Wireless WEP Hacking with Backtrack 4





Uploaded on Dec 8, 2009

This is a video tutorial on the very basics for cracking a WEP key.

There are several tutorials online but after following them and playing with them, I found out why they never worked for me.

I like to continue running the command "aireplay-ng -1 1 -a xx:xx:xx:xx:xx -h xx:xx:xx:xx:xx wlan0" I find by keeping a steady authentication with the access point it allows me to get packets and by using them with the command "aireplay-ng -5 -b xx:xx:xx:xx:xx -h xx:xx:xx:xx:xx wlan0". Each time the command is run and it reads packets it will ask you if you would like to use it. Just keep saying yes. Keep making sure you do this, especially if the access points are further away. By doing this you will get less errors while running the commenand "aireplay0ng -1 1 -a xx:xx:xx:xx:xx -h xx:xx:xx:xx:xx wlan0" This will cause traffice and you will notice that if you look at your window from running "aireplay0ng -3 -b xx:xx:xx:xx:xx - xx:xx:xx:xx:xx wlan0" the ARP Replies will start increasing giving you proper #Data from your Airodump.

If you notice that you are over 10,000 in your #Data but after running aircrack-ng you are still not able to obtain the key, there can be several possibilities. If the network is set to a 64-Bit encryption then it will take a lot faster to crack, meaning if you have about 15,000 for data, it should work. 128-Bit networks can usually be cracked with about 30,000 Data.

You can wait until the #Data reaches 30,000 if you like and open 2 more consoles and have aircrack-ng crack 2 encryption levels at the same time, increasing the time of your hack. Here is the two commands:

Shell 1: 64-Bit encryption
aircrack-ng -b xx:xx:xx:xx:xx -n 64 file-01.cap

Shell 2: 128-Bit encryption
aircrack-ng -b xx:xx:xx:xx:xx -n 128 file-01.cap

I used this wiith Backtrack 4 from Remote-Exploit

I am only learning, and I am still new. I hope you enjoyed!


