Penetration Testing mailing list archives

Re: [PEN-TEST] Penetrating Wireless Networks


From: Max Gribov <max () DATATWIRL YI ORG>
Date: Wed, 7 Mar 2001 10:18:52 -0500

i have found a paper on wep weaknesses, which can be foun on
datatwirl.yi.org/wep-faq.html
the paper IS NOT mine, i simply cannot find the original place where i got
it from, so this is a mirror. (the original site seems to be down)

max

On Tue, 6 Mar 2001, Frank Knobbe wrote:

-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

Greetings,

I know the technologies are rather new compared to wired networks,
but does anyone have and pointers for penetration tests of wireless
networks, 802.11b in particular?

In my opinion, with the advance of wireless networks, this will be a
very important part of pen tests. Has anyone developed any
methodologies for such tests? Are there any tools available that
assist in testing wireless networks? For example, one is able to run
tcpdump and other goodies on the wireless card just like on regular
NIC's. However, in order to gain access to the WLAN, one must know
not only the WEP encryption key (if WEP is used), but also the ESS
(network identifier), preamble length, and channel number. Are there
any tools that provide automation of changes for these values (for an
automated scan)? Are there any tools for 'low-level' 802.11b data
examination (i.e. preamble checking/display, etc)?

Regards,
Frank


-----BEGIN PGP SIGNATURE-----
Version: PGP Personal Privacy 6.5.8
Comment: PGP or S/MIME encrypted email preferred.

iQA/AwUBOqWNiZytSsEygtEFEQJ2oQCg4/opiTBaIeIx1TeJhnJ8ZtJ8SdAAoK2M
uEjKyVpUpTsC9ci2eJ++DA+N
=C3F0
-----END PGP SIGNATURE-----



Current thread: