WiFiScan.h 3.4 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110
  1. #ifndef WiFiScan_h
  2. #define WiFiScan_h
  3. #include <BLEDevice.h>
  4. #include <BLEUtils.h>
  5. #include <BLEScan.h>
  6. #include <BLEAdvertisedDevice.h>
  7. #include <WiFi.h>
  8. #include "esp_wifi.h"
  9. #include "esp_wifi_types.h"
  10. #include "Display.h"
  11. //#include "MenuFunctions.h"
  12. #define bad_list_length 3
  13. #define WIFI_SCAN_OFF 0
  14. #define WIFI_SCAN_PROBE 1
  15. #define WIFI_SCAN_AP 2
  16. #define WIFI_SCAN_ST 3
  17. #define WIFI_SCAN_ALL 4
  18. #define WIFI_ATTACK_BEACON_SPAM 5
  19. #define WIFI_ATTACK_RICK_ROLL 6
  20. #define BT_SCAN_ALL 7
  21. #define BT_SCAN_SKIMMERS 8
  22. extern Display display_obj;
  23. esp_err_t esp_wifi_80211_tx(wifi_interface_t ifx, const void *buffer, int len, bool en_sys_seq);
  24. class WiFiScan
  25. {
  26. private:
  27. uint32_t initTime = 0;
  28. bool run_setup = true;
  29. int set_channel = 1;
  30. int bluetoothScanTime = 5;
  31. int packets_sent = 0;
  32. const wifi_promiscuous_filter_t filt = {.filter_mask=WIFI_PROMIS_FILTER_MASK_MGMT | WIFI_PROMIS_FILTER_MASK_DATA};
  33. BLEScan* pBLEScan;
  34. String alfa = "1234567890qwertyuiopasdfghjkklzxcvbnm QWERTYUIOPASDFGHJKLZXCVBNM_";
  35. char* rick_roll[8] = {
  36. "01 Never gonna give you up",
  37. "02 Never gonna let you down",
  38. "03 Never gonna run around",
  39. "04 and desert you",
  40. "05 Never gonna make you cry",
  41. "06 Never gonna say goodbye",
  42. "07 Never gonna tell a lie",
  43. "08 and hurt you"
  44. };
  45. char* prefix = "G";
  46. typedef struct
  47. {
  48. int16_t fctl;
  49. int16_t duration;
  50. uint8_t da;
  51. uint8_t sa;
  52. uint8_t bssid;
  53. int16_t seqctl;
  54. unsigned char payload[];
  55. } __attribute__((packed)) WifiMgmtHdr;
  56. typedef struct {
  57. WifiMgmtHdr hdr;
  58. uint8_t payload[0];
  59. } wifi_ieee80211_packet_t;
  60. // barebones packet
  61. uint8_t packet[128] = { 0x80, 0x00, 0x00, 0x00, //Frame Control, Duration
  62. /*4*/ 0xff, 0xff, 0xff, 0xff, 0xff, 0xff, //Destination address
  63. /*10*/ 0x01, 0x02, 0x03, 0x04, 0x05, 0x06, //Source address - overwritten later
  64. /*16*/ 0x01, 0x02, 0x03, 0x04, 0x05, 0x06, //BSSID - overwritten to the same as the source address
  65. /*22*/ 0xc0, 0x6c, //Seq-ctl
  66. /*24*/ 0x83, 0x51, 0xf7, 0x8f, 0x0f, 0x00, 0x00, 0x00, //timestamp - the number of microseconds the AP has been active
  67. /*32*/ 0x64, 0x00, //Beacon interval
  68. /*34*/ 0x01, 0x04, //Capability info
  69. /* SSID */
  70. /*36*/ 0x00
  71. };
  72. void broadcastRandomSSID(uint32_t currentTime);
  73. void broadcastSetSSID(uint32_t current_time, char* ESSID);
  74. void RunRickRoll(uint8_t scan_mode, uint16_t color);
  75. void RunBeaconSpam(uint8_t scan_mode, uint16_t color);
  76. void RunBeaconScan(uint8_t scan_mode, uint16_t color);
  77. void RunProbeScan(uint8_t scan_mode, uint16_t color);
  78. void RunBluetoothScan(uint8_t scan_mode, uint16_t color);
  79. static void scanCompleteCB(BLEScanResults scanResults);
  80. public:
  81. WiFiScan();
  82. void channelHop();
  83. uint8_t currentScanMode = 0;
  84. void main(uint32_t currentTime);
  85. void StartScan(uint8_t scan_mode, uint16_t color = 0);
  86. void StopScan(uint8_t scan_mode);
  87. static void getMAC(char *addr, uint8_t* data, uint16_t offset);
  88. static void beaconSnifferCallback(void* buf, wifi_promiscuous_pkt_type_t type);
  89. static void probeSnifferCallback(void* buf, wifi_promiscuous_pkt_type_t type);
  90. };
  91. #endif