air-hammer performs online brute force and password spraying against WPA Enterprise networks. It requires a known username (with domain prefix) and tests passwords one by one against the live AP.Used when a valid domain username is already known (from EAP identity capture or other recon) and the goal is to recover their password.
git clone https://github.com/Wh1t3Rh1n0/air-hammer.gitcd air-hammer# no requirements.txt — the only dependency is wpa_supplicantpip3 install wpa_supplicant