2010-09-11

[Script][Video] wiffy (v0.1)

Links
Watch video on-line: http://g0tm1ik.blip.tv/file/4108992
Download video: http://www.mediafire.com/?3vvodwhxx191ex1
Download Script (wiffy.sh): http://www.mediafire.com/?nmu7mixhis1u8km




What is this?

A bash script to automate cracking WiFi networks! Supports WEP (Client & Client-less), WPA/WPA2, MAC filtering and hidden SSID with the option of connecting afterwards.


How does it work?
> Scans for wireless networks and saves gathered data
> Configures the attacker's wireless card
> Tries to detect currently connected clients
> Starts to capture data
> Depending on encryption on the wireless network - starts different attacks
> Once enough 'essential' data has been collected starts to crack the WiFi key
> Optional: Connect to network with the clients MAC (For MAC Filtering) and WiFi Key


What do I need?

> The bash file, wiffy.sh (37.24 KB, SHA1:49f7a930120544a6cec11171abe500f7042ba49d)
> A wireless card --- that supports monitor mode
> Dictionaries/Word-lists ---If you're wanting to crack WPA/WPA2
> aircrack-ng suite, macchanger --- All on BackTrack!> Optional: Subversion

How do I use it?
1.) Either edit wiffy.sh or specify, via command line, your interface. (You can view your interfaces via ifconfig and use kate to edit.)
2.) If an ESSID or BSSID wasn't set via command line, select which is YOUR network
3.) Wait...
4.) ...Game over. (=


Commands:

bash wiffy.sh
1
clear
kate wiffy.sh
iwconfig
bash wiffy.sh -?
clear
bash wiffy.sh -v -e g0tmi1k -x
bash wiffy.sh -x -e g0tmi1k -V

ipconfig /all

bash wiffy.sh -m dos -c [MAC] -v
2

192.168.1.1
google.com
g0tmi1k.blogspot.com



Troubleshooting

  • WEP
    • Didn't detect my client
      • Add it in manually
      • Re-run the script
    • IV's do not increase
      • DeAuth didn't work --- Client using Windows 7?
      • Use a different router/client
  • WPA
    • You can ONLY crack WPA/WPA2 when:
      • The ESSID is known
      • The WiFi key is in the word-list
      • There is a connected client 
  • Doesn't detect any/my wireless network
    • Don't run from a virtual machine
    • Driver issue - Use a different WiFi device
    • Re-run the script
    • You're too close/far away
    • Unplug WiFi device, wait, replug
  • "Extras"  doesn't work
    • Network doesn't have a DHCP server
    • Slow
      • Re-run the script
      • Try a different attack... manually!
    • ... still not working correctly?
      • Re run with Diagnostics mode enabled (-d)
      • Make a note of the setup (Hardware, versions etc)
      • Get in touch!
    Notes:
    • Tested in BackTrack 4 (R1). 
    • It's worth doing this "manually" (without the script) before using this, so you have an idea of what's happening, and why. The script is only meant to save time.
    • I'm running BackTrack 4 R1 in VM, The target is running Windows 7 Ultimate (fully up-to-date 2010-09-11), with firewall enabled, no AV and with UAC enabled (Windows 7 Default)
    Song: Duck Sauce - Barbara Streisand (O-God Remix) & The Prodigy - Out of Space
    Video length: 6:59
    Capture length: 45:07

    Blog Post: http://g0tmi1k.blogspot.com/2010/09/scriptvideo-wiffy-v01.html
    Forum Post: http://www.backtrack-linux.org/forums/backtrack-videos/32798-%5Bscript%5D-%5Bvideo%5D-wiffy-v0-1-a.html#post174858



    ~g0tmi1k

    95 comments:

    1. Very handy and saves a lot of time! Thanks and yes I do got milk

      ReplyDelete
    2. Great script, i remember myself making this similar script.. Easy to use, especially for those noobs on cracking WEP and WPA security, but i recomend to do it manually so that you can understand the commands with ease. Nontheless, great job g0tmi1k for making this.:)

      Thanks.

