Ticket #58 (assigned enhancement)
fragmentation attack miscellaneous enhancements
| Reported by: | darkAudax | Owned by: | hirte |
|---|---|---|---|
| Priority: | minor | Milestone: | 1.1 |
| Component: | aireplay-ng | Version: | 1.0-dev |
| Keywords: | fragmentation attack wep0ff | Cc: |
Description (last modified by misterx) (diff)
Wep0ff has some interesting features that would be of value ported to aireplay-ng. Especially for targetting client workstations
It attempts to use some IPv6 traffic to get packets relayed. I have just started some research into this area. However, it may hold promise as another class of traffic that can be used to obtain a xor file.
One very interest technique is arp scanning a range of IPs to determine the actual IP of the client. It is extremely fast to scan a 169.254.0.0 "B" class. 169.254.0.0 is the default IP assignment range used by WinXP when there is no DHCP response. A great enhancement for aireplay-ng would be to build in the ability to scan networks you specify. The parameter would be IP/CIDR.
As an aside, they pick up double the PRAGA from an initial ARP packet.
d.
