Distributed Wpa Psk Auditor -
Distributed WPA PSK Auditor: Scaling Wi-Fi Security Verification
- Scheduling and throttling (max attempts per AP per time window).
- Target authorization lists to prevent testing unauthorized external networks.
- Automatic stoppage on detection of client impact or network outages.
- Rate-limited active probing to avoid DoS.
4.2 The Ethical Problem of "Auditing" Neighbors
Further Resources
- Handshake Capture Management: It handles standard
.capfiles seamlessly, automatically cleaning and converting them as needed. - Attack Modes: Full support for Dictionary, Rule-based, and Mask attacks (brute-force) is present. The ability to distribute a complex rule-set across nodes without duplicating work is handled well.
- Protocol Support: While primarily focused on WPA/WPA2-PSK, support for PMKID attacks adds a modern layer of utility, allowing auditors to attack networks without capturing a full 4-way handshake.
WPA3
The most effective defense is to upgrade to with Simultaneous Authentication of Equals (SAE). WPA3-Personal replaces the four-way handshake with a Dragonfly key exchange, which is resistant to offline dictionary attacks. A distributed auditor aimed at WPA3 would need to conduct an online active attack (ratelimited by the AP), rendering distribution useless. Distributed Wpa Psk Auditor