How do i decrypt wpa3 packets using wireshark.

I'm new to Wireshark and would like to know how to decrypt WPA3 using it. Especially how to retrieve PMK or any other keys required to decrypt it using hostapd. I have access to an android AP (via terminal or any kind of debugging is possible)..

1 Answer

Some info here:

Namely the flags for running hostapd, -d and -K which will dump the keys.

At least for wpa_supplicant, the PMK is shown in the debug output as something like this:

WPA: PMK - hexdump(len=32): d1 f8 aa 86 77 92 8f 81 75 92 d0 01 f9 3b b3 59 fe 73 70 20 90 99 09 ea e6 59 6b 1b aa 0c 39 a2

Of course, your key would be different. I would assume since hostapd and wpa_supplicant are developed together, hostapd would have same/similar debug output with keys. No idea if this debug works on an Android device.

Bob Jones

