing authentication handshakes and recovering WPA/WPA2 passwords. It provides specialized utilities for scanning wireless networks, obfuscating hardware addresses, and generating password lists to facilitate security audits. The toolkit differentiates itself through a focused workflow that combines handshake capture tools with a password wordlist generator. It enables the interception of the four-way authentication process between wireless clients and access points and utilizes these captured credentials for recovery via dictionar
Scans for nearby Wi-Fi networks to identify hardware addresses, encryption types, and signal strengths.
This project is an integrated software suite and graphical workbench designed for capturing, visualizing, and reverse engineering wireless communication protocols and digital waveforms. It functions as a platform for software-defined radio analysis, enabling the recording of raw radio frequency data from hardware devices to facilitate the investigation of unknown or proprietary communication logic. The software distinguishes itself through a protocol-agnostic data modeling approach that represents radio transmissions as abstract bitstreams, decoupling analysis tools from specific modulation o
Provides a comprehensive environment for embedded systems security testing and wireless protocol reverse engineering.
fsociety is a penetration testing framework and security tool orchestrator designed to conduct full security audits. It functions as a wrapper that integrates external security binaries into a unified, menu-driven interface, providing a centralized system for command-line parameter mapping and execution. The project distinguishes itself by organizing specialized utilities into domain-specific collections for structured navigation. It automates the transition between different phases of an audit by chaining reconnaissance and exploitation tools through sequential workflow automation. The fram
A set of tools for exploiting access point vulnerabilities and auditing Bluetooth and Wi-Fi communication protocols.
ESP32Marauder is a suite of specialized firmware images and tools designed for wireless network auditing, packet sniffing, and Bluetooth scanning on ESP32 hardware. It functions as a wireless penetration tool used to analyze network security and monitor signal traffic. The project includes capabilities for capturing wireless handshakes and simulating access points to test infrastructure resilience. It also features a Bluetooth low energy scanner used to identify hardware signatures and detect unauthorized signals or skimming devices. The firmware supports broader security operations includin
Scans for access points and devices to identify vulnerabilities or analyze traffic patterns using ESP32 hardware.
Pwnagotchi is an AI-powered wireless auditor and handshake capture tool that uses deep reinforcement learning to autonomously collect wireless security handshakes and crackable key material. It serves as an automation framework for network instrumentation, adapting its operational parameters based on the local wireless environment to maximize data collection. The system distinguishes itself through distributed coordination, allowing multiple hardware units to share presence and divide wireless channels to optimize collective capture and perform distributed wireless mapping. It incorporates ge
Autonomously captures WPA/WPA2 handshakes for offline password recovery using an AI-driven approach.
airgeddon is a bash-based wireless network audit suite and security toolkit for Linux. It serves as a framework for testing wireless vulnerabilities and verifying network configurations across various encryption standards, including WPA, WEP, and WPS. The project functions as an orchestration layer that integrates a collection of third-party wireless security tools. It features a modular approach to attack vectorization, coordinating tasks such as evil twin simulations with captive portals, WPA handshake interception, and the execution of WPS vulnerability tests. Its capabilities cover a bro
Provides a comprehensive bash-based framework for testing wireless security vulnerabilities and verifying network configurations on Linux.
Wifite2 is an automated wireless network security auditor and password recovery suite. It coordinates multiple external auditing tools to scan for wireless networks and execute attacks to recover WEP, WPA, and WPS passwords. The project specializes in a variety of encryption attack vectors, including the interception of four-way handshakes and PMKID hash extraction for offline cracking. It provides dedicated capabilities for breaking legacy WEP encryption via fragmentation and packet replay, as well as recovering wireless keys through WPS PIN brute-force and Pixie-Dust attacks. The tool auto
Automates the process of scanning for wireless networks and testing their security by coordinating multiple external auditing tools.
Aircrack-ng is a wireless security auditing suite used for monitoring, attacking, testing, and cracking wireless network encryption keys and passwords. It functions as an 802.11 packet analysis tool, a wireless frame injection tool, and a network mapper to identify vulnerabilities and active clients within a wireless environment. The suite includes a dedicated WPA/WPA2 password cracker that recovers network keys by analyzing captured handshakes through dictionary and brute-force attacks. It enables the construction and transmission of fabricated 802.11 packets to trigger specific network resp
Investigates wireless communication and encryption keys to identify security vulnerabilities in networks.
Ce projet est un firmware personnalisé pour le Flipper Zero qui fournit un écosystème de plugins embarqués, une boîte à outils de pentesting matériel et une couche d'émulation multi-protocole. Il modifie le système d'exploitation de l'appareil pour inclure une suite radio Sub-GHz pour une plage de fréquences étendue et la possibilité de compiler et déployer des applications tierces directement sur le matériel. Le firmware étend les capacités natives de l'appareil via une suite radio Sub-GHz permettant l'extension de fréquence et la capture de signaux au-delà des paramètres d'usine. Il implémente une émulation spécialisée pour BadUSB et les claviers BLE, et inclut un framework dédié pour l'exécution de plugins modulaires et de jeux. Le système couvre un large éventail de domaines d'interaction matérielle, incluant la gestion NFC et RFID, le contrôle d'appareils infrarouges et le pontage série UART. Il fournit également des outils pour le monitoring de capteurs environnementaux et l'analyse de la qualité de l'air, ainsi qu'une authentification à deux facteurs basée sur le matériel via la spécification U2F. Les utilisateurs peuvent compiler le code source en plugins exécutables ou créer des archives de firmware compressées pour une installation via une carte de stockage amovible.
Tests target systems using HID emulation, wireless signal capture, and NFC or RFID security analysis.
Fluxion is a wireless security auditing framework that tests WPA/WPA2 networks by capturing handshakes and deploying rogue access points with captive portals. It operates by deauthenticating clients from legitimate access points, forcing them to reconnect to a cloned network where a fake authentication page collects the network passphrase. The tool distinguishes itself through a plugin-based attack lifecycle with mandatory hook functions for consistent execution, multilingual metadata scripts that load attack descriptions based on locale, and a handshake verification pipeline that validates c
Tests WPA/WPA2 wireless networks by capturing handshakes and launching captive portal attacks for security assessment.
This firmware transforms an ESP32 device into a portable penetration testing platform by combining an embedded JavaScript runtime with multi-protocol wireless attack capabilities, USB and Bluetooth HID emulation, and a menu-driven user interface. It is designed as a unified system that integrates persistent storage, hardware abstraction for external radio modules, a serial command protocol for headless operation, and a web-based remote desktop that streams the device screen and relays button inputs for remote control. The custom JavaScript scripting environment enables users to write and run
Captures and cracks WPA/WPA2 handshakes using a wordlist to recover network passwords.
lscript est un framework de pentesting de réseau sans fil et une console de commande pilotée par clavier. Il fonctionne comme un orchestrateur d'outils de sécurité pour installer et gérer des frameworks de reconnaissance, aux côtés d'une boîte à outils d'automatisation pour exécuter des attaques sans fil. Le projet se distingue par une interface pilotée par clavier qui mappe des frappes spécifiques à des scripts de sécurité complexes et des opérations shell au niveau du système. Cela permet l'automatisation des flux de travail de reconnaissance sans fil, de capture de handshake et de récupération de mot de passe sans saisie manuelle de commandes. Le système couvre la gestion des adaptateurs sans fil, y compris l'usurpation d'adresse MAC et le basculement en mode moniteur. Il fournit des capacités pour l'analyse réseau via le scan sans fil et la surveillance de handshake, ainsi que des tests de sécurité via l'injection de paquets, la désauthentification de clients et l'automatisation des flux de travail d'exploitation.
