Showing posts with label Wordlist. Show all posts
Showing posts with label Wordlist. Show all posts

KisMAC The Ultimate WiFi Stumbler




How to Crack WEP / WPA Step by Step
KisMAC for Dummies &
Step by Step KisMAC Tutorial
KisMAC Tutorials for dummies, beginners & advanced users 



Update of update : a Brand New Improved Video in HD, con la musica muy entertaining is available.
Before you post a question, PLEASE be sure to Read the 3 following post:
KisMAC + KisMAC troubleshooting + KisMAC Q & A

If you are looking for the Best Wifi card to be used with KisMAC, the Benchmarks and Tests are HERE

Once you are sure that the answer to your question can not be found, Please, Post your question in the Q&A Article: CLICK HERE.










Cracking WEP with Re Injection
Cracking WEP without Re Injection (Airport, Airport Extreme)
Cracking WPA
KisMAC Troubleshooting Guide

KisMAC Resources Dictionary file, Password list, etc

KisMAC is a free WIFI Network discovery tool and has a large array of powerful features: Detection, Authentication, Injection, GPS, and the ability to crack WPA & WEP keys.
KisMac is really powerful and leave Windows based NetStumbler in the dust. By a large margin.

Kismac is not for absolute beginners and the first step with KisMAC is to read the FAQ. The second step is to read the FAQ again.

Just a little legal warning:
- It is illegal to download, possess, and/or use Kismac in Germany, Austria, Switzerland and Lichtenstein (StGB § 202c)*
- It is illegal, in most countries, including the USA, to crack or attempt to crack, penetrate, listen to, intercept, or “Inject” any WI-FI network others than yours, or Networks where the unequivocal permission was not given to you by the rightful owner.
- Kismac is a tool that should be used on the sole purpose to check and/or verify, audit your own network

Now that I warned you :-) you can enjoy it!


Cracking WEP with Re-Injection

Whatever you do, if you have an injection device (WIFI card or USB Adapter) DO NOT install the drivers of the card / USB adapter.
 DO NOT INSTALL DRIVERS FROM THE CD PROVIDED WITH THE DEVICE 

How to Crack WEP Step by Step
This tutorial is solely for you to audit your own network. I take no responsibility whatsoever, implied or not.
If you NEED an access, just ask politely your neighbor and either share the cost or discuss with him. A six-pack can be used as lubricant.

Cracking with Injection device




(Hawking HWUG1 shown here, RT73 Chipset)
Do not buy any Network Adapter unless you have read the review.




The most successful method by far, with one little issue: you will NEED a Re-injection device: Either a USB WIFI Adapter or a WIFI card.

But, here comes the trick:
-You cannot use any WIFI card: You must use specific ones.
The list of “approved” hardware is here: http://trac.kismac-ng.org/wiki/HardwareList
As of today, you can NOT inject packet with your Airport / Airport Extreme Apple card alone.

Step 1
Download KisMAC from a trusted source such as: http://trac.kismac-ng.org/wiki/Downloads
Install KisMAC
Plug your Injection device, Whatever you do, DO NOT install the drivers of the card / USB adapter, or you may dearly regret it.
Start KisMAC

Step 2
On the Tab KisMAC >>> Preferences >>>Drivers
Select your Injection device i.e. : “USB RT73 device”
If you have a doubt on what to choose, check the "approved" hardware list.

Click on “Add”
Check box “Use as primary device”
Select “All Channels”   Correction:  Select only 1-11 If you are in USA, 1-13 If you are in Europe, 1-14 if You are in Japan.  In some Cases, Ch 12-14 can pick up interferences from other home devices.
Check box “keep everything”
Close Dialog Box





















 



Step 3
On the main screen, select “Start Scan”
KisMAC is now listening to the accessible networks
Look for a network with a WEP key (column “ENC”), a good signal as well as traffic (see Packets and Data)
OR
Enter “WEP” on the search box (top right) and select “encryption” to filter the results
















If the Column ENC is “NO”, the network is OPEN: No need of cracking anything
Once you have selected a network, look for the CHANNEL of the network, i.e 1, 2 etc …
Go back to Preferences >>>> Drivers
Select only the Network selected i.e 1

Step 4
Let KisMac work for 5 minutes collecting data
On the “NETWORK” Tab, select “Reinject Packets”
KisMAC will now try to reinject packets to speed up the process
Keep an eye on the “Unique IV’s” number, once it has reach at least 130,000 (200,000 is recommended) you may start considering cracking.









