Skip to main content

Overview

eaphammer automates evil twin attacks against WPA Enterprise networks. It handles certificate generation, rogue AP setup, and credential capture. Also supports open network attacks via captive portals and hostile portals for NTLMv2 hash capture.

Install


Usage


Common Flags


Generate Certificate

Import existing CA and server cert (for cloned cert attack):

WPA Enterprise Rogue AP

Captures MSCHAPv2 hashes from clients that don’t validate the server certificate:
Extract hashes from log:

Captive Portal Attack

Phishes credentials from clients connecting to an open network:

Hostile Portal Attack

Serves a hostile portal that triggers automatic Windows NTLM authentication:
Crack the captured NTLMv2 hash: