During a wireless penetration test, an attacker captures the four-way handshake of a WPA2-PSK network and attempts to crack the passphrase offline. Which attack is the attacker likely using?
Trap 1: WPS PIN attack
WPS PIN attack targets the WPS feature, not the four-way handshake.
Trap 2: KRACK attack
KRACK exploits the handshake to decrypt traffic, not for offline cracking.
Trap 3: PMKID attack
PMKID allows offline cracking of the PSK using the PMKID from the beacon or probe response.
- A
WPS PIN attack
Why it fails: WPS PIN attack targets the WPS feature, not the four-way handshake.
- B
KRACK attack
Why it fails: KRACK exploits the handshake to decrypt traffic, not for offline cracking.
- C
Evil twin attack
Evil twin is a rogue AP that tricks users into connecting.
- D
PMKID attack
Why it fails: PMKID allows offline cracking of the PSK using the PMKID from the beacon or probe response.