 

Step 5
Once you have collected enough, On the NETWORK Tab, Select “Crack” >>> “Weak Scheduling Attack” >>> “Against Both”
KisMAC will now try to crack the key…
Reminder: the more Unique IV’s you have collected, the greater are the chances to crack the key.
I have experienced crack as fast as 10 sec with 200,000 Unique IV’s (on a 64 bit key) and sometimes 30 minutes with only 110,000














If you know for sure that the key is either 40 bit or 104 bit, then select the appropriate one. If you are not sure, select "both"
40 bit is a 64 bit (40+24)
104 bit is a 128 bit (104+24)


If you have followed the steps, you should see something like that appears :-)))
remove the semicolon, and there you have it, or take a look at the main screen under Key or ASCII Key









 

How to crack WEP /WPA with Airport Extreme, Passive mode
WITHOUT Injection Device (Airport, Airport Extreme Alone)

WEP attack


Download KisMAC from a trusted source such as: http://trac.kismac-ng.org/wiki/Downloads
Last build is 0.2.99 , build 0.3 is coming soon.

Install KisMAC
Start KisMAC

Step 1 (without an Injection Device)
On the Tab KisMac >>> Preferences >>>Drivers
Select your card. (Capture devices) i.e : Airport Extreme Card, Passive Mode
Click on “Add”
Select “All Channels”
Close Dialog Box, and select “Start Scan” on the main window
A dialog box opens and load the card. Your Admin password may be required.

Step 2
KisMAC is now listening to the networks accessible
Look for a network with a WEP key (column “ENC”), a good signal as well as traffic (see Packets and Data)
If the Column ENC is “NO”, the network is OPEN: No need of cracking anything
Once you have selected a network, look for the CHANNEL of the network, i.e 1, 2 etc …
Go back to Preferences >>>> Drivers
Select only one Network selected i.e Channel 1

Step 3
Be patient: open a beer, pour yourself a nice glass of wine or have a nice cup of coffee.
Without an injection device, you will need to collect a minimum of 130,000 unique IV’s before you can start cracking a 40/64-bit WEP
Recommended:
200,000 Unique IV’s for weak scheduling attack on a 40/64-bit WEP
1,000,000 Unique IV’s for weak scheduling attack on a 104/128-bit WEP
Or
500,000 packets for weak scheduling attack on a 40/64-bit WEP
2,000,000 packets weak scheduling attack on a 104/128-bit WEP
It may take a long time….

Step 4
Once the packets are collected, Go to the tab “Network” >>> Crack and select the method,
For a start, I would suggest: “Crack” >>>”Weak Scheduling Attack” >>> “Against Both”
Once started, you’ll have to wait between 5 and 20 minutes depending on your machine for KisMAC to try all the keys.
The more packets you have collected, the better are your chances to be able to crack the key.

WPA crack / Attack

>>>>> Packets RE-Injection DOES NOT WORK on WPA attack <<<<<<
>>> I said RE-Injection and not "Injection"

In order to crack a WPA key, you'll need the handshakes, a serious dictionary file or fileS and a LOT of CPU time. Hours and probably days of it. (read the "I am bored part" at the end)

You first need to capture 4-way EAPOL handshakes (connection between the computer and the network) -When captured, you'll see the Ch/Re red dot turns green. You are ready to try...




















To speed up the process of capturing the 4-way EAPOL handshakes, you can try a deauthenticate attack: it will force the network to shutdown and restart, hence speeding up the process. In order to Deauthenticate, you'll need a USB Network Adapter. Airport alone can not Re-inject (as of 2010)
Go to Network >>> Deauthenticate
Some network may recognize the attack and change channel.



















Once the Ch/Re is ready, Go to the tab "Network" >>Crack >>WPA
It will then ask you for the dictionary file, select the file you want to use, and start...