      ReplyDelete
    3. @tumppi & mastahhh
      Thanks for the thanks!
      Yes, its worth doing manually - just like it says so! (=

      ReplyDelete
    4. wiffy.sh v0.1 (#5) (2010-09-13)
      Download http://www.mediafire.com/?nmu7mixhis1u8km

      ChangeLog:
      - Added "re[f]resh" when no AP found (saves closing/opening again)
      - Added "update" mode (-u)
      - Fixed bug with ESSID & space (Cheap/Ugly hack though)
      - Supports "Hidden SSID".
      - Updated "help" screen

      ReplyDelete
    5. can you tell me what softs in your BT desktop to show linux system information ,forexample RAM,SWAP ,SYSTEM,XORG

      ReplyDelete
    6. This comment has been removed by the author.

      ReplyDelete
    7. Hi, thanks for a awesome script.
      I doubt this is the script, but im making my own wordlist with my WPA PSK key in it, i tried cracking my own net 3 times now, only 1 of the times the key was shown, the other 2 times it just said WiFi key not in wordlist.

      ReplyDelete
    8. hi,guys,i use wiffy got some worng ,this is tips
      cat:/tmp;wiffy.dump-01.kismet.netxml,this file not found,can you help me!!!!

      ReplyDelete
    9. @Got
      Update to #15.
      Few bug fixes. (=

      @Jonathan
      Its odd that does work..sometimes.
      Try #15, if that doesn't work let me know and I'll look into it

      @星星
      Try running the script again, or wait 10 seconds.
      Its when aircrack-ng runs slower than the script.

      ReplyDelete
    10. #16 works great, screen layout is much better.

      ReplyDelete
    11. Another great release from g0tmi1k. All features in WEP tested and worked like a charm. I cracked in 5 mins a WEP with 90% signal and 1 client connected. I will test it in WPA and I will reply.

      Thanks for this gr8 tool. And remember, try to do it manually in order to learn the methods. This script save us time :)

      ReplyDelete
    12. @Doug & @тσσ ∂яυик тσ нα¢к
      Thanks for the thanks & feedback!
      Good to know its working for other people, and just not me (=

      And very well said, about doing it yourself BEFORE using this.

      ReplyDelete
    13. if you want i can mirror your scripts and videos.
      on a 100mbit up box :)
      your scripts are very nice - ive learned alot :)

      ReplyDelete
    14. @doenerwatch
      Thanks for the offer, but I've gotten used to blip.tv for my videos. The all scripts are soon to be 'updated' with new hosting ;)

      ReplyDelete
    15. Great Script.what app are u using to monitor system details?I mean whats the name of the app that shows system details on the desktop?

      ReplyDelete
    16. What about hidden essid? I've used kismet and airmon but still it didn't detect and also tried deauthentication but still nothin. Btw great script helped me a lot. Thanks master

      ReplyDelete
    17. @zerdnem
      It does support Hidden ESSID *IF* the setup is right.
      There has to be a connected (or connecting) client, that when you deauth rejoins (90% of the time it works for me-Could be a problem I have with windows 7 or the hardware I'm using)

      ReplyDelete
    18. yeah it r0x!
      whats the video-capture/edit software you are using? i like the blur/hilite effect

      ReplyDelete
    19. @g0tmi1k
      I have tested the script in a wireless with hidden ssid for testing purposes and not for black hat activity. It cracked the wep in hex format...with ":"

      After I tried to connect but I can't. Is there anyway to find out why?

      Possible problems: MAC filter/auth, DHCP off?, WEP Cert or another way of filtering/authentication?

      I think that the router has dhcp off and not common ip range like 192.168.x.x or 10.0.x.x or is running a different type of auth..

      I want some info/suggestion for this difficult case

      ReplyDelete
    20. @g0tmi1k
      Can you help ? Cant run wiffy.sh in Debian. I get this message.

      "Warning: Tried to connect to session manager, None of the authentication protocols specified are supported"

      I changed owner to root and gave 777 permission but nothing have changed.

