Wi-Fi Penetration Testing με Kali Linux

Wi-Fi Penetration Testing with Kali Linux (Αγγλική)

  1. MSc thesis
  2. ΑΝΔΡΕΑΣ ΠΑΠΑΔΟΠΟΥΛΟΣ
  3. Συστήματα Κινητού και Διάχυτου Υπολογισμού (ΣΔΥ)
  4. 27 Σεπτεμβρίου 2026
  5. Ελληνικά
  6. 134
  7. ΝΙΚΟΠΟΛΙΤΙΔΗΣ ΠΕΤΡΟΣ
  8. ΚΑΜΕΑΣ ΑΧΙΛΛΕΑΣ | ΝΙΚΟΠΟΛΙΤΙΔΗΣ ΠΕΤΡΟΣ | ΧΑΤΖΗΜΙΣΙΟΣ ΠΕΡΙΚΛΗΣ
  9. Wi-Fi Security, Kali Linux, Penetration Testing, WPA2, Aircrack-ng, Ethical Hacking, KRACK, Kr00k.
  10. ΣΔΥΔΕ
  11. 31
    • Αντικείμενο της παρούσας διπλωματικής εργασίας είναι η μελέτη και η πρακτική αξιολόγηση της ασφάλειας των ασύρματων δικτύων Wi-Fi μέσω της μεθοδολογίας του Penetration Testing (Δοκιμές Διείσδυσης). Με τη ραγδαία εξάπλωση των ασύρματων επικοινωνιών, η διασφάλιση της εμπιστευτικότητας και της ακεραιότητας των δεδομένων καθίσταται κρίσιμη, καθώς τα δίκτυα αυτά είναι εγγενώς εκτεθειμένα σε επιθέσεις λόγω της φύσης του μέσου μετάδοσης.
      Η εργασία ξεκινά με την ανάλυση του θεωρητικού υποβάθρου, εξετάζοντας το πρότυπο IEEE 802.11, την αρχιτεκτονική των δικτύων και τις βασικές έννοιες ασφάλειας (CIA Triad). Στη συνέχεια, πραγματοποιείται μια ιστορική αναδρομή και τεχνική ανάλυση των πρωτοκόλλων ασφαλείας, από το ευάλωτο WEP και τα WPA/WPA2, έως το σύγχρονο WPA3, αναδεικνύοντας τις κρυπτογραφικές αδυναμίες που οδήγησαν στην εξέλιξή τους.
      Το πρακτικό μέρος της εργασίας εστιάζει στη χρήση του λειτουργικού συστήματος Kali Linux, το οποίο αποτελεί το πρότυπο εργαλείο για επαγγελματίες ασφαλείας και ηθικούς hackers. Παρουσιάζεται η απαραίτητη μεθοδολογία και τα εξειδικευμένα εργαλεία, όπως η σουίτα Aircrack-ng, το Hashcat και τα frameworks για επιθέσεις τύπου Evil Twin.
      Η έρευνα κορυφώνεται με την πρακτική αξιολόγηση σε ελεγχόμενο εργαστηριακό περιβάλλον, όπου εκτελούνται σενάρια επιθέσεων για την υποκλοπή κλειδιών WEP και την παραβίαση του WPA2-PSK μέσω της υποκλοπής του 4-way handshake. Ιδιαίτερη έμφαση δίνεται στην ανάλυση προηγμένων ευπαθειών, όπως οι επιθέσεις KRACK (Key Reinstallation Attacks) και η ευπάθεια Kr00k, η οποία επηρεάζει το υλικό (chipsets) των συσκευών.
      Τέλος, η εργασία καταλήγει σε προτάσεις για την ασφαλή παραμετροποίηση των δικτύων Wi-Fi τόσο σε προσωπικό όσο και σε επιχειρησιακό επίπεδο, υπογραμμίζοντας τη σημασία των περιοδικών δοκιμών διείσδυσης για τη θωράκιση έναντι σύγχρονων απειλών.

    • The subject of this thesis is the study and practical evaluation of Wi-Fi wireless network security through the methodology of Penetration Testing. With the rapid proliferation of wireless communications, ensuring data confidentiality and integrity has become critical, as these networks are inherently exposed to attacks due to the nature of the transmission medium.
      The thesis begins with an analysis of the theoretical background, examining the IEEE 802.11 standard, network architecture, and core security concepts (CIA Triad). Subsequently, a historical review and technical analysis of security protocols are conducted, ranging from the vulnerable WEP and WPA/WPA2 to the modern WPA3, highlighting the cryptographic weaknesses that led to their evolution.
      The practical part of the thesis focuses on the use of the Kali Linux operating system, which serves as the standard tool for security professionals and ethical hackers. The necessary methodology and specialized tools are presented, including the Aircrack-ng suite, Hashcat, and frameworks for Evil Twin attacks.
      The research culminates in a practical evaluation within a controlled laboratory environment, where attack scenarios are executed for intercepting WEP keys and breaching WPA2-PSK through 4-way handshake interception. Particular emphasis is placed on the analysis of advanced vulnerabilities, such as KRACK (Key Reinstallation Attacks) and the Kr00k vulnerability, which affects the hardware (chipsets) of devices.
      Finally, the thesis concludes with recommendations for the secure configuration of Wi-Fi networks at both personal and enterprise levels, underscoring the importance of periodic penetration testing for strengthening defenses against modern threats.

  12. Hellenic Open University
  13. Attribution-NoDerivatives 4.0 Διεθνές