<?xml version="1.0" encoding="UTF-8"?>
<?xml-stylesheet type="text/xsl" media="screen" href="/~d/styles/atom10full.xsl"?><?xml-stylesheet type="text/css" media="screen" href="http://feeds.feedburner.com/~d/styles/itemcontent.css"?><feed xmlns="http://www.w3.org/2005/Atom" xmlns:openSearch="http://a9.com/-/spec/opensearch/1.1/" xmlns:georss="http://www.georss.org/georss" xmlns:gd="http://schemas.google.com/g/2005" xmlns:thr="http://purl.org/syndication/thread/1.0" xmlns:feedburner="http://rssnamespace.org/feedburner/ext/1.0" gd:etag="W/&quot;DU4ASXc4fyp7ImA9WhVbFUk.&quot;"><id>tag:blogger.com,1999:blog-3121270199089759062</id><updated>2012-06-01T03:52:28.937-07:00</updated><category term="Registry hacks" /><category term="Youtube hacks" /><category term="Security Training" /><category term="Security flaws" /><category term="Unix Hacking" /><category term="Footprinting" /><category term="Orkut hacking" /><category term="Duqu" /><category term="contests" /><category term="Xp tricks" /><category term="Wordpress Security" /><category term="VOIP Hacking" /><category term="Google hacks" /><category term="iPhone Hacking" /><category term="Hack Facebook" /><category term="Hacking News" /><category term="My space hacks" /><category term="Website hacking" /><category term="Backtrack 5" /><category term="Computer hacking" /><category term="Sponsored Reivews" /><category term="Skype" /><category term="PTC Hacking" /><category term="Themes" /><category term="Network Security" /><category term="Parental Control softwares" /><category term="Hardware keyloggers" /><category term="Password Hacking softwares" /><category term="USB Hacking" /><category term="Interviews" /><category term="Cheat and tricks" /><category term="Security Tools" /><category term="Wireless Security" /><category term="Blogging tips" /><category term="Hotmail hacks" /><category term="Russian Crimewares" /><category term="Intermediate Hacking" /><category term="facebook" /><category term="Email hacking" /><category term="Msn hacks" /><category term="Counter Strike Cheats" /><category term="Rafay Baloch Books" /><category term="Others" /><category term="Twitter hacks" /><category term="Metasploit" /><category term="videos" /><category term="Ip address" /><category term="Stuxnet" /><category term="Password Cracking" /><category term="Password recovery" /><category term="Gmail hacks" /><category term="Hack Yahoo" /><category term="Windows 7 hacks" /><category term="Hacking Tools" /><category term="Rapidshare hacks" /><category term="Windows performance tips" /><category term="android" /><category term="Hacking basics" /><category term="Hi5 hacks" /><category term="Webserver Security" /><category term="Security tips" /><category term="Telecom Hacking" /><category term="Anonymous web surfing" /><category term="Orkut tricks" /><category term="Data Recovery" /><category term="Reverse Engineering" /><category term="Cracks and Keygens" /><category term="Cellphone hacks" /><category term="Reverting" /><category term="Viruses" /><category term="Data Hiding" /><category term="Browser Exploitation" /><title type="text">Ethical Hacking - Rafayhackingarticles</title><subtitle type="html">Learn How to hack!Get hacking and security tips from expert,Protect yourself from hackers</subtitle><link rel="http://schemas.google.com/g/2005#feed" type="application/atom+xml" href="http://www.rafayhackingarticles.net/feeds/posts/default" /><link rel="alternate" type="text/html" href="http://www.rafayhackingarticles.net/" /><link rel="next" type="application/atom+xml" href="http://www.blogger.com/feeds/3121270199089759062/posts/default?start-index=26&amp;max-results=25&amp;redirect=false&amp;v=2" /><author><name>Rafay Baloch</name><uri>https://profiles.google.com/113902000528448760189</uri><email>noreply@blogger.com</email><gd:image rel="http://schemas.google.com/g/2005#thumbnail" width="32" height="32" src="//lh4.googleusercontent.com/-QFpq0g9Pn_g/AAAAAAAAAAI/AAAAAAAABeU/sxaLN0wQah8/s512-c/photo.jpg" /></author><generator version="7.00" uri="http://www.blogger.com">Blogger</generator><openSearch:totalResults>391</openSearch:totalResults><openSearch:startIndex>1</openSearch:startIndex><openSearch:itemsPerPage>25</openSearch:itemsPerPage><atom10:link xmlns:atom10="http://www.w3.org/2005/Atom" rel="self" type="application/atom+xml" href="http://feeds.feedburner.com/HackingAndCracking" /><feedburner:info uri="hackingandcracking" /><atom10:link xmlns:atom10="http://www.w3.org/2005/Atom" rel="hub" href="http://pubsubhubbub.appspot.com/" /><link rel="license" type="text/html" href="http://creativecommons.org/licenses/by/3.0/" /><logo>http://2.bp.blogspot.com/_fMrF3L8CTmg/S-RW1j1FO1I/AAAAAAAAAbA/0fqDhYt8DLM/S700/RafayHackingarticles+logo.JPG</logo><feedburner:emailServiceId>HackingAndCracking</feedburner:emailServiceId><feedburner:feedburnerHostname>http://feedburner.google.com</feedburner:feedburnerHostname><entry gd:etag="W/&quot;DUMESX44cSp7ImA9WhVUF0o.&quot;"><id>tag:blogger.com,1999:blog-3121270199089759062.post-3710108569993656364</id><published>2012-05-23T05:31:00.000-07:00</published><updated>2012-05-23T05:50:08.039-07:00</updated><app:edited xmlns:app="http://www.w3.org/2007/app">2012-05-23T05:50:08.039-07:00</app:edited><title>Learn How To Hack With MrCracker InnerCircle</title><content type="html">&lt;br /&gt;
Few weeks ago we announced on our&lt;b&gt; &lt;a href="http://facebook.com/rafayhackingarticles"&gt;Facebook Page&lt;/a&gt;&lt;/b&gt; that we are going to partner with &lt;a href="http://mrcracker.com/member.php?af=1382544" rel="nofollow"&gt;mrcracker.com&lt;/a&gt; in order to offer an amazing training for you. Mrcracker.com is one of the widely recognized Internet security blogs, offering tons and tons of useful stuff related to Ethical hacking and security. Therefore RHA has partnered with MrCracker.com to offer amazing &lt;b&gt;Ethical Hacker Training&lt;/b&gt;! Watch the video for more information.&lt;br /&gt;
&lt;br /&gt;
&lt;div class="separator" style="clear: both; text-align: center;"&gt;
&lt;br /&gt;&lt;/div&gt;
&lt;object style="height: 390px; width: 577px;"&gt;&lt;param name="movie" value="http://www.youtube.com/v/qqXE4ZanRLw?version=3&amp;feature=player_detailpage"&gt;


&lt;param name="allowFullScreen" value="true"&gt;


&lt;param name="allowScriptAccess" value="always"&gt;


&lt;embed src="http://www.youtube.com/v/qqXE4ZanRLw?version=3&amp;feature=player_detailpage" type="application/x-shockwave-flash" allowfullscreen="true" allowScriptAccess="always" width="577" height="400"&gt;&lt;/object&gt;&lt;br /&gt;
&lt;br /&gt;
&lt;span style="font-style: italic; font-weight: bold;"&gt;USE COUPON CODE:&amp;nbsp;&lt;/span&gt;&lt;span style="background-color: yellow; font-style: italic; font-weight: bold;"&gt;&lt;u&gt;RAFAY25&lt;/u&gt;&amp;nbsp;&lt;/span&gt;&lt;span style="font-style: italic; font-weight: bold;"&gt;FOR 25% OFF ALL MRCRACKER.COM INNER CIRCLE MEMBERSHIPS AND LEARN HOW TO HACK TODAY!&lt;/span&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;a href="http://mrcracker.com/member.php?af=1382544"&gt;&lt;img src="http://www.mrcracker.com/inner-circle/btn.png" /&gt;&lt;/a&gt;&lt;br /&gt;
&lt;br /&gt;
&lt;a name='more'&gt;&lt;/a&gt;&lt;br /&gt;
&lt;h4&gt;Frequently Asked Questions&lt;/h4&gt;
&lt;ul class="QA" style="background-color: white; border: 0px; color: #555555; font-family: 'Trebuchet MS'; font-size: 14px; line-height: 15px; list-style: none; margin: 0px 0px 30px; outline: 0px; padding: 0px; vertical-align: baseline; width: 577px;"&gt;
&lt;li class="question" style="background-image: url(http://rafay.mrcracker.com/images/question.png); background-position: 0px 0px; background-repeat: no-repeat no-repeat; border: 0px; color: #004681; font-family: arial; font-size: 16px; font-weight: bold; line-height: normal; margin: 15px 0px; outline: 0px; padding: 3px 0px 0px 30px; vertical-align: baseline;"&gt;There's a LOT of information inside the Academy! Will it cost me thousands to get access to it?&lt;/li&gt;
&lt;li class="answer" style="background-image: url(http://rafay.mrcracker.com/images/answer.png); background-position: 0px 0px; background-repeat: no-repeat no-repeat; border: 0px; margin: 15px 0px; outline: 0px; padding: 3px 0px 0px 30px; vertical-align: baseline;"&gt;You'll be excited to know that EVERYTHING in the&amp;nbsp;&lt;a href="http://mrcracker.com/member.php?af=1382544"&gt;&lt;b&gt;MrCracker Inner Circle&lt;/b&gt;&amp;nbsp;&lt;/a&gt;is available to the general public for just $47 per month. For the cost of a couple nice dinners out, you'll be tapping into the most in-depth and easy-to-use Ethical Hacker training community ever offered. Honestly, it's a no-brainer.&lt;/li&gt;
&lt;li class="question" style="background-image: url(http://rafay.mrcracker.com/images/question.png); background-position: 0px 0px; background-repeat: no-repeat no-repeat; border: 0px; color: #004681; font-family: arial; font-size: 16px; font-weight: bold; line-height: normal; margin: 15px 0px; outline: 0px; padding: 3px 0px 0px 30px; vertical-align: baseline;"&gt;Is this one of those membership sites where you guys put some material in it and never update it again?&lt;/li&gt;
&lt;li class="answer" style="background-image: url(http://rafay.mrcracker.com/images/answer.png); background-position: 0px 0px; background-repeat: no-repeat no-repeat; border: 0px; margin: 15px 0px; outline: 0px; padding: 3px 0px 0px 30px; vertical-align: baseline;"&gt;Sorry if you've had that experience before, but that's not the way we roll. When you activate your membership, the MrCracker Inner Circle will have a lot of training and resources ready to roll. Enough to keep you busy for a long time.&lt;br /&gt;&lt;br /&gt;PLUS... we'll keep adding more valuable lessons, strategies, tools, and resources every single month. Sometimes even more frequently than that.&amp;nbsp;Why? Because the security/hacking scene is fast-moving and always changing.&lt;/li&gt;
&lt;li class="answer" style="background-image: url(http://rafay.mrcracker.com/images/answer.png); background-position: 0px 0px; background-repeat: no-repeat no-repeat; border: 0px; margin: 15px 0px; outline: 0px; padding: 3px 0px 0px 30px; vertical-align: baseline;"&gt;We're committed to keeping you "in the know" with the latest and greatest techniques to keep your hacker skills moving in the right direction. And the best way we know how to make that happen for you is to continually give you the most up-to-date training material available anywhere.&lt;/li&gt;
&lt;li class="question" style="background-image: url(http://rafay.mrcracker.com/images/question.png); background-position: 0px 0px; background-repeat: no-repeat no-repeat; border: 0px; color: #004681; font-family: arial; font-size: 16px; font-weight: bold; line-height: normal; margin: 15px 0px; outline: 0px; padding: 3px 0px 0px 30px; vertical-align: baseline;"&gt;What if I know I'm going to love it - is there a "Lifetime" membership available so I don't have to worry about monthly dues?&lt;/li&gt;
&lt;li class="answer" style="background-image: url(http://rafay.mrcracker.com/images/answer.png); background-position: 0px 0px; background-repeat: no-repeat no-repeat; border: 0px; margin: 15px 0px; outline: 0px; padding: 3px 0px 0px 30px; vertical-align: baseline;"&gt;Yes. For those who want to guarantee lifetime access to everything in the MrCracker Inner Circle - both now and in the future - a Lifetime Membership is available.&lt;br /&gt;&lt;br /&gt;The cost for the Lifetime Membership is one time payment of $497.&lt;/li&gt;
&lt;li class="question" style="background-image: url(http://rafay.mrcracker.com/images/question.png); background-position: 0px 0px; background-repeat: no-repeat no-repeat; border: 0px; color: #004681; font-family: arial; font-size: 16px; font-weight: bold; line-height: normal; margin: 15px 0px; outline: 0px; padding: 3px 0px 0px 30px; vertical-align: baseline;"&gt;If I decide to give it a try, will I be locked into the MrCracker Inner Circle for a long time?&lt;/li&gt;
&lt;li class="answer" style="background-image: url(http://rafay.mrcracker.com/images/answer.png); background-position: 0px 0px; background-repeat: no-repeat no-repeat; border: 0px; margin: 15px 0px; outline: 0px; padding: 3px 0px 0px 30px; vertical-align: baseline;"&gt;The MrCracker Inner Circle is completely month-to-month with no long-term commitments. If you're not happy with what we have to offer, we don't want you spending your hard-earned money on it.&lt;/li&gt;
&lt;li class="question" style="background-image: url(http://rafay.mrcracker.com/images/question.png); background-position: 0px 0px; background-repeat: no-repeat no-repeat; border: 0px; color: #004681; font-family: arial; font-size: 16px; font-weight: bold; line-height: normal; margin: 15px 0px; outline: 0px; padding: 3px 0px 0px 30px; vertical-align: baseline;"&gt;What do the hacker training courses consist of?&lt;/li&gt;
&lt;li class="answer" style="background-image: url(http://rafay.mrcracker.com/images/answer.png); background-position: 0px 0px; background-repeat: no-repeat no-repeat; border: 0px; margin: 15px 0px; outline: 0px; padding: 3px 0px 0px 30px; vertical-align: baseline;"&gt;Each courses consist of reading parts, if you don't like to read, there are audio parts, video parts where I show you first hand how to complete the hacker techniques taught and finally a haxercise. Haxercise are practice environments where I allow you to safely and legally practice the hacker techniques taught.&lt;/li&gt;
&lt;/ul&gt;
&lt;div&gt;
&lt;/div&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/3121270199089759062-3710108569993656364?l=www.rafayhackingarticles.net' alt='' /&gt;&lt;/div&gt;&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/HackingAndCracking?a=fHnTe1Ag84g:g-QrR_syhvc:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/HackingAndCracking?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/HackingAndCracking?a=fHnTe1Ag84g:g-QrR_syhvc:63t7Ie-LG7Y"&gt;&lt;img src="http://feeds.feedburner.com/~ff/HackingAndCracking?d=63t7Ie-LG7Y" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/HackingAndCracking?a=fHnTe1Ag84g:g-QrR_syhvc:-BTjWOF_DHI"&gt;&lt;img src="http://feeds.feedburner.com/~ff/HackingAndCracking?i=fHnTe1Ag84g:g-QrR_syhvc:-BTjWOF_DHI" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/HackingAndCracking?a=fHnTe1Ag84g:g-QrR_syhvc:V_sGLiPBpWU"&gt;&lt;img src="http://feeds.feedburner.com/~ff/HackingAndCracking?i=fHnTe1Ag84g:g-QrR_syhvc:V_sGLiPBpWU" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/HackingAndCracking?a=fHnTe1Ag84g:g-QrR_syhvc:qj6IDK7rITs"&gt;&lt;img src="http://feeds.feedburner.com/~ff/HackingAndCracking?d=qj6IDK7rITs" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/HackingAndCracking?a=fHnTe1Ag84g:g-QrR_syhvc:gIN9vFwOqvQ"&gt;&lt;img src="http://feeds.feedburner.com/~ff/HackingAndCracking?i=fHnTe1Ag84g:g-QrR_syhvc:gIN9vFwOqvQ" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/HackingAndCracking?a=fHnTe1Ag84g:g-QrR_syhvc:4cEx4HpKnUU"&gt;&lt;img src="http://feeds.feedburner.com/~ff/HackingAndCracking?i=fHnTe1Ag84g:g-QrR_syhvc:4cEx4HpKnUU" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;&lt;img src="http://feeds.feedburner.com/~r/HackingAndCracking/~4/fHnTe1Ag84g" height="1" width="1"/&gt;</content><link rel="replies" type="application/atom+xml" href="http://www.rafayhackingarticles.net/feeds/3710108569993656364/comments/default" title="Post Comments" /><link rel="replies" type="text/html" href="http://www.rafayhackingarticles.net/2012/05/learn-how-to-hack-with-mrcracker.html#comment-form" title="4 Comments" /><link rel="edit" type="application/atom+xml" href="http://www.blogger.com/feeds/3121270199089759062/posts/default/3710108569993656364?v=2" /><link rel="self" type="application/atom+xml" href="http://www.blogger.com/feeds/3121270199089759062/posts/default/3710108569993656364?v=2" /><link rel="alternate" type="text/html" href="http://feedproxy.google.com/~r/HackingAndCracking/~3/fHnTe1Ag84g/learn-how-to-hack-with-mrcracker.html" title="Learn How To Hack With MrCracker InnerCircle" /><author><name>Rafay Baloch</name><uri>https://profiles.google.com/113902000528448760189</uri><email>noreply@blogger.com</email><gd:image rel="http://schemas.google.com/g/2005#thumbnail" width="32" height="32" src="//lh4.googleusercontent.com/-QFpq0g9Pn_g/AAAAAAAAAAI/AAAAAAAABeU/sxaLN0wQah8/s512-c/photo.jpg" /></author><thr:total>4</thr:total><feedburner:origLink>http://www.rafayhackingarticles.net/2012/05/learn-how-to-hack-with-mrcracker.html</feedburner:origLink></entry><entry gd:etag="W/&quot;D0YAQHs8eyp7ImA9WhVVGEk.&quot;"><id>tag:blogger.com,1999:blog-3121270199089759062.post-6629647473584527965</id><published>2012-05-12T10:44:00.000-07:00</published><updated>2012-05-12T10:52:21.573-07:00</updated><app:edited xmlns:app="http://www.w3.org/2007/app">2012-05-12T10:52:21.573-07:00</app:edited><title>Hacking Software - oclHashcat-plus v0.08</title><content type="html">&lt;a href="http://1.bp.blogspot.com/-f6EEXVKFcxU/T66FYlmyXQI/AAAAAAAAAMc/cnGY_3QSFYs/s1600/images.jpg" style="margin-left: 1em; margin-right: 1em; text-align: center;"&gt;&lt;img border="0" height="296" src="http://1.bp.blogspot.com/-f6EEXVKFcxU/T66FYlmyXQI/AAAAAAAAAMc/cnGY_3QSFYs/s400/images.jpg" width="400" /&gt;&lt;/a&gt;
&lt;br /&gt;
&lt;b&gt;&lt;br /&gt;&lt;/b&gt;&lt;br /&gt;
&lt;b&gt;What is oclHashcat-plus v0.08 ?