Nota Bene:
KisMAC will try every word (from the list provided) to attempt to crack the key, hence it may take a lot of time....if you have a slow machine, be really patient.
I have a not so bad machine, and I run about 170 words per second. You can leave a comment with your config and speed for me to compare.
Mine: MacBook Pro 2.5GHz Intel Core 2 Duo + 4GB DDR2 SDRAM : about 170 Word/sec

As for the Dictionary files, you can find links on the KisMAC website or take a look at the "RESSOURCES" post.

Note on dictionary files:
Wordlist = dictionary file
- The words are tested "as is" and not in combination.
Example: the password is "I love Kismac"
If your dictionary contains the words "I" + "love" + "Kismac" it will NOT work, your wordlist must contain the exact (verbatim) "I love Kismac" as a word to successfully attempt to crack.
The files must be a text format .txt and contain a empty line at the end. 

KisMAC Troubleshooting Guide , KisMAC Issues, KisMAC Ressources are on the NEXT post....
KisMAC for Windows, ditto...next post



WPA: Wordlist links and files uploaded here

                        Like this Article? SHARE IT!!!
                          Use the Share Button ☟
Don't like this Article? Share It With People You Don't Like!!!
    Know Something worthy of mentioning? Leave a comment and earn brownie points!

KisMAC Wordlist

Wordlists 
Dictionary Files 
Wordlists Generator

A dictionary file, to work with KisMAC must be a .txt , Plain text, and have an EMPTY line at the end.  

I can not host large files on Blogspot, so please follow the link ;-)

The files are available for Download here.   Follow the signs to "Wordlist" ;-) 
Be aware that the download speed is not great. if you feel like sending me $10 to speed up the thingy, feel free ;-)

Listing:  
RockYou password list   Full list, unsorted.  The Rockyou list is a 32 million (yes, million) password heist 

500 most used passwords  2005   formatted lower, Proper, UPPER
Twitter banned password list
Rockyou  list, top 100 
500Twitrock  a buffet of Twitter, Rockyou and 500 most used. 55% were duplicates (!) 1533 entries formatted lower, Proper, UPPER
Dog Related
Hash Passwords 2    Truncated at 8 Ch mini for use with WPA.  546,000 strings
Generated Wordlist Alphanumerical + Symbol 4Ch long  (.Rar,  43MB. 127MB unzipped)
Random Passwords  (not all are 8ch mini)  261,255 words



