The WiFiPineapple Beryl AX project re-engineers the GL.iNet GL-MT3000 (Beryl AX) into an open, modular wireless auditing platform built on OpenWrt. It aims to deliver WiFi Pineapple-class functionality with greater transparency, flexibility, and performance — all within the bounds of lawful, ethical network security research.
| Component | Specification | Role |
|---|---|---|
| CPU | MediaTek MT7981B (Dual-Core ARM Cortex-A53 @ 1.3 GHz) | Handles concurrent audit tasks (packet capture, rogue APs, DNS spoofing). |
| RAM | 512 MB DDR4 | Enables concurrent multi-tool sessions (Kismet, Hostapd-Mana, Aircrack-NG). |
| Storage | 256 MB NAND Flash + USB 3.0 External | Supports persistent audit toolkit and long packet captures. |
| Wireless | Dual-band Wi-Fi 6 (AX3000) | Primary radios for reconnaissance and injection. |
| Ethernet | 2.5 G WAN + 1 G LAN | High-speed tethering / data exfil backhaul. |
| Ports | 1 × USB 3.0 Type-A | For external Wi-Fi adapters (Atheros / Realtek). |
| Power | USB-C 5 V 2 A | Portable operation with power banks. |
- OpenWrt v24+ (Mainline)
- Linux 6.6+ kernel
opkgpackage manager with direct access to community repositoriesLuCIandUCIconfiguration interfaces
The repository now includes a Python parser (scripts/capture_parser.py) that supports:
- Parsing JSON, CSV, and
.txtpacket export files (.txttreated as CSV-style input) - Building passive network summaries (AP/client/frame counts)
- Flagging defensive alerts for:
- open networks
- possible evil-twin SSID collisions
- deauth burst activity
This is designed for authorized monitoring and hardening, not active attack automation.
| Tool | Purpose |
|---|---|
aircrack-ng |
Packet capture, WEP/WPA key cracking (for educational use only). |
kismet |
Passive reconnaissance, network mapping. |
hostapd-mana |
Rogue AP emulation and credential harvesting simulations. |
mdk4 |
Stress-testing and wireless fuzzing of target networks. |
dnsmasq-full |
DHCP + DNS emulation for captive portal attacks. |
tcpdump / tshark |
Raw traffic capture and forensic analysis. |
┌───────────────────────────┐
│ OpenWrt Kernel │
│ (Linux 6.6, MT76 Drivers) │
└────────────┬──────────────┘
│
┌────────────▼────────────┐
│ Service Layer │
│ (hostapd-mana, kismet) │
└────────────┬────────────┘
│
┌────────────▼────────────┐
│ Auditing Interface/UI │
│ (LuCI + Python Scripts) │
└────────────┬────────────┘
│
┌────────────▼────────────┐
│ Data Persistence & Logs │
│ (/mnt/usb/audit_logs) │
└─────────────────────────┘
-
Flash Mainline OpenWrt
- Download image: OpenWrt Firmware Selector → GL-MT3000 (Beryl AX)
- Flash via OEM web UI → verify checksum → reboot.
-
Bootstrap Environment
opkg update opkg install aircrack-ng kismet hostapd-mana mdk4 dnsmasq-full tcpdump
-
Configure Wireless Interfaces
radio0: monitoringradio1: rogue AP or client simulation- Optional USB Wi-Fi dongles for extra channels
-
Launch Tools
kismet -c wlan0monhostapd-mana /etc/hostapd/hostapd.conftcpdump -i wlan1 -w capture.pcap
- UI Layer: Flask-based web interface for session management and visual metrics.
- Persistent Storage: Mount
/mnt/usbfor captures and config profiles. - Containerization: Add Podman for modular tool isolation.
- Integration: Optional API endpoints for remote control or dashboard telemetry.
This platform is strictly for authorized security assessments. Usage outside of explicit, documented authorization constitutes a violation of law and professional ethics. Every build and deployment must follow:
- HackerOne Disclosure Guidelines
- EC-Council Code of Ethics
- Applicable Computer Fraud and Abuse statutes in your jurisdiction.
WiFiPineapple-BerylAX/
│
├── firmware/
│ ├── openwrt-image.bin
│ └── sha256sum.txt
│
├── configs/
│ ├── hostapd.conf
│ ├── kismet.conf
│ └── wireless.json
│
├── scripts/
│ ├── setup_openwrt.sh
│ ├── launch_audit.sh
│ └── capture_parser.py
│
├── docs/
│ ├── architecture.md
│ ├── legal_ethics.md
│ └── performance_notes.md
│
├── LICENSE
└── README.md
Released under the GPLv3 License to preserve open-source freedom and auditing transparency.
-
Clone this repository:
git clone https://github.com/yourusername/WiFiPineapple-BerylAX.git cd WiFiPineapple-BerylAX -
Flash OpenWrt to your GL-MT3000 device using the firmware in the
firmware/directory -
Run the setup script:
chmod +x scripts/setup_openwrt.sh ./scripts/setup_openwrt.sh
-
Configure your wireless interfaces using the provided config files in
configs/ -
Launch your first audit session:
chmod +x scripts/launch_audit.sh ./scripts/launch_audit.sh
For detailed setup instructions, see the documentation in the docs/ directory.
Contributions are welcome! Please read our contributing guidelines and ensure all code follows our ethical standards for security research.
- Fork the repository
- Create a feature branch
- Make your changes
- Test thoroughly
- Submit a pull request
This project is intended solely for authorized security testing and educational purposes. Users are responsible for ensuring compliance with all applicable laws and regulations in their jurisdiction. The authors and contributors are not responsible for any misuse of this software.