&lt;/b&gt;

oclHashcat-plus v0.08 worlds first ''GPU" based rule engine.It is also the worlds fastest phpass, mscash2,md5crypt and WPA/WPA2 cracker.&lt;br /&gt;
&lt;br /&gt;
&lt;b&gt;Description -&amp;nbsp;&lt;/b&gt;oclHashcat-plus v0.08 ius an advanced password hacking software which is highly efficient and works faster than any other software of it's genre.There are a number of algorithms implemented in it and it has many features which make it the best software available for password cracker.&lt;br /&gt;
&lt;a name='more'&gt;&lt;/a&gt;&lt;br /&gt;
&lt;b&gt;Some of it's Features&amp;nbsp;&lt;/b&gt;&lt;br /&gt;
&lt;br /&gt;
&lt;b&gt;

1.&lt;/b&gt;Multi-GPU (up to 16 gpus)&lt;br /&gt;
&lt;br /&gt;
&lt;b&gt;2.&lt;/b&gt;Multi-Hash (up to 24 million hashes)&lt;br /&gt;
&lt;br /&gt;
&lt;b&gt;3.&lt;/b&gt;Multi-OS (Linux &amp;amp; Windows native binaries)&lt;br /&gt;
&lt;br /&gt;
&lt;b&gt;4.&lt;/b&gt;Multi-Platform (OpenCL &amp;amp; CUDA support)&lt;br /&gt;
&lt;br /&gt;
&lt;b&gt;5.&lt;/b&gt;Supports reading words from file.&lt;br /&gt;
&lt;br /&gt;
&lt;b&gt;6.&lt;/b&gt;Supports reading words from stdin&lt;br /&gt;
&lt;br /&gt;
&lt;b&gt;7.&lt;/b&gt;Integrated thermal watchdog
And many more..&lt;br /&gt;
&lt;br /&gt;
&lt;b&gt;Algorithms implemented -&amp;nbsp;&lt;/b&gt;&lt;br /&gt;
&lt;br /&gt;
1.Joomla.&lt;br /&gt;
2.MD5.&lt;br /&gt;
3.Oracle 11g.&lt;br /&gt;
4.MSSQL - 2000.&lt;br /&gt;
5.MSSQl -2005.&lt;br /&gt;
6.MySQl.&lt;br /&gt;
7.Phpass.&lt;br /&gt;
8.Oracle 7-10g.&lt;br /&gt;
9.SHA256.&lt;br /&gt;
10.NTLM.&lt;br /&gt;
11.MD4.&lt;br /&gt;
12.OSX10.7.&lt;br /&gt;
13.CISCO-PIX MD5.&lt;br /&gt;
14.Double MD5.&lt;br /&gt;
15.SSHA.&lt;br /&gt;
16.SHA-1(Base64), nsldap, Netscape LDAP SHA.&lt;br /&gt;
17.SSHA-1(Base64), nsldaps, Netscape LDAP.&lt;br /&gt;
18.DCC,mscash.&lt;br /&gt;
19.OSX v10.4, v10.5, v10.6.&lt;br /&gt;
20.SHA1.&lt;br /&gt;
&lt;br /&gt;
&lt;b&gt;Modes of Attack-&amp;nbsp;&lt;/b&gt;&lt;br /&gt;
&lt;br /&gt;
1.Straight &lt;br /&gt;
2.Combination&lt;br /&gt;
3.Brute-force&lt;br /&gt;
4.Permutation&lt;br /&gt;
5.Hybrid dict + mask&lt;br /&gt;
6.Hybrid mask + dict&lt;br /&gt;
&lt;b&gt;&lt;span style="font-size: large;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/b&gt;&lt;br /&gt;
&lt;b&gt;&lt;span style="font-size: large;"&gt;Cracking a WPA handshake with OclHashcat-Plus(Video)&lt;/span&gt;&lt;/b&gt;&lt;br /&gt;
&lt;b&gt;&lt;br /&gt;&lt;/b&gt;&lt;br /&gt;
&lt;iframe allowfullscreen="" frameborder="0" height="390" src="http://www.youtube.com/embed/uGFjEGyjUcU" width="577"&gt;&lt;/iframe&gt;&lt;br /&gt;
&lt;b&gt;&lt;br /&gt;&lt;/b&gt;&lt;br /&gt;
&lt;b&gt;About The Author&lt;/b&gt;&lt;br /&gt;
&lt;br /&gt;
This article is written by Shikhil Sharma, He blogs at &lt;b&gt;www.hacking-tweaks.blogspot.com/.&lt;/b&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/3121270199089759062-6629647473584527965?l=www.rafayhackingarticles.net' alt='' /&gt;&lt;/div&gt;&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/HackingAndCracking?a=st1HaywS-gs:ISXbNeZ-pcI:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/HackingAndCracking?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/HackingAndCracking?a=st1HaywS-gs:ISXbNeZ-pcI:63t7Ie-LG7Y"&gt;&lt;img src="http://feeds.feedburner.com/~ff/HackingAndCracking?d=63t7Ie-LG7Y" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/HackingAndCracking?a=st1HaywS-gs:ISXbNeZ-pcI:-BTjWOF_DHI"&gt;&lt;img src="http://feeds.feedburner.com/~ff/HackingAndCracking?i=st1HaywS-gs:ISXbNeZ-pcI:-BTjWOF_DHI" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/HackingAndCracking?a=st1HaywS-gs:ISXbNeZ-pcI:V_sGLiPBpWU"&gt;&lt;img src="http://feeds.feedburner.com/~ff/HackingAndCracking?i=st1HaywS-gs:ISXbNeZ-pcI:V_sGLiPBpWU" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/HackingAndCracking?a=st1HaywS-gs:ISXbNeZ-pcI:qj6IDK7rITs"&gt;&lt;img src="http://feeds.feedburner.com/~ff/HackingAndCracking?d=qj6IDK7rITs" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/HackingAndCracking?a=st1HaywS-gs:ISXbNeZ-pcI:gIN9vFwOqvQ"&gt;&lt;img src="http://feeds.feedburner.com/~ff/HackingAndCracking?i=st1HaywS-gs:ISXbNeZ-pcI:gIN9vFwOqvQ" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/HackingAndCracking?a=st1HaywS-gs:ISXbNeZ-pcI:4cEx4HpKnUU"&gt;&lt;img src="http://feeds.feedburner.com/~ff/HackingAndCracking?i=st1HaywS-gs:ISXbNeZ-pcI:4cEx4HpKnUU" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;&lt;img src="http://feeds.feedburner.com/~r/HackingAndCracking/~4/st1HaywS-gs" height="1" width="1"/&gt;</content><link rel="replies" type="application/atom+xml" href="http://www.rafayhackingarticles.net/feeds/6629647473584527965/comments/default" title="Post Comments" /><link rel="replies" type="text/html" href="http://www.rafayhackingarticles.net/2012/05/hacking-software-oclhashcat-plus-v008.html#comment-form" title="6 Comments" /><link rel="edit" type="application/atom+xml" href="http://www.blogger.com/feeds/3121270199089759062/posts/default/6629647473584527965?v=2" /><link rel="self" type="application/atom+xml" href="http://www.blogger.com/feeds/3121270199089759062/posts/default/6629647473584527965?v=2" /><link rel="alternate" type="text/html" href="http://feedproxy.google.com/~r/HackingAndCracking/~3/st1HaywS-gs/hacking-software-oclhashcat-plus-v008.html" title="Hacking Software - oclHashcat-plus v0.08" /><author><name>Rafay Baloch</name><uri>https://profiles.google.com/113902000528448760189</uri><email>noreply@blogger.com</email><gd:image rel="http://schemas.google.com/g/2005#thumbnail" width="32" height="32" src="//lh4.googleusercontent.com/-QFpq0g9Pn_g/AAAAAAAAAAI/AAAAAAAABeU/sxaLN0wQah8/s512-c/photo.jpg" /></author><media:thumbnail xmlns:media="http://search.yahoo.com/mrss/" url="http://1.bp.blogspot.com/-f6EEXVKFcxU/T66FYlmyXQI/AAAAAAAAAMc/cnGY_3QSFYs/s72-c/images.jpg" height="72" width="72" /><thr:total>6</thr:total><feedburner:origLink>http://www.rafayhackingarticles.net/2012/05/hacking-software-oclhashcat-plus-v008.html</feedburner:origLink></entry><entry gd:etag="W/&quot;DkAMQXc6eyp7ImA9WhVVGE8.&quot;"><id>tag:blogger.com,1999:blog-3121270199089759062.post-8522949705923238730</id><published>2012-05-11T11:40:00.003-07:00</published><updated>2012-05-12T05:13:00.913-07:00</updated><app:edited xmlns:app="http://www.w3.org/2007/app">2012-05-12T05:13:00.913-07:00</app:edited><title>Facebook Strengthen's It's Security By Launching Antivirus MarketPlace</title><content type="html">&lt;br /&gt;
&lt;div class="separator" style="clear: both; text-align: center;"&gt;
&lt;a href="http://2.bp.blogspot.com/-VfyocAhsOw8/T5mi7BA4AWI/AAAAAAAAALQ/E4aWyk5SBko/s1600/fb.PNG" style="margin-left: 1em; margin-right: 1em;"&gt;&lt;img border="0" height="414" src="http://2.bp.blogspot.com/-VfyocAhsOw8/T5mi7BA4AWI/AAAAAAAAALQ/E4aWyk5SBko/s640/fb.PNG" width="577" /&gt;&lt;/a&gt;&lt;/div&gt;
&lt;div style="font-family: Verdana, sans-serif; text-align: left;"&gt;
From last few months Facebook users are facing lots of trouble due to dramatic growth of malware and spams on facebook .We here at RHA have covered lots of facebook related spams like&amp;nbsp;&lt;a href="http://www.rafayhackingarticles.net/2011/10/facebook-scammers-exploit-steve-jobs.html" target="_blank"&gt;Facebook Scammers Exploit Steve Jobs Death&lt;/a&gt;&amp;nbsp;,&amp;nbsp;&lt;a href="http://www.rafayhackingarticles.net/2011/05/dad-catches-daughters-on-webcam-beware.html" target="_blank"&gt;DAD CATCHES DAUGHTERS ON WEBCAM -Beware Facebook Viral Scam&lt;/a&gt;&amp;nbsp;,&amp;nbsp;&lt;a href="http://www.rafayhackingarticles.net/2012/03/hijacking-facebook-users-clickjacking.html" target="_blank"&gt;Hijacking Facebook Users With Clickjacking Attack&amp;nbsp;&amp;nbsp;&lt;/a&gt;etc.&lt;/div&gt;
&lt;div style="font-family: Verdana, sans-serif; text-align: left;"&gt;
&lt;a name='more'&gt;&lt;/a&gt;Seeing these repetitive attacks , Facebook yesterday launched&amp;nbsp;&lt;i&gt;Antivirus Marketplace&lt;/i&gt;&amp;nbsp;to increase the protection of Facebook users.&amp;nbsp;&lt;b&gt;McAfee, TrendMicro, Sophos,Microsoft and Symantec&lt;/b&gt;&amp;nbsp;will will augment Facebook's URL&amp;nbsp;&lt;i&gt;&lt;b&gt;blacklis&lt;/b&gt;&lt;/i&gt;t system with their own URL blacklist databases.&lt;/div&gt;
&lt;div style="font-family: Verdana, sans-serif; text-align: left;"&gt;
The Antivirus Marketplace will also let facebook users to download full version antiviruses with no charge for 6 months ! This service for free download is available to Mac as well as Pc users and a user can download any one antivirus of his choice from his account.&lt;/div&gt;
&lt;div style="font-family: Verdana, sans-serif; text-align: left;"&gt;
&lt;br /&gt;&lt;/div&gt;
&lt;div style="font-family: Verdana, sans-serif; text-align: left;"&gt;
But the big question is what will happen after the 901 million facebook users have ended up their 6 month free full version,how many of them will bother to spend bucks to renew it ? !&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;b&gt;About The Author:&amp;nbsp;&lt;/b&gt;&lt;br /&gt;
&lt;br /&gt;
This article is written by Shikhil Sharma.&lt;/div&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/3121270199089759062-8522949705923238730?l=www.rafayhackingarticles.net' alt='' /&gt;&lt;/div&gt;&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/HackingAndCracking?a=NFFRpoxrkG0:xUmfQCzr-jw:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/HackingAndCracking?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/HackingAndCracking?a=NFFRpoxrkG0:xUmfQCzr-jw:63t7Ie-LG7Y"&gt;&lt;img src="http://feeds.feedburner.com/~ff/HackingAndCracking?d=63t7Ie-LG7Y" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/HackingAndCracking?a=NFFRpoxrkG0:xUmfQCzr-jw:-BTjWOF_DHI"&gt;&lt;img src="http://feeds.feedburner.com/~ff/HackingAndCracking?i=NFFRpoxrkG0:xUmfQCzr-jw:-BTjWOF_DHI" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/HackingAndCracking?a=NFFRpoxrkG0:xUmfQCzr-jw:V_sGLiPBpWU"&gt;&lt;img src="http://feeds.feedburner.com/~ff/HackingAndCracking?i=NFFRpoxrkG0:xUmfQCzr-jw:V_sGLiPBpWU" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/HackingAndCracking?a=NFFRpoxrkG0:xUmfQCzr-jw:qj6IDK7rITs"&gt;&lt;img src="http://feeds.feedburner.com/~ff/HackingAndCracking?d=qj6IDK7rITs" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/HackingAndCracking?a=NFFRpoxrkG0:xUmfQCzr-jw:gIN9vFwOqvQ"&gt;&lt;img src="http://feeds.feedburner.com/~ff/HackingAndCracking?i=NFFRpoxrkG0:xUmfQCzr-jw:gIN9vFwOqvQ" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/HackingAndCracking?a=NFFRpoxrkG0:xUmfQCzr-jw:4cEx4HpKnUU"&gt;&lt;img src="http://feeds.feedburner.com/~ff/HackingAndCracking?i=NFFRpoxrkG0:xUmfQCzr-jw:4cEx4HpKnUU" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;&lt;img src="http://feeds.feedburner.com/~r/HackingAndCracking/~4/NFFRpoxrkG0" height="1" width="1"/&gt;</content><link rel="replies" type="application/atom+xml" href="http://www.rafayhackingarticles.net/feeds/8522949705923238730/comments/default" title="Post Comments" /><link rel="replies" type="text/html" href="http://www.rafayhackingarticles.net/2012/05/facebook-strengthens-its-security.html#comment-form" title="2 Comments" /><link rel="edit" type="application/atom+xml" href="http://www.blogger.com/feeds/3121270199089759062/posts/default/8522949705923238730?v=2" /><link rel="self" type="application/atom+xml" href="http://www.blogger.com/feeds/3121270199089759062/posts/default/8522949705923238730?v=2" /><link rel="alternate" type="text/html" href="http://feedproxy.google.com/~r/HackingAndCracking/~3/NFFRpoxrkG0/facebook-strengthens-its-security.html" title="Facebook Strengthen's It's Security By Launching Antivirus MarketPlace" /><author><name>Rafay Baloch</name><uri>https://profiles.google.com/113902000528448760189</uri><email>noreply@blogger.com</email><gd:image rel="http://schemas.google.com/g/2005#thumbnail" width="32" height="32" src="//lh4.googleusercontent.com/-QFpq0g9Pn_g/AAAAAAAAAAI/AAAAAAAABeU/sxaLN0wQah8/s512-c/photo.jpg" /></author><media:thumbnail xmlns:media="http://search.yahoo.com/mrss/" url="http://2.bp.blogspot.com/-VfyocAhsOw8/T5mi7BA4AWI/AAAAAAAAALQ/E4aWyk5SBko/s72-c/fb.PNG" height="72" width="72" /><thr:total>2</thr:total><feedburner:origLink>http://www.rafayhackingarticles.net/2012/05/facebook-strengthens-its-security.html</feedburner:origLink></entry><entry gd:etag="W/&quot;DUMDRXk4fip7ImA9WhVVE0s.&quot;"><id>tag:blogger.com,1999:blog-3121270199089759062.post-5214500242088367997</id><published>2012-05-06T13:06:00.000-07:00</published><updated>2012-05-06T22:11:14.736-07:00</updated><app:edited xmlns:app="http://www.w3.org/2007/app">2012-05-06T22:11:14.736-07:00</app:edited><title>Officially Launching IncomeFigure</title><content type="html">&lt;div class="separator" style="clear: both; text-align: center;"&gt;
&lt;a href="http://1.bp.blogspot.com/-Yx7a3ApIso4/T6bZdTxXQpI/AAAAAAAAB98/Cn-DVnISazg/s1600/Untitled.png" imageanchor="1" style="margin-left: 1em; margin-right: 1em;"&gt;&lt;img border="0" height="368" src="http://1.bp.blogspot.com/-Yx7a3ApIso4/T6bZdTxXQpI/AAAAAAAAB98/Cn-DVnISazg/s640/Untitled.png" width="577" /&gt;&lt;/a&gt;&lt;/div&gt;
&lt;br /&gt;
