paperlined.org
apps > wifi
document updated 16 years ago, on Feb 24, 2008

Writeups

Key steps (circa Feb 2008)

Getting madwifi-ng up and working with monitor mode

Use the aircrack-ng suite to probe networks

Wireshark display filters

Mmm, succulent references: wlan.*, prism.*,

Side-project: Is it possible to create a Wireshark display-filter for the specific packets I'm looking for?

If you try to passively scan for a long period of time, you end up looking for a very specific type of packets to come across the network. Both Kismet and airodump-ng come close to allowing you to find these needles in the haystack, but don't always precisely do it. Note that tshark allows display-filters to be used as "read filters", thus eliminating problems with RAM-disk size. (though, pish, I've got 2gb)

Personal notes

TODO

  1. buy an Atheros chipset card, per Aircrack-NG's suggestion (the TRENDnet TEW-443PI is reasonable for home-scanning... it's not optimal for wardriving, but then again, most PCMCIA cards don't have a decent detachable antenna)
  2. get aircrack-ng working
  3. locate and connect to at least two nearby networks that 1) I can connect to, 2) that's on Comcast cable, and 3) that I can read the SNMP data off of