Decrypt handshake using crunch - Kali Linux



Handshake Decryption 

Today you will learn How to decrypt WEP / WPA / WPA2 handshake which you captured in a .cap file indeed the best part of cracking WiFi Network security. The Captured file contain encrypted password in the form of hashes and all you need is to capture a valid Handshake of the WiFi & for this you can also read our article : How to capture WiFi Handshake


Before starting please note that you must have valid handshake because in most of the cases people fail to decrypt the password because their captured handshake is not a valid handshake so please verify that your handshake is valid. Almost 80% handshakes which are captured are valid. we will soon write an article on how to verify if the handshake is valid or not.

One of the most common way people prefer is bruteforcing handshake encryption with a wordlist or dictionary which contain all the upper case and lower case words of dictionary but today we will teach you a method for the decryption of handshake using CRUNCH and Aircrack-ng.


What is Aircrack-ng Crunch ? 

Crunch is a type of program which comes pre-loaded and ready to use in Kali Linux which is usually created for generating a wordlist with given alphabets and numbers and aircrack-ng is a famous for penetrating Wireless Networks usually used for cracking WiFi networks and combination of Crunch and Aircrack-ng will decrypt the captured handshake to crack the WiFi Password.


Success Percentage of decryption is below using different methods


  • Dictionary Attack - 65%
  • Wordlist Attack - 76%
  • Crunch Based Decryption - 100% 

Yes , Success rate with crunch based attack is 100% which means you can crack the wifi password on 100% success rate but what you will need ? can you perform this on your old lazy computer ? Answer is NO ! , you will need a High Killer machine to decrypt password using Crunch. likely the computer which have i7 processor with 8 GB RAM is enough to carry out the attack but if you will try to perform this attack on a normal or a machine who,s specifications are low is justified but it will take more time. All you need is time and patience. Higher the specifications of your machine less the time is required for decryption and Lower the specifications more time is needed.

TIP:  As this type of attack can take even days depends on the password , even it can take 8 hours or even 1 hour. Aircrack-ng and Crunch is available in Windows 0S , so if you have Windows RDP you can easily perform this attack on RDP which will help you much and will work even if your pc is switched off no need to worry about decryption its on RDP.


Download 

1- Aircrack-ng : http://www.aircrack-ng.org/

2- Crunch : http://sourceforge.net/projects/crunch-wordlist/


Lets Start 

1- Once you have captured the handshake Now open your terminal in Kali Linux 





2- Now Type the first and final command which will start its decryption
crunch 8 10 abcdefghijklmnopqrstuvwxyz | aircrack-ng -b 00:00:00:00:00:00 -w- /root/hs/handshake_file.cap




 Change the following arguments as mentioned below with your information


  • Words ( abcdefg.....xyz ) are alphabets 
  • -b refers to BSSID number replace it with your target BSSID no 
  • ( 8 10 ) means numbers of alphabets in range from 8 to 10 you can increase them if your number of characters are more than 10 
  • after -w- the root path where your handshake file is located 

If you want to try only numbers from 0 to 10 you can customize the command.



crunch 8 10 0123456789 | aircrack-ng -b 00:00:00:00:00:00 -w- /root/hs/handshake_file.cap

Keep in mind that it will take more time if you will increase the characters and less the characters less the time is required.


You can also try a combination of alphabets and numbers but it will take more time so to avoid long time i will suggest you to read the mind of the victim and guess what type of password he can use for example many types of people use the date of birth and name as a password and many a phone number or mobile number for this you can try only numeric based test which will save your time and more characters means more time. Try to guess the password as mentioned above which will likely increase the key,s per second and

Crunch will generate a wordlist very fast in a nano second from the given alphabets or numbers in series like after 0 there will be 1 and after 1 there will be 2 example is given below


0
01
012
0123
01234
012345
0123456
01234567
012345678
0123456789

Now crunch will generate wordlist in this way after the wordlist is generated aircrack-ng will generate its encryption and will match it with the encryption of handshake once it is matched password will be decrypted.

