CSL603 Mobile Computing Lab
Sem VI
Amisha Verma
Roll No 66
EXPERIMENT 6
Title Study of Security Tools (like Kismet, Netstumbler)
Pre requisite GSM
Mapping with CO CSL603.4
Objective Introduction to Security Tools
Outcome Students learned Kismet and Netstumbler
Deliverables Security tools
Colab Link 1. Kismet
• Category: Wireless network detector, sniffer, and intrusion detection system
• Platform: Works on Linux, macOS, and BSD systems (limited Windows
support)
• Functionality:
o Detects wireless networks without actively sending packets.
o Captures and analyzes network packets in real time.
o Can detect hidden SSIDs and unauthorized access points.
o Works with Wi-Fi (802.11), Bluetooth, and SDR-based networks.
Features of Kismet
✔ Passive Scanning – Unlike other tools that actively probe networks, Kismet operates
in passive mode, meaning it does not generate any network traffic that could alert
security systems.
✔ Packet Capture & Analysis – Collects network packets for security analysis,
allowing network administrators to detect vulnerabilities and potential threats.
✔ Intrusion Detection – Identifies unauthorized access points and rogue devices.
✔ Multi-Device Support – Compatible with a wide range of wireless network adapters
and SDR-based devices.
✔ GPS Mapping – When paired with a GPS device, it can map the location of detected
networks.
Advantages of Kismet
Detects hidden Wi-Fi networks that do not broadcast their SSID.
Provides real-time data on active wireless connections.
Works with multiple wireless cards simultaneously.
Can be used for penetration testing and security audits.
Disadvantages of Kismet
Limited support for Windows (requires additional setup).
Can be complex to configure for beginners.
Requires compatible hardware (wireless adapter in monitor mode).
Working of Kismet
1. Wireless Adapter Configuration – Kismet requires a Wi-Fi card that supports
monitor mode to capture network packets.
2. Passive Network Scanning – It detects networks by passively listening to
wireless traffic.
3. Packet Logging – Captured data is logged for further analysis.
4. Intrusion Detection – Alerts users about suspicious or unauthorized access
points.
5. Data Analysis – Provides insights into network security, including open
networks and weak encryption.
2. NetStumbler
• Category: Wireless network discovery tool
• Platform: Windows
• Functionality:
o Detects Wi-Fi networks in range.
o Helps in troubleshooting Wi-Fi connectivity and signal strength issues.
o Used for wardriving and network security assessments.
Features of NetStumbler
✔ Active Network Scanning – Unlike Kismet, NetStumbler actively probes networks
to gather information.
✔ Wi-Fi Signal Strength Monitoring – Helps in optimizing Wi-Fi placement.
✔ SSID Detection – Finds all available Wi-Fi networks in the vicinity.
✔ Security Analysis – Detects misconfigured access points.
✔ GPS Integration – Can map detected networks using GPS.
Advantages of NetStumbler
Easy to install and use, even for beginners.
Provides real-time Wi-Fi signal strength monitoring.
Useful for diagnosing weak network signals and interference.
Helps in detecting rogue access points.
Disadvantages of NetStumbler
Only works on Windows (no native Linux/macOS support).
Actively probes networks, which may trigger security alerts.
Does not work well with modern Wi-Fi encryption (WPA2/WPA3).
Working of NetStumbler
1. Installation on Windows – Users install NetStumbler on a Windows device.
2. Active Network Scanning – Sends probe requests to detect available Wi-Fi
networks.
3. Data Collection – Retrieves network details, including SSID, MAC address,
and signal strength.
4. Analysis & Optimization – Helps in improving Wi-Fi performance and
detecting security risks.
5. Logging & Reporting – Saves network data for later analysis.
Feature Kismet NetStumbler
Website Kismet NetStumbler
Linux, macOS, BSD (limited
Operating System Windows only
Windows support)
Passive (does not send
Mode of Operation Active
probe requests)
Detects hidden and open
Network Detection Detects only open networks
networks
Packet Capture &
Yes No
Analysis
Intrusion Detection
Yes No
System (IDS)
Wi-Fi Signal Strength
Yes Yes
Monitoring
Supports Modern
No (does not work with
Wi-Fi Encryption Yes
WPA2/WPA3 networks)
(WPA2/WPA3)
Detects unauthorized Detects misconfigured access
Security Analysis access points & rogue
devices points
GPS Integration Yes (supports GPS Yes (for mapping detected
mapping) networks)
Ease of Use Moderate (requires setup) Easy (user-friendly interface)
Security audits, penetration Wi-Fi troubleshooting, network
Usage Purpose
testing, intrusion detection signal optimization
Security professionals, Network administrators, IT
Best For
ethical hackers, researchers technicians
Conclusion Kismet and NetStumbler are powerful wireless network tools, each serving different
purposes—Kismet excels in security monitoring and intrusion detection, while
NetStumbler is ideal for Wi-Fi troubleshooting and signal analysis. Choosing the right
tool depends on whether the focus is on security assessments or network optimization.
References https://www.netstumbler.com/
https://www.kismetwireless.net/docs/readme/installing/intro_compiling/