Skip to main content

Overview

air-hammer performs online brute force and password spraying against WPA Enterprise networks. It requires a known username (with domain prefix) and tests passwords one by one against the live AP. Used when a valid domain username is already known (from EAP identity capture or other recon) and the goal is to recover their password.

Install


Usage


Common Flags


Brute Force Known Username


Password Spray

Test one password across many usernames, useful to avoid lockouts: