2013-08-14

Your WPA Security and The Reaver Pro



The Reaver Pro and WPS

For Humans: Turn of WPS on your home router if it is configurable in your router, or buy one that does not use it. This article in wikipedia talks all about it, https://en.wikipedia.org/wiki/Wi-Fi_Protected_Setup

The Reaver Pro makes it automatic to exploit the WPS venurability that you can be 0wn3d in a few hours.  I does not matter if you put a 128 character password, or change it every 10 minutes.  Once the Reaver Pro figures out your WPS PIN, it's game over.

For PenTesters: Don't get all excited, it does not work on all routers.  I tried and already surveyed some.  So far, Netgear and Motorola routers responded to the Reaver and they were eventually 0wn3d.  Some routers have a threshold on how many request you can send before it starts ignoring the Reaver.  On average, the Reaver was running about 3-5 days. So, this is a long term process -  be patient.