Wifiphisher
The Rogue Access Point Framework.
Overview
Wifiphisher is a specialized tool focused on social engineering attacks against Wi-Fi users. It creates a rogue access point (Evil Twin) and forces nearby users to disconnect from their legitimate access point. It then presents the victims with a convincing phishing page, often mimicking a router configuration or social media login, to capture their Wi-Fi passphrase or other credentials.
✨ Key Features
- Automated Evil Twin and deauthentication attacks
- Variety of phishing scenarios and templates
- Captures WPA/WPA2 passphrases, and third-party credentials (e.g., Facebook)
- Minimal configuration required
- Extensible with community-created phishing templates
🎯 Key Differentiators
- Highly focused on the phishing/social engineering aspect of wireless attacks
- Easy to set up and deploy with realistic phishing templates
- Strong emphasis on automation of the entire phishing process
Unique Value: Provides a fast, easy, and effective way to test an organization's susceptibility to Wi-Fi based social engineering attacks.
🎯 Use Cases (3)
✅ Best For
- Successfully capturing a WPA passphrase by tricking a user with a fake 'Firmware Upgrade' page.
💡 Check With Vendor
Verify these considerations match your specific requirements:
- Cracking passwords via brute-force or dictionary attacks
- General wireless network scanning and analysis
🏆 Alternatives
More specialized and easier to use for pure phishing attacks than broader frameworks like Airgeddon or Metasploit, which have similar but less focused capabilities.
💻 Platforms
✅ Offline Mode Available
💰 Pricing
Free tier: Full functionality, open-source.
🔄 Similar Tools in Wireless Security Testing
Aircrack-ng
An open-source command-line tool for Wi-Fi network security auditing and penetration testing....
Wireshark
A powerful, open-source network protocol analyzer used for troubleshooting, analysis, and security a...
Kismet
An open-source tool for detecting wireless networks, sniffing traffic, and identifying potential thr...
Metasploit Framework
An open-source platform for developing, testing, and executing exploit code against remote targets....
Wifite
A Python script that automates the process of attacking WEP, WPA, and WPS encrypted networks....
Reaver
An open-source tool that exploits a vulnerability in WPS to recover WPA/WPA2 passphrases....