Twitter banned password list in clear:
1. 111111    123. erotic    245. password123
2. 11111111    124. extreme    246. patrick
3. 112233    125. falcon    247. peaches
4. 121212    126. fender    248. peanut
5. 123123    127. ferrari    249. pepper
6. 123456    128. firebird    250. phantom
7. 1234567    129. fishing    251. phoenix
8. 12345678    130. florida    252. player
9. 131313    131. flower    253. please
10. 232323    132. flyers    254. pookie
11. 654321    133. football    255. porsche
12. 666666    134. forever    256. prince
13. 696969    135. freddy    257. princess
14. 777777    136. freedom    258. private
15. 7777777    137. gandalf    259. purple
16. 8675309    138. gateway    260. pussies
17. 987654    139. gators    261. qazwsx
18. aaaaaa    140. gemini    262. qwerty
19. abc123    141. george    263. qwertyui
20. abc123    142. giants    264. rabbit
21. abcdef    143. ginger    265. rachel
22. abgrtyu    144. golden    266. racing
23. access    145. golfer    267. raiders
24. access14    146. gordon    268. rainbow
25. action    147. gregory    269. ranger
26. albert    148. guitar    270. rangers
27. alexis    149. gunner    271. rebecca
28. amanda    150. hammer    272. redskins
29. amateur    151. hannah    273. redsox
30. andrea    152. hardcore    274. redwings
31. andrew    153. harley    275. richard
32. angela    154. heather    276. robert
33. angels    155. helpme    277. rocket
34. animal    156. hockey    278. rosebud
35. anthony    157. hooters    279. runner
36. apollo    158. horney    280. rush2112
37. apples    159. hotdog    281. russia
38. arsenal    160. hunter    282. samantha
39. arthur    161. hunting    283. sammy
40. asdfgh    162. iceman    284. samson
41. asdfgh    163. iloveyou    285. sandra
42. ashley    164. internet    286. saturn
43. august    165. iwantu    287. scooby
44. austin    166. jackie    288. scooter
45. badboy    167. jackson    289. scorpio
46. bailey    168. jaguar    290. scorpion
47. banana    169. jasmine    291. secret
48. barney    170. jasper    292. sexsex
49. baseball    171. jennifer    293. shadow
50. batman    172. jeremy    294. shannon
51. beaver    173. jessica    295. shaved
52. beavis    174. johnny    296. sierra
53. bigdaddy    175. johnson    297. silver
54. bigdog    176. jordan    298. skippy
55. birdie    177. joseph    299. slayer
56. bitches    178. joshua    300. smokey
57. biteme    179. junior    301. snoopy
58. blazer    180. justin    302. soccer
59. blonde    181. killer    303. sophie
60. blondes    182. knight    304. spanky
61. bond007    183. ladies    305. sparky
62. bonnie    184. lakers    306. spider
63. booboo    185. lauren    307. squirt
64. booger    186. leather    308. srinivas
65. boomer    187. legend    309. startrek
66. boston    188. letmein    310. starwars
67. brandon    189. little    311. steelers
68. brandy    190. london    312. steven
69. braves    191. lovers    313. sticky
70. brazil    192. maddog    314. stupid
71. bronco    193. madison    315. success
72. broncos    194. maggie    316. summer
73. bulldog    195. magnum    317. sunshine
74. buster    196. marine    318. superman
75. butter    197. marlboro    319. surfer
76. butthead    198. martin    320. swimming
77. calvin    199. marvin    321. sydney
78. camaro    200. master    322. taylor
79. cameron    201. matrix    323. tennis
80. canada    202. matthew    324. teresa
81. captain    203. maverick    325. tester
82. carlos    204. maxwell    326. testing
83. carter    205. melissa    327. theman
84. casper    206. member    328. thomas
85. charles    207. mercedes    329. thunder
86. charlie    208. merlin    330. thx1138
87. cheese    209. michael    331. tiffany
88. chelsea    210. michelle    332. tigers
89. chester    211. mickey    333. tigger
90. chicago    212. midnight    334. tomcat
91. chicken    213. miller    335. topgun
92. cocacola    214. mistress    336. toyota
93. coffee    215. monica    337. travis
94. college    216. monkey    338. trouble
95. compaq    217. monkey    339. trustno1
96. computer    218. monster    340. tucker
97. cookie    219. morgan    341. turtle
98. cooper    220. mother    342. twitter
99. corvette    221. mountain    343. united
100. cowboy    222. muffin    344. vagina
101. cowboys    223. murphy    345. victor
102. crystal    224. mustang    346. victoria
103. dakota    225. naked    347. viking
104. dallas    226. nascar    348. voodoo
105. daniel    227. nathan    349. voyager
106. danielle    228. naughty    350. walter
107. debbie    229. ncc1701    351. warrior
108. dennis    230. newyork    352. welcome
109. diablo    231. nicholas    353. whatever
110. diamond    232. nicole    354. william
111. doctor    233. nipple    355. willie
112. doggie    234. nipples    356. wilson
113. dolphin    235. oliver    357. winner
114. dolphins    236. orange    358. winston
115. donald    237. packers    359. winter
116. dragon    238. panther    360. wizard
117. dreams    239. panties    361. xavier
118. driver    240. parker    362. xxxxxx
119. eagle1    241. password    363. xxxxxxxx
120. eagles    242. password    364. yamaha
121. edward    243. password1    365. yankee
122. einstein    244. password12    366. yankees

367. yellow     368. zxcvbn    369. zxcvbnm   370. zzzzzz

                        Like this Article? SHARE IT!!!
                          Use the Share Button ☟
Don't like this Article? Share It With People You Don't Like!!!
    Know Something worthy of mentioning? Leave a comment and earn brownie points!