指定無線網(wǎng)卡監(jiān)聽信道
當(dāng)用戶實施無線網(wǎng)絡(luò)滲透測試時,通常需要將無線網(wǎng)卡設(shè)置為監(jiān)聽模式。大學(xué)霸IT達人默認情況下,無線網(wǎng)卡在監(jiān)聽數(shù)據(jù)包時,會不停的跳頻。這樣,當(dāng)用戶在捕獲數(shù)據(jù)包時,可能導(dǎo)致監(jiān)聽漏掉重要的數(shù)據(jù)包,如握手包。另外,在攻擊無線網(wǎng)絡(luò)時,由于監(jiān)聽的信道與AP不在同一信道,也可能導(dǎo)致無法攻擊成功。此時,用戶可以先通過掃描無線網(wǎng)絡(luò)來確定AP工作的信道。然后,指定無線網(wǎng)卡監(jiān)聽的信道。其中,指定無線網(wǎng)卡監(jiān)聽信道的語法格式如下所示:
airmon-ng start
例如,指定無線網(wǎng)卡監(jiān)聽信道1。執(zhí)行命令如下所示:
airmon-ng start wlan0 1
Found 2 processes that could cause trouble.
Kill them using 'airmon-ng check kill' before putting
the card in monitor mode, they will interfere by changing channels
and sometimes putting the interface back in managed mode
PID Name
15544 wpa_supplicant
15579 NetworkManager
PHY Interface Driver Chipset
phy0 wlan0 rt2800usb Ralink Technology, Corp. RT5370
(mac80211 monitor mode vif enabled for [phy0]wlan0 on [phy0]wlan0mon)
(mac80211 station mode vif disabled for [phy0]wlan0)