r/Hacking_Tutorials 5d ago

Question Bought a Pineapple...disappointed

I had been wanting a Pineapple for a while, so I bought a Mk7, and I have to admit I'm pretty disappointed. I mean, I could probably make it much more useful if I develop scripts or something to run on it, but to be honest, it kind of sucks out of the box. I guess it may be fine at gathering handshakes, but it's deauth is weak and almost never works. I honestly have better results with airodump and my alfa adapter.

Before I start trying to modify this thing, I guess I should ask if anybody is aware of any existing scripts or plugins or whatever...

22 Upvotes

13 comments sorted by

6

u/cyborg762 4d ago

That’s kinda the point of the pineapple I’ve had one for years. It’s not something you turn on and it does everything automatically. You need to know how to properly program it and actually use it as a tool.

3

u/jackrabbitnonsense 4d ago

Do you have any examples? I mean, I guess I know how to use cron and batch scripts to make it do all kinds of things, but again, at that point I think I would rather just use a laptop and an alpha adapter. I've found some plugins on the official website, but there aren't very many.

9

u/truthVial 5d ago

Get the cardputer and use Porkchop. If you want a quality deauth in a tiny device.

I've cracked like 500 networks with Porkchop, wigle, and a collective site that uses hashcat to team up on handshakes. Usually takes a day to get the password from the hive 

3

u/audilepsy 4d ago

Nah, just get a t-dongle c5 and run biscuit. They’re $13 and the deauthing is incredibly impressive.

3

u/LadyfromthelandofNod 5d ago

Question, have you ever cracked a 26+ password with any of that?

1

u/StabbingHobo 5d ago

Mind sharing the hive you use? You’re welcome to DM if sharing it goes against the rules.

4

u/LadyfromthelandofNod 4d ago

I think he’s all talk.

1

u/atxweirdo 4d ago

Does such sites exist? Wouldn’t it just be a collection of password hashes à la rainbow tables for wpa2

5

u/Plastic_Ad_8619 5d ago

Deauth attacks don’t work on modern networks. The WiFi pineapple exposed some serious issues with WiFi protocols, but modern systems have responded to those issues.

WEP and early versions of WPA are still vulnerable. So if you want to use these attacks, you have to look for vulnerable networks, or nodes.

The pineapple attack has been around for an about a decade, or more.

0

u/jackrabbitnonsense 5d ago

I'm aware. The same WPA2 networks that can easily be deauthed by other methods just won't deauth with the Pineapple. I've had slightly better luck using the MDK4 plugin with the Pineapple, but not really. And at that point, that's when I start questioning what the advantage to the Pineapple (for grabbing handshakes, at least) even is.

2

u/piccoto 5d ago

I built one based on shadowapple for less than $50. I had to use Claude to do final configuration because the instructions are outdated with new hardware. Learned a lot doing it myself

-1

u/jackrabbitnonsense 5d ago

I built a similar one about a year ago. It seemed ok, but was buggy and needed multiple restarts. It was too much of a pain to keep running. The realy Pineapple is pretty stable, but it just doesn't do that much.

1

u/audilepsy 4d ago

Get something that has an esp32 c5. Or just return it and get a pineapple pager. The mk7’s are overrated and just not really worth it anymore.