Earlier this year Nokia released an updated version of their popular Nokia N770 Internet Tablet. The N800 excels at being a small, light-weight, device capable of WiFi as well as Bluetooth access to the Internet.
I could go on an on about how this little device has changed how we access the Internet in our home. Instead of lugging around laptops, we have a couple of N800s that the kids access for Internet queries, (just what High School did ‘King James’ go to – while watching the playoffs), to googling, to streaming music, conducting mulit-user IM sessions, to just about anything you’d want to use the Internet for – but in a very small package.
The screen resolution is amazing! If the iPhone has this screen, I’ll be in line to buy one. Even though I’m so old now I have to use bi-focals to read the small stuff – I’m comfortable with the N800’s little screen – the resolution makes it possible to fit so much in a little package.
But for the interest of this Blog I’ll move on to the use of the N800 in a wireless analysis mode.
I saw an announcement for a new piece of wireless security gear – called a Silica. This software/hardware bundle puts the intelligent penetration attacks and exploits of Immunity’s Canvas software in a small Nokia. It looked WAY COOL and I *wanted* to have one. But the $3,600 cost felt a bit prohibitive.
I’ve since had a chance to play with a Silica – and was suitably impressed – I still haven’t parted with the $3,600 but here’s a bit of a review of the tool.
This is a customized version of the Canvas tool – shoehorned into this small form-factor Linux device (Nokia N800) It is VERY easy to use. Just turn it on and click the start scan…
It will run through a series of scans of the local wireless networks, then attempt to penetrate using a variety of currently known exploits to find and exploit holes in your wireless LAN. It’s like having a little team of hackers sitting in you hand.
I’ve found it to be easy to run with the Nokia in your pocket. Very unobtrusive! – but in reality it takes up to 20-25 minutes to do a full attack against a single AP. Not like while doing a real penetration test you’ll have an excuse to ‘hang around’ a specific area waiting for the attack to finish. (Though you could easily hide the device and come back to pick it up later – but that $3,600 cost will probably make you think twice about leaving it outside of your view)
The reports it gives are in HTML format – you can just e-mail them to yourself, or copy them off onto the SD cards used by the N800
It doesn’t do ANY WEP Cracking or WPA cracking, or anything but the exploits that are in Canvas.
Ok, now for the less expensive, yet still fun stuff using a Nokia N800. As part of our Wireless LAN Security Assessment Toolkit course development. We came across the N800s, fell in love with them, then re-arranged and re-wrote many of our course lab exercises to specifically use the N800s. We added wVoIP, video over IP, as well as catching IM traffic, web browsing, and other conversations sent over wireless to use the N800 as our client of choice when ‘watching’ the open Wireless LANs and re-constructing conversations via packet capture.
Then we thought, “is there anything more we can use the N800s for”?
Since the N800 is just a little Linux computer… we added SSH, Terminal Shell, VNC, FTP, etc. to the system. Then once we got that running, it was a quick couple of steps to get Kismet and Metasploit running!
So just using Open Source software we were able to take the little $400 Nokia N800 and make it ‘like’ a Silica!
Just slip this little ‘bad boy’ in your pocket running kismet and go WarWalking to get all the APs in your area, including finding ‘hidden’ SSIDs. Or, start Metasploit and let ‘r rip – attempting whatever known exploits are available for Metasploit.
On the other hand – it makes a great Kismet platform!
We’ve got ours running the classroom with GoogleTalk and Gizmo Project for wVoIP and IM – but you have to have a Wifi access to use it, so this wont’ take the place of your cell phone. (It is possible to pair this device via Bluetooth to a cell phone running G3 speeds – but the easy way is with Wifi)
One more thing that is just *fun* to use the Nokia N800 and Wireless LANs – and I found this out by accident. I was testing in our offices a new access point – so I had the N800 associate to this new AP and started a ‘Hitcast’ session listening to some Internet Radio station. I kind of liked the station and so put the ‘radio’ in my pocket so I could have some tunes with me as I finished up writing up the analysis of this new AP. I checked my watch and realized the mail would have arrived, so I went out to the mailbox – down a long flight of stairs, outside the steel-sided building my office is in, and across the parking lot to the community mailbox to check the mail.
It wasn’t until I was heading back up the stairs and a co-worker commented on my choice of music that I noticed this little wonder continued to stream music the entire way. Thus was born the Audio Site Survey! Just associate, then walk till the music drops… Simple easy and leaves your hands free to work on other things while doing a fairly decent site survey. Cool!
There you go – a quick review of the Nokia N800 and how one might use it with Wireless LANs – if you want to see more about our Wireless LAN Security Assessment Toolkit class, check it out over at www.hotlabs.org/wlsat - as part of Bruce’s Blog you can use the discount code ‘Bruce1071’ to get $1,500 off the class.
Enjoy!
Keith Parsons - Managing Director
Great review! I have been waffling back and forth on the N800 based on other reviews but based on yours, it seems like it will be just the tool for the job. (as compared with the Asus R2H, which is a bit kludgy, and over 2x as expensive). Also, Tried to sign up for the course, but the coupon code doesn't work :(
ReplyDeleteThe code is working now. Sorry - it took a while to get the web guys to get it up online.
ReplyDeleteKeith, do you know the N800 has support for EAP-TLS certificates, in order to connect to a Radius server?
ReplyDeletebattery for ASUS W3A W3Z W3000 W3000A A42-W3 white
ReplyDeletebattery for ASUS W3A W3Z W3000 W3000A A42-W3 Silver
Laptop Battery fit ASUS U5A U5F 90-NE62B2000 A32-U5 NEW
BATTERY FOR Asus Eee PC 701C A22-700 4400mAh WHITE
BATTERY FOR Asus Eee PC 701C A22-700 6600mAh WHITE
A32-F3 Battery ASUS F3 F3J F3Q F3JA F3JM F3JF Hi-Capaci
Battery fit ASUS 90-NDT1B1000Z 90-NDT1B2000Z A32-M9 NEW
Battery For ASUS M3 M3N M3NP M3000 M3000N M3000NP 4S2P black
Battery For ASUS M3 M3N M3NP M3000 M3000N M3000NP 4S2P Silver
NEW ASUS M6 M6N M67N M68N BATTERY 90-N951B1000 A42-M6 Black
NEW ASUS M6 M6N M67N M68N BATTERY 90-N951B1000 A42-M6 Silver
Battery For ASUS A42-W1 W1000Gc W1000N W1000Na W1000V black
Battery For ASUS A42-W1 W1000Gc W1000N W1000Na W1000V silver
A42-L4 Asus 4 L4E L4H L4L L4R L41 L42 L44 L45
Battery For ASUS A42-L5 L5C L5D L5G L5000 L5500 A42l5
New Battery fit Asus A42-V6 VX1 V6 V6V V6000 V6000V
I read all comments and am a great phone lover .... this n800 is truly amazing. extraordianry features and style .... just in love with it.
ReplyDeletebuy r4i software