airdecloak-ng
TLDR
Remove cloaking from a capture file
SYNOPSIS
airdecloak-ng -i input [-o output] [--bssid bssid] --drop|--disable
DESCRIPTION
airdecloak-ng filters out WEP cloaking techniques from wireless capture files. Some access points implement cloaking by injecting fake or corrupted packets to confuse WEP cracking tools.
This tool identifies and removes these cloaking packets, producing a cleaner capture file that can be more effectively analyzed or cracked.
PARAMETERS
-i file
Input capture file-o file
Output capture file--bssid mac
Filter by access point MAC address--drop
Drop cloaking frames--disable
Mark cloaking frames as invalid (keep them)
CAVEATS
Only useful for captures from access points using WEP cloaking. Modern networks using WPA/WPA2 don't use these cloaking techniques. May remove legitimate packets if cloaking detection is too aggressive.
HISTORY
airdecloak-ng was added to the aircrack-ng suite to counter specific WEP protection mechanisms that some access point vendors implemented in the late 2000s.
SEE ALSO
aircrack-ng(1), airodump-ng(1)


