Wi-Fi Handshake: analysis of password patterns in Wi-Fi networks

Author:

Carballal Adrian1ORCID,Galego-Carro J. Pablo2,Rodriguez-Fernandez Nereida3,Fernandez-Lozano Carlos1ORCID

Affiliation:

1. Department of Computer Science and Information Technologies, Faculty of Computer Science, CITIC-Research Center of Information and Communication Technologies, Universidade da Coruña, A Coruña, A Coruña, Spain

2. Computer Architecture Group, Faculty of Computer Science, Universidade da Coruña, A Coruña, Spain

3. Department of Computer Science and Information Technologies, Faculty of Communication Science, CITIC-Research Center of Information and Communication Technologies, Universidade da Coruña, A Coruña, Spain

Abstract

This article seeks to provide a snapshot of the security of Wi-Fi access points in the metropolitan area of A Coruña. First, we discuss the options for obtaining a tool that allows the collection and storage of auditable information from Wi-Fi networks, from location to signal strength, security protocol or the list of connected clients. Subsequently, an analysis is carried out aimed at identifying password patterns in Wi-Fi networks with WEP, WPA and WPA2 security protocols. For this purpose, a password recovery tool called Hashcat was used to execute dictionary or brute force attacks, among others, with various word collections. The coverage of the access points in which passwords were decrypted is displayed on a heat map that represents various levels of signal quality depending on the signal strength. From the handshakes obtained, and by means of brute force, we will try to crack as many passwords as possible in order to create a targeted and contextualized dictionary both by geographical location and by the nature of the owner of the access point. Finally, we will propose a contextualized grammar that minimizes the size of the dictionary with respect to the most used ones and unifies the decryption capacity of the combination of all of them.

Funder

General Directorate of Culture, Education and University Management of Xunta de Galicia

Galician Network for Colorectal Cancer Research

Competitive Reference Groups

Spanish Ministry of Economy and Competitiveness via funding of the unique installation BIOCAI

European Regional Development Funds

Publisher

PeerJ

Subject

General Computer Science

Reference43 articles.

1. Users are not the enemy;Adams;Communications of the ACM,1999

2. Infographic 20 years of Wi-Fi;Alliance,2019

3. Practical attacks against WEP and WPA;Beck;IACR Cryptology ePrint Archive,2008

4. The science of guessing: analyzing an anonymized corpus of 70 million passwords;Bonneau,2012

5. User behaviours associated with password security and management;Bryant;Australasian Journal of Information Systems,2006

同舟云学术

1.学者识别学者识别

2.学术分析学术分析

3.人才评估人才评估

"同舟云学术"是以全球学者为主线,采集、加工和组织学术论文而形成的新型学术文献查询和分析系统,可以对全球学者进行文献检索和人才价值评估。用户可以通过关注某些学科领域的顶尖人物而持续追踪该领域的学科进展和研究前沿。经过近期的数据扩容,当前同舟云学术共收录了国内外主流学术期刊6万余种,收集的期刊论文及会议论文总量共计约1.5亿篇,并以每天添加12000余篇中外论文的速度递增。我们也可以为用户提供个性化、定制化的学者数据。欢迎来电咨询!咨询电话:010-8811{复制后删除}0370

www.globalauthorid.com

TOP

Copyright © 2019-2024 北京同舟云网络信息技术有限公司
京公网安备11010802033243号  京ICP备18003416号-3