I am&amp;nbsp;extremely&amp;nbsp;proud to say that I am officially launching my next big project "&lt;b&gt;&lt;a href="http://incomefigure.com/"&gt;Income Figure&lt;/a&gt;&lt;/b&gt;". Apart from an Ethical hacker, I am also a blogger, Internet Marketer and a SEO expert. I have been getting requests from lots and lots of my readers to post SEO related stuff on RHA. However, I have restricted the content of RHA&amp;nbsp;strictly&amp;nbsp;to &lt;b&gt;&lt;a href="http://rafayhackingarticles.net/"&gt;Ethical hacking&lt;/a&gt;&lt;/b&gt; and Penetration testing. As I want to target a specific piece of audience who are interested in hacking and security. Therefore I didn't wanted to mix up my content with stuffs like &lt;b&gt;&lt;a href="http://www.incomefigure.com/2012/05/wordpress-seo-secrets-part-i.html"&gt;Wordpress SEO&lt;/a&gt;&lt;/b&gt;, Blogger SEO etc. That evolved the idea of building up a blog like incomefigure.com.&lt;br /&gt;
&lt;div style="text-align: -webkit-auto;"&gt;
&lt;a name='more'&gt;&lt;/a&gt;&lt;/div&gt;
&lt;br /&gt;
&lt;b&gt;What's Our Aim?&lt;/b&gt;&lt;br /&gt;
&lt;b&gt;&lt;br /&gt;&lt;/b&gt;&lt;br /&gt;
Our mission is simple, It's to help newbie bloggers and webmasters who get easily fooled by so called people like &lt;b&gt;"Internet Marketing Guru"&lt;/b&gt;, &lt;b&gt;"Money Making Guru". &lt;/b&gt;Our aim is also to help college, university students to become full time bloggers with least amount of effort. There are couple of authors working with me on this project, However I will try to be as frequent as possible. If you want to contribute along with me, kindly shoot me an email to &lt;b&gt;&lt;i&gt;&lt;u&gt;rafayhackingarticles@gmail.com&lt;/u&gt;&lt;/i&gt;How Can You Help RHA?&lt;/b&gt;&lt;br /&gt;
&lt;br /&gt;
Since past few years RHA has served the hacking community with up to date material related to Ethical hacking and security, If you would like to return us a favor. Kindly suggest/promote our blog to your friends, relatives etc.

&lt;b style="background-color: yellow;"&gt;Note:&lt;/b&gt; Do not forget to show your love by liking &lt;b&gt;&lt;a href="http://facebook.com/incomefigure"&gt;IncomeFigure&lt;/a&gt;&lt;/b&gt; on Facebook Fan Page , and circling it on&lt;b&gt;&lt;a href="https://plus.google.com/109219642215853807686"&gt; Google Plus&lt;/a&gt;&lt;/b&gt;.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/3121270199089759062-5214500242088367997?l=www.rafayhackingarticles.net' alt='' /&gt;&lt;/div&gt;&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/HackingAndCracking?a=OVyVMtBitrg:ch3dmBqWBJg:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/HackingAndCracking?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/HackingAndCracking?a=OVyVMtBitrg:ch3dmBqWBJg:63t7Ie-LG7Y"&gt;&lt;img src="http://feeds.feedburner.com/~ff/HackingAndCracking?d=63t7Ie-LG7Y" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/HackingAndCracking?a=OVyVMtBitrg:ch3dmBqWBJg:-BTjWOF_DHI"&gt;&lt;img src="http://feeds.feedburner.com/~ff/HackingAndCracking?i=OVyVMtBitrg:ch3dmBqWBJg:-BTjWOF_DHI" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/HackingAndCracking?a=OVyVMtBitrg:ch3dmBqWBJg:V_sGLiPBpWU"&gt;&lt;img src="http://feeds.feedburner.com/~ff/HackingAndCracking?i=OVyVMtBitrg:ch3dmBqWBJg:V_sGLiPBpWU" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/HackingAndCracking?a=OVyVMtBitrg:ch3dmBqWBJg:qj6IDK7rITs"&gt;&lt;img src="http://feeds.feedburner.com/~ff/HackingAndCracking?d=qj6IDK7rITs" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/HackingAndCracking?a=OVyVMtBitrg:ch3dmBqWBJg:gIN9vFwOqvQ"&gt;&lt;img src="http://feeds.feedburner.com/~ff/HackingAndCracking?i=OVyVMtBitrg:ch3dmBqWBJg:gIN9vFwOqvQ" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/HackingAndCracking?a=OVyVMtBitrg:ch3dmBqWBJg:4cEx4HpKnUU"&gt;&lt;img src="http://feeds.feedburner.com/~ff/HackingAndCracking?i=OVyVMtBitrg:ch3dmBqWBJg:4cEx4HpKnUU" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;&lt;img src="http://feeds.feedburner.com/~r/HackingAndCracking/~4/OVyVMtBitrg" height="1" width="1"/&gt;</content><link rel="replies" type="application/atom+xml" href="http://www.rafayhackingarticles.net/feeds/5214500242088367997/comments/default" title="Post Comments" /><link rel="replies" type="text/html" href="http://www.rafayhackingarticles.net/2012/05/officially-launching-incomefigure.html#comment-form" title="6 Comments" /><link rel="edit" type="application/atom+xml" href="http://www.blogger.com/feeds/3121270199089759062/posts/default/5214500242088367997?v=2" /><link rel="self" type="application/atom+xml" href="http://www.blogger.com/feeds/3121270199089759062/posts/default/5214500242088367997?v=2" /><link rel="alternate" type="text/html" href="http://feedproxy.google.com/~r/HackingAndCracking/~3/OVyVMtBitrg/officially-launching-incomefigure.html" title="Officially Launching IncomeFigure" /><author><name>Rafay Baloch</name><uri>https://profiles.google.com/113902000528448760189</uri><email>noreply@blogger.com</email><gd:image rel="http://schemas.google.com/g/2005#thumbnail" width="32" height="32" src="//lh4.googleusercontent.com/-QFpq0g9Pn_g/AAAAAAAAAAI/AAAAAAAABeU/sxaLN0wQah8/s512-c/photo.jpg" /></author><media:thumbnail xmlns:media="http://search.yahoo.com/mrss/" url="http://1.bp.blogspot.com/-Yx7a3ApIso4/T6bZdTxXQpI/AAAAAAAAB98/Cn-DVnISazg/s72-c/Untitled.png" height="72" width="72" /><thr:total>6</thr:total><feedburner:origLink>http://www.rafayhackingarticles.net/2012/05/officially-launching-incomefigure.html</feedburner:origLink></entry><entry gd:etag="W/&quot;DU8BQ3g5eCp7ImA9WhVVEEo.&quot;"><id>tag:blogger.com,1999:blog-3121270199089759062.post-6595763248666135136</id><published>2012-04-26T06:46:00.000-07:00</published><updated>2012-05-03T13:44:12.620-07:00</updated><app:edited xmlns:app="http://www.w3.org/2007/app">2012-05-03T13:44:12.620-07:00</app:edited><category scheme="http://www.blogger.com/atom/ns#" term="Hacking News" /><title>Google Raises Bug Bounty - Great News For Hackers</title><content type="html">&lt;br /&gt;
&lt;div class="separator" style="clear: both; text-align: center;"&gt;
&lt;a href="http://2.bp.blogspot.com/-69xgGovq2p0/T5kwp8ygxXI/AAAAAAAAAEE/2E1Kdzq63gA/s1600/New+Bitmap+Image.bmp" imageanchor="1" style="margin-left: 1em; margin-right: 1em;"&gt;&lt;img alt="Google bounty" border="0" height="306" src="http://2.bp.blogspot.com/-69xgGovq2p0/T5kwp8ygxXI/AAAAAAAAAEE/2E1Kdzq63gA/s640/New+Bitmap+Image.bmp" title="Rafayhackingarticles.net(hacking news)" width="577" /&gt;&lt;/a&gt;&lt;/div&gt;
&lt;div style="text-align: justify;"&gt;
A good news for the hacking community- The internet giant Google has raised the bounties from $3133 to $20,000.&lt;span id="intellitxt" name="intellitxt"&gt;Most companies that are in the business of providing software or services are willing to pay industrious and benevolent hackers who find bugs in the code. Google has been making use of these folks for quite some time, but now Mountain View is increasing its rewards dramatically in an effort to encourage more people to join the bug hunt. Google previously handed out a maximum of $3133.70, but now will offer&amp;nbsp; up to $20,000 per bug.&lt;/span&gt;&lt;/div&gt;
&lt;div style="text-align: justify;"&gt;
&lt;br /&gt;
&lt;a name='more'&gt;&lt;/a&gt;&lt;br /&gt;&lt;/div&gt;
&lt;div id="yui_3_4_0_25_1335439210715_204" style="text-align: justify;"&gt;
"When we get more bug reports, we get more bug fixes," Google security team manager&amp;nbsp;&lt;span class="yshortcuts cs4-ndcor" id="lw_1335283095_2"&gt;Adam Mein&lt;/span&gt;&amp;nbsp;told AFP. "That is good for our users; that is good for us."&lt;/div&gt;
&lt;div id="yui_3_4_0_25_1335439210715_337" style="text-align: justify;"&gt;
Google has paid out approximately $460,000 since it established the Vulnerability Reward Program.&lt;span id="intellitxt" name="intellitxt"&gt;This rate change increases the incentive for security researchers and the average denizen of the internet to disclose the bugs spotted in Google web services to the source.&lt;/span&gt;&lt;/div&gt;
&lt;div id="yui_3_4_0_25_1335439210715_337" style="text-align: justify;"&gt;
&lt;br /&gt;&lt;/div&gt;
&lt;div id="yui_3_4_0_25_1335439210715_337" style="text-align: justify;"&gt;
&lt;span id="intellitxt" name="intellitxt"&gt;At Google’s Pwnium contest in March, Google paid out $60,000 prizes to anyone that could exploit the Chrome browser. Two people managed to do so, and collected the money. Even at that rate, security researchers have made it clear the exploits would have been worth more if sold to malicious individuals. Google’s $20,000 top payment is likely still far below the market rate.&lt;/span&gt;&lt;span id="intellitxt" name="intellitxt"&gt;&lt;/span&gt;&lt;/div&gt;
&lt;div id="yui_3_4_0_25_1335439210715_337" style="text-align: justify;"&gt;
&lt;span id="intellitxt" name="intellitxt"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/div&gt;
&lt;div id="yui_3_4_0_25_1335439210715_337" style="text-align: justify;"&gt;
&lt;span id="intellitxt" name="intellitxt"&gt;Not all bugs will warrant the new $20,000 payout. Only “critical bugs” that allow remote code execution will be at that level. SQL injections or authentication bypasses will still net you a hefty $10,000 prize, but amounts will vary depending on which Google service is affected.&lt;/span&gt;"We want them to know the reward is there for them if they find the most severe bugs," Mein said.&lt;span id="intellitxt" name="intellitxt"&gt;&lt;/span&gt;&lt;/div&gt;
&lt;div id="yui_3_4_0_25_1335439210715_337" style="text-align: justify;"&gt;
&lt;br /&gt;&lt;/div&gt;
&lt;div class="separator" style="clear: both; text-align: center;"&gt;
&lt;/div&gt;
&lt;div id="yui_3_4_0_25_1335439210715_337" style="text-align: justify;"&gt;
Bugs found in more sensitive services such as Google smartphone "Wallet" software tends to merit more generous rewards. So start working and earn.&lt;/div&gt;
&lt;div id="yui_3_4_0_25_1335439210715_337" style="text-align: justify;"&gt;
&lt;br /&gt;&lt;/div&gt;
&lt;div id="yui_3_4_0_25_1335439210715_337" style="text-align: justify;"&gt;
&lt;b&gt;Author:&lt;/b&gt;&lt;br /&gt;

This article is written by Ajit Singh, Who is newest member of our team, He blogs at&amp;nbsp;&lt;b&gt;www.coolestwebsite.in. &lt;/b&gt;&amp;nbsp;If you would like to become a member of our team, Kindly email at &lt;b&gt;rafayhackingarticles@gmail.com&lt;/b&gt;&lt;/div&gt;
&lt;div style="text-align: justify;"&gt;
&lt;br class="Apple-interchange-newline" /&gt;&lt;/div&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/3121270199089759062-6595763248666135136?l=www.rafayhackingarticles.net' alt='' /&gt;&lt;/div&gt;&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/HackingAndCracking?a=TLUWMg-oVjI:aQHv1CXybCk:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/HackingAndCracking?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/HackingAndCracking?a=TLUWMg-oVjI:aQHv1CXybCk:63t7Ie-LG7Y"&gt;&lt;img src="http://feeds.feedburner.com/~ff/HackingAndCracking?d=63t7Ie-LG7Y" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/HackingAndCracking?a=TLUWMg-oVjI:aQHv1CXybCk:-BTjWOF_DHI"&gt;&lt;img src="http://feeds.feedburner.com/~ff/HackingAndCracking?i=TLUWMg-oVjI:aQHv1CXybCk:-BTjWOF_DHI" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/HackingAndCracking?a=TLUWMg-oVjI:aQHv1CXybCk:V_sGLiPBpWU"&gt;&lt;img src="http://feeds.feedburner.com/~ff/HackingAndCracking?i=TLUWMg-oVjI:aQHv1CXybCk:V_sGLiPBpWU" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/HackingAndCracking?a=TLUWMg-oVjI:aQHv1CXybCk:qj6IDK7rITs"&gt;&lt;img src="http://feeds.feedburner.com/~ff/HackingAndCracking?d=qj6IDK7rITs" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/HackingAndCracking?a=TLUWMg-oVjI:aQHv1CXybCk:gIN9vFwOqvQ"&gt;&lt;img src="http://feeds.feedburner.com/~ff/HackingAndCracking?i=TLUWMg-oVjI:aQHv1CXybCk:gIN9vFwOqvQ" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/HackingAndCracking?a=TLUWMg-oVjI:aQHv1CXybCk:4cEx4HpKnUU"&gt;&lt;img src="http://feeds.feedburner.com/~ff/HackingAndCracking?i=TLUWMg-oVjI:aQHv1CXybCk:4cEx4HpKnUU" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;&lt;img src="http://feeds.feedburner.com/~r/HackingAndCracking/~4/TLUWMg-oVjI" height="1" width="1"/&gt;</content><link rel="replies" type="application/atom+xml" href="http://www.rafayhackingarticles.net/feeds/6595763248666135136/comments/default" title="Post Comments" /><link rel="replies" type="text/html" href="http://www.rafayhackingarticles.net/2012/04/google-raises-bug-bounty-great-news-for.html#comment-form" title="3 Comments" /><link rel="edit" type="application/atom+xml" href="http://www.blogger.com/feeds/3121270199089759062/posts/default/6595763248666135136?v=2" /><link rel="self" type="application/atom+xml" href="http://www.blogger.com/feeds/3121270199089759062/posts/default/6595763248666135136?v=2" /><link rel="alternate" type="text/html" href="http://feedproxy.google.com/~r/HackingAndCracking/~3/TLUWMg-oVjI/google-raises-bug-bounty-great-news-for.html" title="Google Raises Bug Bounty - Great News For Hackers" /><author><name>Rafay Baloch</name><uri>https://profiles.google.com/113902000528448760189</uri><email>noreply@blogger.com</email><gd:image rel="http://schemas.google.com/g/2005#thumbnail" width="32" height="32" src="//lh4.googleusercontent.com/-QFpq0g9Pn_g/AAAAAAAAAAI/AAAAAAAABeU/sxaLN0wQah8/s512-c/photo.jpg" /></author><media:thumbnail xmlns:media="http://search.yahoo.com/mrss/" url="http://2.bp.blogspot.com/-69xgGovq2p0/T5kwp8ygxXI/AAAAAAAAAEE/2E1Kdzq63gA/s72-c/New+Bitmap+Image.bmp" height="72" width="72" /><thr:total>3</thr:total><feedburner:origLink>http://www.rafayhackingarticles.net/2012/04/google-raises-bug-bounty-great-news-for.html</feedburner:origLink></entry><entry gd:etag="W/&quot;AkcBQno7eSp7ImA9WhVWFEk.&quot;"><id>tag:blogger.com,1999:blog-3121270199089759062.post-7700279543715456574</id><published>2012-04-26T06:40:00.000-07:00</published><updated>2012-04-26T06:47:33.401-07:00</updated><app:edited xmlns:app="http://www.w3.org/2007/app">2012-04-26T06:47:33.401-07:00</app:edited><category scheme="http://www.blogger.com/atom/ns#" term="Hacking News" /><title>How to Join Anonymous Army ?</title><content type="html">&lt;div dir="ltr" style="text-align: left;" trbidi="on"&gt;
&lt;div class="separator" style="clear: both; text-align: center;"&gt;
&lt;a href="http://3.bp.blogspot.com/-Eur3Po7M_cE/T5ckbfQxFgI/AAAAAAAAAKc/OW22BW8zj1o/s1600/1350968676_anonymous_xlarge.gif" style="margin-left: 1em; margin-right: 1em;"&gt;&lt;img border="0" height="640" src="http://3.bp.blogspot.com/-Eur3Po7M_cE/T5ckbfQxFgI/AAAAAAAAAKc/OW22BW8zj1o/s640/1350968676_anonymous_xlarge.gif" width="577" /&gt;&lt;/a&gt;&lt;/div&gt;
&lt;div style="font-family: Verdana,sans-serif;"&gt;
&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &lt;/div&gt;
&lt;div style="font-family: Verdana,sans-serif;"&gt;
&lt;br /&gt;&lt;/div&gt;
&lt;div style="font-family: Verdana,sans-serif;"&gt;
&lt;br /&gt;&lt;/div&gt;
&lt;div style="font-family: Verdana,sans-serif;"&gt;
What to join &lt;i&gt;&lt;b&gt;Anonymous army&lt;/b&gt;&lt;/i&gt;
 ? So are you like expecting from me that i will tell you that 
enrollment forms are out to join The Anonymous ? No, No such news ! And 
you cannot join anonymous ! In fact no one can !&lt;/div&gt;
&lt;div style="font-family: Verdana,sans-serif;"&gt;
&lt;br /&gt;&lt;/div&gt;
&lt;div style="font-family: Verdana,sans-serif;"&gt;
Anonymous is not an organization,not a club too,nor a party.Anonymous has no ideology,no gurus and no leaders too.&lt;/div&gt;
&lt;div style="font-family: Verdana,sans-serif;"&gt;
Anonymous
 are like people who are with each other for a small time to bring do a 
task,be it good thing or bad.But as soon as that task is complete those 
people may or may not be together.You can compare them to a group of 
people traveling small distance together just like the passengers of a 
bus.&lt;/div&gt;
&lt;div style="font-family: Verdana,sans-serif;"&gt;
&lt;br /&gt;
&lt;a name='more'&gt;&lt;/a&gt;&lt;br /&gt;&lt;/div&gt;
&lt;div style="font-family: Verdana,sans-serif;"&gt;
&lt;b&gt;How do people from Anonymous communicate ?&lt;/b&gt;&lt;/div&gt;
&lt;div style="font-family: Verdana,sans-serif;"&gt;
&lt;br /&gt;&lt;/div&gt;
&lt;div style="font-family: Verdana,sans-serif;"&gt;
Anonymous
 are regarded both as Heroes or Villains of cyber world by person to 
person.And just like every other person members of anonymous also 
communicate via the social network-facebook,skype,yahoo etc.&lt;/div&gt;
&lt;div style="font-family: Verdana,sans-serif;"&gt;
&lt;br /&gt;&lt;/div&gt;
&lt;div style="font-family: Verdana,sans-serif;"&gt;
&lt;b&gt;How to recognize members of Anonymous ?&lt;/b&gt;&lt;/div&gt;
&lt;div style="font-family: Verdana,sans-serif;"&gt;
&lt;br /&gt;&lt;/div&gt;
&lt;div style="font-family: Verdana,sans-serif;"&gt;
Members
 of Anonymous have no different characteristics.A person you meet or see
 everyday may be a member of anonymous and you have no idea about 
it.There is no age,sex,caste,country barrier to be a member of 
anonymous,anyone and everyone can be a member.All you require to be a 
member are - Skills !&lt;/div&gt;
&lt;div style="font-family: Verdana,sans-serif;"&gt;
During public appearances members of anonymous are often seen wearing &lt;span class="Apple-style-span"&gt;&lt;span class="Apple-style-span" style="line-height: 18px;"&gt;&lt;span class="Apple-style-span"&gt;Guy Fawkes Masks.&lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;/div&gt;
&lt;div style="font-family: Verdana,sans-serif;"&gt;
&lt;span class="Apple-style-span"&gt;&lt;span class="Apple-style-span" style="line-height: 18px;"&gt;&lt;span class="Apple-style-span"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;/div&gt;
&lt;div style="font-family: Verdana,sans-serif;"&gt;
&lt;span class="Apple-style-span"&gt;&lt;span class="Apple-style-span" style="line-height: 18px;"&gt;&lt;span class="Apple-style-span"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;/div&gt;
&lt;div style="font-family: Verdana,sans-serif;"&gt;
&lt;b&gt;&lt;span class="Apple-style-span"&gt;&lt;span class="Apple-style-span" style="line-height: 18px;"&gt;&lt;span class="Apple-style-span"&gt;Is it Good or Bad to be a member of Anonymous ?&lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;/b&gt;&lt;br /&gt;
&lt;b&gt;&lt;span class="Apple-style-span"&gt;&lt;span class="Apple-style-span" style="line-height: 18px;"&gt;&lt;span class="Apple-style-span"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;/b&gt;&lt;/div&gt;
&lt;div style="font-family: Verdana,sans-serif;"&gt;
&lt;span class="Apple-style-span"&gt;&lt;span class="Apple-style-span" style="line-height: 18px;"&gt;&lt;span class="Apple-style-span"&gt;It is totally up to you ! If you are good you remain good being a member of anonymous too and vice verse !&lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;/div&gt;
&lt;div style="font-family: Verdana,sans-serif;"&gt;
&lt;span class="Apple-style-span"&gt;&lt;span class="Apple-style-span" style="line-height: 18px;"&gt;&lt;span class="Apple-style-span"&gt;Being associated with anonymous does not bring you any ''Bad'' image as it is often misunderstood by people.&lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;/div&gt;
&lt;div style="font-family: Verdana,sans-serif;"&gt;
&lt;span class="Apple-style-span"&gt;&lt;span class="Apple-style-span" style="line-height: 18px;"&gt;&lt;span class="Apple-style-span"&gt;Anonymous group never asks it's members for their personal information or identity proof.&lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;/div&gt;
&lt;div style="font-family: Verdana,sans-serif;"&gt;
&lt;span class="Apple-style-span"&gt;&lt;span class="Apple-style-span" style="line-height: 18px;"&gt;&lt;span class="Apple-style-span"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;/div&gt;
&lt;div style="font-family: Verdana,sans-serif;"&gt;
&lt;b&gt;&lt;span class="Apple-style-span"&gt;&lt;span class="Apple-style-span" style="line-height: 18px;"&gt;&lt;span class="Apple-style-span"&gt;How many Anonymous are there ?&lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;/b&gt;&lt;br /&gt;
&lt;b&gt;&lt;span class="Apple-style-span"&gt;&lt;span class="Apple-style-span" style="line-height: 18px;"&gt;&lt;span class="Apple-style-span"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;/b&gt;&lt;/div&gt;
&lt;div style="font-family: Verdana,sans-serif;"&gt;
&lt;span class="Apple-style-span"&gt;&lt;span class="Apple-style-span" style="line-height: 18px;"&gt;&lt;span class="Apple-style-span"&gt;There
 are many of them,more than we can think ! And as i had said,they are 
with each other for short time and they keep on adding every time they 
are together.&lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;/div&gt;
&lt;div style="font-family: Verdana,sans-serif;"&gt;
&lt;span style="line-height: 18px;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/div&gt;
&lt;div style="font-family: Verdana,sans-serif;"&gt;
&lt;br /&gt;&lt;/div&gt;
&lt;/div&gt;
&lt;b&gt;About The Author:&amp;nbsp;&lt;/b&gt;&lt;br /&gt;
&lt;br /&gt;
This article is written by Shikil sharma, Who is the newest member of RHA team. He blogs at &lt;b&gt;http://hacking-tweaks.blogspot.in/&lt;/b&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/3121270199089759062-7700279543715456574?l=www.rafayhackingarticles.net' alt='' /&gt;&lt;/div&gt;&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/HackingAndCracking?a=bRcN4aJX69s:VknyzaJPN_0:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/HackingAndCracking?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/HackingAndCracking?a=bRcN4aJX69s:VknyzaJPN_0:63t7Ie-LG7Y"&gt;&lt;img src="http://feeds.feedburner.com/~ff/HackingAndCracking?d=63t7Ie-LG7Y" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/HackingAndCracking?a=bRcN4aJX69s:VknyzaJPN_0:-BTjWOF_DHI"&gt;&lt;img src="http://feeds.feedburner.com/~ff/HackingAndCracking?i=bRcN4aJX69s:VknyzaJPN_0:-BTjWOF_DHI" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/HackingAndCracking?a=bRcN4aJX69s:VknyzaJPN_0:V_sGLiPBpWU"&gt;&lt;img src="http://feeds.feedburner.com/~ff/HackingAndCracking?i=bRcN4aJX69s:VknyzaJPN_0:V_sGLiPBpWU" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/HackingAndCracking?a=bRcN4aJX69s:VknyzaJPN_0:qj6IDK7rITs"&gt;&lt;img src="http://feeds.feedburner.com/~ff/HackingAndCracking?d=qj6IDK7rITs" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/HackingAndCracking?a=bRcN4aJX69s:VknyzaJPN_0:gIN9vFwOqvQ"&gt;&lt;img src="http://feeds.feedburner.com/~ff/HackingAndCracking?i=bRcN4aJX69s:VknyzaJPN_0:gIN9vFwOqvQ" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/HackingAndCracking?a=bRcN4aJX69s:VknyzaJPN_0:4cEx4HpKnUU"&gt;&lt;img src="http://feeds.feedburner.com/~ff/HackingAndCracking?i=bRcN4aJX69s:VknyzaJPN_0:4cEx4HpKnUU" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;&lt;img src="http://feeds.feedburner.com/~r/HackingAndCracking/~4/bRcN4aJX69s" height="1" width="1"/&gt;</content><link rel="replies" type="application/atom+xml" href="http://www.rafayhackingarticles.net/feeds/7700279543715456574/comments/default" title="Post Comments" /><link rel="replies" type="text/html" href="http://www.rafayhackingarticles.net/2012/04/how-to-join-anonymous-army.html#comment-form" title="3 Comments" /><link rel="edit" type="application/atom+xml" href="http://www.blogger.com/feeds/3121270199089759062/posts/default/7700279543715456574?v=2" /><link rel="self" type="application/atom+xml" href="http://www.blogger.com/feeds/3121270199089759062/posts/default/7700279543715456574?v=2" /><link rel="alternate" type="text/html" href="http://feedproxy.google.com/~r/HackingAndCracking/~3/bRcN4aJX69s/how-to-join-anonymous-army.html" title="How to Join Anonymous Army ?" /><author><name>Rafay Baloch</name><uri>https://profiles.google.com/113902000528448760189</uri><email>noreply@blogger.com</email><gd:image rel="http://schemas.google.com/g/2005#thumbnail" width="32" height="32" src="//lh4.googleusercontent.com/-QFpq0g9Pn_g/AAAAAAAAAAI/AAAAAAAABeU/sxaLN0wQah8/s512-c/photo.jpg" /></author><media:thumbnail xmlns:media="http://search.yahoo.com/mrss/" url="http://3.bp.blogspot.com/-Eur3Po7M_cE/T5ckbfQxFgI/AAAAAAAAAKc/OW22BW8zj1o/s72-c/1350968676_anonymous_xlarge.gif" height="72" width="72" /><thr:total>3</thr:total><feedburner:origLink>http://www.rafayhackingarticles.net/2012/04/how-to-join-anonymous-army.html</feedburner:origLink></entry><entry gd:etag="W/&quot;A0UMSXs7eSp7ImA9WhVWEkw.&quot;"><id>tag:blogger.com,1999:blog-3121270199089759062.post-4355648479753297151</id><published>2012-04-23T15:13:00.002-07:00</published><updated>2012-04-23T15:14:48.501-07:00</updated><app:edited xmlns:app="http://www.w3.org/2007/app">2012-04-23T15:14:48.501-07:00</app:edited><title>Hack Facebook Accounts With Reverting</title><content type="html">&lt;div dir="ltr" style="text-align: left;" trbidi="on"&gt;
&lt;div style="font-family: Verdana,sans-serif;"&gt;
&lt;div class="separator" style="clear: both; text-align: center;"&gt;
&lt;a href="http://1.bp.blogspot.com/-FyTvVrnKJAk/T5XS1K0we-I/AAAAAAAAB5k/gyNUQYxWT-A/s1600/facebook_hacked.jpg" imageanchor="1" style="margin-left: 1em; margin-right: 1em;"&gt;&lt;img border="0" height="290" src="http://1.bp.blogspot.com/-FyTvVrnKJAk/T5XS1K0we-I/AAAAAAAAB5k/gyNUQYxWT-A/s640/facebook_hacked.jpg" width="577" /&gt;&lt;/a&gt;&lt;/div&gt;
&lt;br /&gt;
Facebook pays millions of dollars to security experts and penetration tester to keep the privacy of their users as safe as possible. So therefore we cannot use direct methods such as &lt;a href="http://www.rafayhackingarticles.net/2012/03/cracking-facebook-account.html"&gt;bruteforcing&lt;/a&gt;, dictionary attacks in order to hack facebook account due to account lockout feature. However, Also i would like to clear one more doubt that there is no such software which will &lt;a href="http://www.rafayhackingarticles.net/2012/03/facebook-hacker-v10-keylogging-software.html"&gt;hack a facebook password &lt;/a&gt;for you by just entering your email address. There are also methods such as Phishing, keylogging etc, which can help you hack facebook account, which are also suggested ones.&lt;br /&gt;
&lt;br /&gt;
However here in this tutorial we will be exploiting a bug inside facebook in order to hack a facebook account. The vulnerability exploits trusted friends feature inside facebook which could be used to reset some one's facebook password.&amp;nbsp;&lt;/div&gt;
