Penetration Testing mailing list archives

Decrypting Frequency Hopping packets


From: "James Lay" <jlay () slave-tothe-box net>
Date: Thu, 8 Jul 2010 14:51:41 -0600

Hey All!

So...I am doing an internal pentest and have run across something
interesting.  Situation:  OLD Symbol Spectrum24 FH PCMCIA NIC's connecting
to OLD Symbol Spectrum FH AP2411...no WEP.  I haven't found ANYTHING that
allows me to use the PCMCIA NIC as a sniffing device (something a la
Kismet).  As I was doing a packet capture using Kismet on a b/g NIC, I
noticed that I COULD pick up some packets during a conversation from/to AP
and NIC.  Now..these packets are all 214 bytes long...and I haven't a clue
how I would be able to decrypt them into something usable.  Anyone have
ANY suggestions or thoughts?  Thanks.

James


------------------------------------------------------------------------
This list is sponsored by: Information Assurance Certification Review Board

Prove to peers and potential employers without a doubt that you can actually do a proper penetration test. IACRB CPT 
and CEPT certs require a full practical examination in order to become certified. 

http://www.iacertification.org
------------------------------------------------------------------------


Current thread: