WPA cracker in the cloud
wpacracker.com
wpacracker.com
What this site really says is, "don't use WPA-PSK on sensitive networks."
Seriously though, I doubt it adds much, even in obscurity.
It doesn't really have to be random, just not something widely in use. In other words, just don't leave it as "linksys", I'm pretty sure that even a 13-char random string doesn't help you then. :)
On websites that support it you can just type in a memorable phrase, with spaces and everything, and it will be more secure than the usual 10 char alphabet soup.
A password I commonly use is:
Length limits on password input fields suck donkey balls.
At one point I was using MD5 hashes for passwords, but I kept running into password limits so I had to stop.
Seriously, what's your concern? There's a very low chance that someone will be determined enough to use tools like these to hack into your LAN, and even if he'll do that, so what?
To use you LAN no... but to use your internet? Imagine someone is determined to get an your internet connection already and doesn't care if it's legal or not - he starts looking for information on wireless password hacking and finds that site. Now his choice is between a contract + installation fee + monthly fee -vs- 17$ once.
Why would you care? For example if your country/ISP uses a 3 strikes policy. Or you don't want police asking about that child porn distribution network. Or .... (many reasons)
(+Comment does not not endorse theft of wireless networking).
To me the valuable part is the dictionary. The rest of this is relatively straight forward script kiddy HOWTO stuff. Most people I know have an extra computer that is idling 95% of the time and could run a process for 5+ days. It's the relatively instant gratification and ease of use that I like.
A Thoughtcrime Labs Production In Association With The Institute For Disruptive Studies
No one else thinks this is just a little bit dodgy? I know it seems to be par for the course for some of the security scene, but still.
----- But I use WPA2 so it's cool right?
Actually, while WPA2 introduced CCMP mode as a replacement for the problematic TKIP, when run with authentication based on Pre-Shared Keys (PSK), it is still vulnerable to dictionary attacks. Our service works against both WPA and WPA2 when PSK is being used.