Working with bettercap
bettercap is one of the tools that attackers could utilize to better perform a Wi-Fi handshake capture attack within a few minutes. The tool is prepacked with the Wi-Fi hacking modules that can be very handy during a red team exercise or pentest. The following steps are involved to successfully capture a WPA2 handshake:
- Ensure the wireless device is on the monitoring mode by running
sudo airmon-ng start wlan0
. - Run bettercap with the relevant interface from the terminal by entering
sudo bettercap --iface wlan0mon
. - Type
wifi.recon on
in the bettercap terminal as shown in Figure 6.18:Figure 6.18: bettercap performing wireless network reconnaissance
If you get error messages reading
error while setting interface wlan0mon
when runningwifi.recon on
in bettercap, ensure you have the older version of libpcap installed. You can download it usingwget http://old.kali.org/kali/pool/main/libp/libpcap/libpcap0.8_1.9.1-4_amd64...