Initial commit - 611 cybersecurity skills across all subdomains

This commit is contained in:
mukul975
2026-02-25 10:47:44 +01:00
commit 22a7ab1462
1765 changed files with 280648 additions and 0 deletions
@@ -0,0 +1,26 @@
# Standards — Wireless Penetration Testing
## Standards
- IEEE 802.11: Wireless LAN standard
- WPA3 (WiFi Protected Access 3): Latest security protocol using SAE
- NIST SP 800-153: Guidelines for Securing Wireless Local Area Networks
- PCI DSS v4.0 Req 11.2: Wireless access point detection
## Wireless Encryption Comparison
| Protocol | Key Management | Crackable | Notes |
|----------|---------------|-----------|-------|
| WEP | Static IV | Trivially | Deprecated, never use |
| WPA-TKIP | PSK/Enterprise | Possible | Legacy, avoid |
| WPA2-PSK | PBKDF2/CCMP | Dictionary attacks | Requires strong passphrase |
| WPA2-Enterprise | 802.1X/RADIUS | Certificate attacks | Recommended with cert pinning |
| WPA3-SAE | Dragonfly handshake | Resistant | Best current option |
## Tools
| Tool | Purpose |
|------|---------|
| Aircrack-ng | Full wireless testing suite |
| Kismet | Wireless IDS and scanner |
| Bettercap | Network attack framework |
| Wifite | Automated WiFi attack tool |
| hcxdumptool | PMKID capture |
| Reaver | WPS PIN bruteforce |
@@ -0,0 +1,31 @@
# Workflows — Wireless Penetration Testing
## Attack Flow
```
Monitor Mode Activation
├── Passive Reconnaissance
│ ├── SSID/BSSID discovery
│ ├── Client enumeration
│ └── Channel mapping
├── WPA2-PSK Attacks
│ ├── Handshake capture (deauth + capture)
│ ├── PMKID attack (clientless)
│ └── Offline cracking (Hashcat/Aircrack)
├── WPA2-Enterprise Attacks
│ ├── Rogue AP (hostapd-mana)
│ ├── EAP credential capture
│ └── MSCHAP hash cracking
├── Evil Twin / Captive Portal
│ ├── Clone SSID
│ ├── Deauth real AP
│ └── Credential harvest
└── Segmentation Testing
├── Client isolation
├── VLAN traversal
└── Corporate network reach
```