Remote Exploit Forums

Go Back   Remote Exploit Forums > Specialist Topics > Wireless


Wireless Specific topics related to the attack & defense of wireless systems

Reply
 
LinkBack Thread Tools Display Modes
  #1 (permalink)  
Old 01-14-2009, 07:55 AM
etech9's Avatar
Member
 
Join Date: Aug 2008
Location: england, UK
Posts: 48
Default default WPA keys!!!

ok i was hoping to start a long thread asking people to supply us with their details of routers with default WPA keys.

so we know that the SKY v1 netgear has been cracked
&
these guys have got quite far with tiscali and speedtouch
hxxp://forums.remote-exploit.org/showthread.php?t=15965&highlight=default+wpa+key

so this is a request for your;

MAC address
ESSID
serial no.
'default' WPA key

maybe someone can figure something out.

using this MAC address prefix list, helps to know the vendor of the router.
hxxp://standards.ieee.org/regauth/oui/oui.txt

ex. ESSID:OrangeAB12C3 MAC:00:01:E3:EE:76:B3 = siemens router
(i went to the 'orange' website to find out that siemens routers are supplied by Orange in their starter packs, if this helps anyway)

i would really like to know more on;
OrangeAB12C3
Livebox-1A23
BTHomeHub2
SKY v2 netgear
SKY sagem


i suppose all i know of is;

SKY12345 v1 netgear - WPA KEY= 8 char uppercase A-Z

help is much appreciated! thanks
__________________
BIG BROTHER IS WATCHING YOU!!!
Reply With Quote
  #2 (permalink)  
Old 01-17-2009, 02:19 PM
etech9's Avatar
Member
 
Join Date: Aug 2008
Location: england, UK
Posts: 48
Default

237 views at the time of this post! and not 1 donation.

mac address
serial number
essid
default WPA key
__________________
BIG BROTHER IS WATCHING YOU!!!
Reply With Quote
  #3 (permalink)  
Old 01-17-2009, 04:34 PM
Talkie Toaster's Avatar
Senior Member
 
Join Date: Jun 2008
Location: Scotland - Iron brew land!
Posts: 127
Default

I can help with some of those, give me a couple of days though.... just bricked my lilo with a windows install, not got round to fixing it and most of my notes are on my BT3 partition.....

Or try googling GNU Citizen, Adrian Pastor (Pagvag/k????, he's maybe a member here actually) who writes for them has studied many domestic routers available here in the UK.

TT
__________________
Programming today is a race between software engineers striving to build bigger and better idiot-proof programs, and the Universe trying to produce bigger and better idiots. So far, the Universe is winning.
Reply With Quote
  #4 (permalink)  
Old 01-17-2009, 06:39 PM
etech9's Avatar
Member
 
Join Date: Aug 2008
Location: england, UK
Posts: 48
Default

hahahaha. you gotta luv gates and windows eh!
__________________
BIG BROTHER IS WATCHING YOU!!!
Reply With Quote
  #5 (permalink)  
Old 01-17-2009, 08:55 PM
Talkie Toaster's Avatar
Senior Member
 
Join Date: Jun 2008
Location: Scotland - Iron brew land!
Posts: 127
Default

Worst thing is I can't complain, its the first MS product I've actually REALLY liked (and it was free,double bonus), i think i've even forgiven it for blitzing my bootloader!

Ah well its time i re-learnt lilo anyway, its just worked first time every time so far, i kinda knew one day it'd all go wrong.....

I think i've donated in a few threads about home routers and also custom wordlists for reduced character sets (ie:routers that only have [a-f,0-9] or all capital letters in default pass), have a search through my previous posts and you might come across some good threads.

TT
__________________
Programming today is a race between software engineers striving to build bigger and better idiot-proof programs, and the Universe trying to produce bigger and better idiots. So far, the Universe is winning.
Reply With Quote
  #6 (permalink)  
Old 01-18-2009, 04:19 AM
Lammer's Avatar
Junior Member
 
Join Date: Nov 2008
Location: Right here
Posts: 11
Default

Hi.
Here in Portugal allmost all ISPs "borow" Thomson, D'Link and N2Wire.
Do you want the std info at this ones?
Reggards
Reply With Quote
  #7 (permalink)  
Old 01-19-2009, 01:45 PM
Senior Member
 
Join Date: Nov 2007
Posts: 122
Default Tiscalli

Tiscalli use WPA2 as default.

When i next visit the oldies ill have a peek at their router for ya.

The router is a black gigabyte thing - dont know what its guts is as i didnt pay much attention when i set it up.

I know that AOL are still sending out Netgear routers with no preset security though.

AND

Livebox will only allow connections if you push a button on the side of the router to accept the device [even if the network is open you still need to push the button]
Reply With Quote
  #8 (permalink)  
Old 01-19-2009, 03:05 PM
Barry's Avatar
Senior Member
 
Join Date: Feb 2006
Location: Right behind you. Using you as a shield.
Posts: 3,311
Default

You know one of the links in BackTrack's Firefox goes to a web site with all this info already in it.
Reply With Quote
  #9 (permalink)  
Old 01-19-2009, 03:23 PM
=Tron='s Avatar
Senior Member
 
Join Date: Apr 2008
Location: The land of a thousand lakes
Posts: 2,035
Default

Quote:
Originally Posted by mummysboy View Post
Livebox will only allow connections if you push a button on the side of the router to accept the device [even if the network is open you still need to push the button]
I guess this is something you only need to do when you connect to the device the first time? In that case it probably only remembers to allow the MAC address of the specific device, which means a simple spoofed MAC will bypass this protection.
__________________
-Monkeys are like nature's humans.
Reply With Quote
  #10 (permalink)  
Old 01-21-2009, 04:01 AM
Senior Member
 
Join Date: Jun 2008
Location: Chester, UK
Posts: 130
Default

True about the Livebox unless 'Easy Pairing' is switched on in the router. There are Inventel USB adapters that apparently bypasses this and connect without Easy Pairing or pressing the button. I have had one and it isn't the case in my experience.

Also, on the Livebox, depending on the firmware. It use a mixed-mode of WEP Open and Shared Key with is a pain to break. I managed it on mine but it was long winded and have forgotten howto do it and deleted the cap files. Think you have to capture the handshake then forge an ARP and fake MAC to reply the ARP.

=Tron= - Nope, you have to do it all the time unless Easy Pairing is enabled.

Last edited by marked; 01-21-2009 at 04:06 AM.
Reply With Quote
Reply

Bookmarks

Thread Tools
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Trackbacks are On
Pingbacks are On
Refbacks are On



All times are GMT. The time now is 01:39 AM.


Powered by vBulletin® Version 3.8.4
Copyright ©2000 - 2010, Jelsoft Enterprises Ltd.
Search Engine Optimization by vBSEO 3.3.2