tag:blogger.com,1999:blog-2448089685086546300.post5808628828370105432..comments2023-06-26T06:33:17.792-07:00Comments on No Useful Articles Here....: [Tutorial] Wireless Havoc With MDK3!! (III)DeathKnighthttp://www.blogger.com/profile/18282423385986075419noreply@blogger.comBlogger21125tag:blogger.com,1999:blog-2448089685086546300.post-85354766236700121282013-03-09T23:23:38.685-08:002013-03-09T23:23:38.685-08:00its quite simple,
just create a file, name it anyt...its quite simple,<br />just create a file, name it anything you want.<br />and add the mac address there, eg:<br />xx:xx:xx:xx:xx:xx<br />aa:aa:aa:aa:aa:aa<br /><br />that's all, feel free to ask me if you did not understand. :)DeathKnighthttps://www.blogger.com/profile/18282423385986075419noreply@blogger.comtag:blogger.com,1999:blog-2448089685086546300.post-18955618132876158142013-02-10T13:31:46.909-08:002013-02-10T13:31:46.909-08:00Sorry, how to write them?Sorry, how to write them?Anonymousnoreply@blogger.comtag:blogger.com,1999:blog-2448089685086546300.post-46161866283893254582013-02-10T13:25:53.716-08:002013-02-10T13:25:53.716-08:00Hi DK! What format of whitelist, blacklist is (how...Hi DK! What format of whitelist, blacklist is (how to wright them)?Anonymousnoreply@blogger.comtag:blogger.com,1999:blog-2448089685086546300.post-59426289940393711452012-04-10T17:14:01.321-07:002012-04-10T17:14:01.321-07:00By reading you comment, what I Have deduced is, yo...By reading you comment, what I Have deduced is, you are doing one thing wrong. (I maybe wrong in understanding, if so then please correct me).<br /><br />Whitelist doesnt need to be in mdk3 folder.you can put whitelist anywherre you want provided that you give the path to whitelist when you execute mdk3. eg:<br />suppose you whitelist is in /var/cache/www (just example, then ypur command would be:<br /><br />mdk3 mon0 d -w /var/cache/www/whitelist_file_name<br /><br />or just cd to /var/cache/www and run: mdk3 mon0 d -w whitelist_file_name.<br /><br />I hope it is clear, please try it and post the result, successful or unsuccessful.DeathKnighthttps://www.blogger.com/profile/18282423385986075419noreply@blogger.comtag:blogger.com,1999:blog-2448089685086546300.post-8047410859971385802012-04-10T11:25:23.822-07:002012-04-10T11:25:23.822-07:00Ok DK,
I have read everyone of your posts and yo...Ok DK, <br /><br />I have read everyone of your posts and you are VERY good at replying back so hopefully you can help me. I know my way around BT5R2 pretty well but I can't for the life of me get the whitelist to work properly(not at all)<br />SO this is what I have done.. I've successfully DoS'd everyone that I live with(bandwidth hogs) using mdk3 mon0 d.<br />I've seen a couple other tutorials for mdk3 and basically the whitelist is in /pentest/wireless/mdk3 where its supposed to be correct? So when I try to make a white list with my MAC mdk3 doesn't know where to look even if I create that folder in the wireless directory and name it mdk3.. So what I'm wondering is where the hell is mdk3 installed to so I can finally enjoy the internet I pay for?Anonymousnoreply@blogger.comtag:blogger.com,1999:blog-2448089685086546300.post-91700887367270075512012-03-30T20:34:00.529-07:002012-03-30T20:34:00.529-07:00OK Brother, I found the solution to mdk3 deauthent...OK Brother, I found the solution to mdk3 deauthentication mode.<br />put the -c option too. channel of the AP. and it will work.DeathKnighthttps://www.blogger.com/profile/18282423385986075419noreply@blogger.comtag:blogger.com,1999:blog-2448089685086546300.post-51232596554999955982012-03-30T15:07:35.213-07:002012-03-30T15:07:35.213-07:00Hi DK:)
I dont want to spoil my hardware :) I jus...Hi DK:) <br />I dont want to spoil my hardware :) I just want to see, whether I can sucessfully dos it without getting it toooo complicated.<br /><br />About packet injection, its supported (bt5/bt5r1 and r2). <br /><br />Cheers :)Anonymousnoreply@blogger.comtag:blogger.com,1999:blog-2448089685086546300.post-29618231110880564052012-03-30T15:01:45.506-07:002012-03-30T15:01:45.506-07:00Hi DK:) ,
packet injection is supported (bt5)