&lt;div style="font-family: Verdana,sans-serif;"&gt;
&lt;br /&gt;
&lt;a name='more'&gt;&lt;/a&gt;&lt;br /&gt;&lt;/div&gt;
&lt;div style="font-family: Verdana,sans-serif;"&gt;
&lt;b&gt;Note: &lt;/b&gt;If you would like to learn about more advanced methods to hack a facebook account, Kindly refer my post &lt;b&gt;&lt;a href="http://www.rafayhackingarticles.net/2009/07/how-to-hack-facebook-account.html"&gt;How To Hack Facebook Password&lt;/a&gt;&lt;/b&gt;.&lt;br /&gt;
&lt;b&gt;&lt;br /&gt;&lt;/b&gt;&lt;br /&gt;
&lt;b&gt;1.&amp;nbsp;&lt;/b&gt;The thing which we use is to trick the Three Friend Account Recovery Method of facebook&lt;/div&gt;
&lt;div style="font-family: Verdana,sans-serif;"&gt;
&lt;br /&gt;&lt;/div&gt;
&lt;div style="font-family: Verdana,sans-serif;"&gt;
&lt;b&gt;2.&amp;nbsp;&lt;/b&gt;The
 homework i was talking about is that you will have to make three fake account and make sure that they are in the friend list of the person you
 want to hack.&lt;/div&gt;
&lt;div style="font-family: Verdana,sans-serif;"&gt;
&lt;br /&gt;&lt;/div&gt;
&lt;div style="font-family: Verdana,sans-serif;"&gt;
&lt;b&gt;3.&amp;nbsp;&lt;/b&gt;Once you are done with the above two steps you can start the hacking business.&lt;/div&gt;
&lt;div style="font-family: Verdana,sans-serif;"&gt;
&lt;br /&gt;&lt;/div&gt;
&lt;div style="font-family: Verdana,sans-serif;"&gt;
&lt;b&gt;4.&amp;nbsp;&lt;/b&gt;Go to Forgot Password area of facebook.&lt;/div&gt;
&lt;div style="font-family: Verdana,sans-serif;"&gt;
&lt;br /&gt;&lt;/div&gt;
&lt;div style="font-family: Verdana,sans-serif;"&gt;
&lt;b&gt;5.&amp;nbsp;&lt;/b&gt;It
 will show victims e-mail address and may be mobile phone at which he 
can be reached,choose ''no longer access to these'' option.&lt;/div&gt;
&lt;div style="font-family: Verdana,sans-serif;"&gt;
&lt;b&gt;&lt;br /&gt;&lt;/b&gt;&lt;/div&gt;
&lt;div style="font-family: Verdana,sans-serif;"&gt;
&lt;b&gt;6.&lt;/b&gt; Now you will be prompted to enter an alternate e-mail address, type your e-mail address or create a new one.&lt;/div&gt;
&lt;div style="font-family: Verdana,sans-serif;"&gt;
&lt;br /&gt;&lt;/div&gt;
&lt;div style="font-family: Verdana,sans-serif;"&gt;
&lt;b&gt;7.&amp;nbsp;&lt;/b&gt;Now
 you will be asked the &lt;b&gt;''Security question"&lt;/b&gt;. Make random guesses,if you 
know the victim you might just get the right answer,if you don't-no 
worries !&lt;/div&gt;
&lt;div style="font-family: Verdana,sans-serif;"&gt;
&lt;br /&gt;&lt;/div&gt;
&lt;div style="font-family: Verdana,sans-serif;"&gt;
&lt;b&gt;8.&lt;/b&gt; If you have not succeeded in getting the answer right you will get to our main aim ''The Trusted Friends" recovery option.&lt;/div&gt;
&lt;div style="font-family: Verdana,sans-serif;"&gt;
&lt;br /&gt;&lt;/div&gt;
&lt;div class="separator" style="clear: both; font-family: Verdana,sans-serif; text-align: center;"&gt;
&amp;nbsp;&lt;a href="http://1.bp.blogspot.com/-0T4UQz26VmU/T5VvQ9x_ExI/AAAAAAAAAKA/iradexiYFrM/s1600/Capture.PNG" style="margin-left: 1em; margin-right: 1em;"&gt;&lt;img border="0" height="360" src="http://1.bp.blogspot.com/-0T4UQz26VmU/T5VvQ9x_ExI/AAAAAAAAAKA/iradexiYFrM/s640/Capture.PNG" width="577" /&gt;&lt;/a&gt;&lt;/div&gt;
&lt;div style="font-family: Verdana,sans-serif;"&gt;
&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &lt;/div&gt;
&lt;div style="font-family: Verdana,sans-serif;"&gt;
&lt;b&gt;9.&lt;/b&gt; Here click on '&lt;b&gt;'continue''&lt;/b&gt;,choose&amp;nbsp; 3 trusted friends-The Three fake 
accounts you have created and they are friends with the victim.&lt;/div&gt;
&lt;div style="font-family: Verdana,sans-serif;"&gt;
&amp;nbsp; &amp;nbsp;&lt;/div&gt;
&lt;div class="separator" style="clear: both; font-family: Verdana,sans-serif; text-align: center;"&gt;
&lt;a href="http://4.bp.blogspot.com/-vRXFgFFU_zE/T5Vvx6xzIkI/AAAAAAAAAKI/CFet7ISWFyg/s1600/Capture1.PNG" style="margin-left: 1em; margin-right: 1em;"&gt;&lt;img border="0" height="164" src="http://4.bp.blogspot.com/-vRXFgFFU_zE/T5Vvx6xzIkI/AAAAAAAAAKI/CFet7ISWFyg/s640/Capture1.PNG" width="577" /&gt;&lt;/a&gt;&lt;/div&gt;
&lt;div style="font-family: Verdana,sans-serif;"&gt;
&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &lt;/div&gt;
&lt;div style="font-family: Verdana,sans-serif;"&gt;
&lt;b&gt;10.&lt;/b&gt; After you have chosen them,facebook will supply you with some codes on those fake accounts,follow the procedure and victims account is yours ! You've hacked them ! :)&lt;/div&gt;
&lt;div style="font-family: Verdana,sans-serif;"&gt;
&lt;br /&gt;&lt;/div&gt;
&lt;div class="separator" style="clear: both; font-family: Verdana,sans-serif; text-align: center;"&gt;
&lt;a href="http://2.bp.blogspot.com/-n-1xznCYbAw/T5Vv-KWaP7I/AAAAAAAAAKQ/gogq1sZiyDY/s1600/Capture3.PNG" style="margin-left: 1em; margin-right: 1em;"&gt;&lt;img border="0" height="272" src="http://2.bp.blogspot.com/-n-1xznCYbAw/T5Vv-KWaP7I/AAAAAAAAAKQ/gogq1sZiyDY/s640/Capture3.PNG" width="577" /&gt;&lt;/a&gt;&lt;/div&gt;
&lt;div style="font-family: Verdana,sans-serif;"&gt;
&lt;br /&gt;
&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &lt;/div&gt;
&lt;/div&gt;
&lt;b&gt;About The Author:&amp;nbsp;&lt;/b&gt;&lt;br /&gt;
&lt;br /&gt;
This article is written by Shikil sharma, Who is the newest member of RHA team. He blogs at &lt;b&gt;http://hacking-tweaks.blogspot.in/&lt;/b&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/3121270199089759062-4355648479753297151?l=www.rafayhackingarticles.net' alt='' /&gt;&lt;/div&gt;&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/HackingAndCracking?a=vLyrrFnHvHQ:rMMI4VRyI50:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/HackingAndCracking?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/HackingAndCracking?a=vLyrrFnHvHQ:rMMI4VRyI50:63t7Ie-LG7Y"&gt;&lt;img src="http://feeds.feedburner.com/~ff/HackingAndCracking?d=63t7Ie-LG7Y" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/HackingAndCracking?a=vLyrrFnHvHQ:rMMI4VRyI50:-BTjWOF_DHI"&gt;&lt;img src="http://feeds.feedburner.com/~ff/HackingAndCracking?i=vLyrrFnHvHQ:rMMI4VRyI50:-BTjWOF_DHI" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/HackingAndCracking?a=vLyrrFnHvHQ:rMMI4VRyI50:V_sGLiPBpWU"&gt;&lt;img src="http://feeds.feedburner.com/~ff/HackingAndCracking?i=vLyrrFnHvHQ:rMMI4VRyI50:V_sGLiPBpWU" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/HackingAndCracking?a=vLyrrFnHvHQ:rMMI4VRyI50:qj6IDK7rITs"&gt;&lt;img src="http://feeds.feedburner.com/~ff/HackingAndCracking?d=qj6IDK7rITs" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/HackingAndCracking?a=vLyrrFnHvHQ:rMMI4VRyI50:gIN9vFwOqvQ"&gt;&lt;img src="http://feeds.feedburner.com/~ff/HackingAndCracking?i=vLyrrFnHvHQ:rMMI4VRyI50:gIN9vFwOqvQ" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/HackingAndCracking?a=vLyrrFnHvHQ:rMMI4VRyI50:4cEx4HpKnUU"&gt;&lt;img src="http://feeds.feedburner.com/~ff/HackingAndCracking?i=vLyrrFnHvHQ:rMMI4VRyI50:4cEx4HpKnUU" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;&lt;img src="http://feeds.feedburner.com/~r/HackingAndCracking/~4/vLyrrFnHvHQ" height="1" width="1"/&gt;</content><link rel="replies" type="application/atom+xml" href="http://www.rafayhackingarticles.net/feeds/4355648479753297151/comments/default" title="Post Comments" /><link rel="replies" type="text/html" href="http://www.rafayhackingarticles.net/2012/04/hack-facebook-accounts-with-reverting.html#comment-form" title="22 Comments" /><link rel="edit" type="application/atom+xml" href="http://www.blogger.com/feeds/3121270199089759062/posts/default/4355648479753297151?v=2" /><link rel="self" type="application/atom+xml" href="http://www.blogger.com/feeds/3121270199089759062/posts/default/4355648479753297151?v=2" /><link rel="alternate" type="text/html" href="http://feedproxy.google.com/~r/HackingAndCracking/~3/vLyrrFnHvHQ/hack-facebook-accounts-with-reverting.html" title="Hack Facebook Accounts With Reverting" /><author><name>Rafay Baloch</name><uri>https://profiles.google.com/113902000528448760189</uri><email>noreply@blogger.com</email><gd:image rel="http://schemas.google.com/g/2005#thumbnail" width="32" height="32" src="//lh4.googleusercontent.com/-QFpq0g9Pn_g/AAAAAAAAAAI/AAAAAAAABeU/sxaLN0wQah8/s512-c/photo.jpg" /></author><media:thumbnail xmlns:media="http://search.yahoo.com/mrss/" url="http://1.bp.blogspot.com/-FyTvVrnKJAk/T5XS1K0we-I/AAAAAAAAB5k/gyNUQYxWT-A/s72-c/facebook_hacked.jpg" height="72" width="72" /><thr:total>22</thr:total><feedburner:origLink>http://www.rafayhackingarticles.net/2012/04/hack-facebook-accounts-with-reverting.html</feedburner:origLink></entry><entry gd:etag="W/&quot;D0ICRno6cCp7ImA9WhVWEU4.&quot;"><id>tag:blogger.com,1999:blog-3121270199089759062.post-2005488099816299701</id><published>2012-04-22T10:33:00.001-07:00</published><updated>2012-04-22T15:59:27.418-07:00</updated><app:edited xmlns:app="http://www.w3.org/2007/app">2012-04-22T15:59:27.418-07:00</app:edited><title>Anonymous Hacks Formula 1 Website</title><content type="html">&lt;br /&gt;
&lt;div class="separator" style="clear: both; text-align: center;"&gt;
&lt;a href="http://3.bp.blogspot.com/-w4YZYFfufo8/T5OCJeOng1I/AAAAAAAAAJ4/CNxwhRQBQsY/s1600/tumblr_m2skh6aevK1r73uxt.png" imageanchor="1" style="margin-left: 1em; margin-right: 1em;"&gt;&lt;img border="0" height="400" src="http://3.bp.blogspot.com/-w4YZYFfufo8/T5OCJeOng1I/AAAAAAAAAJ4/CNxwhRQBQsY/s640/tumblr_m2skh6aevK1r73uxt.png" width="577" /&gt;&lt;/a&gt;&lt;/div&gt;
&lt;div class="MsoNormal" style="font-family: Verdana, sans-serif; text-align: left;"&gt;
&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;&amp;nbsp;&lt;/div&gt;
&lt;div class="MsoNormal" style="font-family: Verdana, sans-serif; text-align: left;"&gt;
Hacking Group&amp;nbsp;&lt;i&gt;&lt;b&gt;Anonymous&lt;/b&gt;&lt;/i&gt;&amp;nbsp;recently brought down the website of Formula 1 !&lt;/div&gt;
&lt;div class="MsoNormal" style="font-family: Verdana, sans-serif; text-align: left;"&gt;
They did it by&amp;nbsp;&lt;i&gt;DDos-Distributed Deniel of Services attack&lt;/i&gt;. The website which was attacked is&amp;nbsp;&lt;a href="http://www.blogger.com/www.formula1.com"&gt;www.formula1.com&lt;/a&gt;.&amp;nbsp;&lt;/div&gt;
&lt;div class="MsoNormal" style="font-family: Verdana, sans-serif; text-align: left;"&gt;
The F1 world was already in news because of controversial hosting of Grand Prix in Bahrain this weekend where protest are taking place before this attack on the website took place.&lt;/div&gt;
&lt;div class="MsoNormal" style="font-family: Verdana, sans-serif; text-align: left;"&gt;
Anonymous hackers also defaced another website associated with Fromula 1 racing and also posted a press release.&lt;/div&gt;
&lt;div class="MsoNormal" style="font-family: Verdana, sans-serif; text-align: left;"&gt;
The message was against the&amp;nbsp;&lt;b&gt;King Hamad bin Ali Khalifa of Bahrain&lt;/b&gt;. A part of the exact message posted :&lt;br /&gt;
&lt;br /&gt;
&lt;a name='more'&gt;&lt;/a&gt;&lt;br /&gt;&lt;/div&gt;
&lt;div class="MsoNormal" style="font-family: Verdana, sans-serif; text-align: left;"&gt;
&lt;i&gt;“&lt;span style="font-family: Arial, Helvetica, sans-serif;"&gt;For over one year the people of Bahrain have struggled against the oppressive regime of King Hamad bin Al Khalifa. They have been murdered in the streets, run over with vehicles, beaten, tortured, tear gassed, kidnapped by police, had their businesses vandalised by police, and have tear gas thrown in to their homes on a nightly basis.&lt;/span&gt;&lt;/i&gt;&lt;br /&gt;
&lt;br /&gt;
&lt;span style="font-family: Arial, Helvetica, sans-serif;"&gt;Still the regmine persists to deny any meaningful reform and continues to use brutal and violent tactics to oppress the popular calls for reformation. Not only is the Human Rights situation in Bahrain tragic, it becomes more drastic with each passing day. For these reasons the F1 Grand Prix in Bahrain should be strongly opposed. The Al Khalifa regime stands to profit heavily off the race and has promised to use live ammunition against protestors in preparation. They have already begun issuing collective punishment to entire villages for protests and have promised further retribution "to keep order" for the F1 events in Bahrain. The Formula 1 racing authority was well-aware of the Human Rights situation in Bahrain and still chose to contribute to the regime's oppression of civilians and will be punished.&lt;/span&gt;”&lt;/div&gt;
&lt;div class="MsoNormal" style="font-family: Verdana, sans-serif; text-align: left;"&gt;
In the DDoS attack which anonymous used a large number of computers ping the website together at the same time which result in overloading of the server.&lt;/div&gt;
&lt;div style="font-family: Verdana, sans-serif; text-align: left;"&gt;
DDoS attack is considered as one of the best used and favourite attacks of Anonymous as earlier this month Anonymous had launched DDoS attack against websites of British Home Office and 10 Down Street.&lt;/div&gt;
&lt;div class="MsoNormal" style="font-family: Verdana, sans-serif; text-align: left;"&gt;
&lt;b&gt;&lt;br /&gt;&lt;/b&gt;&lt;br /&gt;
&lt;b&gt;About The Author:&lt;/b&gt;&lt;br /&gt;
&lt;br /&gt;
