/NotSoSmartConfig

PoC for the NotSoSmartConfig blogpost

Primary LanguagePython

NotSoSmartConfig

This tool allows to extract WiFi credentials sent Over-The-Air during the configuration of an IoT device using the SmartConfig / ESPTouch protocol.

More info about the security analysis of the SmartConfig protocol can be found in the "NotSoSmartConfig: broadcasting WiFi credentials Over-The-Air" article on Shielder's blog.

Usage

python3 NotSoSmartConfig.py ./<wifi_traffic_file>.pcap