Community discussions

MikroTik App
 
User avatar
vetusa2
Member Candidate
Member Candidate
Topic Author
Posts: 119
Joined: Sat Jun 18, 2011 8:24 pm

Now what?! WPA/WPA2 tkip or aes is cracked .....what to do ?

Fri Oct 10, 2014 1:57 pm

Quote "we bounced the user off their own AP, and now when they re-authenticate, airodump-ng will attempt to grab their password in the new 4-way handshake."


what to do to stop users on my network from getting bounced and get the deauth ?
 
User avatar
janisk
MikroTik Support
MikroTik Support
Posts: 6263
Joined: Tue Feb 14, 2006 9:46 am
Location: Riga, Latvia

Re: Now what?! WPA/WPA2 tkip or aes is cracked .....what to

Fri Oct 10, 2014 3:13 pm

use longer security keys with WPA2 and AES ciphers. It was compromised for shorter keys
 
blingblouw
Member
Member
Posts: 345
Joined: Wed Aug 25, 2010 9:43 am

Re: Now what?! WPA/WPA2 tkip or aes is cracked .....what to

Fri Oct 10, 2014 6:00 pm

Quote "we bounced the user off their own AP, and now when they re-authenticate, airodump-ng will attempt to grab their password in the new 4-way handshake."


what to do to stop users on my network from getting bounced and get the deauth ?

Um, no.

airodump-ng WILL grab the 4-way handshake NOT the password. you can then use that for way handshake to do create a hash of dictionary passwords then using memory-time trade off, if you're hardware is fast, you can do brute force quicker. It still doesn't garuntee anything. wpa/wpa2 is not cracked like WEP. If you want to know more than why don't you test it and see if it gives you the password, it wont because it cant
 
User avatar
vetusa2
Member Candidate
Member Candidate
Topic Author
Posts: 119
Joined: Sat Jun 18, 2011 8:24 pm

Re: Now what?! WPA/WPA2 tkip or aes is cracked .....what to

Tue Oct 14, 2014 11:36 pm

use longer security keys with WPA2 and AES ciphers. It was compromised for shorter keys
how long ?!

and how to do it ?


can you give me an example please.
 
User avatar
janisk
MikroTik Support
MikroTik Support
Posts: 6263
Joined: Tue Feb 14, 2006 9:46 am
Location: Riga, Latvia

Re: Now what?! WPA/WPA2 tkip or aes is cracked .....what to

Wed Oct 15, 2014 3:57 pm

just take a router and set up wifi pre-shared key for WPA2/AES and check how long it takes for you to crack it.

Minimal length is 8 symbols. So, you can list what GPU you used to get that key from sniffed data or whatever and increase symbol count when you have gotten hold of the current key.

also, use of rainbow tables for password guessing is powerful tool. but there are always 10% to 20% of passwords that are not guessed in 1 month - nobody is bothering guessing those. If you have 5M of them and 1M is not known (at maximum) - who cares. So you can construct safe password.

Who is online

Users browsing this forum: adwlodaro, Bruzxce, FAB1150, Google [Bot] and 192 guests