      ReplyDelete
    21. I found out what is a problem.
      I was attempting to ran script as root when i got that message. When i run it with sudo script is working fine.
      In meantime i got this massage to:

      "Warning: This program is an suid-root program or is being run by the root user.
      The full text of the error or warning message cannot be safely formatted
      in this environment. You may get a more descriptive message by running the
      program as a non-root user or by removing the suid bit on the executable.
      xterm Xt error: Can't open display: %s
      cat: /tmp/wiffy.tmp: No such file or directory"

      Can i modify script somehow so it can run as root to ?

      ReplyDelete
    22. @Kristijan
      It wasn't designed to be run in Debian as it was meant for backtrack (which is based on ubuntu).
      As I dont use or have Debian I can't help you, all I can say is try Google.
      IF I HAD to guess, to me it looks like it something to do with xterm...
      Sorry, I cant help any more

      ReplyDelete
    23. @тσσ ∂яυик тσ нα¢к
      What version of the script are you using?
      I did make a mistake a while back, and it has been correct since.

      You can clone another clients MAC address to bypass "MAC filter/auth".
      You can watch other clients's traffic (Wireshark) to discover the IP range (and I think ettercap has a feature too) - Plus there is another default private class address: 172.xxx.xxx.xxx

      ReplyDelete
    24. @g0tmi1k
      I used for this action the: wiffy.sh v0.1 (#5 2010-09-13).

      The key that the script found is correct because I succesfully decrypted the packets from airodump with the airdecap program.

      Now I'm trying to see other client's local ip in the Wireshark (import the decap).

      The router is an AP/Hotspot and it's Cisco. I think that it has some extra security levels.

      I still can't connect.. I will search about it cause it's a difficult case.

      So, WEP encryption with extra security levels will be more secure than a plain WPA without any other filters.

      ReplyDelete
    25. @тσσ ∂яυик тσ нα¢к
      Since (#5 2010-09-13) there has been while a bit of changes (bug fixes, new features) - its worth doing the update. *its also fixes a connection issue*

      You do have legal permission don't you?
      Therefore you can log into the router and check what the settings are?

      Did you find anything from wireshark?
      Did you try ettercap's IP finding feature?
      Is there a RADIUS server?

      I don't agree with your last bit. WPA is still "better" than WEP (even if it has some special? "filters"). I say this because I don't like the idea of someone having my WiFi key, therefore they are able to decap the traffic - doesn't matter if they can connect.

      I can't think what "special filters" are stopping you from connecting, other than what has been said.

      ReplyDelete
    26. @g0tm1lk

      Yeap it's not blackhat activity. I will contact the admin (a friend) in order to check what happens and to show me what filters are setup. I will inform you. But it's the curiosity in order to find out it by myself.

      My last bit it wasn't about to compare WEP and WPA. WPA is better ofcourse. But I realised that wep+filters are strong. I agree that decrypting packets isn't good and I don't trust WEP in my WiFi. I agree with you.

      Anyway, thanks I will reply when I have news. Also I will try the new version

      ReplyDelete
    27. Just WoW!
      And Great!
      So So Prefectooooo!
      Excelent

      ReplyDelete
    28. @тσσ ∂яυик тσ нα¢к
      Best of luck!

      @Alir3z4 and @Hacker
      Thanks for the thanks!

      ReplyDelete
    29. This comment has been removed by the author.

      ReplyDelete
    30. give us the link to your Brain man :D
      You bash Fly :)
      Oh and If U G0tmi1k then Get The Glass 2
      Merci Pour Le Partage
      bonne continuation

      ReplyDelete
    31. This comment has been removed by the author.

      ReplyDelete
    32. I have a problem please help me !
      [-] something went wrong )=
      ?

      ReplyDelete
    33. @Compare
      To help you, I'm going to need a bit more info from you...

      That error message is used a few times (and it doesn't have any error codes), so what text is above it?
      *Could you copy and paste what's on the screen?*

      How did you run wiffy?
      What version of wiffy are you using?
      What are you trying to do with wiffy?

