Close Menu
Technotification
    Facebook X (Twitter) Instagram
    Facebook X (Twitter) Instagram
    Technotification
    • Home
    • News
    • How To
    • Explained
    • Facts
    • Lists
    • Programming
    • Security
    • Gaming
    Technotification
    Home › Security › WiFi Password Hacking: Hack Wi-Fi easily using new WPA/WPA2 flaw

    WiFi Password Hacking: Hack Wi-Fi easily using new WPA/WPA2 flaw

    By Vikram Singh RaoDecember 3, 2022
    Facebook Twitter Reddit LinkedIn
    HASHCAT Wi-Fi PAssword hacking

    The social and digital phenomenon has been perfecting itself as the internet progresses, and has been professionalized as all platforms increase their security. Your computer, email, and social media accounts must be using the best security approach available at this time but, are they really secure? There are always loopholes and vulnerabilities that make them easy to hack if you give an expert a try.

    The same can be said for Wi-Fi security. You might have thought that using WPA2 Encryption for a Wi-Fi password will make it impossible to hack but that’s no longer true. A new flaw for Wi-Fi password hacking has been found that makes it easier for hackers to decipher the passwords of most routers. This attack was found accidentally while looking for new ways to attack the new WPA3 security standard.

    Jens Steube, the developer of “Hashcat” decryption tool, has discovered this new WiFi hack. It works explicitly against WPA/WPA2 Wi-Fi protocols with Pairwise Master Key Identifier (PMKID) based on roaming features. This innovative method allows attackers to get the Pre-shared Key (PSK) login passwords allowing them to even spy on Internet communications.

    According to Jens, the previous WiFi hacking methods require attackers to wait for someone to log into a network and capture a full 4-way authentication handshake of EAPOL, which is a network port authentication protocol. But this new attack does not require a user to be on the target network to capture credentials meaning there is no need to capture a full EAPOL 4-way handshake. The new attack is made on the RSN IE (Robust Security Network Information Element) of a single EAPOL frame.

    How to hack Wi-Fi password using PMKID?

    pmkid

    1. You can use hcxdumptool (v4.2.0 or higher) to request the PMKID from the targeted access point and dump the received frame to a file.

    $ ./hcxdumptool -o test.pcapng -i wlp39s0f3u4u5 –enable_status

    2. Using the hcxpcaptool, the frame output can be converted into a hash format

    $ ./hcxpcaptool -z test.16800 test.pcapng

    3. Now you can use Hashcat (v4.2.0 or higher) tool to obtain the WPA PSK (Pre-Shared Key) password

    $ ./hashcat -m 16800 test.16800 -a 3 -w 3 ‘?l?l?l?l?l?lt!’

    This last step will give you the password of your targeted WIFI network but it may take some time depending on the length and complexity of the password.

    At this time, we do not know for which vendors or for how many routers this technique will work, but we think it will work against all 802.11i/p/q/r networks with roaming functions enabled (most modern routers).

    Steube said.

    According to HashCat Forum the advantages of this technique are:

    • No more regular users required
    • No waiting for a complete 4-way handshake between the regular user and the AP
    • Eventual retransmissions of EAPOL frames doesn’t happen (which can lead to uncrackable results)
    • No more eventual invalid passwords sent by the regular user
    • No more lost EAPOL frames when the regular user or the AP is too far away from the attacker
    • No more special output format (pcap, hccapx, etc.) – final data will appear as regular hex encoded string

    However, this new WiFi hack does not work against latest wireless security protocol WPA3, since the new protocol is “much harder to attack because of its modern key establishment protocol called “Simultaneous Authentication of Equals” (SAE).”

    Since the new WiFi hack requires attackers to brute force the password, users are recommended to protect their WiFi network with a secure password that’s difficult to crack.

    Share. Facebook Twitter LinkedIn Tumblr Reddit Telegram WhatsApp
    Vikram Singh Rao
    • Website
    • Facebook
    • X (Twitter)
    • LinkedIn

    I am an entrepreneur at heart who has made his hobby turned a passion, his profession now.

    Related Posts

    NVIDIA GeForce NOW is Finally Coming to India

    January 8, 2025

    The Psychology of a Phishing Email: How Scammers Play with Your Mind

    July 16, 2024

    9 Essential Elements of a Strong Cyber Security Management System

    July 3, 2024

    Common Cyber Attacks and How to Prevent Them

    July 3, 2024

    How Cyber Security Paid Training Prepares You for Real-World Threats

    June 13, 2024

    The Role of Security in Server Colocation Environments

    March 12, 2024
    Lists You May Like

    10 Sites to Watch Free Korean Drama [2025 Edition]

    January 2, 2025

    The Pirate Bay Proxy List in 2025 [Updated List]

    January 2, 2025

    10 Best RARBG Alternative Sites in April 2025 [Working Links]

    April 1, 2025

    10 Best Torrent Search Engine Sites (2025 Edition)

    February 12, 2025

    10 Best GTA V Roleplay Servers in 2025 (Updated List)

    January 6, 2025

    5 Best Torrent Sites for Software in 2025

    January 2, 2025

    1337x Alternatives, Proxies, and Mirror Sites in 2025

    January 2, 2025

    10 Best Torrent Sites for eBooks in 2025 [Working]

    January 2, 2025

    10 Best Anime Torrent Sites in 2025 [Working Sites]

    January 6, 2025

    Top Free Photo Editing Software For PC in 2025

    January 2, 2025
    Pages
    • About
    • Contact
    • Privacy
    • Careers
    Privacy

    Information such as the type of browser being used, its operating system, and your IP address is gathered in order to enhance your online experience.

    © 2013 - 2025 Technotification | All rights reserved.

    Type above and press Enter to search. Press Esc to cancel.