This article is written by Shikil sharma, Who is the newest member of RHA team. He blogs at&amp;nbsp;&lt;b&gt;http://hacking-tweaks.blogspot.in/&lt;/b&gt;&lt;/div&gt;
&lt;div class="MsoNormal" style="font-family: Verdana, sans-serif; text-align: left;"&gt;
&lt;br class="Apple-interchange-newline" /&gt;&lt;/div&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/3121270199089759062-2005488099816299701?l=www.rafayhackingarticles.net' alt='' /&gt;&lt;/div&gt;&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/HackingAndCracking?a=VnSlSRd7RIg:hiA4OiCct68:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/HackingAndCracking?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/HackingAndCracking?a=VnSlSRd7RIg:hiA4OiCct68:63t7Ie-LG7Y"&gt;&lt;img src="http://feeds.feedburner.com/~ff/HackingAndCracking?d=63t7Ie-LG7Y" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/HackingAndCracking?a=VnSlSRd7RIg:hiA4OiCct68:-BTjWOF_DHI"&gt;&lt;img src="http://feeds.feedburner.com/~ff/HackingAndCracking?i=VnSlSRd7RIg:hiA4OiCct68:-BTjWOF_DHI" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/HackingAndCracking?a=VnSlSRd7RIg:hiA4OiCct68:V_sGLiPBpWU"&gt;&lt;img src="http://feeds.feedburner.com/~ff/HackingAndCracking?i=VnSlSRd7RIg:hiA4OiCct68:V_sGLiPBpWU" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/HackingAndCracking?a=VnSlSRd7RIg:hiA4OiCct68:qj6IDK7rITs"&gt;&lt;img src="http://feeds.feedburner.com/~ff/HackingAndCracking?d=qj6IDK7rITs" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/HackingAndCracking?a=VnSlSRd7RIg:hiA4OiCct68:gIN9vFwOqvQ"&gt;&lt;img src="http://feeds.feedburner.com/~ff/HackingAndCracking?i=VnSlSRd7RIg:hiA4OiCct68:gIN9vFwOqvQ" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/HackingAndCracking?a=VnSlSRd7RIg:hiA4OiCct68:4cEx4HpKnUU"&gt;&lt;img src="http://feeds.feedburner.com/~ff/HackingAndCracking?i=VnSlSRd7RIg:hiA4OiCct68:4cEx4HpKnUU" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;&lt;img src="http://feeds.feedburner.com/~r/HackingAndCracking/~4/VnSlSRd7RIg" height="1" width="1"/&gt;</content><link rel="replies" type="application/atom+xml" href="http://www.rafayhackingarticles.net/feeds/2005488099816299701/comments/default" title="Post Comments" /><link rel="replies" type="text/html" href="http://www.rafayhackingarticles.net/2012/04/anonymous-hacks-formula-1-website.html#comment-form" title="1 Comments" /><link rel="edit" type="application/atom+xml" href="http://www.blogger.com/feeds/3121270199089759062/posts/default/2005488099816299701?v=2" /><link rel="self" type="application/atom+xml" href="http://www.blogger.com/feeds/3121270199089759062/posts/default/2005488099816299701?v=2" /><link rel="alternate" type="text/html" href="http://feedproxy.google.com/~r/HackingAndCracking/~3/VnSlSRd7RIg/anonymous-hacks-formula-1-website.html" title="Anonymous Hacks Formula 1 Website" /><author><name>Rafay Baloch</name><uri>https://profiles.google.com/113902000528448760189</uri><email>noreply@blogger.com</email><gd:image rel="http://schemas.google.com/g/2005#thumbnail" width="32" height="32" src="//lh4.googleusercontent.com/-QFpq0g9Pn_g/AAAAAAAAAAI/AAAAAAAABeU/sxaLN0wQah8/s512-c/photo.jpg" /></author><media:thumbnail xmlns:media="http://search.yahoo.com/mrss/" url="http://3.bp.blogspot.com/-w4YZYFfufo8/T5OCJeOng1I/AAAAAAAAAJ4/CNxwhRQBQsY/s72-c/tumblr_m2skh6aevK1r73uxt.png" height="72" width="72" /><thr:total>1</thr:total><feedburner:origLink>http://www.rafayhackingarticles.net/2012/04/anonymous-hacks-formula-1-website.html</feedburner:origLink></entry><entry gd:etag="W/&quot;CkcMQ3k5cCp7ImA9WhVWEE0.&quot;"><id>tag:blogger.com,1999:blog-3121270199089759062.post-7433292019891927919</id><published>2012-04-21T02:08:00.000-07:00</published><updated>2012-04-21T02:21:22.728-07:00</updated><app:edited xmlns:app="http://www.w3.org/2007/app">2012-04-21T02:21:22.728-07:00</app:edited><title>Stuxnet Worm Was Loaded Iran DoubleAgents!</title><content type="html">&lt;br /&gt;
&lt;div class="separator" style="clear: both; text-align: center;"&gt;
&lt;a href="http://3.bp.blogspot.com/-EyHv9-ivuh8/T5FzDOW5xYI/AAAAAAAAAJc/lOjq1azIRwY/s1600/STUXNET_620_620x350.jpg" imageanchor="1" style="margin-left: 1em; margin-right: 1em;"&gt;&lt;br class="Apple-interchange-newline" /&gt;&lt;img border="0" height="360" src="http://3.bp.blogspot.com/-EyHv9-ivuh8/T5FzDOW5xYI/AAAAAAAAAJc/lOjq1azIRwY/s640/STUXNET_620_620x350.jpg" width="577" /&gt;&lt;/a&gt;&lt;/div&gt;
&lt;div class="MsoNormal" style="font-family: Verdana, sans-serif; text-align: left;"&gt;
&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&lt;/div&gt;
&lt;div style="text-align: left;"&gt;
&lt;span style="font-family: Verdana, sans-serif;"&gt;&lt;i&gt;Stuxnet&lt;/i&gt;&amp;nbsp;virus was the virus which damaged Iran’s nuclear program. A recent report revealed that it was implanted by Israeli proxy-an Iranian and used a corrupt memory Usb stick which was revealed by&amp;nbsp;former and serving U.S. intelligence officials said.&lt;/span&gt;&lt;/div&gt;
&lt;div style="text-align: left;"&gt;
&lt;span style="font-family: Verdana, sans-serif;"&gt;&lt;b&gt;&lt;/b&gt;&lt;/span&gt;&lt;/div&gt;
&lt;a name='more'&gt;&lt;/a&gt;&lt;span style="font-family: Verdana, sans-serif;"&gt;&lt;b&gt;&lt;br /&gt;&lt;/b&gt;&lt;/span&gt;&lt;br /&gt;
&lt;div class="MsoNormal" style="font-family: Verdana, sans-serif; text-align: left;"&gt;
&lt;b&gt;"Iranian Double Agents”&lt;/b&gt; had most probably helped to target most vulnerable spots of the system. In October 2010 intelligence minister of Iran said that "Nuclear spies” had been arrested in connection with stuxnet.33.virus.&lt;/div&gt;
&lt;div class="MsoNormal" style="font-family: Verdana, sans-serif; text-align: left;"&gt;
Since it's discovery in 2010 it is being considered as the most sophisticated computer virus ever created , It's programming was so complex that it took months for researches to unravel it !&lt;/div&gt;
&lt;div style="text-align: left;"&gt;
&lt;span style="font-family: Verdana, sans-serif;"&gt;&lt;/span&gt;&lt;/div&gt;
&lt;div class="MsoNormal" style="font-family: Verdana, sans-serif; text-align: left;"&gt;
&lt;br /&gt;&lt;/div&gt;
&lt;div class="MsoNormal" style="font-family: Verdana, sans-serif; text-align: left;"&gt;
&lt;b&gt;Infected computers in various countries :&lt;/b&gt;&lt;/div&gt;
&lt;div class="MsoNormal" style="font-family: Verdana, sans-serif; text-align: left;"&gt;
&lt;br /&gt;&lt;/div&gt;
&lt;div class="MsoNormal" style="font-family: Verdana, sans-serif; text-align: left;"&gt;
&lt;i&gt;&lt;b&gt;Country&amp;nbsp;&lt;/b&gt;&lt;/i&gt;&lt;i&gt;&lt;b&gt;&amp;nbsp;&lt;/b&gt;&lt;/i&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&lt;i&gt;&lt;b&gt;Infected computers&lt;/b&gt;&lt;/i&gt;&lt;/div&gt;
&lt;div class="MsoNormal" style="font-family: Verdana, sans-serif; text-align: left;"&gt;
&lt;br /&gt;&lt;/div&gt;
&lt;div class="MsoNormal" style="font-family: Verdana, sans-serif; text-align: left;"&gt;
Iran&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;58.85%&lt;/div&gt;
&lt;div class="MsoNormal" style="font-family: Verdana, sans-serif; text-align: left;"&gt;
Indonesia&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;18.22%&lt;/div&gt;
&lt;div class="MsoNormal" style="font-family: Verdana, sans-serif; text-align: left;"&gt;
India&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;8.31%&lt;/div&gt;
&lt;div class="MsoNormal" style="font-family: Verdana, sans-serif; text-align: left;"&gt;
Azerbaijan&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;2.57%&lt;/div&gt;
&lt;div class="MsoNormal" style="font-family: Verdana, sans-serif; text-align: left;"&gt;
United States&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;1.56%&lt;/div&gt;
&lt;div class="MsoNormal" style="font-family: Verdana, sans-serif; text-align: left;"&gt;
Pakistan&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;9.2%&lt;/div&gt;
&lt;div class="MsoNormal" style="font-family: Verdana, sans-serif; text-align: left;"&gt;
&lt;br /&gt;&lt;/div&gt;
&lt;div class="MsoNormal" style="font-family: Verdana, sans-serif; text-align: left;"&gt;
&lt;b&gt;What is Stuxnet after ?&lt;/b&gt;&lt;/div&gt;
&lt;div class="MsoNormal" style="font-family: Verdana, sans-serif; text-align: left;"&gt;
&lt;br /&gt;&lt;/div&gt;
&lt;div style="text-align: left;"&gt;
&lt;span style="font-family: Verdana, sans-serif;"&gt;&lt;/span&gt;&lt;/div&gt;
&lt;div class="MsoNormal" style="font-family: Verdana, sans-serif; text-align: left;"&gt;
The Stuxnet does not steal your money ,identity nor the passwords,It has specified targets ! It Targets centrifuges in a top secret Iranian facility ! This virus has started a future concern for more attacks on power plants, water systems or nuclear plants !&lt;/div&gt;
&lt;div class="MsoNormal" style="font-family: Verdana, sans-serif; text-align: left;"&gt;
&lt;br /&gt;&lt;/div&gt;
&lt;div class="MsoNormal" style="font-family: Verdana, sans-serif; text-align: left;"&gt;
&lt;b&gt;How does Stuxnet work ?&lt;/b&gt;&lt;/div&gt;
&lt;div class="MsoNormal" style="font-family: Verdana, sans-serif; text-align: left;"&gt;
&lt;br /&gt;&lt;/div&gt;
&lt;div class="MsoNormal" style="font-family: Verdana, sans-serif; text-align: left;"&gt;
Stuxnet does a little harm to your computer and network if they do not meet required configuration.The virus makes itself inert if Siemens software is not found on the target computer.&lt;/div&gt;
&lt;div class="MsoNormal" style="font-family: Verdana, sans-serif; text-align: left;"&gt;
&lt;br /&gt;&lt;/div&gt;
&lt;div style="text-align: left;"&gt;
&lt;span style="font-family: Verdana, sans-serif;"&gt;&lt;/span&gt;&lt;/div&gt;
&lt;div class="MsoNormal" style="font-family: Verdana, sans-serif; text-align: left;"&gt;
Stuxnet attacks with different layers for these three systems:&lt;/div&gt;
&lt;div class="MsoNormal" style="font-family: Verdana, sans-serif; text-align: left;"&gt;
&lt;br /&gt;&lt;/div&gt;
&lt;div style="text-align: left;"&gt;
&lt;span style="font-family: Verdana, sans-serif;"&gt;&lt;/span&gt;&lt;/div&gt;
&lt;div class="MsoNormal" style="font-family: Verdana, sans-serif; text-align: left;"&gt;
1.Siemens PCS7,WinCC and STEP7.&lt;/div&gt;
&lt;div class="MsoNormal" style="font-family: Verdana, sans-serif; text-align: left;"&gt;
2.Siemens S7 PLCs&lt;/div&gt;
&lt;div class="MsoNormal" style="font-family: Verdana, sans-serif; text-align: left;"&gt;
3.Windows.&lt;/div&gt;
&lt;div class="MsoNormal" style="font-family: Verdana, sans-serif; text-align: left;"&gt;
&lt;br /&gt;&lt;/div&gt;
&lt;div class="MsoNormal" style="font-family: Verdana, sans-serif; text-align: left;"&gt;
&lt;br /&gt;&lt;/div&gt;
&lt;div class="MsoNormal" style="font-family: Verdana, sans-serif; text-align: left;"&gt;
&lt;b&gt;How to Remove it ?&lt;/b&gt;&lt;/div&gt;
&lt;div class="MsoNormal" style="font-family: Verdana, sans-serif; text-align: left;"&gt;
&lt;br /&gt;&lt;/div&gt;
&lt;div class="MsoNormal" style="font-family: Verdana, sans-serif; text-align: left;"&gt;
Siemens released a tool kit which detects and removes Stuxnet.&lt;/div&gt;
&lt;div class="MsoNormal" style="font-family: Verdana, sans-serif; text-align: left;"&gt;
You can download it here&amp;nbsp;&lt;a href="http://greatis.com/security/stuxnet_remover.html" target="_blank"&gt;http://greatis.com/security/stuxnet_remover.html&lt;/a&gt;&lt;/div&gt;
&lt;div class="MsoNormal" style="font-family: Verdana, sans-serif; text-align: left;"&gt;
&lt;br /&gt;&lt;/div&gt;
&lt;div class="MsoNormal" style="font-family: Verdana, sans-serif; text-align: left;"&gt;
&lt;b&gt;Possibilities of Origin ?&lt;/b&gt;&lt;/div&gt;
&lt;div class="MsoNormal" style="font-family: Verdana, sans-serif; text-align: left;"&gt;
&lt;br /&gt;&lt;/div&gt;
&lt;div class="MsoNormal" style="font-family: Verdana, sans-serif; text-align: left;"&gt;
Israel , United States and other Western nations working together or separately are till now named to be the possible creators !&lt;br /&gt;
&lt;br /&gt;&lt;/div&gt;
&lt;b&gt;Author information -&lt;/b&gt;&lt;br /&gt;
&lt;br /&gt;
