Ticket #491 (new defect)

Opened 2 years ago

Last modified 5 weeks ago

Aircrack-ng fails to crack handshake within QoS data packet

Reported by: limitlessouljah@… Owned by:
Priority: major Milestone: 1.3
Component: aircrack-ng Version: 1.0-rc2
Keywords: WPA aircrack-ng passphrase QoS EAPOL Cc:

Description (last modified by misterx) (diff)

Source thread:  http://tinyshell.be/aircrackng/forum/index.php?topic=4054.0

Aircrack-ng 1.0rc1 (and rc2) fails to find passphrase for the capture "WPA_eapol_filtered.cap" and the passphrase list borrowed from John-the-Ripper 1.7.2, "password.lst"

SSID: Red Apple
passphrase: password

This is due to QoS (2 bytes field at the end of 802.11 header), all information is shifted by 2 bytes.

Attachments

WPA_eapol_filtered.cap Download (2.7 KB) - added by limitlessouljah@… 2 years ago.
Capture of just the handshake
password.lst Download (21.8 KB) - added by limitlessouljah@… 2 years ago.
Dictionary file used (passphrase is included, linux format)

Change History

Changed 2 years ago by limitlessouljah@…

Capture of just the handshake

Changed 2 years ago by limitlessouljah@…

Dictionary file used (passphrase is included, linux format)

follow-up: ↓ 10   Changed 19 months ago by saxdax2@…

same problem here with aircrack-ng rc1 on a Turion64 x2. No problem with 0.9.1 on an Athlon 4 Xp.

Going to test both versions inverted on pc's.

I can send you .cap and dictionary with passphrase if you need.

saxdax

  Changed 19 months ago by saxdax2@…

Windows Vista with Turion64x2. Windows XP with Athlon 4.

  Changed 19 months ago by misterx

  • description modified (diff)
  • summary changed from WPA crack cannot find specified passphrase to Aircrack-ng fails to crack handshake within QoS data packet
  • priority changed from critical to major
  • version changed from 1.0-rc1 to 1.0-rc2
  • milestone set to 1.0
  • keywords QoS EAPOL added; linux removed

  Changed 19 months ago by misterx

  • description modified (diff)

  Changed 19 months ago by saxdax2@…

made more tests. Results:

1)AMD Turion64x2 with Windows Vista: both 1.0rc2 and 0.9.1 fail to retrieve the password

2)AMD Athlon XP 4 with Windows XP: 2.a) 0.9.1 can find the password 2.b) 1.0rc2 doesn't.

Precompiled .exe used in both cases.

  Changed 19 months ago by misterx

saxdax, your capture does not contain any QoS data packet, that's a different bug.

  Changed 18 months ago by misterx

After checking, I don't think QoS is a problem. I'll have to investigate more to see what's wrong (and test with JTR).

  Changed 13 months ago by misterx

  • milestone changed from 1.0 to 1.1

  Changed 5 months ago by misterx

  • milestone changed from 1.1 to 1.3

in reply to: ↑ 1   Changed 5 weeks ago by anonymous

Replying to saxdax2@…:

same problem here with aircrack-ng rc1 on a Turion64 x2. No problem with 0.9.1 on an Athlon 4 Xp. Going to test both versions inverted on pc's. I can send you .cap and dictionary with passphrase if you need. saxdax

Add/Change #491 (Aircrack-ng fails to crack handshake within QoS data packet)

Author


E-mail address and user name can be saved in the Preferences.


Action
as new
 
Note: See TracTickets for help on using tickets.