Note: For this demo I’m using a lab environment network that is not routed to the internet. I will be using the Fern WiFi Cracker open source wireless security tool included in the Kali Linux and Backtrack 5 r3 security distros. Before attempting to use Fern or any other utility in Kali or Backtrack please make sure to read the help and MAN pages for a complete description of the program options and switches.
This demo is for wireless pentesting educational purposes and to emphasize the insecurities of using a weak or common dictionary word for wireless network authentication and encryption security key or passphrase. Fern Wi-fi Cracker can crack WEP, WPA, and WPA2 secured wireless networks.
Fern basically takes the command line utilities to crack these networks and puts them in a GUI. Very simple to use scary easy! Fern also provides some extra functionality for hijacking sessions and locating a computers geolocation via its Mac address, but I have not tested with these features. For this demo I will be using Backtrack 5 r3 running in VMware Workstation on a Win 7 host. Originally I was using Fern in Kali and ran into some issues with my wireless adapter and with the program freezing or not opening after updating it. I have the fixes I discovered in another for anyone else that may have these same problems.
WPA/WEP/WPA2 Cracking Dictionary Wordlist. H4xOrin' T3h WOrLd Pages. Best wifi Dictionary. Reply Delete. Newer Post Older Post Home item. Follow by Email. Recommend on Google. Follow @konvictt77. Apr 1, 2014 Tagged: fern wifi cracker, Kali Linux, wifi hacking, wpa wpa2 password. Adobe Flash Player to watch Fern Wifi Cracker Wordlist Download this video. Dear Master, When i select huge wordlist file my fern cracker doesn't work (getting hang) instead of that if i browse and select any small wordlist file it is working.
Router Setup I’m using an old Cisco/Linksys 802.11g wireless router for this demo and all the settings are defaulted except the security settings, which I set to WPA Personal with a Shared Key passphrase of “password”. The word password should never be used for a real password or passphrase and I’m using it here since I know the Fern program will quickly crack it. In real world situations a WPA/WPA2 passphrase should be completely random and not a common dictionary word. For help on creating a secure WPA/WPA2 passphrase please read my earlier. Setup the Wireless Adapter Plug in the USB wireless adapter (I’m using the USB wireless adapter) and open the Terminal and run iwconfig to verify the USB adapter interface.
On occasions I have had to bring the wireless adapter interface up using the following command. #ifconfig wlan0 up Starting the Fern Program To start Fern from the Terminal type in the following commands #cd /pentest/wireless/fern-wifi-cracker #python execute.py or start Fern via the GUI using the Backtrack menu Applications/Backtrack/Exploitation Tools/Wireless Exploitation Tools/WLAN Exploitation/fern-wifi-cracker Using the Fern Program Select the Interface and Fern enables monitor mode. If your wireless interface does not show in the list hit the Refresh button and try again. Before starting the scan double-click on any blank area of the Fern home screen to bring up the Access Point Scan Preferences screen.
You can set the channel option to scan a single channel or leave it at the default All Channels. One nice feature is to check the Enable XTerms option which will have Fern open up the Terminal windows during its usage to see what the program is doing in the background.
Click OK when done. Back on the Fern home screen click the Scan for Access points button. Two Terminal windows will open; one showing the WEP enabled networks (no screen shot), and another showing the WPA enabled networks.
The top part of the WPA Scan Terminal window shows the networks being found, and the lower part shows any connected client devices. For a WPA attack to work it requires a connected client.
The most important part of the attack will kick the client off the wireless network and capture the 4-way handshake when the client device re-authenticates to the network. If the network you want to pentest has no connected client your out of luck! On Ferns home screen the networks being detected will start populating next to the WiFi WEP or WiFi WPA buttons.
(I have been seeing less and less WEP enabled networks, so that is a good thing!) Clicking on the WiFi WEP or WiFi WPA button will bring up the Attack screen and the top pane will list the networks found. Select the AP to crack, but before clicking the Attack button to the right let’s go over a couple of settings. I will use the Regular Attack option, but there is a WPS Attack option and I believe Fern uses the Reaver utility to launch the WPS attack. You can read more about Reaver by clicking. Common.txt is the wordlist that comes with the Fern program, but any wordlist you download or have created on your own can be used by hitting the Browse button and pointing Fern to the alternative wordlist file. With the Regular Attack and the wordlist selected hit the Attack button. Fern will start the attack and on the left side of the screen the attack steps will turn yellow as Fern works through the various steps.
