Bully

WPS brute-force (Reaver alternative).

KaliParrothigh

pkg: bully

Bully implements the WPS PIN brute-force attack with improved handling of certain routers.

Syntax

bully {iface} -b {bssid}

Example

bully wlan0mon -b AA:BB:CC:DD:EE:FF

Brute-forces the WPS PIN of the target AP.

Options & flags

What each switch does. Toggle them in the builder below to assemble a command.

-b <AA:BB:CC:DD:EE:FF>Target AP BSSID.
-c <6>Channel.
-vVerbosity level.
(iface) <wlan0mon>Monitor-mode interface.

Command builder

Tick options (and fill any values) to build a ready-to-copy command.

bully

Usage examples

bully wlan0mon -b AA:BB:CC:DD:EE:FF -c 6

Brute-force the WPS PIN.

Advantages
  • Robust on some routers
  • WPS key recovery
Disadvantages
  • Slow; WPS lockouts
  • WPS only
Tags
#wifi#wps

Official docs: Bully

Related commands

Frequently asked questions

What is Bully used for?
Bully implements the WPS PIN brute-force attack with improved handling of certain routers.
What is an example Bully command?
A common example is: bully wlan0mon -b AA:BB:CC:DD:EE:FF — Brute-forces the WPS PIN of the target AP.
Is Bully part of Kali Linux?
Yes. Bully ships with Kali Linux (and Parrot OS). If missing, install it with: sudo apt install bully.
What category of security tool is Bully?
Bully is a Wireless Attacks tool with a high-risk profile when run against a live target.

Try recon tools live

Run real scans against a domain you control, stage by stage.

Open the lab →