Page 3 of 7 FirstFirst 12345 ... LastLast
Results 21 to 30 of 66

Thread: Bully modified to implement pixiewps attack

  1. #21
    Senior Member
    Join Date
    Sep 2013
    Posts
    262
    PS it's aanarchyy, two y's at the end
    Upsss... Yes i did that. sorry. I will correct this in the review later,
    Today a friend (dk10v) passed by the thread where i spoke about the "new buly" and he made some testing with a wn722n from tp-link:
    So we are speaking about dongles with
    ar9271 (atheros chipset) USB
    And he said -literally - that he had .... an "orgasm"
    With his default PIN founded in 1 second and some microseconds with bully
    As he said in his post : A single picture is worth than worlds
    (original picture is taken from dk10v in answer 10 (external link))

    Cheers !
    Last edited by kcdtv; 2016-01-11 at 08:41 PM.

  2. #22
    Senior Member
    Join Date
    Mar 2015
    Posts
    138
    @kcdtv i have been following that thread for a few days(translated by google) and i see many good things said, and as i have said, i appreciate you spreading this project. I've had a lot of fun making it.

    Although that screen shot you just posted gave merit to the "bug" i found in it earlier today. Which i still need to weed out.
    If in pixie mode, once it gets the hashes and runs pixiewps, if the next trasaction fails(M2D out of sequence, etc...), the program exits, and it only produces the pin, not the psk.

    Be sure of this, more work will be going into this project, :-)

  3. #23
    Senior Member
    Join Date
    Jul 2013
    Posts
    788
    To: aanarchyy

    Reference the --help file -v line

    -v, --verbosity N : Verbosity level 1-4, 1 is quietest [3]

    What does -v 4 produce. Is this linked to pixiedust output in some way?

    MTeams

  4. #24
    Senior Member
    Join Date
    Mar 2015
    Posts
    138
    @mmusket33:

    Yes, it is directly related to pixie output, default of -v 3 when -d is used will only ouptut:
    Code:
    [P] ENonce received.
    [P] PKE received.
    [P] RNonce received.
    [P] PKR received.
    etc...
    whereas -v 4 will not only show the actual hashes recovered, but also echo the pixiewps command ran.

    I chose to do this to reduce screen clutter unless extra verbosity is desired. Most "users" don't care _how_ it works, only _that_ it works.

    Further work is planned with this: code cleanup, extra options, hash recording, integration with other projects, etc... ;-)

  5. #25
    Senior Member
    Join Date
    Jan 2016
    Posts
    100
    couldn't find libpcap-dev and libssl-dev ;( using kali on wmvare

  6. #26
    Junior Member
    Join Date
    Aug 2015
    Posts
    3
    Very nice, i need a podcast on WPS exploitation and little demo i will use bully instead of reaver for WPS attack.
    One question : why not making the starting PIN 01234567 as reaver do? atleast in my case most of the router have this pin and with single bruteforce attack, i was able to recover the WPS Pin
    Good job btw

  7. #27
    Senior Member
    Join Date
    Jul 2013
    Posts
    788
    To NotieBoie

    The starting pin for reaver is 12345670 NOT 01234567. It is also the default pin setting.

    To Bob79

    Read the README.md file that comes with the download

    MTeams used

    apt-get -y install build-essential libpcap-dev libssl-dev

    However the entire suggested string is found in the read me.

    MTeams
    Last edited by mmusket33; 2016-01-15 at 01:58 AM.

  8. #28
    Senior Member
    Join Date
    Mar 2015
    Posts
    138
    @NotieBoie : i am not the one that wrote the original code to bully, the only part i have worked on was integrating pixiewps.
    The part of the bully code i worked on never makes it past M3, and was solely for the purpose of adding
    support for pixiepws so the PIN tried is essentially inconsequential.

  9. #29
    Senior Member
    Join Date
    Jan 2016
    Posts
    100
    root@kali:~# apt-get -y install build-essential libpcap-dev libssl-dev
    Lettura elenco dei pacchetti... Fatto
    Generazione albero delle dipendenze
    Lettura informazioni sullo stato... Fatto
    E: Impossibile trovare il pacchetto libpcap-dev (impossible to find the package)

  10. #30
    Senior Member
    Join Date
    Sep 2013
    Posts
    262
    @ bob79
    You have to edit your repositories list.
    Check on the forum and in the documentation, you will easily find explanations about how to do it.
    Last edited by kcdtv; 2016-01-15 at 01:52 PM.

Posting Permissions

  • You may not post new threads
  • You may not post replies
  • You may not post attachments
  • You may not edit your posts
  •