Aircrack-ng
Welcome, Guest. Please login or register.
September 09, 2010, 06:18:45 pm

Login with username, password and session length
Search:     Advanced search
Wiki: www.aircrack-ng.org
Bug tracker + latest devel sources: http://trac.aircrack-ng.org
35360 Posts in 6590 Topics by 22914 Members
Latest Member: moibeBeisee
* Home Help Search Login Register
+  Aircrack-ng
|-+  Members only
| |-+  Suggestions
| | |-+  Implementation of new fragmentation attack
« previous next »
Pages: 1 2 [3] 4 5 ... 8 Print
Author Topic: Implementation of new fragmentation attack  (Read 18847 times)
kandinsky
Newbie
*
Posts: 15


Re: Implementation of new fragmentation attack
« Reply #30 on: December 12, 2006, 10:55:17 am »

Yeah of course!

It is a honour for me

If you can make a sidenote that I have used the stock Madwifi 28/11/2006 snapshot and didnt apply any injection patches at all.

Thanks
Logged
jeroenimo
Full Member
***
Posts: 117


Re: Implementation of new fragmentation attack
« Reply #31 on: December 12, 2006, 03:02:40 pm »

I can confirm the fragmentation attack , it works fine on my BackTrack 2.0 with that 1.4.9 driver from ASPj and a linksys WUSB54G, althought I'm quite close neigbours network I cannot get more than 110 data packets per second out of it m as in daouid's video it show more than 500 datapackets per second, now is this normal ? He uses a Ralink chip too, does this have to do that I'm only using USB 1.1 or can there be another cause ? I have never seen higher rate' then 120 data packets per second .
Logged
phenix
Newbie
*
Posts: 16


Re: Implementation of new fragmentation attack
« Reply #32 on: December 12, 2006, 06:15:29 pm »

Yeah works really great Grin (madwifi - patched & ubuntu dapper drake)

Has anyone tested it on shared key networks yet? Does it work? (Havent had a look on how the afrag attack works in detail yet but it should work!?)
Anyone tested it already?
Logged
Hirte
Sr. Member
****
Posts: 265


Re: Implementation of new fragmentation attack
« Reply #33 on: December 15, 2006, 08:45:42 pm »

i implemented the fragmentation attack in aireplay-ng as attack "-5" or "--fragment". you'll find the code in the svn. i tested it with the alfa usb adapter using a realtek chipset and the corresponding r8187 driver.

i'll upload the patch i wrote to use fragmentation attack with this driver tomorrow.

and phenix: a shared key authentication shouldn't interfere with the fragmentation attack...

EDIT: forgot the most important thing: thanks ASPj Wink
« Last Edit: December 15, 2006, 08:47:35 pm by Hirte » Logged
Mister_X
Administrator
Hero Member
*****
Posts: 3744


WWW
Re: Implementation of new fragmentation attack
« Reply #34 on: December 15, 2006, 10:21:45 pm »

Thanks, Hirte.

I'll find some time to update the man page this week-end.
Logged
*dudux
Newbie
*
Posts: 29


Re: Implementation of new fragmentation attack
« Reply #35 on: December 25, 2006, 08:54:25 pm »

new video of   fragmentation attack with WIFISLAX 1.1 ( Seguridad Wireless)
http://www.megaupload.com/?d=IM7EUER0

the format is *.swf

« Last Edit: December 25, 2006, 09:56:02 pm by *dudux » Logged
Mister_X
Administrator
Hero Member
*****
Posts: 3744


WWW
Re: Implementation of new fragmentation attack
« Reply #36 on: December 25, 2006, 09:24:32 pm »

can you upload it somewhere else (Megaupload is full, at least for belgium) so that I can put it in videos.aircrack-ng.org
Logged
*dudux
Newbie
*
Posts: 29


Re: Implementation of new fragmentation attack
« Reply #37 on: December 25, 2006, 09:32:47 pm »

VIDEO OF FRAGMENTATION ATTACK WIFISLAX 1.1& rausb0 ( Seguridad Wireless)
*****************************************************[***************


http://mirror-wifislax.lost-away.org/videos/fragmentacion.htm


ok.....itīs good idea!!!
« Last Edit: February 25, 2007, 04:04:30 pm by *dudux » Logged
Mister_X
Administrator
Hero Member
*****
Posts: 3744


WWW
Re: Implementation of new fragmentation attack
« Reply #38 on: December 25, 2006, 10:08:02 pm »

I'm uploading it, you can remove the link if you want (here I don't really care about the bandwidth used, I have 600Gb/mo). Thanks
Logged
*dudux
Newbie
*
Posts: 29


Re: Implementation of new fragmentation attack
« Reply #39 on: December 25, 2006, 10:15:33 pm »

Say the link to me and we see it...

