{"id":453,"date":"2024-01-16T14:41:56","date_gmt":"2024-01-16T14:41:56","guid":{"rendered":"https:\/\/prportfolio.paoloronco.it\/?p=453"},"modified":"2024-01-16T14:41:56","modified_gmt":"2024-01-16T14:41:56","slug":"evil-twin-e-captive-portal-minacce-nascoste-nelle-reti-wi-fi","status":"publish","type":"post","link":"https:\/\/paoloronco.it\/en\/evil-twin-e-captive-portal-minacce-nascoste-nelle-reti-wi-fi\/","title":{"rendered":"Evil Twin and Captive Portal: Threats Hidden in Wi-Fi Networks"},"content":{"rendered":"<p class=\"wp-block-paragraph\">In today\u2019s increasingly digital environment, Wi-Fi network security is critical to protecting sensitive data and ensuring reliable connections. In this article, we will explore a dangerous attack known as \u201cEvil Twin\u201d using a \u201cCaptive Portal\u201d. We will compare this threat with the previous approach I presented using AirMon-NG and Hashcat to test Wi-Fi network security.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">What is the Evil Twin?<br>The Evil Twin attack is an insidious tactic used by attackers to deceive users&#039; devices. In practice, an attacker creates a fake Wi-Fi network with the same name (SSID) as a legitimate network that the user&#039;s device is previously connected to. The goal is to deauthenticate the user&#039;s device from the legitimate network and connect to the Evil Twin network controlled by the attacker.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">Using the Evil Twin in Public and Private Places:<br>This type of attack is often used in public places such as airports, coffee shops or hotels, where people automatically connect to available Wi-Fi networks. Attackers can then intercept data passing through the compromised Wi-Fi network, putting users&#039; privacy at risk.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">In the private sector, the Evil Twin can be used in combination with a \u201cCaptive Portal\u201d. A captive portal is a web page that requires the user to enter credentials or accept terms and conditions before granting access to the Wi-Fi network. Often, attackers will ask for the router password or even more sensitive credentials such as email, social media or banking accounts.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">Captive Portal with Beef:<br>To implement a Captive Portal, attackers can use tools like Beef, one of many options available. With a properly configured Captive Portal, it is possible to gain access to sensitive user information and even steal user credentials.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">A Danger Beyond Wi-Fi Networks:<br>Evil Twin and Captive Portal are not limited to threats to Wi-Fi networks. They can also be used in spam email attacks and to intercept online communications, posing a significant threat to privacy and information security.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">Differences with the Previous Approach:<br>Unlike the previous approach that used AirMon-NG and Hashcat to test Wi-Fi passwords, Evil Twin and Captive Portal represent a more sophisticated and dangerous threat. While the former focused on cracking Wi-Fi passwords, the latter involves social engineering and stealing sensitive data.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">In conclusion, the Evil Twin and Captive Portal highlight the importance of securing Wi-Fi networks and being cautious on public networks. Network security is essential for protecting personal data and preventing potential attacks. Staying informed about these threats is the first step to mitigating risks and ensuring a safe Internet connection.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\"><strong>All articles on this site are written with OpenAI ChatGPT AI.<br>This is an advanced language model that helped generate the site&#039;s content, ensuring quality and consistency in the language.<\/strong><\/p>","protected":false},"excerpt":{"rendered":"<p>Nel contesto sempre pi\u00f9 digitale di oggi, la sicurezza delle reti Wi-Fi \u00e8 fondamentale per proteggere dati sensibili e garantire connessioni affidabili. In questo articolo, esploreremo un pericoloso attacco noto come &#8220;Evil Twin&#8221; con l&#8217;uso di un &#8220;Captive Portal&#8221;. Confronteremo questa minaccia con l&#8217;approccio precedente che ho presentato utilizzando AirMon-NG e Hashcat per testare la &hellip; <a href=\"https:\/\/paoloronco.it\/en\/evil-twin-e-captive-portal-minacce-nascoste-nelle-reti-wi-fi\/\" class=\"more-link\">Continue reading<span class=\"screen-reader-text\"> &#8220;Evil Twin e Captive Portal: Minacce Nascoste nelle Reti Wi-Fi&#8221;<\/span><\/a><\/p>","protected":false},"author":1,"featured_media":0,"comment_status":"closed","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[12],"tags":[],"class_list":["post-453","post","type-post","status-publish","format-standard","hentry","category-kali-linux-linux"],"_links":{"self":[{"href":"https:\/\/paoloronco.it\/en\/wp-json\/wp\/v2\/posts\/453","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/paoloronco.it\/en\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/paoloronco.it\/en\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/paoloronco.it\/en\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/paoloronco.it\/en\/wp-json\/wp\/v2\/comments?post=453"}],"version-history":[{"count":0,"href":"https:\/\/paoloronco.it\/en\/wp-json\/wp\/v2\/posts\/453\/revisions"}],"wp:attachment":[{"href":"https:\/\/paoloronco.it\/en\/wp-json\/wp\/v2\/media?parent=453"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/paoloronco.it\/en\/wp-json\/wp\/v2\/categories?post=453"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/paoloronco.it\/en\/wp-json\/wp\/v2\/tags?post=453"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}