The most important step is capturing the 4-way handshake and Fern will open an aireplay-ng Terminal window showing the progress of deauthentication (if XTerms is checked in the preferences) of the connected client. It may take several attempts to deauth a client and capture the 4-way handshake. Once Fern has captured the handshake it will start the bruteforce attack. If the WPA key is in the wordlist being used it will display the found key in Red.
As I mentioned I setup a passphrase I knew would be found quickly, and from start to finish this attack took under 4 minutes! Back on the Fern main screen is a Key Database button and it now shows one entry. Clicking the Key Database button will display the found keys. Conclusion Using a common dictionary word for a WPA or WPA2 passphrase makes it easier to hack with utilities like Fern. The Fern utility is free to download and simple to use, and not everyone is going to use it for legit wireless pentesting purposes. With possession of the WPA key a person can associate to network and have a gateway to the internet, or they could launch other attacks. For example, with possession of the WPA key the attack could be expanded to include decryption of the data traffic of the legitimate clients on the wireless network.
Thanks for reading and stay wireless secure! Great question, and I haven’t created any custom word lists and have just been using the word lists that come with Fern or one of the other utilities in Backtrack. I do believe there is a utility in Backtrack called genpmk that can create WPA hash tables or word lists, but I have not messed with it. This might be a topic I can try to write about in the future, but in the meantime you can Google search and see if anyone else may all ready have instructions on genpmk. Sorry I could not give you a better answer.
Could you tell me please, how much time does Fern WIFI Cracker takes if I bruteforce WPA encryption with WPS flaw in condition of processing power 2.2 Ghz dual cored AMD Turion microprocessor? While I was cracking WPA with dictionary attack on Airocrack-ng it shows 500 words per second. Can I guess same indications on Fern Cracker or is it cracks less combinations because my microprocessor is generating them? Do you have some articles about WPS cracks and How it works on Fern WIFI Cracker? Follow Blog via Email Enter your email address to follow this blog and receive notifications of new posts by email.
Join 105 other followers Recent Posts. Categories. (1). (6). (10). (19).
(3). (9). (3). (1). (2).
(18). (4). (5) Archives.
(1). (1). (1). (1). (1).
(1). (1). (1).
(1). (2).
(3). (1).
(1). (2). (2). (3). (1).
![Cracker Cracker](/uploads/1/2/5/6/125617574/803314682.jpg)
(1). (1). (2). (1). (1). (2). (1).
(2). (1).
(1). (4). (3) WordPress Blogs I Follow. More Americans Say Farewell to Cash -. PoS intrusion – the Faux PoS 2018 Verizon Data Breach Report -. RT @: New PCI Software Security Standards have just been released. Read the Q&A from CTO @ for more information: -.
RT @: Government Shutdown Puts U.S. At Major Hacking Risk, Cybersecurity Experts Warn via @ -. How to Get Cybersecurity Right in 2019 - Infosecurity Magazine - Meta.
Fern Wi-Fi Cracker is able to crack or hack WEP, WPA, and WPA2 secured wireless networks. Fern Wi-Fi Cracker is a tool in Kali Linux, it basically helps to crack WiFi passwords with GUI (Graphical User Interface) mode. It is very simple to use Fern also provides some extra functionality for hijacking sessions and locating a computers Geo Location via its Mac address, and a lot. Requirements 1- kali linux o/s or bootable pendrive with kali linux ( ) 2- word list The Pirate Bay ISO Hunt Torrent Hound (click here to download) Features Fern Wifi Cracker supports- 1. WEP Cracking 2. WPA/WPA2 Cracking 3.
Automatic saving of key in database on successful crack 4. Automatic Access Point Attack System 5. Session Hijacking (Passive and Ethernet Modes) 6. Access Point MAC Address Geo Location Tracking 7. Bruteforce Attacks (HTTP,HTTPS,TELNET,FTP) way to FERN -WIFI- Cracker (Step-Wise).
1- Go to Application (on the top left Conner in kali linux) 2- Go to Kali-Linux 3- Go to Wireless Attacks 4- Go to 802.11 Wireless Tools 5- Go to Fern-Wifi-Cracker double click on it and here we go. 6- now a beautiful window opens 7- now go to step1 (in above picture) where you have to select interface ' wlan0' or 'wlan1' 8- go to step 2(in above picture) where you have to start wifi 9- go to step 3 or 4 (in above picture) according to your need.if you want to hack WEP wifi password go to step 3 and if you want to hack WPA wifi password then go to step 4. 10- now a new window open select the wifi.hack 11- then go to browse and upload (give the link of wordlist) 12- then click attack start (on the top right side of wifi list ) 13- here you GOOOO.and the password is saved in 'key data base' step 5(in first pic).