But in bluntmen.com this one also well
Logged
Mister_X
Administrator
Hero Member
*****
Posts: 3744


WWW
Re: Implementation of new fragmentation attack
« Reply #40 on: December 25, 2006, 10:40:04 pm »

Logged
*dudux
Newbie
*
Posts: 29


Re: Implementation of new fragmentation attack
« Reply #41 on: December 29, 2006, 10:27:17 pm »

i dont see the video...... Huh

somebody works with atheros in the fragmentation attack Huh

Logged
darkAudax
Administrator
Hero Member
*****
Posts: 5921


No success with svn version of fragmentation attack
« Reply #42 on: December 31, 2006, 11:23:28 pm »

Hello,

I have downloaded the SVN version of aircrack-ng to try the fragmentation attack.

I am using atheros chipset and madwifi-ng drivers.  Packet injection works on my system.

Here is what I run in monitor mode locked to AP channel:
./aireplay-ng -5 ath0 -b 00:14:6C:7E:40:80 -h 00:0F:B5:AB:CB:9D -l 192.168.55.117

 -b 00:14:6C:7E:40:80 Access Point
 -h 00:0F:B5:AB:CB:9D mac address of associated client
 -l 192.168.55.117 IP address of associated client

I get a continous stream of messages like this:

Trying to get 408 bytes of a keystream
No answer, repeating...
Still nothing, trying another packet...
Data packet found!
Sending fragmented packet
Got RELAYED packet!!
Thats our ARP packet!
Trying to get 408 bytes of a keystream
No answer, repeating...
Trying to get 408 bytes of a keystream
Trying a LLC NULL packet
No answer, repeating...
Trying to get 408 bytes of a keystream
No answer, repeating...
Trying to get 408 bytes of a keystream
Trying a LLC NULL packet
No answer, repeating...
Trying to get 408 bytes of a keystream
No answer, repeating...
Trying to get 408 bytes of a keystream
Trying a LLC NULL packet
No answer, repeating...
Trying to get 408 bytes of a keystream

I also tried the original code: http://homepages.tu-darmstadt.de/~p_larbig/wlan/afrag-0.1.tar.bz2 and I am also not successful.

My questions:
- Is the command I used properly formatted?
- Which IP are you supposed to use?  The client?  A client on the ethernet?  Etc.?
- On my access point when you use chopchop, it always has the warning "Warning: ICV checksum verification FAILED!".  The xor stream can always be used successfully.  Would this be a hint as to why the fragmentation attack does not work on my access point?
- Is there any debuging techiques I can use?

Thanks,
d.
Logged
Mister_X
Administrator
Hero Member
*****
Posts: 3744


WWW
Re: Implementation of new fragmentation attack
« Reply #43 on: January 01, 2007, 12:36:39 am »

Does the stable version produce the same error, darkAudax? One of the last change was related to madwifi-ng detection by aireplay-ng.
Logged
*dudux
Newbie
*
Posts: 29


Re: Implementation of new fragmentation attack
« Reply #44 on: January 01, 2007, 03:52:27 am »

Quote
I am using atheros chipset and madwifi-ng drivers

i think that good chipsets are:

rt2570 USB (Ralink ), rt2571 USB ( Ralink ),
rt25XX PCI ( Ralink ), rtl8187 USB ( Realtek )
atheros PCI ( Atheros) not always works!!

are you working with afrag? o with aircrack-ng -5??


For Mister.X :
why the link goes so slowly??
http://videos.aircrack-ng.org/

http://mirror-wifislax.lost-away.org/videos/fragmentacion.htm

http://foro.elhacker.net/index.php/topic,147959.0.html
« Last Edit: February 25, 2007, 04:06:12 pm by *dudux » Logged
Pages: 1 2 [3] 4 5 ... 8 Print 
« previous next »
Jump to:  

Powered by MySQL Powered by PHP Aircrack-ng | Powered by SMF 1.0.10.
© 2005, Simple Machines LLC. All Rights Reserved.
Valid XHTML 1.0! Valid CSS!