Re: Packet Capturing and Injecting- Wireless

From: Cedric Blancher (blancher@cartel-securite.fr)
Date: Fri Jul 06 2007 - 04:06:38 EDT


Le jeudi 05 juillet 2007 à 13:55 +0000, Mesut Timur a écrit :
> I have two wireless cards; one of them is Orinoco Gold; the other is
> SMC2532W-B
> Can I packet inject and capture at the same time with one of them; if it is
> possible which one is useful for this?

AFAIK, Orinoco Gold is Atheros based while SMC2532W-B is Prism2 based.
The first one use madwifi(-ng)[1] driver, the later hostap[2] driver.
Both of them can monitor and inject at the same time, provided driver is
patched accordingly[3].

Now, as you have both of them, it would be better to use one for
injection and the other for monitoring.

As for actually achieving monitoring and injection in your programs, you
can use LORCON library previously mentioned or libairware[4] by Johny
Cache which is great too. Or if you're C/C++ phobic like I am, you can
use Scapy[5] as a library for Python script, just like I did for
Wifitap[6]. You can have a look at my source code, as it uses sniffing
and injection at the same time and same adapter if needed to achieve
association-less communication over open networks, or WEP provided you
know/cracked the key.

Hope that helps.

[1] http://www.madwifi.org/
[2] http://hostap.epitest.fi/
[3] http://patches.aircrack-ng.org/
[4] http://www.802.11mercenary.net/libairware/
[5] http://www.secdev.org/projects/scapy/
[6] http://sid.rstack.org/index.php/Wifitap_EN

-- 
http://sid.rstack.org/
PGP KeyID: 157E98EE FingerPrint: FA62226DA9E72FA8AECAA240008B480E157E98EE
>> Hi! I'm your friendly neighbourhood signature virus.
>> Copy me to your signature file and help me spread!
------------------------------------------------------------------------
This List Sponsored by: Cenzic
Swap Out your SPI or Watchfire app sec solution for
Cenzic's robust, accurate risk assessment and management
solution FREE - limited Time Offer
http://www.cenzic.com/wf-spi
------------------------------------------------------------------------


This archive was generated by hypermail 2.1.7 : Sat Apr 12 2008 - 10:57:55 EDT