-
-
Notifications
You must be signed in to change notification settings - Fork 1.5k
Recon
Recon>Start WiFi
Recon>Start BLE
Recon records a complete collection session instead of only showing a temporary scan list. It is intended for authorized surveying, field collection, and later analysis of the radio environment.
WiFi Recon records observed access points, stations, probe requests, repeat sightings, changing observations, and observed station-to-access-point relationships. BLE Recon records detected BLE devices, repeat sightings, signal changes, and a best-effort device-type label when one can be inferred from advertisement data.
When an SD card is available, each run is stored in its own directory under /recon using a sequential mission name such as /recon/m0042/.
- Insert an SD card before starting Recon.
- From the main menu, select
Recon. - Select
Start WiFiorStart BLE. - Allow the mission to run while moving through the authorized survey area.
- Exit Recon normally to close the mission and mark it complete.
Only one scan can run at a time. Stop any existing scan before starting Recon.
The dashboard updates once per second and shows elapsed time, observation counters, recent activity, RSSI levels, and GPS-fix state when GPS is installed. WiFi mode also summarizes channel activity, 2.4/5 GHz balance, environmental churn, and recent AP, station, and probe activity. BLE mode shows detected devices and updated sightings with device-type labels when available.
A Recon mission can contain:
-
session.json- mission mode, state, duration, counters, GPS-fix state, and file references -
obs.rlog- AP, station, BLE, repeat, and change observations -
probes.rlog- observed WiFi probe requests -
relations.rlog- observed station/AP relationships - A PCAP capture when the selected mode produces one
Keep the complete mission directory together. The binary .rlog files are authoritative source data and are intended to be processed with the Recon Desktop Tool.
An observed probe or relationship is evidence of radio activity, not proof of ownership, identity, or a current association.
recon wifi
recon ble
recon status
recon stop
recon status prints whether Recon is active. recon stop closes the current Recon mission and stops its scan.
- Home
- About
- FAQ
- Marauder Versions
-
Getting Started
- Menu Navigation
- Arduino IDE Setup
- DIY Platforms
- Installing Firmware
- Wardriving Direct Upload
- Update Firmware
- Hardware
- Status Bar
-
Commandline
- Headless Mode
-
Commands
- attack
- backupspiffs / restore
- btspamall
- btwardrive
- channel
- clearlist
- evilportal
- findmy
- gpsdata
- help
- info
- join
- karma
- led
- list
- load
- mactrack
- packetcount
- pingscan
- reboot
- recon
- save
- scanap
- scansta
- select
- settings
- sigmon
- sniffbt
- sniffraw
- sniffbeacon
- sniffdeauth
- sniffesp
- sniffpmkid
- sniffpwn
- sniffsae
- sourapple
- spoofat
- ssid
- stopscan
- samsungblespam
- swiftpair
- update
- wardrive
- Workflow Examples
- Marauder Settings
- Applications
- Thanks
- Countdown Page
- How to make biscuits and sausage gravy