Penetration Testing mailing list archives

RE: Wireless Scanning


From: "Lodin, Steven {D106~Indianapolis}" <steven.lodin () ROCHE COM>
Date: Mon, 27 Sep 2004 09:38:18 -0500

(Trying not to steal the thunder, just to whet your appetite.  You can
send me a zinger if I messed up :-)


Look for a new Auditor version (looks like it will be labeled Auditor 3)
to come out in the next few of weeks.  There will be a couple of new
tools.

From the author of Auditor:

"Aircrack is a better WEP cracker like Airsnort."
"The second one is named chopchop and is an active WEP decrypting
attack."
"P.S. A WPA preshared password cracker is also on the way."

http://www.remote-exploit.org/?page=auditor

For those of you using Auditor, did you donate?  We did.

Steve


-----Original Message-----
From: Carney, Mark [mailto:Mark.Carney () fishnetsecurity com] 
Sent: Friday, September 24, 2004 11:56 AM
To: Chuck Fullerton; RoF@yahoo; Pen-Test
Subject: RE: Wireless Scanning


Chuck,

I would suggest the following toolsets/tools for 802.11 and 
bluetooth discovery.

Toolsets:
1) Auditor Security Collection
2) Knoppix STD Distro

Tools:

802.11 --
1) Kismet
2) NetStumbler
3) Wellenreiter
4) asleap (if client is running Cisco LEAP)
5) AirSnort, Webattack, or dwepcrack (if client is running WEP)
6) Macchanger (to spoof mac address)
7) AirTraf

BlueTooth --
1) sdptool
2) pand
3) l2ping
4) btscanner
5) Redfang
6) BlueSniff


------------------------------------------------------------------------------
Ethical Hacking at the InfoSec Institute. All of our class sizes are
guaranteed to be 12 students or less to facilitate one-on-one interaction
with one of our expert instructors. Check out our Advanced Hacking course,
learn to write exploits and attack security infrastructure. Attend a course
taught by an expert instructor with years of in-the-field pen testing
experience in our state of the art hacking lab. Master the skills of an
Ethical Hacker to better assess the security of your organization.

http://www.infosecinstitute.com/courses/ethical_hacking_training.html
-------------------------------------------------------------------------------


Current thread: