offensive-wpa-enterprise
WPA/WPA2/WPA3-Enterprise (802.1X / EAP) attack methodology — EAP method identification (PEAP-MSCHAPv2, EAP-TTLS, EAP-TLS, EAP-GTC, EAP-PWD, EAP-FAST), evil-twin RADIUS attacks with eaphammer for credential capture, MSCHAPv2 challenge-response cracking, EAP-TLS client certificate theft paths (DPAPI, NDES, AD CS auto-enrollment), supplicant validation bypass (missing server cert validation, missing CN pinning, BYOD misconfigurations), and post-capture pivots into AD via cracked domain credentials. Use for corporate Wi-Fi engagements where the network is 802.1X authenticated. Use when performing authorized red-team, pentest, or research work involving wpa enterprise.
- Compatibility
- claude-code codex opencode
Pinned to revision 626b01ddea63, so it is the text this page describes rather than whatever the author pushed since.
Files
- skills/offensive-wpa-enterprise/SKILL.md
- skills/offensive-wpa-enterprise/LICENSE
- skills/offensive-wpa-enterprise/README.md
- skills/offensive-wpa-enterprise/agents/openai.yaml
Every link opens the file at its source, pinned to the revision this page describes.