WiFi Password Guides
Everything we've published on recovering, securing, and understanding WiFi passwords — organized by what you're trying to do. Start with your platform, or jump straight to handshake recovery.
Find Your Saved WiFi Password
Pull the password straight off a device that's already connected — the easiest, fastest recovery path.
Windows 10 & 11 — View Saved WiFi Password
GUI and netsh wlan show profile key=clear — every reliable method on Windows.
Read guide
macOS Keychain & Terminal
Keychain Access step-by-step plus the `security find-generic-password` Terminal shortcut.
Read guide
Android — View WiFi Password Without Root
QR code method (Android 10+) and no-root workarounds for older devices.
Read guide
iPhone / iPad — iOS 16 & 17 Methods
Native iOS 16+ reveal flow, iCloud Keychain sync, and older-iOS fallbacks.
Read guide
Linux — nmcli & wpa_supplicant
Read saved PSKs on Ubuntu/Fedora/Arch using NetworkManager and raw config files.
Read guide
Cross-OS Command-Line Cheatsheet
Every CLI command for Windows, macOS, and Linux on one printable reference page.
Read guide
Windows 11 — Find Password Without Admin
View saved WiFi passwords even without admin rights on Windows 11.
Read guide
Router & Network
Reset the admin panel, grab defaults by manufacturer, or lock down your home network properly.
Default Router Passwords by Manufacturer
Netgear, Linksys, TP-Link, ASUS, Huawei — factory admin creds sourced from manuals.
Read guide
Router Password Database (Interactive Search)
Search 100+ popular router models with default admin logins and WiFi keys.
Read guide
How to Reset Your Router Password
Complete factory reset guide for every major brand — step by step.
Read guide
Mobile Hotspot — Find & Change Password
iPhone personal hotspot, Android tethering, and carrier MiFi devices.
Read guide
Forgot Your Router's WiFi Password?
Full recovery flow: admin panel, factory reset, connected-device extraction.
Read guide
Secure Your Home WiFi — Best Practices
WPA3 vs WPA2, firmware updates, disabling WPS, guest networks, DNS filtering.
Read guide
WiFi Security & Education
Understand WiFi security protocols, legal boundaries, and how password recovery really works.
What is WPA3 and Why It Cannot Be Cracked
Complete explanation of WPA3 SAE and why offline dictionary attacks don't work.
Read guide
PMKID vs Handshake — WiFi Security Explained Simply
Two key WiFi concepts explained in plain language with simple analogies.
Read guide
WiFi Password Recovery: Legal vs Illegal Use Cases
Clear legal boundaries: CFAA, Computer Misuse Act, GDPR, and real-world do's and don'ts.
Read guide
What Is a WPA Handshake?
The 4-way EAPOL exchange and PMKID explained without the jargon.
Read guide
WPA vs WPA2 vs WPA3 — Overview
Which protocol your network uses, and what that means for recovery odds.
Read guide
WPA / WPA2 Handshake Recovery
The technical path — capture a handshake, crack it with GPU dictionaries and rules.
What Is a WPA Handshake?
The 4-way EAPOL exchange and PMKID explained without the jargon.
Read guide
WPA vs WPA2 vs WPA3 — Overview
Which protocol your network uses, and what that means for recovery odds.
Read guide
WPA3 vs WPA2 — Dragonblood & Cracking
SAE handshake, known Dragonblood flaws, and why WPA3 isn't game over yet.
Read guide
Capture a Handshake with aircrack-ng
Monitor mode, airodump-ng, deauth, and verifying a clean 4-way capture.
Read guide
Crack WPA with hashcat — Mode 22000
Convert .pcapng to .hc22000, pick wordlists and rules, read the cracked output.
Read guide
Convert .hccapx to .hc22000
Migrate legacy hashcat 5.x captures to the modern 22000 format — free browser tool.
Read guide
Security & Attacks
Attacker techniques — know them so you can defend, audit, or pen-test your own network.
WPS PIN Attack with Reaver
How the 11,000-PIN keyspace collapses, and why you should disable WPS today.
Read guide
PMKID Attack — Crack WPA2 Without a Handshake
hcxdumptool PMKID capture, conversion, and hashcat cracking pipeline.
Read guide
Detect Rogue Access Points on Your Network
Kismet, airodump-ng, and enterprise WIPS — catching unauthorized APs.
Read guide
Evil Twin Attack — Detection & Defense
How cloned SSIDs hijack clients, and the defenses that actually work.
Read guide
Can't find the password another way?
If every other method failed, capture a WPA handshake on your own network and let our GPU cluster handle the rest. Dictionary + rules attack, 2B+ candidates, pay only if we find it.
Open recovery tool