&lt;b&gt;&lt;/b&gt;This article is written by shikhil, he is the newest RHA team member and blogs at &lt;b&gt;http://hacking-tweaks.blogspot.in/&lt;/b&gt;.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/3121270199089759062-7433292019891927919?l=www.rafayhackingarticles.net' alt='' /&gt;&lt;/div&gt;&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/HackingAndCracking?a=ci40Mb5M6w4:zI9-rMGFdGc:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/HackingAndCracking?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/HackingAndCracking?a=ci40Mb5M6w4:zI9-rMGFdGc:63t7Ie-LG7Y"&gt;&lt;img src="http://feeds.feedburner.com/~ff/HackingAndCracking?d=63t7Ie-LG7Y" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/HackingAndCracking?a=ci40Mb5M6w4:zI9-rMGFdGc:-BTjWOF_DHI"&gt;&lt;img src="http://feeds.feedburner.com/~ff/HackingAndCracking?i=ci40Mb5M6w4:zI9-rMGFdGc:-BTjWOF_DHI" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/HackingAndCracking?a=ci40Mb5M6w4:zI9-rMGFdGc:V_sGLiPBpWU"&gt;&lt;img src="http://feeds.feedburner.com/~ff/HackingAndCracking?i=ci40Mb5M6w4:zI9-rMGFdGc:V_sGLiPBpWU" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/HackingAndCracking?a=ci40Mb5M6w4:zI9-rMGFdGc:qj6IDK7rITs"&gt;&lt;img src="http://feeds.feedburner.com/~ff/HackingAndCracking?d=qj6IDK7rITs" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/HackingAndCracking?a=ci40Mb5M6w4:zI9-rMGFdGc:gIN9vFwOqvQ"&gt;&lt;img src="http://feeds.feedburner.com/~ff/HackingAndCracking?i=ci40Mb5M6w4:zI9-rMGFdGc:gIN9vFwOqvQ" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/HackingAndCracking?a=ci40Mb5M6w4:zI9-rMGFdGc:4cEx4HpKnUU"&gt;&lt;img src="http://feeds.feedburner.com/~ff/HackingAndCracking?i=ci40Mb5M6w4:zI9-rMGFdGc:4cEx4HpKnUU" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;&lt;img src="http://feeds.feedburner.com/~r/HackingAndCracking/~4/ci40Mb5M6w4" height="1" width="1"/&gt;</content><link rel="replies" type="application/atom+xml" href="http://www.rafayhackingarticles.net/feeds/7433292019891927919/comments/default" title="Post Comments" /><link rel="replies" type="text/html" href="http://www.rafayhackingarticles.net/2012/04/stuxnet-worm-was-loaded-iran.html#comment-form" title="1 Comments" /><link rel="edit" type="application/atom+xml" href="http://www.blogger.com/feeds/3121270199089759062/posts/default/7433292019891927919?v=2" /><link rel="self" type="application/atom+xml" href="http://www.blogger.com/feeds/3121270199089759062/posts/default/7433292019891927919?v=2" /><link rel="alternate" type="text/html" href="http://feedproxy.google.com/~r/HackingAndCracking/~3/ci40Mb5M6w4/stuxnet-worm-was-loaded-iran.html" title="Stuxnet Worm Was Loaded Iran DoubleAgents!" /><author><name>Rafay Baloch</name><uri>https://profiles.google.com/113902000528448760189</uri><email>noreply@blogger.com</email><gd:image rel="http://schemas.google.com/g/2005#thumbnail" width="32" height="32" src="//lh4.googleusercontent.com/-QFpq0g9Pn_g/AAAAAAAAAAI/AAAAAAAABeU/sxaLN0wQah8/s512-c/photo.jpg" /></author><media:thumbnail xmlns:media="http://search.yahoo.com/mrss/" url="http://3.bp.blogspot.com/-EyHv9-ivuh8/T5FzDOW5xYI/AAAAAAAAAJc/lOjq1azIRwY/s72-c/STUXNET_620_620x350.jpg" height="72" width="72" /><thr:total>1</thr:total><feedburner:origLink>http://www.rafayhackingarticles.net/2012/04/stuxnet-worm-was-loaded-iran.html</feedburner:origLink></entry><entry gd:etag="W/&quot;D04HQ3g4eSp7ImA9WhVXGUk.&quot;"><id>tag:blogger.com,1999:blog-3121270199089759062.post-4462005795699397367</id><published>2012-04-19T12:56:00.002-07:00</published><updated>2012-04-20T11:18:52.631-07:00</updated><app:edited xmlns:app="http://www.w3.org/2007/app">2012-04-20T11:18:52.631-07:00</app:edited><category scheme="http://www.blogger.com/atom/ns#" term="Website hacking" /><title>Nikjju Injection Compromises More Than 180,000 Pages !</title><content type="html">&lt;div class="separator" style="clear: both; text-align: center;"&gt;&lt;a href="http://1.bp.blogspot.com/-InQ-uZxdiwM/T5Bt3hMrYBI/AAAAAAAAB5Q/b7YllpJ-NVo/s1600/sqlinjection.jpg" imageanchor="1" style="margin-left: 1em; margin-right: 1em;"&gt;&lt;img border="0" src="http://1.bp.blogspot.com/-InQ-uZxdiwM/T5Bt3hMrYBI/AAAAAAAAB5Q/b7YllpJ-NVo/s1600/sqlinjection.jpg" /&gt;&lt;/a&gt;&lt;/div&gt;&lt;br /&gt;
&lt;div class="separator" style="clear: both; text-align: center;"&gt;&lt;/div&gt;&lt;div class="separator" style="clear: both;"&gt;&lt;/div&gt;&lt;div class="MsoNormal" style="font-family: Verdana, sans-serif; text-align: left;"&gt;&lt;b&gt;Effect&lt;/b&gt;&amp;nbsp;- Hackers have compromised above 180,000 pages by this new SQL injection vulnerability against ASP sites and the number is growing very fast.&lt;/div&gt;&lt;div class="MsoNormal" style="font-family: Verdana, sans-serif; text-align: left;"&gt;The effect is also seen on blogger users as their ‘’Traffic sources’’ area shows traffic from the infected links.&lt;/div&gt;&lt;div style="text-align: left;"&gt;&lt;span style="font-family: Verdana, sans-serif;"&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoNormal" style="font-family: Verdana, sans-serif; text-align: left;"&gt;&lt;br /&gt;
&lt;a name='more'&gt;&lt;/a&gt;&lt;br /&gt;
&lt;/div&gt;&lt;div style="text-align: left;"&gt;&lt;span style="font-family: Verdana, sans-serif;"&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoNormal" style="font-family: Verdana, sans-serif; text-align: left;"&gt;&lt;b&gt;Script Used&lt;/b&gt;- The script used in the process :&lt;/div&gt;&lt;div class="MsoNormal" style="font-family: Verdana, sans-serif; text-align: left;"&gt;&lt;br /&gt;
&lt;/div&gt;&lt;div class="MsoNormal" style="font-family: Verdana, sans-serif; text-align: left;"&gt;&lt;b&gt;What it does&lt;/b&gt;&amp;nbsp;- The script redirects the users to a Fake AVs&amp;nbsp; like&amp;nbsp;&lt;i&gt;best-antivirus…something. Or&amp;nbsp;&lt;a href="http://www4.savegco-antivir.com/?92d7i5=XafNm6ZqqZqqi9PWrF6RpJrd6tWvbGObbKJp15WmlZ%2BH" target="_blank"&gt;http://www4.savegco-antivir.com&lt;/a&gt;&amp;nbsp;….&lt;/i&gt;&lt;br /&gt;
&lt;i&gt;&lt;br /&gt;
&lt;/i&gt;&lt;br /&gt;
&lt;i&gt;&lt;br /&gt;
&lt;/i&gt;&lt;br /&gt;
&lt;div class="separator" style="clear: both; text-align: center;"&gt;&lt;a href="http://4.bp.blogspot.com/-8UjfnqAxTTw/T5BtkhwEjFI/AAAAAAAAB5I/UMZEHAQNPKI/s1600/Nikjju+mass+SQL+injection.png" imageanchor="1" style="margin-left: 1em; margin-right: 1em;"&gt;&lt;img border="0" height="375" src="http://4.bp.blogspot.com/-8UjfnqAxTTw/T5BtkhwEjFI/AAAAAAAAB5I/UMZEHAQNPKI/s640/Nikjju+mass+SQL+injection.png" width="640" /&gt;&lt;/a&gt;&lt;/div&gt;&lt;i&gt;&lt;br /&gt;
&lt;/i&gt;&lt;/div&gt;&lt;div class="MsoNormal" style="font-family: Verdana, sans-serif; text-align: left;"&gt;&lt;br /&gt;
&lt;/div&gt;&lt;div style="text-align: left;"&gt;&lt;br /&gt;
&lt;/div&gt;&lt;div class="MsoNormal" style="font-family: Verdana, sans-serif; text-align: left;"&gt;&lt;b&gt;Protection&lt;/b&gt;&amp;nbsp;- You can check if your site has been infected or not ,go here&amp;nbsp;&lt;a href="http://sitecheck.sucuri.net/scanner/"&gt;http://sitecheck.sucuri.net/scanner/&lt;/a&gt;&lt;/div&gt;&lt;div style="text-align: left;"&gt;&lt;span style="font-family: Verdana, sans-serif;"&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoNormal" style="font-family: Verdana, sans-serif; text-align: left;"&gt;And scan your website.&lt;/div&gt;&lt;div class="MsoNormal" style="font-family: Verdana, sans-serif; text-align: left;"&gt;&lt;br /&gt;
&lt;/div&gt;&lt;div class="MsoNormal" style="font-family: Verdana, sans-serif; text-align: left;"&gt;&lt;b&gt;Information on Nikkju&lt;/b&gt;- It has been found that domain named nikjju.com was registered on 1&lt;sup&gt;st&lt;/sup&gt;&amp;nbsp;April and attack most probably began after 4&lt;sup&gt;th&lt;/sup&gt;april.&lt;/div&gt;&lt;div class="MsoNormal" style="font-family: Verdana, sans-serif; text-align: left;"&gt;&lt;br /&gt;
&lt;/div&gt;&lt;div class="MsoNormal" style="font-family: Verdana, sans-serif; text-align: left;"&gt;&lt;b&gt;Some government sites affected by it&lt;/b&gt;&amp;nbsp;:&lt;/div&gt;&lt;div class="MsoNormal" style="font-family: Verdana, sans-serif; text-align: left;"&gt;&lt;br /&gt;
&lt;/div&gt;&lt;div class="MsoNormal" style="font-family: Verdana, sans-serif; text-align: justify;"&gt;jnd.xmchengdu.gov.cn&lt;/div&gt;&lt;div class="MsoNormal" style="font-family: Verdana, sans-serif; text-align: justify;"&gt;study.dyny.gov.cn&lt;/div&gt;&lt;div class="MsoNormal" style="font-family: Verdana, sans-serif; text-align: justify;"&gt;www.cnll.gov.cn&lt;/div&gt;&lt;div class="MsoNormal" style="font-family: Verdana, sans-serif; text-align: justify;"&gt;www.bj.hzjcy.gov.cn&lt;/div&gt;&lt;div class="MsoNormal" style="font-family: Verdana, sans-serif; text-align: justify;"&gt;www.mirpurkhas.gov.pk&lt;/div&gt;&lt;div class="MsoNormal" style="font-family: Verdana, sans-serif; text-align: justify;"&gt;www.tdnyw.gov.cn&lt;/div&gt;&lt;div class="MsoNormal" style="font-family: Verdana, sans-serif; text-align: justify;"&gt;gcjs.kaifeng.gov.cn&lt;/div&gt;&lt;div style="text-align: left;"&gt;&lt;span style="font-family: Verdana, sans-serif;"&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoNormal" style="font-family: Verdana, sans-serif; text-align: left;"&gt;&lt;br /&gt;
&lt;/div&gt;&lt;div class="MsoNormal" style="font-family: Verdana, sans-serif; text-align: left;"&gt;&lt;span style="color: #990000;"&gt;&lt;span style="background-color: black;"&gt;&lt;span style="background-color: white;"&gt;&lt;span style="background-color: black;"&gt;&lt;span style="background-color: white;"&gt;&lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;span style="background-color: white;"&gt;&lt;span style="color: black;"&gt;Till now no way has been found to prevent this Mass attack though google and other authorities are working on it.&lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoNormal" style="font-family: Verdana, sans-serif; text-align: left;"&gt;&lt;span style="color: #990000;"&gt;&lt;span style="background-color: white;"&gt;&lt;span style="color: black;"&gt;The amount of pages it is effecting is increasing at a very rapid rate.&lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoNormal" style="font-family: Verdana, sans-serif; text-align: left;"&gt;&lt;br /&gt;
&lt;/div&gt;&lt;div class="MsoNormal" style="font-family: Verdana, sans-serif; text-align: left;"&gt;&lt;span style="color: #990000;"&gt;&lt;span style="background-color: white;"&gt;&lt;span style="color: black;"&gt;&lt;b&gt;Precaution&lt;/b&gt;&amp;nbsp;- Do not open untrusted links and the links starting from ''antivir...something or www.savegro-antivir.com...".&lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;br /&gt;
&lt;br /&gt;
&lt;b&gt;Author:&lt;/b&gt;&lt;br /&gt;
&lt;span style="background-color: white;"&gt;&lt;br /&gt;
&lt;/span&gt;&lt;br /&gt;
&lt;span style="background-color: white;"&gt;Shikhil Sharma is the newest RHA member. If you would like to contribute to RHA, Kindly email&amp;nbsp;&lt;b&gt;rafayhackingarticles@gmaill.com&lt;/b&gt;.&lt;/span&gt;&lt;/div&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/3121270199089759062-4462005795699397367?l=www.rafayhackingarticles.net' alt='' /&gt;&lt;/div&gt;&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/HackingAndCracking?a=wlWjTC_Lfmo:4PqUKqujPpY:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/HackingAndCracking?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/HackingAndCracking?a=wlWjTC_Lfmo:4PqUKqujPpY:63t7Ie-LG7Y"&gt;&lt;img src="http://feeds.feedburner.com/~ff/HackingAndCracking?d=63t7Ie-LG7Y" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/HackingAndCracking?a=wlWjTC_Lfmo:4PqUKqujPpY:-BTjWOF_DHI"&gt;&lt;img src="http://feeds.feedburner.com/~ff/HackingAndCracking?i=wlWjTC_Lfmo:4PqUKqujPpY:-BTjWOF_DHI" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/HackingAndCracking?a=wlWjTC_Lfmo:4PqUKqujPpY:V_sGLiPBpWU"&gt;&lt;img src="http://feeds.feedburner.com/~ff/HackingAndCracking?i=wlWjTC_Lfmo:4PqUKqujPpY:V_sGLiPBpWU" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/HackingAndCracking?a=wlWjTC_Lfmo:4PqUKqujPpY:qj6IDK7rITs"&gt;&lt;img src="http://feeds.feedburner.com/~ff/HackingAndCracking?d=qj6IDK7rITs" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/HackingAndCracking?a=wlWjTC_Lfmo:4PqUKqujPpY:gIN9vFwOqvQ"&gt;&lt;img src="http://feeds.feedburner.com/~ff/HackingAndCracking?i=wlWjTC_Lfmo:4PqUKqujPpY:gIN9vFwOqvQ" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/HackingAndCracking?a=wlWjTC_Lfmo:4PqUKqujPpY:4cEx4HpKnUU"&gt;&lt;img src="http://feeds.feedburner.com/~ff/HackingAndCracking?i=wlWjTC_Lfmo:4PqUKqujPpY:4cEx4HpKnUU" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;&lt;img src="http://feeds.feedburner.com/~r/HackingAndCracking/~4/wlWjTC_Lfmo" height="1" width="1"/&gt;</content><link rel="replies" type="application/atom+xml" href="http://www.rafayhackingarticles.net/feeds/4462005795699397367/comments/default" title="Post Comments" /><link rel="replies" type="text/html" href="http://www.rafayhackingarticles.net/2012/04/nikkju-injection-compromises-more-than.html#comment-form" title="2 Comments" /><link rel="edit" type="application/atom+xml" href="http://www.blogger.com/feeds/3121270199089759062/posts/default/4462005795699397367?v=2" /><link rel="self" type="application/atom+xml" href="http://www.blogger.com/feeds/3121270199089759062/posts/default/4462005795699397367?v=2" /><link rel="alternate" type="text/html" href="http://feedproxy.google.com/~r/HackingAndCracking/~3/wlWjTC_Lfmo/nikkju-injection-compromises-more-than.html" title="Nikjju Injection Compromises More Than 180,000 Pages !" /><author><name>Rafay Baloch</name><uri>https://profiles.google.com/113902000528448760189</uri><email>noreply@blogger.com</email><gd:image rel="http://schemas.google.com/g/2005#thumbnail" width="32" height="32" src="//lh4.googleusercontent.com/-QFpq0g9Pn_g/AAAAAAAAAAI/AAAAAAAABeU/sxaLN0wQah8/s512-c/photo.jpg" /></author><media:thumbnail xmlns:media="http://search.yahoo.com/mrss/" url="http://1.bp.blogspot.com/-InQ-uZxdiwM/T5Bt3hMrYBI/AAAAAAAAB5Q/b7YllpJ-NVo/s72-c/sqlinjection.jpg" height="72" width="72" /><thr:total>2</thr:total><feedburner:origLink>http://www.rafayhackingarticles.net/2012/04/nikkju-injection-compromises-more-than.html</feedburner:origLink></entry><entry gd:etag="W/&quot;AkYDRHc6fCp7ImA9WhVXGEk.&quot;"><id>tag:blogger.com,1999:blog-3121270199089759062.post-3955548890469440599</id><published>2012-04-19T07:50:00.002-07:00</published><updated>2012-04-19T08:09:35.914-07:00</updated><app:edited xmlns:app="http://www.w3.org/2007/app">2012-04-19T08:09:35.914-07:00</app:edited><category scheme="http://www.blogger.com/atom/ns#" term="Website hacking" /><title>Protect Your Website Against SQL Injection</title><content type="html">&lt;div style="text-align: center;"&gt;&lt;a href="http://blog.voteformypic.com/wp-content/uploads/2012/03/xss-attacks.jpg"&gt;&lt;img alt="" class="alignright size-medium wp-image-61" height="220" src="http://blog.voteformypic.com/wp-content/uploads/2012/03/xss-attacks-300x220.jpg" title="xss-attacks" width="300" /&gt;&lt;/a&gt;&lt;/div&gt;&lt;br /&gt;