Che...Hi DK:) ,<br />packet injection is supported (bt5) <br />Cheers! :)Anonymousnoreply@blogger.comtag:blogger.com,1999:blog-2448089685086546300.post-23233887139882781072012-03-30T01:24:33.343-07:002012-03-30T01:24:33.343-07:00Ok, I got rt3070, and as you said, it says Disconn...Ok, I got rt3070, and as you said, it says Disconnecting between ap and client, but it doesnt disconnects it. Let me play with some of its drivers. and if i had any success I will inform you. Y<br />Also, you can contact me directly via email too, deathknight:at:hackcommunity:dot:comDeathKnighthttps://www.blogger.com/profile/18282423385986075419noreply@blogger.comtag:blogger.com,1999:blog-2448089685086546300.post-4758855179912587912012-03-29T19:28:00.332-07:002012-03-29T19:28:00.332-07:00well, what do you mean by taking down? crashing or...well, what do you mean by taking down? crashing or just DoS? If you are hinting to crashing then i highly doubt that most of new routers will crash... even my old dlink did not crash out, just DoS took place.<br />Apparantly it seems that 'a' doesnt work with macfilter, but let me test it again.<br /><br />if we have 036h card then with it we CAN take down 802.11g network.<br /><br />and for 036nh, rt3070, i have done a bit of googling and seems that it needs driver patch for packet injection. can you get injection working with this command: aireplay-ng -9 mon0 or can you deauthenticate clients with aireplay-ng -0 0 -a router_mac -c client_mac mon0?<br />check it please. I have read in many places that rt3070 doent support paket injection by default. but lets make it sure.. :)<br /><br />Also, I think my friend has rt3070 chipset in Digicom adapter, let me make sure of it, and if he permits I will test it myself.<br /><br />airdrop-ng and aireplay-ng can deauthenticate the clients. But only if Packet Injection is supported...DeathKnighthttps://www.blogger.com/profile/18282423385986075419noreply@blogger.comtag:blogger.com,1999:blog-2448089685086546300.post-23708268892351954082012-03-29T17:06:21.658-07:002012-03-29T17:06:21.658-07:00Hi DK :),
Is it right, that I understand, with mdk...Hi DK :),<br />Is it right, that I understand, with mdk3, you cannot take down every router?<br />with the option "d" it wont work on every wifi card (not with the 036nh).<br />Option "a" wont work with mac filter?<br />And if you have a 036h card, you cannot take down 802.11g network?<br /><br />I would like to see me take down my router :) I mean, I want to not be able to connect to my router with any other phone laptop or any other device :)<br />If mdk3 isnt the solution, is there some "ultra way" of taking down my router?<br /> <br /><br />Cheers :)Anonymousnoreply@blogger.comtag:blogger.com,1999:blog-2448089685086546300.post-3221522525753354462012-03-27T09:07:02.852-07:002012-03-27T09:07:02.852-07:00Corrected: RT3070 chip in alfa awus036nh.
Read the...Corrected: RT3070 chip in alfa awus036nh.<br />Read the fifth post in this link, it gives difference between 036h and 036nh in a bit detailed way. Seems both have their pros and cons, so difficult to decide which is better. :)<br /><br />http://forums.hak5.org/index.php?showtopic=17960DeathKnighthttps://www.blogger.com/profile/18282423385986075419noreply@blogger.comtag:blogger.com,1999:blog-2448089685086546300.post-73981156748006196402012-03-27T08:35:57.579-07:002012-03-27T08:35:57.579-07:00ah, awus036nh has rt73 chip i guess... Mine is rtl...ah, awus036nh has rt73 chip i guess... Mine is rtl8187L. maybe it makes the difference, I cant be sure about it. But most of people prefer Awus036h, or lets say rtl8187 chipset. Mine is same as awus036h but manufactured by another company called wavion. So, if you can by any chance then it is better to get alfa awus036h, exchange with someone maybe?<br /><br />Not much difference between live and installed, except live consumes much of RAM than installed, i guess you already know that. :) But still I prefer installed (maybe psychology, :D)<br /><br />And THanks for the complements. :)DeathKnighthttps://www.blogger.com/profile/18282423385986075419noreply@blogger.comtag:blogger.com,1999:blog-2448089685086546300.post-89379047591183041352012-03-27T07:56:44.665-07:002012-03-27T07:56:44.665-07:00Hello DK :),
