DevilTwin-ESP8266 (evil-twin)
DevilTwin-ESP8266 (evil-twin)
An evil twin attack is a spoofing cyberattack that works by tricking users into connecting to a fake Wi-Fi access point that mimics a legitimate network. Once a user is connected to an “evil twin” network, hackers can access everything from their network traffic to private login credentials.
How to use:
1.Connect to the AP named "DevilTwin" with password "12345678" from your phone/PC.
2.Select the target you want (list of available APs refreshes every 30secs - page reload is required)
3.Click the Start Evil-Twin button and reconnect to the newly created AP named same as your target (will be open)
4.After connecting, make sure you choose "Use this network as is" (may differ on different devices)
5.Go to your favorite browser and navigate to 192.168.4.1/admin
6.Once there DO NOT change your target, only start/stop deauthing and wait for someone to try and use the correct password.
7.Once correct password is found, AP will be restarted with default ssid "DevilTwin" with password "12345678" and at the bottom of a table you should be able to see something like "Successfully got password for - SSID - Password
If you have any questions, feel free to post in the issues section