As a future penetration tester or ethical hacker, you may be tasked with conducting extensive wireless security testing for your company or a client organization. Creating a rogue AP with an interesting SSID (wireless network name), such as VIP_WiFi or Company-name_VIP, will lure employees to establish a connection.
In creating a rogue AP, the objective is to capture user credentials and sensitive information and to detect any vulnerable wireless clients in an organization. The following are some tips to consider when deploying your rogue AP:
- Choose a suitable location to ensure there is maximum coverage for the potential victims.
- Deauthenticate clients from the real AP, causing them to create an association with the rogue AP.
- Create a captive portal to capture user credentials.
To get started, we are going to use Airgeddon. This tool contains a...