Image
 
linkedin_logo.png rss_logo.jpg
twitter_logo.png youtube_logo.jpg
Latest Additions
 
EH-Net Login
Welcome Guest.






Lost Password?
No account yet? Register
Who's Online
We have 49 guests online
 
Advertisement

You are here: Home arrow Ethical Hacking Discussions and Related Certificationsarrow Wirelessarrow WPA-PSK crcking with Elcomsoft
EH-Net
May 21, 2013, 02:44:58 PM *
Welcome, Guest. Please login or register.
Did you miss your activation email?

Login with username, password and session length
News: Go back to The Ethical Hacker Network Online Magazine Home Page
 
   Home   Help Calendar Login Register  
Pages: [1]   Go Down
  Print  
Author Topic: WPA-PSK crcking with Elcomsoft  (Read 12713 times)
0 Members and 1 Guest are viewing this topic.
V0IDANC3
Guest
« on: January 28, 2009, 07:44:38 PM »

Hi Guys

any idea on whether it is possible to import .cap files with WPA-PSK hashes into Elcomsoft distributed password recovery., if it is possible can anyone give me any insight Would i have to convert it into another format. After scouring the net all i can see to find is news articles and reviews on the product there is no actual information and the help files are vague. Any help would e appreciated Thanks in advance.
Logged
xXxKrisxXx
Hero Member
*****
Offline Offline

Posts: 512



View Profile
« Reply #1 on: February 04, 2009, 05:02:39 AM »

Not exactly sure how to do that but you'd have better luck using SpoonWPA. I'll post a link to it right now. Look Here
« Last Edit: February 04, 2009, 05:19:42 AM by KrisTeason » Logged

eCPPT, GCIH, OSCP, OSWP
V0IDANC3
Guest
« Reply #2 on: February 05, 2009, 07:41:41 PM »

Thanks for the reply, i've used SpoonWPA quite a few times before however the inbuilt dictionary attack takes ages to complete, getting the WPA-PSK hash is no problem it's the amount of time taken to crack the PSK that takes countless hours.

Maybe the best way of performing the dictionary attack aside the elcomsoft method is to set up a few BT machines running John and launch the attack that way. Else generate a few rainbow tables with something like rtgen. I would like to test the GPU theory out though as i am interested in the kinds of speeds it will pull.
Logged
xXxKrisxXx
Hero Member
*****
Offline Offline

Posts: 512



View Profile
« Reply #3 on: February 06, 2009, 01:01:45 AM »

Your right about the speed of SpoonWPA, it's not the quickest. I believe there was even a thread on here where the discussion was based upon how long is too long for attempting dictionary attacks against WPA. If you end up testing that theory let us know which tools quicker!
Logged

eCPPT, GCIH, OSCP, OSWP
Jhaddix
Sr. Member
****
Offline Offline

Posts: 317



View Profile WWW
« Reply #4 on: February 07, 2009, 07:40:51 AM »

Thanks for the reply, i've used SpoonWPA quite a few times before however the inbuilt dictionary attack takes ages to complete, getting the WPA-PSK hash is no problem it's the amount of time taken to crack the PSK that takes countless hours.

Maybe the best way of performing the dictionary attack aside the elcomsoft method is to set up a few BT machines running John and launch the attack that way. Else generate a few rainbow tables with something like rtgen. I would like to test the GPU theory out though as i am interested in the kinds of speeds it will pull.

Maybe you could use:

http://www.bindshell.net/tools/johntheripper

Quote
This is an updated version of Ryan Lim's patch for john the ripper to support MPI, in addition to a large number of third party patches to support additional ciphers and such.

MPI allows you to use multiple processors on a single system, or a cluster of systems for cracking passwords using john the ripper. Incredibly useful in these days of multi core processors.

Dont know if you have the resources, nor have i played with MPI yet, just a thought b/c i was on Bindshell today =P
Logged

Jhaddix
Sr. Member
****
Offline Offline

Posts: 317



View Profile WWW
« Reply #5 on: February 07, 2009, 08:06:34 AM »

Oops MPI doesnt do dictionary, looks like there was a project that did but i cant find the tool anywhere released.

http://distro.ibiblio.org/pub/linux/distributions/openwall/projects/john/contrib/mpi/2004-pippin/report.pdf

Sorry!
Logged

Pages: [1]   Go Up
  Print  
 
Jump to:  

Powered by MySQL Powered by PHP Powered by SMF 1.1.18 | SMF © 2013, Simple Machines
Joomla Bridge by JoomlaHacks.com
Valid XHTML 1.0! Valid CSS!
Page created in 0.059 seconds with 23 queries.
 
Exclusive Deal

sansfire13_245x90_cw90.jpg
SANSFIRE 2013
June 15 - 22

5% Off w/ Code: EHN_5

SANS Deals 4 EH-Netters
5% OFF Any SANS Course in Any Format!
Coupon Code: EHN_5 Including SANS Rocky Mountain 2013 & SANS Boston 2013
Polls
Compared to this year, 2013 will be:
 
Recent Forum Topics
EH-Net News Feeds
Latest Additions
 
         
Free Business and Tech Magazines and eBooks

© 2013 The Ethical Hacker Network
Joomla! is Free Software released under the GNU/GPL License.