      ReplyDelete
    34. root@bt:~# bash wiffy.sh
      [*] wiffy v0.1 (#5)
      [>] Analyzing: Environment
      Num | ESSID | BSSID | Protected | Cha | Quality
      -----|------------------------|-------------------|-----------|-----|---------
      1 | Compare | 38:22:9D:61:B5:2A | on (WEP) | 1 | 24/70
      2 | Thomsonттт | 00:24:17:AD:94:AB | on (WPA) | 1 | 34/70
      3 | Thomsonттт | 00:24:17:19:CB:23 | on (WPA) | 6 | 40/70
      4 | toтттт | 00:0C:6E:56:9A:F3 | on (WPA) | 1 | 25/70
      5 | Uтттт | 00:18:9B:6E:E3:9F | on (WPA) | 1 | 27/70
      6 | BAтттт | 00:02:61:2B:07:07 | on (WPA) | 11 | 26/70
      [~] re[s]can, re[f]resh, e[x]it or select num: 1
      [>] Configuring: Environment
      [>] Detecting: Client(s)
      [>] Starting: airodump-ng
      [>] Attack (ARPReplay+Deauth): 00:C0:A8:E5:D4:DA
      [>] Starting: aircrack-ng
      [-] Something went wrong )=
      [>] Restoring: Environment
      [*] Done! (= Have you... g0tmi1k?
      root@bt:~

      ReplyDelete
    35. This comment has been removed by the author.

      ReplyDelete
    36. How did you run wiffy? I do not know exactly how to respond using the black track 4R1 or install or whatever was Dreiver
      What version of wiffy are you using? I do not know how to check
      What are you trying to do with wiffy? I do not know everything is installed on the black track 4R1



      sorry for the stupid answer but I am very aware of things.
      If you can give me accurate information (user commands)
      looking for WPA or WPA2 is still quite a long time.
      Could you write me a command that I can have full functionality of the program
      Just if you could tell me from where everything begins with the most likely thing I blurted out.
      I have installed Team viewer if you can with this program can help with something
      This is a program that provides full access from PC to PC so yourself you can find out where exactly is the problem.
      Another problem when looking Wap Wap2 #Data 0 #/S 0
      Thank you in advance for helping.

      ReplyDelete
    37. hey dude , can you give me your email ?

      i want to talk to you about stuff ,

      or add me

      vaq@hotmail.com ,

      Peace ~

      ReplyDelete
    38. @Compare
      From using the output (this is why I ask for it ;)):
      How did you run wiffy? bash wiffy.sh *You didn't add any command line options, guessing you didn't edit the defaults*
      What version of wiffy are you using? wiffy v0.1 (#5) *It says it at the top - and on each output window*
      What are you trying to do with wiffy? A WEP attack.

      First thing, your using a very out of date version - lots of bugs in it.
      You can update it by: bash wiffy.sh -u
      Good chance that will fix a few issues you're having (WEP and WPA).

      Try updating, then report back if you have any more issues

      ReplyDelete
    39. @uchiha
      If you were referring to me,
      Whats wrong with here?

      ReplyDelete
    40. nah another good stuff from g0tm1lk again, thx man. cant wait for future stuff. =)

      ReplyDelete
    41. @Azhar Amran
      Thanks! (=
      Wiffy v0.2 is soon. Very soon ;)

      ReplyDelete
    42. Please Worldlist where to download it for WPA WPA2

      ReplyDelete
    43. @Compare
      Its using the default wordlist that comes with Backtrack4 R1.
      You can edit it to use your own wordlists if you need and if you haven't got any, I'm hosting a few small ones (its in need of an update as well)
      http://g0tmi1k.blogspot.com/2010/02/site-news-isos-and-dictionaries.html

      ReplyDelete
    44. please ;How to speed Elapsed 7 hours to Elapsed 1min or second .

      ReplyDelete
    45. @Compare,
      I've already answer that before in another comment you made.

      It will take 7 hours, 7 days or 7 years if that is how long it takes to capture a handshake. Connect another device to the wireless network to capture the handshake OR deauth a device that is currently connected. No one can make that faster.

      ReplyDelete
    46. Hello gOtmi1k,

      Thanks for the great tools! I have a problem:
      My interface cannot be recognize, i'm using your latest version of wiffy #28 under Ubuntu 9.10. Here is what i got:

      root@ubuntu:/home/yannek/wifi# bash wiffy.sh
      [*] wiffy v0.1 (#28)
      [>] Analyzing: Environment
      [!] 'ralan0' isn't a wireless interface
      [!] Couldn't detect a wireless interface

      [>] Restoring: Environment
      [*] Done! (= Have you... g0tmi1k?

      ralan0 is my wifi in monitor mode already! I use iwconfig to set the mode because airmon-ng crash my system. Let me know if you have any idea how to make it work for me.
      Cheers

      ReplyDelete
    47. @yannek
      I think you just found a bug. (=

      Could you use pastebin, and send the output of:
      iwconfig ralan0

      wiffy, looks at output of iwconfig, and searchers for: 802.11. If it can't find it, then it doesn't think that interface isn't a wifi device.

      I'll *try* and have a fix in the next beta of wiffy 0.2.

      ReplyDelete
    48. Hey GotMilk (Yes, I do, actually. Chocolate =) ),

      I'm not the most knowledgeable of people, I'll be the first to admit it. But is there any way to tweak your Wiffy script (I'm using v0.1 build 32) to try and wifi my way into my currently-no-clients-there router as a test, but my netbook that I'm running this on doesn't seem to wanna start the GUI. Rather than hurt my brain trying to decipher your code (even though it's fairly logical, I just can't quite get it to work myself), is there a way to make it work from command-line only ? Say with Screen's rather than a series of xTerm's ?

      Just a random question, since I know you're busy and have a lot of other things to work on in the meantime.

      Cheers and 73's

      VE6AY

      ReplyDelete
    49. @S
      Hiya.
      I would like to point out that you can only crack WEP networks without any connected clients (Not WPA/WPA2).

      There isn't a GUI as such - however it uses xterm to output to another window (So you can see what is going on).
      *One day I was thinking about making a mode - where it uses only ONE window, but this is a while off*.

      On a side note, the script does work using ubuntu (you may find that a better OS to install to your netbook!)

      ReplyDelete
    50. gotmilk you're the man :)

      ReplyDelete
    51. Hello...wiffy is the best ever!!!
      I'm new in wireless hacking...
      I'm in a bet with my cousin trying to hack his wireless internet, I got the .cap file with the handshake, but I've a question: How can we know the length of the key?

      P.S: Yes, i do have milk :)

      ReplyDelete
    52. Yes, I know I'm working on trying to make it work on a WEP key (the access point in question is WEP encrypted, as are all the other ones around it). So I know that's not the problem.

      As for Ubuntu, I'm working on that, too, but it doesn't really seem to like my wifi card (A problem with it being a new Broadcom card - stupid HP, loving the anti-linux Broadcom series). But that's why I haven't switched to Ubuntu just yet.

      Thanks again, and if at some point you do get it working, even just in test-beta form, I'll be glad to help you check it out and make it work.

      Cheers and 73's

      »VE6AY

      ReplyDelete
    53. he g0tmi1k

      Any change the next version will work without clients ? for WEP (and WPA?)

      ReplyDelete
    54. @eskim
      Thanks for the thanks (=


      @y3fmahh
      Hmmm... Just make sure you're doing it legally (Check that you have permission and he is aware of what you're doing (and he is okay with it)).
      You can't find the length of the key as far as I'm aware for either WEP or WPA/WPA2.
      http://www.aircrack-ng.org/doku.php?id=faq#how_can_i_know_what_is_the_key_length


      @S/VE6AY
      I've added your idea of no "Pop-up windows" (aka no xterm), therefore it just uses one window to the latest beta (however, it's not yet ready to be sent out to the testers).

      There are lots of good guides already out there, so you don't have to look though the code to understand how to crack WEP for the record.
      Side note: I've got 3 WiFi routers in my lab that I test on, one of them I can only crack 1/5 times with no-connected clients (its okay with a connected client) with the latest version of wiffy - it needs some tweaking to improve the odds ;)

      The ubuntu forums are great for support - I'm sure someone else has had the same issue as you. It might be worth googling/checking the forum for a solution. :)
      *Then there is nothing stopping you from making the move! =D*


      @Nivong
      wiffy currently supports WEP with NO clients, however there isn't a "known" attack that allows the same for WPA/WPA2. There is a good chance that there will NEVER be one, so wiffy will never be able to do WPA with no clients.

      ReplyDelete
    55. Thanks man!

      Merry cristmas to you and a happy new year !

      ReplyDelete
    56. Hey, Im using wiffy 32 and on the first attack (ARPReplay) the IV's getting high but when it says waiting for IV's to .... its just going to the next attack,,,
      Another thing, whats the Inject attack actually does ?
      Thanks :)

      ReplyDelete
    57. Wiffy v0.1 - Waits for a set amount of time. Afterwards, it checks to see if it has collected a certain amount of IVs (not sure on the amount as I've been working on beta 2 for a few weeks now), if it has collect enough - moves on to the cracking stage, else it tries the next attack.

      Wiffy v0.2 handles this differently. It's checking as it's attacking, as well having the attacks "tweaked", to perform better, and the cracking function has been improved. It's also had MANY bug fixes which are in v0.1.

      How many IVs have you collected? How long did you wait for?


      Injection attacks - help speed up the cracking by injecting certain data into the network, which causes the AP to response, which creates more traffic, meaning more IVs!

      ReplyDelete
    58. Thank you very much for you answer !
      I had 1000-2000 IV's and I waited somthing around 5-10 secs.
      When will Wiffy 0.2 be out ?
      Is there any way to gain access to the beta you are building ?
      Thanks !

      ReplyDelete
    59. Hello g0tm1lk,

      I have experience in wireless attacks, but I have little idea of programming in bash ...

      as you do, that airodump-ng is running while fake authentication starts and fragmented attacks in the same window?

      Thank you very much!

      ReplyDelete
    60. @דודי
      I think you need more IVs! Try collecting between 20k and 40k packets.

      I'm not sure when it will be complete, however there is a beta of wiffy v0.2, which can be found if you search this page: http://g0tmi1k.blogspot.com/2011/01/site-news-january-2011.html



      @RocKHounD
      Airodump-ng, fakeAuth, and which attack is being executed, all should have their own separate window...

      Which version are you using?
      I would recommend trying the beta v0.2. (See above for a link), as its been a while since I've look at v0.1 and alot been added with v0.2!

      ReplyDelete
    61. i know how it works g0tm1lk, my problem is how can you launch all of them with no output??

      Thanks in advance

      ReplyDelete
    62. nice and gooooooooood work, man

      Is there wifi crack for iPhone 4G?

      BR,

      ReplyDelete
    63. @RocKHounD
      Sorry, I don't understand what your saying.
      You can run multiple commands/programs in one windows, or you can use separate windows for each program.
      I don't understand the question - so I can't answer well.


      @Skull2006
      As I don't have a iPhone I can't research into it (If you were to donate one.... ;))
      However, I believe the wifi card doesn't support monitor mode. *I could be mistaken on this*

      ReplyDelete
    64. please update it to work in back track 5
      thanks aloooot

      ReplyDelete
    65. for backtrack 5 you just have to change the macchanger to /usr/local/bin/macchanger from /usr/bin/macchanger

      or create a symlink in /usr/bin

      ReplyDelete
    66. @anas
      Ive only just moved to backtrack 5 last weekend - I will be soon trying things out and releasing updates for things at a later date. However I want to work on videos before I do scripts again!


