EH-Net
May 24, 2013, 07:39:44 AM *
Welcome, Guest. Please login or register.
Did you miss your activation email?

Login with username, password and session length
News: Go back to The Ethical Hacker Network Online Magazine Home Page
 
   Home   Help Calendar Login Register  
Pages: [1]   Go Down
  Print  
Author Topic: hidden SSID .... ?  (Read 6495 times)
0 Members and 1 Guest are viewing this topic.
rebrov
Full Member
***
Offline Offline

Posts: 130



View Profile
« on: July 29, 2010, 05:16:10 PM »

im wondering how to get hidden SSID without any client associated with it ??

while i was scanning network around with airodump i got 2 networks like the same channel " 113 "

they are the only networks using this high channel number and with name like this <length 0>

just no name

and no clients connected to it ...so is there anyway to know what type of AP is this ?? or name ?
Logged
hayabusa
Hero Member
*****
Offline Offline

Posts: 1633



View Profile
« Reply #1 on: July 29, 2010, 07:54:23 PM »

Well, you might be able to tell the type, based on the MAC address.  After all, if you're seeing it, at all, it must be sending out Broadcast packets, so those should have a MAC address in them, which you can compare to the lists and find vendors for, etc.

As for name, unless it's broadcasting it's name (which some do, some don't,) you won't likely find a name, without a client authenticating to it.
Logged

~ hayabusa ~ 

"All men can see these tactics whereby I conquer, but what none can see is the strategy out of which victory is evolved." - Sun Tzu, 'The Art of War'


OSCE, OSCP , GPEN, C|EH
rebrov
Full Member
***
Offline Offline

Posts: 130



View Profile
« Reply #2 on: July 30, 2010, 02:47:43 AM »

Well, you might be able to tell the type, based on the MAC address.  After all, if you're seeing it, at all, it must be sending out Broadcast packets, so those should have a MAC address in them, which you can compare to the lists and find vendors for, etc.

As for name, unless it's broadcasting it's name (which some do, some don't,) you won't likely find a name, without a client authenticating to it.

well ya right i forgot about that mac address part Smiley i'd try to figure it out
Logged
rebrov
Full Member
***
Offline Offline

Posts: 130



View Profile
« Reply #3 on: July 30, 2010, 08:31:33 PM »

i wonder what kind of access points using channel 113 ?

i know that known channel from 1 - 11 ?

how is possible to be 113 ?
Logged
hayabusa
Hero Member
*****
Offline Offline

Posts: 1633



View Profile
« Reply #4 on: July 30, 2010, 10:09:45 PM »

Higher frequencies, etc... 

Hmmmmm...  unsure about 113, however, if you do a little googling, on Wikipedia, you'll find the following:

http://en.wikipedia.org/wiki/List_of_WLAN_channels
Logged

~ hayabusa ~ 

"All men can see these tactics whereby I conquer, but what none can see is the strategy out of which victory is evolved." - Sun Tzu, 'The Art of War'


OSCE, OSCP , GPEN, C|EH
albatr0ss
Newbie
*
Offline Offline

Posts: 12


View Profile WWW
« Reply #5 on: November 17, 2011, 06:13:14 AM »

I wrote a script that attempts brute force attack on the hidden ssid you could think about creating a list of ssid names based upon the OUI mac address part.

http://www.albatr0ss.it/2011/10/28/identifying-hidden-ssids/

in the post you will find a video demoing how to use it
Logged

OSWP
Pages: [1]   Go Up
  Print  
 
Jump to:  

Powered by MySQL Powered by PHP Powered by SMF 1.1.18 | SMF © 2013, Simple Machines Valid XHTML 1.0! Valid CSS!
Page created in 0.1 seconds with 20 queries.