Hacking Router Password Like A Pro

Most users nowadays purchase new routers and leave it to the default settings. BAD IDEA..!!.
Leaving your routers to default settings is bad because if it’s hacked (surely, sooner or later) by a malicious hacker, they would change your network settings so as to direct their traffic from your workstation while committing dirty deeds.Never mind the hackers, any Tom, Dick and Harry with a little computer processing power can get into your system easily.

In this post, we are going to discuss a brute forcing tool THC-Hydra, which can be used to crack router passwords.

 

thc-hydra

 

Requirements :-

  • Kali Linux ( If you don’t have it, install it from here.) 
Steps To Follow :-

If you’ve installed Kali Linux, you should now be fully loaded to continue :-
  • Open up a terminal window and type xhydra.
  • Enter 192.168.1.1 (Your Router Gateway, It could be different) as your target.
  • Use http-get as the method.
  • Define 80 in Port settings.
  • Select a password wordlist.(Don’t have one, download it from here.)
  • Click Start and the attack will begin.
The cracking time depends on the length and complexity of  the password used and also on the quality of wordlist.
Once cracked they can easily change your wifi passwords(no matter what encryption you use W.E.P., W.P.A., or W.P.A./2 with W.P.S.) or lock you out of your network, scary huh..!!
To prevent it from happening to you – use a password of more than 12 characters and don’t leave your router settings to default, change it to your preferences.
Enjoy..!!

2 Comments

  1. Seems like it would be only useful on your own network while connected to it..many routers block remote access by default…and when you pick a target you would need a way to get the remote address… sure if you are already on the network you could use this but that seems pointless..

    Reply
    • The tutorial is for LAN only that’s why i mentioned the gateway as 192.168.1.1 not the external ip but can be used on WAN too as there are still plenty of routers around that doesn’t block remote access.

      Reply

Leave a Comment.