CIP Cyber

Wireless Auditing, Intrusion Detection & Prevention System

Table of Contents

WAIDPS is an open source
wireless swissknife written in Python and work on Linux environment. This is a
multipurpose tools designed for audit (penetration testing) networks, detect
wireless intrusion (WEP/WPA/WPS attacks) and also intrusion prevention
(stopping station from associating to access point). Apart from these, it will
harvest all WiFi information in the surrounding and store in databases. This
will be useful when it comes to auditing a network if the access point is ‘MAC
filtered’ or ‘hidden SSID’ and there isn’t any existing client at that moment.

 

WAIDS may be useful to
penetration testers, wireless trainers, law enforcement agencies and those who
is interested to know more about wireless auditing and protection. The
primarily purpose for this script is to detect intrusion. Once wireless detect
is found, it display on screen and also log to file on the attack. Additional
features are added to current script where previous WIDS does not have are :



·        
automatically
save the attack packets into a file



·        
interactive mode
where users are allow to perform many functions



·        
allow user to
analyse captured packets



·        
load previously
saved pcap file or any other pcap file to be examine



·        
customizing
filters



·        
customize
detection threshold (sensitivity of IDS in detection)







  
At present, WAIDS is able to
detect the following wireless attacks and will subsequently add other detection
found in the previous WIDS.



·        
Association /
Authentication flooding



·        
Detect mass
deauthentication which may indicate a possible WPA attack for handshake



·        
Detect possible
WEP attack using the ARP request replay method



·        
Detect possible
WEP attack using chopchop method



·        
Detect possible
WPS pin bruteforce attack by Reaver, Bully, etc.



·        
Detection of
Evil-Twin



·        
Detection of
Rogue Access Point






The whole structure of the
Wireless Auditing, Intrusion Detection & Prevention System will comprise of



Harvesting WiFi Information         [Done]



Intrusion Detection                         [Partially Done]



Intrusion Prevention                       [Partially Done]



Auditing (Testing network)            [Coming Soon]

Other additional item
include analyzing of packets, display of captured dump, display network
barchart and much more.

Tutorial & Source
Download

CIP Cyber Staff

CIP Cyber Staff

CIP Cyber Staff comprises CIP cybersecurity experts committed to delivering comprehensive information on critical infrastructure protection. The content covers diverse topics, equipping professionals to defend organizations and communities in an ever-evolving cyber landscape.

Most popular

Industrial Cybersecurity

Want always be up to date?

Don't miss the latest news

By subscribing to our mailing list, you will be enrolled to receive our new trainings, latest blog posts, product news, and more.

CIP Training & Certifications

Transform your cybersecurity skills with CIP Cyber’s comprehensive training & course offerings

Related Articles

Needle: Security Testing Framework for iOS

Needle is an open source modular framework maintained by MWR InfoSecurity which aims to restructure the entire practice of conducting security assessments of iOS applications.

Want always be up to date?

Don't miss the latest news

By subscribing to our mailing list, you will be enrolled to receive our new trainings, latest blog posts, product news, and more.

CIP Training & Certifications

Transform your cybersecurity skills with CIP Cyber’s comprehensive training & course offerings