      @Freakshow
      Thanks for the fix!
      Personally I recommend editing the file (Line 1593 in wiffy.sh v0.2 (#0 BETA #6) ~ 2011-03-17)

      ReplyDelete
    67. "ln -s /usr/local/bin/macchanger /usr/bin/macchanger" If wiffy can't find macchanger.

      Creating symlink is a good idea, editing script isn't.
      Anyway after ./wiffy -u, it'll be "/usr/bin/macchanger" again :D

      ReplyDelete
    68. I'm hacking my wi-fi router.
      ARPReplay mode isn't working for him, he deauth fakeauth.
      Chopchop doesn't work too, fragmentation attack is the same.

      But interacive mode works very well...5 mins for IVs and game over.

      Is there anyway I can skip those methodes, if I want hack it again.. Looking at "Waiting for IVs to be collected" is not good idea.. Time is money :D

      How do I skip methods of attack ? Ctrl+ breaking script.

      ReplyDelete
    69. Dude when i play the fie it closes suddenly after that , im noob btw xD
      and i am running backtrack 5 on cd
      and when i want to bash it in terminal it says no such file or directory
      help please

      ReplyDelete
    70. we can't just change the macchanger location,other command won't work.
      copy whole /usr/local/bin/ file to /usr/bin/ and sikp overwrite will do, everything work fine.

      ReplyDelete
    71. @wMw
      Thanks for the help.
      Either or is okay (editing the script or creating the link). =)


      @wMw
      Not every WEP attacks works on every router.
      Its worth trying doing it yourself manually to see if wiffy is working okay.

      There *was* the feature to skip WEP attacks, however it was removed as it created another bug.
      Currently you can't, tho this will be fixed in wiffy v0.2 when I get the free time to finish it off.


      @sneyes
      I haven't yet tested/updated it to work with backtrack 5 yet.
      If you're using the a CD, you will have to download it each time & make sure your in the same folder as wiffy before trying to run it


      @SWAT Team
      That is one way to fix it, however you are creating a few duplicate files - would be more efficient to create symlink to the needed programs or edit the script or wait for an update.

      ReplyDelete
    72. Hi again. Is there any update for the BackTrack 5/5 r1 cause I'm facing some problems with wiffy and monitoring mode. It freezes in the window that says: Monitor Mode (Starting). I use Alfa AWUS036h and BackTrack 5 r1

      ReplyDelete
    73. @тσσ ∂яυик тσ нα¢к
      There will be an update to support backtrack 5 at a later date. I need to find some free time to work on it.

      ReplyDelete
    74. im waiting for this update.. :)
      gotmilk can u put option to proceed to next method rather than wait the time finish..

      ReplyDelete
    75. @haysnamrip
      Thanks for the suggestion - I can try!

      ReplyDelete
    76. So did you find timeto update WiFi.sh on BT5 R1 ?

      ReplyDelete
    77. @osas jlekram
      Sorry, no.
      It's still on my todo list.

      ReplyDelete
    78. @osas jlekram and everyone who is using BT5 R1

      wiffy.sh v0.2 (#0 BETA #6) ~ 2011-03-17 is working on BT5 R1, you have to change this

      if [ ! -e "/usr/bin/macchanger" ]; then

      with

      if [ ! -e "/usr/local/bin/macchanger" ]; then

      and you are good to go

      @g0tmi1k

      is there any way I can verify if the hidden essid I have is the correct one, my friend is living below me and he got a cisco system with hidden essid and wep+wpa encryption and PSPF enabled I think, and he challenged me if I can crack his wifi, I tried with aircrack and your wiffy and nothing, I got like 30, 40 Data and after that nothing, no client connected also ... can this be cracked ?

      ReplyDelete
    79. @Witch Doctor
      Wait for a client to connect (or make one *hint* deauth!)
      Else just ask him?

