Menu

Database

asleap

WVE ID: WVE-2005-0027

Type: Exploit

Status: Candidate

Classification:
Authentication Management
Cryptographic
Design Flaw

Description:
Asleap is a tool used to perform dictionary attacks against a network using Cisco's LEAP as an authentication mechanism.

Discussion:
Asleap exploits problems in Cisco's proprietary LEAP protocol to greatly increase the efficiency of a dictionary attack against networks utilizing it as an authentication mechanism. The LEAP protocol uses a variation of the MS-CHAPv2 protocol, which has several well-known problems.

Asleap includes a tool, called 'genkeys,' for generating an NT password hash database and index from a dictionary file. To perform the actual dictionary attack, the asleap program is used. This program can either read LEAP exchanges from a packet capture file or live traffic from a network interface.

When run on a live interface, asleap will look for LEAP exchanges to perform the dictionary attack. When using AirJack drivers asleap also supports deauthenticating clients in order to observe the LEAP exchange when the client re-connects.

Credits
Author: Joshua Wright (jwright@hasborg.com) : None

References
URL: http://asleap.sourceforge.net/
CVE: http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2003-1096

Released: 2004-04-08

Submitter
Andrew Lockhart (alockhart@networkchemistry.com) : Network Chemistry

Submitted: Tue Nov 01 15:48:35 -0800 2005

Candidate Date: Tue Nov 01 15:49:17 -0800 2005


Recent Entries

TKIP Replay and Plaintext Discovery
WVE-2008-0013 11/18/2008

Active Https Cookie Hijacking
WVE-2008-0012 9/18/2008

Auto Immune Attack
WVE-2008-0011 9/17/2008

Marvell Null SSID Association Request
WVE-2008-0010 9/15/2008

Marvell EAPOL-Key Length Overflow
WVE-2008-0009 9/15/2008

Atheros IE Tag Overflow
WVE-2008-0008 9/15/2008

Weaknesses in the A5/1 Cipher
WVE-2008-0007 4/9/2008

Block ACK DoS
WVE-2008-0006 4/9/2008

GF Mode WIDS Rogue AP Evasion
WVE-2008-0005 4/9/2008

HT Intolerant Degradation of Service
WVE-2008-0004 4/9/2008

More Entries...

News

SANS Institute Sponsors WVE
4/19/2008

Wireless Attackers and Honeypot Technology
4/15/2008

High Speed Risks in 802.11n Slides Posted
4/11/2008

Vulnerabilities in 802.11n
4/9/2008

WVE Editors Speaking at SHARKFEST.08
1/3/2008

More News...