2022-06-30 18:57:17 +00:00
# Official info
2022-07-09 05:19:30 +00:00
The Wifi devboard ships with [Blackmagic firmware ](https://github.com/flipperdevices/blackmagic-esp32-s2 ) installed. The Flipper documentation [is here ](https://docs.flipperzero.one/development/hardware/wifi-debugger-module ), and Blackmagic is [over here ](https://black-magic.org/ ).
2022-06-30 18:57:17 +00:00
2022-07-09 05:26:07 +00:00
Quick start: Connect to the SSID `blackmagic` using the password `iamwitcher` or plug the wifi devboard in via USB.
2022-07-13 07:49:51 +00:00
# ESP32 Wi-Fi Pentest Tool
2022-07-22 06:44:06 +00:00
Check out [Frog's write-up ](https://github.com/FroggMaster/ESP32-Wi-Fi-Penetration-Tool ) and build for quick and easy flashing! Seriously, it's basically just a double-click now thanks to some error checking and automation. ([You're welcome!](https://github.com/FroggMaster/ESP32-Wi-Fi-Penetration-Tool/compare/v1.0...v1.1)).
2022-07-13 07:49:51 +00:00
2022-06-28 00:52:43 +00:00
# Some quick steps to get [Marauder](https://github.com/justcallmekoko/ESP32Marauder) installed<br>
2022-06-28 15:02:46 +00:00
(Direct from the dev WillStunForFood on Discord - check out [his video walkthrough ](https://www.youtube.com/watch?v=_YLTpNo5xa0 ) too!):
2022-05-31 03:43:08 +00:00
- Plug the WiFi dev board directly into your PC
- Upload the MarauderOTA firmware from source via Arduino IDE
- Use the MarauderOTA firmware to flash the Marauder Flipper bin over WiFi
2022-05-31 03:43:36 +00:00
2022-05-31 03:44:54 +00:00
The first step in the wiki documentation [starts here ](https://github.com/justcallmekoko/ESP32Marauder/wiki/flipper-zerowhile ).< br >
2022-05-31 03:55:25 +00:00
(Then you should have the necessary links to the follow on documentation to get the firmware installed.)
ESP32-S2 is the correct board if you are installing on the Flipper WiFi Dev Board. < br >
If you are using the Marauder OTA method, you shouldn't have to install any libraries. < br >
The only other thing you should have to install is the boards for the ESP32 in the Arduino IDE and the drivers for the ESP32-S2.
2022-05-31 03:43:08 +00:00
2022-08-01 22:32:31 +00:00
Commands `channel` , `scanap` , `sniffbeacon` , `sniffdeauth` , `sniffpmkid` , `stopscan` , `clearap` , `ssid` , `update`
------------------------------------------------------------------------------
2022-08-01 22:29:09 +00:00
The `ssid` command is to edit the SSID list used for beacon attacks for when when you're running something like `attack -t beacon -l` < br >
You can also use something like `ssid -a -g 4` to randomly generate four SSIDs to the list. (Check it with `list -s` to see them!)< br >
To add an SSID by name, use `ssid -a -n YourSSID` and replace `YourSSID` with the SSID name you would like.< br >
Lastly, to remove an SSID from the list, use `list -s` then `ssid -r #` replacing # with the number from the list command.
2022-05-31 03:29:16 +00:00
2022-07-14 21:29:40 +00:00
------------------------------------------------------------------------------
2022-08-01 22:32:31 +00:00
To update the installed FW, you can use the `update -w` option, then follow along from [Step 8 in the install guide ](https://github.com/justcallmekoko/ESP32Marauder/wiki/installing-firmware-via-ota ).
------------------------------------------------------------------------------
2022-07-14 21:29:40 +00:00
Example Attack Profile ([from Discord](https://discord.com/channels/740930220399525928/967843558520418384/997185157175988264)):
Use command `scanap` stop with `stopscan` when done.
List all found Beacons from previous steps via `list -a`
Note the enumeration of your target Beacon...
Use `select -a x` command to select your target. (x being your target # from previous step)
Execute chosen attack `attack -t deauth`
Use `stopscan` when done.
-----------------------------------------------------------------------------------
2022-07-17 05:58:47 +00:00
Connecting to the devboard with a Mac ([from Discord](https://discord.com/channels/740930220399525928/967843558520418384/998043936977330276))
Open Terminal
Enter ls /dev/tty.*
You will be provided with several USB directories. Select one that has your flippers name in it example: /dev/tty.usbmodemflip_XXXXX3
Add "screen" in the prefix and the baud rate as the suffix to the command after copy pasting.....
screen /dev/tty.usbmodemflip_XXXXX3 115200
Hit reset on the flipper board and you'll see it populate. If it doesn't, simply try the other flipper directory name.
-----------------------------------------------------------------------------------
2022-06-28 00:52:43 +00:00
# Quick steps from Rabid Root...
2022-05-31 04:03:23 +00:00
2022-06-28 00:52:43 +00:00
![Quick_info ](https://user-images.githubusercontent.com/57457139/171563068-4997e28d-ac75-4c22-96b3-9e21fb0cdb18.jpg )< br >
![Flipper_Settings ](https://user-images.githubusercontent.com/57457139/176063404-86cfaa96-4cb5-4a94-a388-f935f59ac7b2.png )
# AND a great step by step from E_Surge!
![More_Steps ](https://user-images.githubusercontent.com/57457139/176063439-f23620ae-7985-46eb-a11e-d85d1bcc62b7.png )
2022-07-09 17:46:53 +00:00
2022-07-16 06:31:57 +00:00
Also from E_Surge: "Flashed esp32marauder directly to the esp32-s2 using the esptool command -- wasn't working until a PC restart and boom. But it took about three hours of different methods, attempts, and finally restarting of devices etc."
`esptool -p PORT -b 460800 --before default_reset --after hard_reset --chip esp32s2 write_flash --flash_mode dio --flash_freq 80m --flash_size 4MB 0x10000 esp32_marauder_v0_9_9_20220628_flipper.bin`
2022-07-09 17:46:53 +00:00
# If serial connection looks scrambled... (thanks Frog!)
![Scrambled ](https://user-images.githubusercontent.com/57457139/178117119-01907ac3-e0db-4ab2-b248-1c38e5926693.png )
![Frog_Fix ](https://user-images.githubusercontent.com/57457139/178117083-fb209d3e-660a-4cef-b80e-f2e25ed2060e.png )
2022-07-10 05:57:35 +00:00
2022-07-14 06:51:27 +00:00
Frog also noted that it's wise to reflash the Flipper firmware if such issues are persisting.< br >
2022-07-10 05:57:35 +00:00
Start with the Official firmware, test, then move to a unlocked one if desired.