4 ms·
Remind me:don’t you need to be connected to the WPA2 WiFi router to send deauth packets?
by c0restraint 7y ago
Remind me:don’t you need to be connected to the WPA2 WiFi router to send deauth packets?
- judge2020 7y agoActually no, you can send deauth without already knowing the key. It's a good way to force clients onto your rogue AP and then obtain the key via captive portal. https://www.aircrack-ng.org/doku.php?id=deauthentication https://www.aircrack-ng.org/doku.php?id=deauthentication
- nkurz 7y agoNo, that would sort of defeat the purpose. The deauth's are commonly used to try to capture the connection handshake so that one can then (offline) try to figure out the network's password. The management frames (such as deauth) are not encrypted, and one needs only the easily eavesdropped details of client and server MAC to spoof them: https://security.stackexchange.com/questions/190133/why-does-a-deauth-attack-work-on-wpa2-despite-encryption https://security.stackexchange.com/questions/190133/why-does...