Menu

Database

AirJack

WVE ID: WVE-2005-0018

Type: Exploit

Status: Candidate

Classification:
Authentication Management
Denial of Service
Design Flaw

Description:
AirJack is a suite of tools and a special driver for exploiting inherrent vulnerabilities in 802.11 networks.

Discussion:
The AirJack package consists of a Linux device special driver that can be used to allow the simultaneous reception and injection of raw 802.11 frames. The driver works with PRISM2 and Hermes based cards.

The tools provided with the driver illustrate the inherent problems with 802.11 centered around the lack of management frame authentication.

These tools include:

* essid_jack: Actively reveals SSID of networks with SSID turned off in beacons by deauthinticating clients and observing their probe requests during reconnection
* kracker_jack: Performs MiTM attacks between a wireless station and a WAVEsec VPN server
* monkey_jack: Performs MiTM attacks on wireless stations
* wlan_jack: Performs spoofed Deauthentication frame DoS attacks on whole networks or individual associated stations.

In addition, binaries for setting the wireless interface's channel and MAC address are also included.

NOTE: Newer releases of AirJack do not include kracker_jack, monkey_jack, or wlan_jack.

Credits
Author: Michael Lynn (abaddon@802.11ninja.net) : None

References
URL: http://sourceforge.net/projects/airjack/
URL: http://www.blackhat.com/presentations/bh-usa-02/baird-lynn/bh-us-02-lynn-802.11attack.ppt
WVE: WVE-2005-0019
WVE: WVE-2005-0045

Released: 2002-08-01

Submitter
Andrew Lockhart (alockhart@networkchemistry.com) : Network Chemistry

Submitted: Mon Oct 24 16:35:15 -0700 2005

Candidate Date: Mon Oct 24 16:35:41 -0700 2005


Recent Entries

TKIP Replay and Plaintext Discovery
WVE-2008-0013 11/18/2008

Active Https Cookie Hijacking
WVE-2008-0012 9/18/2008

Auto Immune Attack
WVE-2008-0011 9/17/2008

Marvell Null SSID Association Request
WVE-2008-0010 9/15/2008

Marvell EAPOL-Key Length Overflow
WVE-2008-0009 9/15/2008

Atheros IE Tag Overflow
WVE-2008-0008 9/15/2008

Weaknesses in the A5/1 Cipher
WVE-2008-0007 4/9/2008

Block ACK DoS
WVE-2008-0006 4/9/2008

GF Mode WIDS Rogue AP Evasion
WVE-2008-0005 4/9/2008

HT Intolerant Degradation of Service
WVE-2008-0004 4/9/2008

More Entries...

News

SANS Institute Sponsors WVE
4/19/2008

Wireless Attackers and Honeypot Technology
4/15/2008

High Speed Risks in 802.11n Slides Posted
4/11/2008

Vulnerabilities in 802.11n
4/9/2008

WVE Editors Speaking at SHARKFEST.08
1/3/2008

More News...