Weaponizing the GL.iNet GL-AR150

Hi all, so much time since I posted something here. I’ll try to post more regularly from now on.

Last week I was wondering if somebody had ported the latest Pineapple firmware (v.1.1.3) to the GL-AR150. As you may know, this small router has the same hardware of the WiFi Pineapple Nano (minus the second radio, of course, but there is an USB port to which you can plug a wifi adapter).

After spending some time looking for it without luck, I tried to build it myself.

Patrick Sapinski, on his own blog, posted earlier this year a small guide to do that, and it has been very helpful for me as starting point.

Those are the steps I followed to build a working WiFi Pineapple firmware for the GL-AR150:

Just remember, in make menuconfig, to select the GL-AR150 as target and to include the driver of the USB WiFi adapter you’re going to use (you must use one, the pineapple firmware is mostly useless without the second WiFi interface).

For your convenience, the firmware I built is available on my Github repo at https://github.com/SecurityAddicted/pineapple-ar150

I compiled it with support to all common USB WiFi adapters (I tested it with a TP-Link TL-WN722N).

Hope some of you will find this useful.

Enjoy!

Be Sociable, Share!

62 thoughts on “Weaponizing the GL.iNet GL-AR150”

  1. does this work very well ??? I was thinking of trying this out as a little project in the near future to start learning about wifi and security

  2. Thanks for the Build, could you detail how you configured openwrt-cc to work with the gl-ar150? all my builds always bootloop :-S

    1. Glad you found it useful. You must select the GL-AR150 from the Target Profile submenu in make menuconfig.
      If you still have problems, I can share my .config file πŸ˜‰

  3. Hi Alex, thanks for the build.
    I succeeded to upgrade my device (former 1.1.1 build from gopher2) with the sysupgrade -F -v .
    Nevertheless, the webinterface keeps saying: The Wifi Pineapple is still booting
    On the other hand, my Pine managment Wifi network is still operational, and Im able to login through SSH. From there I see my TL-WN722N is now recognized (reason for the upgrade).

    Any idea how I could solve the problem with the webinterface?

    Thank you!

      1. Thank you for respond Δ± understand this steps.but Δ± have few questions ..1. I have tp link wn722n whic has ar9271 and its tx power locked at 20 dbm, at this point Δ± need alfa card for better signal. because of this Δ± look ar150 if Δ± use ar150 will Δ± am need to use external card again like alfa?

          1. But how ? Wn722n just has 4 dbi antenna ?and gli alsp has 4 dbi antenna how they are working for long range ? Can you explain how ?

          2. If you need long-range performance, just use a better antenna. The stock one works flawlessly anyway.

          3. but Δ± read that gli has max output 18dbm so if Δ± use better antenna is it change anyway?
            Also have tp link like you Δ± contact with tp link support and asked them.
            “if Δ± use better antenna is it change anything ”
            they say
            “no because its antenna output power is low”
            ?

          4. Try that out by yourself, flash your AR150 with my firmware, plug you 722 into the USB port and have fun πŸ™‚

          5. Okay πŸ˜€ Δ± have two more question ? First Δ± hear that if we want nano module we need sd but ar150 dont have sd how to fix it ? And the other is whats difference between awus036nha with kali vs ar150 with pineapple?

          6. Never used modules, but I tried installing some and they seem to install fine. I guess you can try and see πŸ˜‰
            The Pineapple firmware makes the AR150 a very portable WiFi tool to attack wireless clients, but you can’t use it to crack WiFi networks. That’s where Kali + your WiFi card of choice come to help πŸ˜‰

          7. You mean crack “reaver”? My aim is just use for evil twin attack and long range do u have any advice to me usb card ?

          8. Pineapple is awesome for Evil Twin attacks. About range, I tested only the 722 with its antenna and it worked ok for my needs. You need to experiment in your own here I’m sorry πŸ™‚

  4. Finally received my little gl-ar150 in the post from aliexpress … within 30 minutes of opening the package I was installing modules .Thanx Alex for the bin file and Thanx Steven for the jffs2reset command ..Awesome now to learn how to drive this thing

      1. I started playing around I thought having more space would be better .Has anyone added usb storage with any success ?? .I looked at demsg and the device is plugged but nothing much else in the syslog or even /dev and there is no kernel modules loaded I get a error when I try to load ehci-hcd manually .The USB is working right cause all the wifi cards are happy .It’s just storage not working properly
        Any ideas or pointers would be muchly appreciated

        1. It isn’t straightforward to add new storage to the device, as the only USB port is used by the second WiFi card. It should at least involve some hardware hacking to add a SD card reader (click HERE for more details).
          Let me know if you’re going to do that πŸ™‚

