Wireless penetration testing
Wireless penetration testing methodology is no different from the wired world one. The differences lie in the actual techniques used to conduct activities in various phases. Those with some experience in wired world penetration testing will feel right at home. For those who haven't, don't worry; you will pick this up very fast!
Broadly, we can break up a wireless penetration testing exercise into the following phases:
Planning phase
Discovery phase
Attack phase
Reporting phase
We will now look at each of these phases separately.
Planning
In this phase, we understand the following:
Scope of the assessment: The client employing the penetration tester will be the one to define the scope of the assessment. Typically, the following information is gathered:
Location of the penetration test
Total coverage area of the premises
Approximate number of access point and wireless clients deployed
Which wireless networks are included in the assessment?
Should a full proof of concept for...