Intercepts security frames from wireless networks to capture handshakes for offline password recovery.
wlan-sec-test-tool est une collection d'outils de sécurité sans fil spécialisés conçus pour scanner les points d'accès, auditer la sécurité WPA, WPA2 et WPA3, et effectuer le craquage automatique de mots de passe et le test de connexion. Il fonctionne comme un scanner de réseau sans fil, un craqueur de mots de passe et un auditeur de sécurité pour évaluer les vulnérabilités des protocoles sans fil. L'outil se différencie par l'utilisation d'un testeur de connexion concurrent qui exécute plusieurs tentatives de connexion simultanées. Il utilise des listes de mots de passe personnalisées et une itération basée sur des dictionnaires pour vérifier la sécurité du réseau sans fil et déterminer si les réseaux peuvent être accédés sans autorisation. Le projet couvre des capacités plus larges en découverte sans fil, incluant la capture d'informations de points d'accès et la détection de standards de chiffrement. Il fournit également la configuration de l'interface réseau et la surveillance de l'état de connexion pour gérer les adaptateurs sans fil pendant l'analyse de sécurité.
Tests WPA, WPA2, and WPA3 encryption to identify wireless protocol vulnerabilities.
Kali NetHunter est une plateforme de test d'intrusion mobile conçue pour exécuter des outils d'évaluation de sécurité et d'audit réseau directement sur du matériel Android. Elle fournit un environnement spécialisé pour effectuer de la recherche de vulnérabilités, de l'analyse de réseau sans fil et des tests de sécurité sur des systèmes locaux et distants. La plateforme fonctionne en déployant une distribution Linux complète aux côtés du système d'exploitation mobile hôte, utilisant l'isolation du système de fichiers et l'intégration d'overlay pour maintenir l'accès aux ressources système. Elle permet une interaction directe avec le matériel mobile en contournant les restrictions d'application standards, permettant l'utilisation de périphériques externes et d'interfaces réseau spécialisées. La boîte à outils prend en charge l'analyse système approfondie et les tests de sécurité matérielle en tirant parti de l'accès root à l'environnement mobile sous-jacent. Elle facilite l'audit sans fil via le sniffing de paquets et l'injection de trafic, tout en permettant l'exécution de binaires natifs pour effectuer des évaluations de sécurité complètes.
Implements methodologies and tools for investigating wireless communication to identify vulnerabilities.
EHole is a specialized toolkit for network asset parsing, binary transformation, payload generation, and vulnerability research. It functions as an asset discovery and fingerprinting tool designed to identify software versions and high-value assets across IP ranges and URLs using custom fingerprints. The project provides a vulnerability research toolkit for decrypting software credentials and retrieving factory default passwords for security devices and web applications. It also includes a security payload generator for encoding and escaping command strings to bypass shell tokenization and ex
Cleans and sorts IP address lists and CIDR blocks to create organized target sets for security assessments.
Maskphish is a comprehensive security toolkit that integrates capabilities for digital forensics, network vulnerability scanning, open-source intelligence, penetration testing, and social engineering. It functions as a multi-purpose framework for automating reconnaissance and executing security audits across diverse network environments. The project features a specialized phishing and social engineering toolkit used for cloning websites, masking URLs, and deploying deceptive pages to capture user credentials. It also includes a remote access Trojan builder for generating platform-specific exe
Implements a comprehensive suite for analyzing wireless traffic and testing security via handshake capture and rogue access points.
This project is a wireless network security toolkit designed for monitoring wireless traffic and exploiting vulnerabilities in network authentication protocols. It provides a suite of tools for scanning networks, capturing authentication handshakes, and testing the security of wireless access points. The toolkit includes a password wordlist generator to create custom lists for offline key recovery and a handshake cracker to recover encrypted keys using brute-force methods. It also features a vulnerability scanner specifically for testing the security of the Wireless Protected Setup pin system
Scans nearby Wi-Fi networks and analyzes signal strengths to identify security vulnerabilities.
ESP32-DIV is a handheld wireless pentesting platform designed for analyzing and disrupting a wide range of wireless protocols. It functions as a multi-band radio analyzer, RFID and NFC tag manipulator, and GPS wardriving logger, providing a unified interface for security auditing and signal research. The project distinguishes itself through a modular radio abstraction that allows switching between Wi-Fi, BLE, Sub-GHz, RFID/NFC, and infrared hardware modules. It features a touch-driven TFT interface for navigating toolsets and managing signal profiles, as well as the ability to emulate Bluetoo
Acts as a handheld platform for auditing wireless communication and identifying vulnerabilities in radio protocols.