I did check it being in the same dir...Hello DK :), <br />I did check it being in the same directory. I opened (in bt5v2) gedit and entered<br />in the firstline my own mac adresse. I did double check (with ls) whether its really there. It was saved in the root directory. I ran from the root directory the mdk3 command, where the blacklist was. Yet no sucess.<br /><br />I will try with bt5r1, maybe it works there? <br /><br />Yes, I follow your blog :) Its very enlightening :) I learned a lot about security in a few hours ;) I will be looking forward to read your WPS tutorial.<br />At the moment, I am just trying to understand, how I can take down my own access point :/?<br />(with the macfilter, the a option is out. the d option, I cant get it running :(. <br />Those are the two options?)<br />How does an install make a difference to a live CD (Just for knowledge sake)?<br /><br />Are you using, by any chance, the alfa awus036nh?<br /><br />Cheers :)Anonymousnoreply@blogger.comtag:blogger.com,1999:blog-2448089685086546300.post-38008779845765088202012-03-27T07:39:21.197-07:002012-03-27T07:39:21.197-07:00i totally believe :) I have the same problem :/i totally believe :) I have the same problem :/Anonymousnoreply@blogger.comtag:blogger.com,1999:blog-2448089685086546300.post-8983577558564083632012-03-27T07:13:16.902-07:002012-03-27T07:13:16.902-07:00I tried airdrop as soon as it was released, but fo...I tried airdrop as soon as it was released, but found it confusing/hard to configure, in fact I didnt actually get how to create/configure the rules. So I opted to mdk3 or 'aireplay-ng 0' option. But if you really want airdrop, then give me some time. About a couple of weeks, as I am giving my semester exams right now... and believe me, exams are total shit... :DDeathKnighthttps://www.blogger.com/profile/18282423385986075419noreply@blogger.comtag:blogger.com,1999:blog-2448089685086546300.post-25760100402750332952012-03-27T07:10:27.155-07:002012-03-27T07:10:27.155-07:00Hello,
mdk3 doesnt deauthenticate unless the devic...Hello,<br />mdk3 doesnt deauthenticate unless the device is sending/receiving data, i.e, if the device is connected but idle then it doesnt deauthenticate. Even my own computer was deauthenticated as soon as I tried to browse some pages. I am not sure what may have gone wrong with yours. It may sound silly, but is the blacklist file in the same directory? Have you tried with whitelist too?<br /><br />Yes, it seems that mdk3 authentication doesnt work if mac filter is enabled. <br />If you want I will make some screenshots or a video of my own client being disconnected and also another laptop being disconnected.<br />Can I suggest not to use Live CD, instead used it installed. <br /><br />If you keep following the blog then I have a plan to make two tutorials: 1st: WPS and 2nd: using mdk3 + some clever trick to crack WPA with WPS vulnerablity.DeathKnighthttps://www.blogger.com/profile/18282423385986075419noreply@blogger.comtag:blogger.com,1999:blog-2448089685086546300.post-30664133000556528402012-03-27T05:04:45.428-07:002012-03-27T05:04:45.428-07:00Hi DK :)
Can I suggest a tutorial about airdrop-ng...Hi DK :)<br />Can I suggest a tutorial about airdrop-ng? <br />Cheers :)Anonymousnoreply@blogger.comtag:blogger.com,1999:blog-2448089685086546300.post-24262884324884291322012-03-27T03:49:39.669-07:002012-03-27T03:49:39.669-07:00Hi Deathknight,
I cant get this working :( I tried...Hi Deathknight,<br />I cant get this working :( I tried it with three different wlan cards (Atheros, Broadcom and Alfa).<br />I use bt5r2 as a live cd, then started monitor mode, then tried at first "mdk3 mon0 d". My own connection didnt get kicked and I waited 30 minutes for "my turn". Afterthat, I tried "mdk3 mon0 d -b blacklist" with my own AP, yet I could happily use the internet with an other Laptop.<br />What did I do wrong? :(<br /><br />I had a similar problem with "mdk3 mon0 a", even there it didnt disconnect me (and again I waited 30 minutes for my turn). I was using an alfa wlan adapter.<br /><br />Only "mdk3 mon a -a ab:cd:..:xy" worked :) Instantly I was unable to use the internet. But even here, once I activated the mac filter, this attack was once again useless :(<br />This attack (mdk3 mon a -a ab:cd:..:xy) only works with my alfa card. <br /><br />Cheers :)Anonymousnoreply@blogger.comtag:blogger.com,1999:blog-2448089685086546300.post-63310480534978453452011-11-10T08:36:19.042-08:002011-11-10T08:36:19.042-08:00Thank You For Reading And Commenting!!Thank You For Reading And Commenting!!DeathKnighthttps://www.blogger.com/profile/18282423385986075419noreply@blogger.comtag:blogger.com,1999:blog-2448089685086546300.post-80516969899453115272011-11-10T08:34:12.299-08:002011-11-10T08:34:12.299-08:00This is awesome...........b and d combination ;)This is awesome...........b and d combination ;)Anonymousnoreply@blogger.com