evilsocket / pwnagotchi

(⌐■_■) - Deep Reinforcement Learning instrumenting bettercap for WiFi pwning.
https://pwnagotchi.ai/
Other
7.61k stars 1.14k forks source link

WPS attacks (Pixie dust and PIN Bruteforce) #334

Open zhovner opened 4 years ago

zhovner commented 4 years ago

It would be nice if pwnagotchi could be more intrusive and perform various WPS attacks. Like Pixie Dust and regular PIN bruteforce. It will allow connects to AP's and get internet access in AI mode.

Since WPS pin bruteforce is time consuming attack, it can be started only if AI detects that unit is not moving and stays in one place for a while. Pixie attack can be run more often, because it's not consuming so much time.

Bettercap does not support WPS attack, and this is a problem. I don't know what is the good way to implement this feature except add this type of attack to bettercap.

domenukk commented 4 years ago

Another WPS attack would be to automatically connect to Push-Button WPS (PBC) when possible, similar to https://hackaday.io/project/28924-wifi-cracker-esp8266pbc