      ReplyDelete
    80. Hehe, he don't want to tell me, that's the reason :) I will try to ask his sister to connect by phone

      ReplyDelete
    81. @Witch Doctor
      Social engineering I see ;)

      ReplyDelete
    82. Hello, I was wondering if anyone could help me out.
      I run the newest version of wiffy.sh It starts fine in terminal, but when i type c (to crack a network) it says that macchanger is not installed. it is installed, and i dont know why wiffy isnt detecting it. Any ideas?

      thanks
      Jesse

      ReplyDelete
    83. Thanks for the work, great script
      Have you thought about adding reaver into this script for attacking WPS?

      ReplyDelete
    84. 2 small tipps to optimize the success chance...
      1. this fakeauth for wep if normal doesn't work:
      aireplay-ng -1 6000 -o 1 - q 10 -e * -a * xxx0
      2.
      WPA deauthenticate with the client mac to trick macfilter.
      aireplay-ng -0 -a * -c ZZ:ZZ:ZZ:ZZ:ZZ:ZZ -h ZZ:ZZ:ZZ:ZZ:ZZ:ZZ xxx0

      I've changed this already in my own script...for me it works

      It would be really cool if you could implement reaver but i know
      this would cost much time...

      @jbetebenner
      simply create a file named macchanger in your bin dir or edit the script and remove the
      check.

      ReplyDelete
    85. 1 Questions Plz Reply ASAP!

      How to Put multiple Wordlist.txt in the wiffy.sh I don't Know how Please help and Sorry For being such a Nuob :)

      ReplyDelete
    86. I am asking About Multiple Wordlist because i have downloaded your Wordlist Which is 1.9Gb and have many txt Files So i want that Wiffy.sh test all those Wordlist itself and i don't want to manually put every Wordlist. So Please help !

      ReplyDelete
    87. Admin please help me

      i am new user for backtrack

      when i install CUDA program (python setup.py build ) coming my result like this please help me

      root@bt:~/pyrit/cpyrit_cuda# python setup.py build
      running build
      running build_ext
      Skipping rebuild of Nvidia CUDA kernel ...
      Building modules...
      building 'cpyrit._cpyrit_cuda' extension
      gcc -pthread -fno-strict-aliasing -DNDEBUG -g -fwrapv -O2 -Wall -Wstrict-prototypes -fPIC -I/usr/local/cuda/include -I/usr/include/python2.6 -c _cpyrit_cuda.c -o build/temp.linux-i686-2.6/_cpyrit_cuda.o -Wall -fno-strict-aliasing -DVERSION="0.4.1-dev (svn r308)"
      gcc -pthread -shared -Wl,-O1 -Wl,-Bsymbolic-functions build/temp.linux-i686-2.6/_cpyrit_cuda.o -lcrypto -lcuda -lz -o build/lib.linux-i686-2.6/cpyrit/_cpyrit_cuda.so
      /usr/bin/ld: cannot find -lcuda
      collect2: ld returned 1 exit status
      error: command 'gcc' failed with exit status 1

      =================
      My VGA GTX 460 evga
      =================

      :~/pyrit/cpyrit_cuda# pyrit list_cores
      Pyrit 0.4.1-dev (svn r308) (C) 2008-2011 Lukas Lueg http://pyrit.googlecode.com
      This code is distributed under the GNU General Public License v3+

      The following cores seem available...
      #1: 'CPU-Core (SSE2/AES)'
      #2: 'CPU-Core (SSE2/AES)'
      #3: 'CPU-Core (SSE2/AES)'
      #4: 'CPU-Core (SSE2/AES)'
      #5: 'CPU-Core (SSE2/AES)'
      #6: 'CPU-Core (SSE2/AES)'
      #7: 'CPU-Core (SSE2/AES)'
      #8: 'CPU-Core (SSE2/AES)'

      ReplyDelete
    88. Thank you very much for posting and sharing this great article. It is so interesting. I want to know some other information about this site.
      CD printing

      ReplyDelete
    89. Your site is fantastic. I’ve bookmarked your site in my browser; I hope in future days I’ll get more valuable information from your site.
      DVD replication

      ReplyDelete

    Note: only a member of this blog may post a comment.