12 个仓库
Interception of security frames from wireless networks to analyze authentication and recover passwords.
Distinct from Wireless Security Auditing: Focuses specifically on the capture of WPA/WPA2 handshakes for offline cracking, rather than general wireless protocol auditing.
Explore 12 awesome GitHub repositories matching security & cryptography · Handshake Captures. Refine with filters or upvote what's useful.
This project is a WPA Wi-Fi cracking toolkit designed for capturing authentication handshakes and recovering WPA/WPA2 passwords. It provides specialized utilities for scanning wireless networks, obfuscating hardware addresses, and generating password lists to facilitate security audits. The toolkit differentiates itself through a focused workflow that combines handshake capture tools with a password wordlist generator. It enables the interception of the four-way authentication process between wireless clients and access points and utilizes these captured credentials for recovery via dictionar
Sends forged management frames to force client reconnections and capture WPA four-way handshakes.
ESP32Marauder is a suite of specialized firmware images and tools designed for wireless network auditing, packet sniffing, and Bluetooth scanning on ESP32 hardware. It functions as a wireless penetration tool used to analyze network security and monitor signal traffic. The project includes capabilities for capturing wireless handshakes and simulating access points to test infrastructure resilience. It also features a Bluetooth low energy scanner used to identify hardware signatures and detect unauthorized signals or skimming devices. The firmware supports broader security operations includin
Provides capabilities to intercept security handshakes from wireless networks for password recovery analysis.
Pwnagotchi is an AI-powered wireless auditor and handshake capture tool that uses deep reinforcement learning to autonomously collect wireless security handshakes and crackable key material. It serves as an automation framework for network instrumentation, adapting its operational parameters based on the local wireless environment to maximize data collection. The system distinguishes itself through distributed coordination, allowing multiple hardware units to share presence and divide wireless channels to optimize collective capture and perform distributed wireless mapping. It incorporates ge
Autonomously captures WPA/WPA2 handshakes for offline password recovery using an AI-driven approach.
airgeddon is a bash-based wireless network audit suite and security toolkit for Linux. It serves as a framework for testing wireless vulnerabilities and verifying network configurations across various encryption standards, including WPA, WEP, and WPS. The project functions as an orchestration layer that integrates a collection of third-party wireless security tools. It features a modular approach to attack vectorization, coordinating tasks such as evil twin simulations with captive portals, WPA handshake interception, and the execution of WPS vulnerability tests. Its capabilities cover a bro
Collects network handshake files and identifiers to facilitate offline security analysis.
Wifite2 is an automated wireless network security auditor and password recovery suite. It coordinates multiple external auditing tools to scan for wireless networks and execute attacks to recover WEP, WPA, and WPS passwords. The project specializes in a variety of encryption attack vectors, including the interception of four-way handshakes and PMKID hash extraction for offline cracking. It provides dedicated capabilities for breaking legacy WEP encryption via fragmentation and packet replay, as well as recovering wireless keys through WPS PIN brute-force and Pixie-Dust attacks. The tool auto
Intercepts four-way handshakes and PMKID hashes from access points for offline password cracking.
Fluxion is a wireless security auditing framework that tests WPA/WPA2 networks by capturing handshakes and deploying rogue access points with captive portals. It operates by deauthenticating clients from legitimate access points, forcing them to reconnect to a cloned network where a fake authentication page collects the network passphrase. The tool distinguishes itself through a plugin-based attack lifecycle with mandatory hook functions for consistent execution, multilingual metadata scripts that load attack descriptions based on locale, and a handshake verification pipeline that validates c
Captures the 4-way authentication handshake from a target access point by listening or deauthenticating.
This firmware transforms an ESP32 device into a portable penetration testing platform by combining an embedded JavaScript runtime with multi-protocol wireless attack capabilities, USB and Bluetooth HID emulation, and a menu-driven user interface. It is designed as a unified system that integrates persistent storage, hardware abstraction for external radio modules, a serial command protocol for headless operation, and a web-based remote desktop that streams the device screen and relays button inputs for remote control. The custom JavaScript scripting environment enables users to write and run
Captures and cracks WPA/WPA2 handshakes using a wordlist to recover network passwords.
lscript 是一个无线网络渗透测试框架和键盘驱动的命令控制台。它作为一个安全工具编排器,用于安装和管理侦察框架,并提供用于执行无线攻击的自动化工具包。 该项目的特色在于其键盘驱动的界面,将特定的按键映射到复杂的安全脚本和系统级 shell 操作。这使得无需手动输入命令即可自动化执行无线侦察、握手包捕获和密码恢复工作流。 该系统涵盖了无线网卡管理,包括 MAC 地址欺骗和监听模式切换。它通过无线扫描和握手监控提供网络分析功能,并通过数据包注入、客户端取消认证和漏洞利用工作流自动化进行安全测试。
Intercepts security frames from wireless networks to capture handshakes for offline password recovery.
Maskphish is a comprehensive security toolkit that integrates capabilities for digital forensics, network vulnerability scanning, open-source intelligence, penetration testing, and social engineering. It functions as a multi-purpose framework for automating reconnaissance and executing security audits across diverse network environments. The project features a specialized phishing and social engineering toolkit used for cloning websites, masking URLs, and deploying deceptive pages to capture user credentials. It also includes a remote access Trojan builder for generating platform-specific exe
Includes a tool to monitor wireless traffic and capture WPA handshakes for password verification and recovery.
This project is a wireless network security toolkit designed for monitoring wireless traffic and exploiting vulnerabilities in network authentication protocols. It provides a suite of tools for scanning networks, capturing authentication handshakes, and testing the security of wireless access points. The toolkit includes a password wordlist generator to create custom lists for offline key recovery and a handshake cracker to recover encrypted keys using brute-force methods. It also features a vulnerability scanner specifically for testing the security of the Wireless Protected Setup pin system
Intercepts WPA/WPA2 authentication security frames to analyze authentication and recover passwords.
Hijacker is a Wi-Fi security auditing suite designed for scanning wireless networks, capturing traffic, and recovering credentials. It provides a set of tools for detecting nearby access points and clients, intercepting WPA handshakes, and recovering WPA and WEP passwords. The project features a visual security audit interface that allows for the execution of specialized tools without using a command-line terminal. It includes a dedicated WPS pin recovery tool for extracting access point pins using pixie-dust attacks via external adapters. The toolkit covers network reconnaissance, including
Intercepts WPA security frames from wireless networks to enable offline password recovery.
WiFiBroot 是一款专为无线网络安全审计和渗透测试设计的命令行实用程序。它专注于通过捕获身份验证握手并测试接入点和连接客户端的弹性,来评估 WPA 和 WPA2 网络安全。 该工具结合了一个去身份验证(deauthentication)攻击框架,强制客户端断开连接以促进握手数据的拦截。它利用状态重构从碎片化的无线流量中组装完整的加密交换,然后用于离线凭证恢复。 该软件通过评估接入点如何处理强制断开连接和流量中断来支持网络压力测试。它利用并行计算将测试密码候选者的工作负载分配到多个处理核心,同时使用底层数据包注入和捕获技术直接与无线介质交互。
Intercepts WPA and WPA2 authentication handshakes from local traffic to enable offline password recovery.