Posted by:herakles
Subject:the way kismet extract hidden ssids
Date:10:58:21 08/11/2006

Hi everyone!

It seems to be quite easy to get the ssid of an AP, that hides his SSID. You deassociate an associated client, the client reassociates and you can sniff the SSID from the network, since it is send in clear text.

Sniffing while kismet starts up doesn't show anything like this. I haven't seen any packets containing the hidden SSID on an open network (no WEP, no WPA, just for fun an open entwork for testing purposes).

How the heck is kismet doing this. I tried reading the source, but my knowledge of c++ seems to be too bad in order to understand, what exactly it does...

Any answer would be nice. Thanks a lot in advance!


