Live data from Hacker News

How I cracked my neighbor's WiFi password without breaking a sweat

arstechnica.com

21–30 of 144 posts

Re: How I cracked my neighbor's WiFi password without breaking a sweat

#22
post #13

Don't really want to hijack this thread so feel free to downvote me if you feel its not appropriate. We launched a product that protects you from these attacks - more discussion here - http://news.ycombinator.com/item?id=4444478

My review (of wifiprotector.com): dude, this looks like a virus. Spruce up the page! Give me some screenshots! Please, let me trust you!

I agree- have a few "learn more" buttons, videos etc

Re: How I cracked my neighbor's WiFi password without breaking a sweat

#23
post #13

Don't really want to hijack this thread so feel free to downvote me if you feel its not appropriate. We launched a product that protects you from these attacks - more discussion here - http://news.ycombinator.com/item?id=4444478

My review (of wifiprotector.com): dude, this looks like a virus. Spruce up the page! Give me some screenshots! Please, let me trust you!

Thanks! The download link goes to CNET download.com where they make sure all software is trusted. but I understand we should improve the page so people actually feel reassured before they click on download.

Re: How I cracked my neighbor's WiFi password without breaking a sweat

#25

> To his chagrin, it took CloudCracker just 89 minutes to crack the 10-character, all-numerical password he used... > Remarkably, neither CloudCracker nor 12 hours of heavy-duty crunching by Hashcat were able to crack the passphrase. The secret: a lower-case letter, followed two numbers, followed by five more lower-case letters So an all-number password was easily cracked with this method, but a shorter password with…

Look at it this way. Lets say I give you 5 characters to create a password. If you use all numbers then each value can be anywhere between 0 to 9. That's only 10 values! So that's 10 to the power of 5. That's only 100,000 permutations.

With letters, assuming standard English, you get 26 per value. Or 52 when we include case. That's a big difference. So lets say I only give you 4 lowercase characters. That's 4 to the power of 26. 456k permutations. So almost 5x more secure with less characters!

Your offline password cracker can crack numeric only passwords with ease. Heck, if you know who supplied the access point, you can narrow your search. For example I have uverse and I got a 10 number password by default, just like all uverse customers. So if you know its a uverse customer you can tell your cracker to focus on 10 digit permutations. There's only 10 billion permutations there. With 10 lowercase letters its 141 trillion.

Re: How I cracked my neighbor's WiFi password without breaking a sweat

#26

>What's more, WPA and WPA2 passwords require a minimum of eight characters, eliminating the possibility users will pick shorter passphrases that could be brute forced in more manageable timeframes Should I point out that 'password' is 8 characters :) Have there been studies done that attempt to test the hypothesis that when forced to pick passwords that meet some arbitrary complexity threshold most common users pick…

Anecdotally, most people I know without secure WIFI passwords pick things like: - Their address (sometimes with numerals spelled out) - Their last name - Their child's name - single (common) dictionary word - single (common) dictionary word + one or two digits.

for about 80% of protected home networks i’ve accessed the password ends up being someone in the home’s phone number.. not sure if it’s just because it’s often the only 8+ character string of numbers people readily have memorized or if it’s just lazy isp’s that set it that way (and lazy owners who never change it afterwards)..?

Re: How I cracked my neighbor's WiFi password without breaking a sweat

#28
post #21

What is the command for aircrack-ng to generate the pcap file with the handshake? (For those curious mac users, you can simply type "brew install aircrack-ng")

Note that (I think) Apple typically uses Broadcomm wireless chips, which are not the best choice for this sort of thing.

Re: How I cracked my neighbor's WiFi password without breaking a sweat

#29

> To his chagrin, it took CloudCracker just 89 minutes to crack the 10-character, all-numerical password he used... > Remarkably, neither CloudCracker nor 12 hours of heavy-duty crunching by Hashcat were able to crack the passphrase. The secret: a lower-case letter, followed two numbers, followed by five more lower-case letters So an all-number password was easily cracked with this method, but a shorter password with…

Look at it this way. Lets say I give you 5 characters to create a password. If you use all numbers then each value can be anywhere between 0 to 9. That's only 10 values! So that's 10 to the power of 5. That's only 100,000 permutations. With letters, assuming standard English, you get 26 per value. Or 52 when we include case. That's a big difference. So lets say I only give you 4 lowercase characters. That's 4 to the…

Sounds a lot like my bank. 5 characters of 0-9 is exactly what they validate their passwords on. Luckily that validation is done only in Javascript, so disabling the check allows you to use any password you want. That doesn't help the average person though.
Post reply on HN