
Learn practical evil twin attacks with captive portals by setting up fake access points, cloning login pages, and using the social engineering toolkit, then detect and secure these threats.
Discover how an evil twin creates a fake wireless network mirroring the original SSID to capture traffic and credentials, and how captive portals clone login pages to harvest information.
Choose a wireless adapter for penetration testing by confirming monitor mode and packet injection support, identifying a compatible chipset from the listed options, and testing the injection.
Sniff and inject packets in a wireless network using a packet sniffer in monitoring mode, capture traffic to a file, then perform an authentication attack and analyze with Wireshark.
Set up a linux access point using dnsmasq and hostapd, configure the wireless interface, ip range, and gateway, then start the ap, with alternate method using airbase-ng from aircrack-ng.
Learn how to set up a captive portal on an access point, configure dnsmasq and hostapd, and deploy a login page to which clients are redirected.
Learn how to sniff login credentials from a captive portal by capturing packets with Wireshark, filtering for post requests, and viewing the username and password from the login form.
Demonstrates capturing user credentials with a php script in a captive portal, saving login data to a file, and testing via a victim device on a wifi network.
Explains how to create a fake captive portal and harvest login credentials via social engineering by cloning a legitimate login page and redirecting users to the spoofed portal.
Explore using the social engineering toolkit to harvest credentials through a captive portal, including web site attack vectors and a credential harvester on an evil twin access point.
Demonstrate using BeEF, the browser exploitation framework, with a captive portal to hook a target browser, inject a malicious JavaScript, and trigger an alert to verify control.
Learn to set up a fake access point with internet access by configuring a bridge interface, editing hostapd, and using deauthentication tools to simulate an evil twin with captive portal.
Learn to use Wireshark filters to inspect traffic from a victim connected to a fake access point, including DNS filters, frame contains keywords, and post requests with credentials.
Learn how to perform an evil twin attack using the airgeddon tool, capture a four-way handshake, and use a captive portal to obtain the wireless password.
Explore how captive portals are customized in WiFi phishing scenarios, including editing the portal interface and visuals to influence victims in evil twin attacks.
Explore how an enterprise wifi attack uses evil twin access points and captive portals to intercept user credentials and capture login information.
Examine how criminals use evil twin wifi and captive portals to harvest social media login credentials, demonstrating credential capture through a login prompt and network spoofing techniques.
Learn DNS spoofing with WiFi Pumpkin to redirect users to a fake site and inject BeEF via the phishing manager for browser exploitation.
Detect Wi-Fi attacks with Wireshark by capturing wireless traffic, filtering authentication frames, and checking MAC addresses to identify targeted devices.
Learn to protect a wireless network from evil twin attacks with evil ap defender, including scanning nearby networks, whitelisting your SSID, and detecting fake access points.
Protect your home network by using a guest wifi to create a separate access point and limit malware spread. Enable the guest network with a password and save the settings.
In this course I will show you how to create the most common and effective evil twin attacks using captive portals.
You'll learn how to perform evil twin attacks on targets using a wide variety of tools, and create a captive portal that effectively steals the login credentials.
All the attacks in this course are highly practical and straight to the point.
By the time you've completed this course, you will have the knowledge to create and customize your own evil twin attack for different scenarios.