I hope you you liked it , also share to educate.




Visitors must follow the terms and conditions and The content provided on this page is the authority of Security Fuse and the content provided is only for educational purpose. Security Fuse is not responsible for any of the act caused by viewers after reading the content from *.securityfuse.com. our aim is to provide a quality information on Cyber Security and exploitation and the knowledge is only for peace and educational purpose.
Share on Google Plus

About ahmed mehtab

Ahmed Mehtab is a white hat cyber security researcher , speaker , trainer and blogger at security fuse. He loves to research on cyber security issues , cyber crime and hacktivism. Quote " Being a hacker without having knowledge of programming is just like a knife without sharpness ~ Ahmed Mehtab "

25 comments :

  1. what if the password is consist in both form alphabat or number?

    ReplyDelete
    Replies
    1. simply include both abcdef012345... all numbers and alphabets and you can also include special characters too after check how many words are there and increase the number 10 to how many words which you have there. and done

      Delete
    2. What to do for capital letters?

      Delete
  2. hmmm... main smja tah koi new method aya ha.. jo without dictionary ya brute force se ho... :(
    so if my victim password is "9@rSlAn€ArSHaD9"
    like this .. so how many days ll be requred for cracking..

    ReplyDelete
    Replies
    1. For this use RDP , RDP 24 ghantay mahino taq on rehta ha RDP pe kero

      Delete
  3. I think you are a???????????????????????????????????????????????


    genius..........................................................

    ReplyDelete
  4. how dow i know how many charachters i can use?i mean i have the handshake right?so how can i know haw many chacacters it have?

    ReplyDelete
    Replies
    1. you can add all the alphabets and numbers including special characters but it will take more time as you will increase number of characters

      Delete
  5. How to use RDP?Write detais about RDP and its using process to crack handshake...

    ReplyDelete
  6. This comment has been removed by the author.

    ReplyDelete
  7. Ahmed bhai what is RDP and how to use it

    ReplyDelete
  8. this is no decryption, this remains just a wordlist created by crunch and piped to aircrack and success rate is not 100%, it depends on the length and the complexity of the password.
    if for example the password contains special chars,uppercase,lowercase and digit and length is more than 30 then you need years to crack it

    ReplyDelete
  9. How to install RDP in Windows?

    ReplyDelete
  10. i think you are full of sh*t . . this is just basic kali. . .

    ReplyDelete
  11. I love seeing all the comments on a Wifi hacking tutorial from people asking what RDP is.

    HINT: If you don't know what RDP is then you probably don't have the skills the be "hacking" anything. LOL

    ReplyDelete
  12. hackerkane167@gmail.com Hello everyone, Need hacking services?TESTED AND TRUSTED WITHIN 1 HOUR.. contact hackerkane167@gmail.com
    Be warned, most of these so called hackers here are impostors, I know how real hackers work, they never advertise themselves in such a credulous manners and they are always discrete. I have been scammed so many times out of desperation trying to find urgent help to change my school grades, finally my friend introduced me to a group of reliable hackers who work with discretion and delivers promptly, they do all kinds of hacking ranging from;
    - Sales of Blank ATM cards.
    - University or school grades changing
    - Bank accounts hack and funds transfer
    - Erase criminal records hack
    - Facebook hack,Twitters hack
    - email accounts hack, gmail, yahoo mail, Hotmail etc.
    - Skype hack
    - Databases hack
    - Word Press Blogs hack
    - Individual computers hack
    - Control devices remotely hack
    - Verified PayPal Accounts hack
    - Android & iPhone Hack etc.
    But they helped me;
    - Changed my school grades
    - Hacked my cheating ass Boyfriend email Facebook
    - The most of it all, they helped me with Western union money transfer and i tracked and confirm the money . I have made them my permanent hackers and you can as well enjoy their services.
    You can contact them at: hackerkane167@gmail.com for any hacking services and also endeavor to spread the good news on how they helped you they deserve publicity.

    ReplyDelete
  13. I am Cold Hack by name, Certified Ethical Hacker (CEH) - Delivered By (LEVEL SEVEN HACKER) Leading Experts‎.

    I major in...
    Different Kinds of Games Hacking
    Credit score increase and decrease
    Upgrade University Grades
    Facebook, Instagram, Twitter, WhatsApp, Line, Skype Hack
    Delete unwanted online Pictures and Videos on any website
    Remove Criminal Records
    Tracing peoples background
    Hack bank accounts
    Apps hacking
    Loading all MasterCard, Bank Accounts, PayPal, Bitcoin, WU, Money Gram with untraceable credit on it.  etc.
    We also develop hacked facebook, twitter, instagram, yahoo, gmail passwords etc.
    Do you need to keep an eye on your spouse by gaining access to their emails?
    As a parent do you want to know what your kids do on a daily basis on social networks.

    Contact: coldhackerxxx@gmail.com
    Phone/whatsapp: +1(732) 639–1527
    Regards..

    ReplyDelete
  14. I am Cold Hack by name, Certified Ethical Hacker (CEH) - Delivered By (LEVEL SEVEN HACKER) Leading Experts‎.

    I major in...
    Different Kinds of Games Hacking
    Credit score increase and decrease
    Upgrade University Grades
    Facebook, Instagram, Twitter, WhatsApp, Line, Skype Hack
    Delete unwanted online Pictures and Videos on any website
    Remove Criminal Records
    Tracing peoples background
    Hack bank accounts
    Apps hacking
    Loading all MasterCard, Bank Accounts, PayPal, Bitcoin, WU, Money Gram with untraceable credit on it.  etc.
    We also develop hacked facebook, twitter, instagram, yahoo, gmail passwords etc.
    Do you need to keep an eye on your spouse by gaining access to their emails?
    As a parent do you want to know what your kids do on a daily basis on social networks.

    Contact: coldhackerxxx@gmail.com
    Phone/whatsapp: +1(732) 639–1527
    Regards..

    ReplyDelete
  15. Read Online Books And Online Results
    Read Online Books And Online Results

    Read Online Books Online Library for Urdu Novels Famous Urdu

    Novels
    , Download PDF Urdu Novels. Board of Intermediate & Secondary Education Results from all

    Pakistani boards prize bond draw list Prize Bond results.

    Read Online

    Read Online Books
    Read Online Digest
    Read Online Novels

    Read Online Books And Online Results https://booksresult.com

     

    ReplyDelete
  16. Great feed! Visit our website finessehackers.com if you need to hire a professional hacker for any type of cell phone or social network infiltration. Customer service and efficiency is top notch.

    ReplyDelete
  17. professionalhacker1009@gmail.com......... Hello everyone, Need hacking services?TESTED AND TRUSTED WITHIN 1 HOUR.. contact professionalhacker1009@GMAIL.COM
    Be warned, most of these so called hackers here are impostors, I know how real hackers work, they never advertise themselves in such a credulous manners and they are always discrete. I have been scammed so many times out of desperation trying to find urgent help to change my school grades, finally my friend introduced me to a group of reliable hackers who work with discretion and delivers promptly, they do all kinds of hacking ranging from;
    - Sales of Blank ATM cards.
    - University or school grades changing
    - Bank accounts hack and funds transfer
    - Erase criminal records hack
    - Facebook hack,Twitters hack
    - email accounts hack, gmail, yahoo mail, Hotmail etc.
    - Skype hack
    - Databases hack
    - Word Press Blogs hack
    - Individual computers hack
    - Control devices remotely hack
    - Verified PayPal Accounts hack
    - Android & iPhone Hack etc.
    But they helped me;
    - Changed my school grades
    - Hacked my cheating ass girlfriend email Facebook
    - The most of it all, they helped me with Western union money transfer and i tracked and confirm the money . I have made them my permanent hackers and you can as well enjoy their services.
    You can contact them at: professionalhacker1009@GMAIL.COM for any hacking services and also endeavor to spread the good news on how they helped you they deserve publicity.

    ReplyDelete

Hi , Please take a minute to say somthing about this post