  5. i think for usb storage u need a usb hub which have self powered power. like these:
    http://www.ebay.com/itm/Black-7-Port-USB-3-0-Hub-On-Off-Switches-AC-Power-Adapter-Cable-for-PC-Laptop-/311589458040

    back when i have old rpi 1st gen, kernel already detect the usb,my ext-hdd even turn its led,but i cant sense any movement/rotation from my hdd due lack of power. those hub solve that.

    my only question for ar150 is same as mehmet, what if i connect 24dbi grid antenna to this little killer, can it survive?

    i dont own the antenna, just plan to buy it only if these board can sustain it.
    i am fine with ar150 only use 60-70% antenna capacity, but it still works
    but what if funny thing happens? πŸ˜€
    since those antenna twice the cost of ar150 (from where i lived)

  6. I have mounted the USB memory stick as the SD card everything is working fine …I did look at the spi bit banging .. maybe later this also seems a useful website on the subject https://randomcoderdude.wordpress.com/2013/08/15/spi-over-gpio-in-openwrt/ .. I’m using a usb hub with no problems .The next part is looking at the LAN/WAN .I’m not sure if it’s working or not ….Once again Alex thanx very much for this project ..I also want to say I will buy a wifi pineapple nano as I really want to support the HAK5 guys they have put alot of time and effort into this product .Something I have learnt looking around inside the device .I am having a good time learning about routers and look forward learning about wifi security

      1. Ikk3
        you need to make sure that these kernel modules are loaded scsi_mod.ko,sd_mod.ko and usb-storage.ko .For the file system you need these ext4.ko,exfat.ko,ext4.ko and ntfs.ko .You prolly don’t need all those I just load them incase i might use them … I ended up compiling my own firmware as there was something a bit funky about loading and unloading Kernel modules in Alex’s firmware

        1. Hello Mary
          I compliled my own firmware too. I did all the steps in this tutorial but when i do install a module, appears only one button (install to internal storage). Could u help me to set this up properly?

  7. So I loaded the .bin and rebooted the device – I see no web interface when I try to go to the IP, just a blank interface and then I don’t know the password to SSH into the device. I tried the default creds for SSH for OpenWRT and they dont work. Any advice on what to try?

    1. connect your ethernet cable in the wan port, and make sure that ur default gatewat is 172.16.42.1

      1. Got it – that worked had it in wrong port, thank you – the webui is stuck at: The WiFi Pineapple is still booting. Trying to SSH – to issue the command “‘jffs2reset -y && reboot'” but cannot access do not know ssh credentials. Any thoughts? I have tried the default nano password, default root type passwords. I am feeling like I am overlooking something obvious.

          1. Ok…Figured it out. I was flashing the Pineapple firmware after doing the AR150 initial setup. You need to flash it after a factory reset(Before selecting language and password), then flash the Pineapple firmware from the uboot page(google for directions). When AR150 reboots itself, make sure to set your lan adapter back to obtain IP automatically. Direct
            your browser to: 172.16.42.1:1471, then follow the directions.

  8. Hi! I’m trying to compile my own firmware following this steps and everytime I try doesn’t matter the config I choose there’s an error compiling the uboot. Has anyone an idea of what’s going wrong?
    And thank you Alex for the firmware, it works like a charm πŸ˜€

  9. I ended compiling my own firmware adding all the kernel modules for usb storage, it works perfect. I haven’t tried to connect the wifi dongle and usb drive at the same time yet ( i donΒ΄t have a usb hub ), but it should work.
    I uploaded the firmware to github so you can test it ( and skip hours of compiling ) https://github.com/serxo/ar150-wifi_pineapple.
    Hope it helps someone.

    1. I added many wifi drivers, but I don’t have that specific model to test so you have to try out yourself.

  10. I flashed the AR150 with the firmware you’ve provided, but the recon function doesn’t work. ‘There was an error starting Recon. Please try again.’

    I’ve tried turning off management AP, turning on PineAP.. Nothing works.

    When looking under Networking it only shows wlan0 interface, on another Pineapple firmware version it shows wlan0 and wlan0-1.. Not sure if this has to do with it…

    What should I do to get it working?

    1. So, I re-read everything. Is it true that I need an external WiFi adapter? If yes, why? In version 1.0.6 (you can find it online for the AR150) it is not necessary, this version just works with the antenna of the AR150…

      1. To use the Pineapple firmware the right hardware is needed. Since the Pineapple has 2 wifi interfaces, you must have the same in your AR150 to get a fully working Pineapple-like device.

          1. I tried SFTP, and found some folders. Not sure if I can just drag and drop the drivers for WN822N.

  11. i just ordered the ar150 and i am trying to find a antenna i can buy locally any work on what drivers you added? i just want to know like a brand to look for that tp one i can only find online.

Leave a Reply