iw命令
查看无线网卡信息
iw list
iwlist命令
按照iwlist 接口名称 命令方式使用
┌──(gillbert㉿kali)-[~]
└─$ iwlist
Usage: iwlist [interface] scanning [essid NNN] [last]
[interface] frequency
[interface] channel
[interface] bitrate
[interface] rate
[interface] encryption
[interface] keys
[interface] power
[interface] txpower
[interface] retry
[interface] ap
[interface] accesspoints
[interface] peers
[interface] event
[interface] auth
[interface] wpakeys
[interface] genie
[interface] modulation
查看网卡支持的信道频率。
┌──(gillbert㉿kali)-[~]
└─$ iwlist wlan0 frequency
wlan0 14 channels in total; available frequencies :
Channel 01 : 2.412 GHz
Channel 02 : 2.417 GHz
Channel 03 : 2.422 GHz
Channel 04 : 2.427 GHz
Channel 05 : 2.432 GHz
Channel 06 : 2.437 GHz
Channel 07 : 2.442 GHz
Channel 08 : 2.447 GHz
Channel 09 : 2.452 GHz
Channel 10 : 2.457 GHz
Channel 11 : 2.462 GHz
Channel 12 : 2.467 GHz
Channel 13 : 2.472 GHz
Channel 14 : 2.484 GHz
扫描附近AP
┌──(root㉿kali)-[/home/gillbert]
└─# iw dev wlan0 scan | grep SSID
SSID: Xiaomi_EEDF
SSID: ChinaNet-FCHt
SSID: \xe5\x93\x88\xe5\x96\xbd\xe6\x97\xa9\xe4\xb8\x8a\xe5\xa5\xbd
┌──(root㉿kali)-[/home/gillbert]
└─# iwlist wlan0 scanning | egrep "ESSID|Channel"
Channel:1
Frequency:2.412 GHz (Channel 1)
ESSID:"Xiaomi_EEDF"
Channel:11
Frequency:2.462 GHz (Channel 11)
ESSID:"ChinaNet-FCHt"
添加监听端口
网卡默认是managed模式,我们添加一个monitor模式的类型接口,这样我们就可以使用无线网卡进行无线数据包的侦听。
iw dev wlan0 interface add wlan0mon type monitor
查看接口列表,可以看到多了一个wlan0mon
┌──(root㉿kali)-[/home/gillbert]
└─# iwconfig
lo no wireless extensions.
eth0 no wireless extensions.
wlan0 IEEE 802.11 ESSID:off/any
Mode:Managed Access Point: Not-Associated Tx-Power=20 dBm
Retry short long limit:2 RTS thr:off Fragment thr:off
Encryption key:off
Power Management:off
wlan0mon IEEE 802.11 Mode:Monitor Tx-Power=20 dBm
Retry short long limit:2 RTS thr:off Fragment thr:off
Power Management:off
删除monitor模式的接口
iw dev wlan0mon interface del
抓包
首先我们先把网卡置于up状态
ifconfig wlan0mon up
然后使用wireshark选择该网卡就可以进行抓包了