&lt;br /&gt;
&lt;strong&gt;Hacker-one: “ YES, I DID IT !!! “&lt;/strong&gt;&lt;br /&gt;
&lt;br /&gt;
&lt;strong&gt;Hacker-two: “What ? “&lt;/strong&gt;&lt;br /&gt;
&lt;br /&gt;
&lt;strong&gt;Hacker-one:” I HACKED ANOTHER SITE!!! “&lt;/strong&gt;&lt;br /&gt;
&lt;br /&gt;
&lt;strong&gt;Hacker-two: “Great!!! How did you do that? “&lt;/strong&gt;&lt;br /&gt;
&lt;br /&gt;
&lt;strong&gt;Hacker-one:” SQL INJECTION !!! :p “&lt;/strong&gt;&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Yes, one of the common methods that are being used by hackers is &lt;strong&gt;SQL INJECTION&lt;/strong&gt;.&lt;br /&gt;
&lt;br /&gt;
Sites get hacked by the sql injection due to the loop hole that is left by developers most of the times while developing a web application.&lt;br /&gt;
&lt;a name='more'&gt;&lt;/a&gt;&lt;br /&gt;
I will be explaining you today how to avoid SQL INJECTION when you are developing a web application with PHP.&lt;br /&gt;
&lt;br /&gt;
I will be explaining with the help of an example, suppose we have text fields on our form&lt;br /&gt;
&lt;br /&gt;
&lt;b&gt;1.&lt;/b&gt; User Name&lt;br /&gt;
&lt;br /&gt;
&lt;b&gt;2.&lt;/b&gt; Password&lt;br /&gt;
&lt;br /&gt;
and a login button.&lt;br /&gt;
&lt;br /&gt;
When we login, the validation for the valid user is checked on the back-end. If the user is a valid user, he logs into the system else an error message “incorrect username or password” is shown.&lt;br /&gt;
&lt;br /&gt;
What happens on the back-end,&lt;br /&gt;
&lt;br /&gt;
&lt;b&gt;$userName=$_POST[‘userName’];&lt;/b&gt;&lt;br /&gt;
&lt;b&gt;&lt;br /&gt;
&lt;/b&gt;&lt;br /&gt;
&lt;b&gt;$password =$_POST[‘password’];&lt;/b&gt;&lt;br /&gt;
&lt;br /&gt;
&lt;b&gt;$sqlQuery=”select * from users where user_name= ‘”.$userName.”’ and user_password= ‘”.$password.”’ ;&amp;nbsp; ”;&lt;/b&gt;&lt;br /&gt;
&lt;br /&gt;
This is where the developer has left a loop hole if instead of password I enter&amp;nbsp; &lt;strong&gt;‘ or ‘a’=’a &lt;/strong&gt;the password field has the value&lt;br /&gt;
&lt;b&gt;&lt;br /&gt;
&lt;/b&gt;&lt;br /&gt;
&lt;b&gt;$password is&amp;nbsp; ‘or ‘a’=’a&lt;/b&gt;&lt;br /&gt;
&lt;br /&gt;
Lets place this value in query and the query becomes&lt;br /&gt;
&lt;br /&gt;
$sqlQuery=”select * from users where user_name= ‘”.$userName.”’ and &lt;strong&gt;user_password=’ ‘or ‘a’=’a’;&lt;/strong&gt;&amp;nbsp;&amp;nbsp; ”;&lt;br /&gt;
&lt;br /&gt;
You can see clearly , password doesn’t match but the other statement &lt;strong&gt;&amp;nbsp;a=a&lt;/strong&gt; matches so&amp;nbsp; &lt;strong&gt;OR &lt;/strong&gt;operator will work and the user will login into the system without knowing the actual password. I can even give you the names of some &lt;strong&gt;famous websites&lt;/strong&gt;&amp;nbsp; &lt;strong&gt;where you can inject sql or use this technique.&lt;/strong&gt;&lt;br /&gt;
&lt;br /&gt;
&lt;strong&gt;HOW TO AVOID IT ???&lt;/strong&gt;&lt;br /&gt;
&lt;br /&gt;
Don’t treat the field values as mentioned above&lt;br /&gt;
&lt;br /&gt;
Use this function&lt;br /&gt;
&lt;br /&gt;
&lt;strong&gt;function BlockSQL Injection($str){&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&lt;/strong&gt;&lt;br /&gt;
&lt;br /&gt;
&lt;strong&gt;return str_replace(array("'",""","'",'"'), array("&amp;amp;#39;","&amp;amp;quot;","&amp;amp;#39;","&amp;amp;quot;"), $str);&lt;/strong&gt;&lt;br /&gt;
&lt;br /&gt;
&lt;strong&gt;}&lt;/strong&gt;&lt;br /&gt;
&lt;br /&gt;
This will replace the characters( that can break the string) in the string.&lt;br /&gt;
&lt;br /&gt;
So you can use this function as&lt;br /&gt;
&lt;br /&gt;
&lt;b&gt;$userName= BlockSQL Injection ($_POST[‘userName’]);&lt;/b&gt;&lt;br /&gt;
&lt;b&gt;&lt;br /&gt;
&lt;/b&gt;&lt;br /&gt;
&lt;b&gt;$password = BlockSQL Injection ($_POST[‘password’]);&lt;/b&gt;&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Now the hacker wont be able to break the QUERY STRING.&lt;br /&gt;
&lt;br /&gt;
We have many frameworks in PHP that provide this functionality such as quotes_to_entities($string) in CODE IGNITER.&lt;br /&gt;
&lt;br /&gt;
Use some desgin pattern when you are building a big application, model, controller, your view layers and DAO (data access object layer) must be implemented to make it losely coupled and extensible.&lt;br /&gt;
&lt;br /&gt;
A huge number of sites have been developed in core php, where we don’t use any framework. Wordpress is very secure but when it comes to PLUGINS (that we donwload and use), they can have the loop holes inside them. Stay alert while developing web applications, you never know when you are gonna get hacked. Stay blessed! :)&lt;br /&gt;
&lt;br /&gt;
Good Luck !&lt;br /&gt;
&lt;b&gt;&lt;br /&gt;
&lt;/b&gt;&lt;br /&gt;
&lt;b&gt;About The Author&lt;/b&gt;&lt;br /&gt;
&lt;br /&gt;
Danyal Sandeelo is a Software Developer at &lt;b&gt;"breezecom", &lt;/b&gt;He is the newest member of Team RHA, He blogs on &lt;b&gt;&lt;a rel="no follow" href="http://blog.votemypic.com/"&gt;http://blog.votemypic.com&lt;/a&gt;.&amp;nbsp;&lt;/b&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/3121270199089759062-3955548890469440599?l=www.rafayhackingarticles.net' alt='' /&gt;&lt;/div&gt;&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/HackingAndCracking?a=Cg9k-sSRx9A:bFxnUpb6Mao:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/HackingAndCracking?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/HackingAndCracking?a=Cg9k-sSRx9A:bFxnUpb6Mao:63t7Ie-LG7Y"&gt;&lt;img src="http://feeds.feedburner.com/~ff/HackingAndCracking?d=63t7Ie-LG7Y" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/HackingAndCracking?a=Cg9k-sSRx9A:bFxnUpb6Mao:-BTjWOF_DHI"&gt;&lt;img src="http://feeds.feedburner.com/~ff/HackingAndCracking?i=Cg9k-sSRx9A:bFxnUpb6Mao:-BTjWOF_DHI" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/HackingAndCracking?a=Cg9k-sSRx9A:bFxnUpb6Mao:V_sGLiPBpWU"&gt;&lt;img src="http://feeds.feedburner.com/~ff/HackingAndCracking?i=Cg9k-sSRx9A:bFxnUpb6Mao:V_sGLiPBpWU" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/HackingAndCracking?a=Cg9k-sSRx9A:bFxnUpb6Mao:qj6IDK7rITs"&gt;&lt;img src="http://feeds.feedburner.com/~ff/HackingAndCracking?d=qj6IDK7rITs" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/HackingAndCracking?a=Cg9k-sSRx9A:bFxnUpb6Mao:gIN9vFwOqvQ"&gt;&lt;img src="http://feeds.feedburner.com/~ff/HackingAndCracking?i=Cg9k-sSRx9A:bFxnUpb6Mao:gIN9vFwOqvQ" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/HackingAndCracking?a=Cg9k-sSRx9A:bFxnUpb6Mao:4cEx4HpKnUU"&gt;&lt;img src="http://feeds.feedburner.com/~ff/HackingAndCracking?i=Cg9k-sSRx9A:bFxnUpb6Mao:4cEx4HpKnUU" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;&lt;img src="http://feeds.feedburner.com/~r/HackingAndCracking/~4/Cg9k-sSRx9A" height="1" width="1"/&gt;</content><link rel="replies" type="application/atom+xml" href="http://www.rafayhackingarticles.net/feeds/3955548890469440599/comments/default" title="Post Comments" /><link rel="replies" type="text/html" href="http://www.rafayhackingarticles.net/2012/04/protect-your-website-against-sql.html#comment-form" title="4 Comments" /><link rel="edit" type="application/atom+xml" href="http://www.blogger.com/feeds/3121270199089759062/posts/default/3955548890469440599?v=2" /><link rel="self" type="application/atom+xml" href="http://www.blogger.com/feeds/3121270199089759062/posts/default/3955548890469440599?v=2" /><link rel="alternate" type="text/html" href="http://feedproxy.google.com/~r/HackingAndCracking/~3/Cg9k-sSRx9A/protect-your-website-against-sql.html" title="Protect Your Website Against SQL Injection" /><author><name>Rafay Baloch</name><uri>https://profiles.google.com/113902000528448760189</uri><email>noreply@blogger.com</email><gd:image rel="http://schemas.google.com/g/2005#thumbnail" width="32" height="32" src="//lh4.googleusercontent.com/-QFpq0g9Pn_g/AAAAAAAAAAI/AAAAAAAABeU/sxaLN0wQah8/s512-c/photo.jpg" /></author><thr:total>4</thr:total><feedburner:origLink>http://www.rafayhackingarticles.net/2012/04/protect-your-website-against-sql.html</feedburner:origLink></entry><entry gd:etag="W/&quot;C0EBQ3k9fip7ImA9WhVXF0s.&quot;"><id>tag:blogger.com,1999:blog-3121270199089759062.post-7250573157422691821</id><published>2012-04-18T08:04:00.001-07:00</published><updated>2012-04-18T08:07:32.766-07:00</updated><app:edited xmlns:app="http://www.w3.org/2007/app">2012-04-18T08:07:32.766-07:00</app:edited><category scheme="http://www.blogger.com/atom/ns#" term="Sponsored Reivews" /><title>Penetration Testing In Real World - "Codename: Samurai Skills"</title><content type="html">&lt;b&gt;&lt;br /&gt;
&lt;/b&gt;&lt;br /&gt;
&lt;div class="separator" style="clear: both; text-align: center;"&gt;&lt;a href="http://www.ninja-sec.com/media/mm.png" imageanchor="1" style="margin-left: 1em; margin-right: 1em;"&gt;&lt;img border="0" src="http://www.ninja-sec.com/media/mm.png" /&gt;&lt;/a&gt;&lt;/div&gt;&lt;b&gt;How to hack?&lt;/b&gt;, This is the same question that is asked to me every single day. Infact it's one of the most searched and widely spoken topics on the internet. There are tons and tons of guides and how to's available on the internet related to hacking and pentration testing. However, the problem is that unless you can't learn how to hack unless you don't practice the stuff you learned. &amp;nbsp;Which brings us to the next question, &lt;b&gt;Where do I practice what I learn?&lt;/b&gt;&lt;br /&gt;
&lt;b&gt;&lt;/b&gt;&lt;br /&gt;
&lt;a name='more'&gt;&lt;/a&gt;&lt;br /&gt;
Another problem with today's &lt;b&gt;&lt;a href="http://www.hacking-book.com/"&gt;Ethical hacking&lt;/a&gt;&lt;/b&gt; and penetration testing courses is that they fail to offer real world attack&amp;nbsp;scenario in order for the students to practice and learn in a much better way. Most of the courses you would find on the internet would commonly suggest you the following for the lab.&lt;br /&gt;
&lt;br /&gt;
&lt;b&gt;1.&lt;/b&gt; Backtrack &lt;b&gt;(Attacker)&lt;/b&gt;&lt;br /&gt;
&lt;b&gt;2.&lt;/b&gt; Windows Xp &lt;b&gt;(Victim)&lt;/b&gt;&lt;br /&gt;
&lt;br /&gt;
And you would end up practicing on a vulnerable target of your choice, However penetration testing in the real world is&amp;nbsp;extremely&amp;nbsp;difficult and require creative thinking and you are faced up against lot of different security mechanisms such as Firewalls, IDS, IPS etc.&lt;br /&gt;
&lt;br /&gt;
A couple of months before we wrote a complete review on "&lt;b&gt;&lt;a href="http://www.rafayhackingarticles.net/2011/12/elearn-security-beginners-course-for.html"&gt;elearnsecurity Penetration testing course for beginners&lt;/a&gt;&lt;/b&gt;" and received&amp;nbsp;extremely&amp;nbsp;positive response from our readers. Recently this week I came across a Penetration testing course that gravitated my attention in the first look. The name of the course is "&lt;b&gt;Codename: Samurai Skills&lt;/b&gt;".&lt;br /&gt;
&lt;br /&gt;
&lt;b&gt;"Codename: Samurai Skills" &lt;/b&gt;by ninja sec team is a medium level penetration testing course which provides students with a good base of both&amp;nbsp;theoretical&amp;nbsp;and practical knowledge. The approach of this course is similar to elearnsecurity and offensive security.&lt;br /&gt;
&lt;br /&gt;
The whole course is divided into eight different modules.&amp;nbsp;Each of the modules contains a PDF material along with the videos related to the topic. The course starts by giving a solid introduction related to Penetration testing, different types of approaches and methodology.  The next chapter directly dive into the practical demonstrations of various penetration testing tools on backtrack related to information gathering.&lt;br /&gt;
&lt;br /&gt;
&lt;b&gt;Module 3:&amp;nbsp;Scanning and Assessment&lt;/b&gt;&lt;br /&gt;
&lt;br /&gt;
the author does not only introduces you to different types of scanning tools and&amp;nbsp;methodologies&amp;nbsp;but also provides handy tips in order to bypass different types of protections such as firewalls, IDS etc.&lt;br /&gt;
&lt;br /&gt;
&lt;b&gt;Module 4:&lt;/b&gt;&amp;nbsp;&lt;b&gt;Network Attacking Techniques&lt;/b&gt;&lt;br /&gt;
&lt;b&gt;&lt;br /&gt;
&lt;/b&gt;&lt;br /&gt;
&lt;b&gt;&amp;nbsp;&lt;/b&gt;In this module&amp;nbsp;author introduces the students to various types of different network attacking and exploitation techniques. Going beyond just using ms08_067_netapi exploits which is a common exploit used in almost every training. &amp;nbsp;The module also covers topics like&amp;nbsp;network password cracking, man-in-the-middle, ARP spoofing, password sniffing and common targeted protocols.&lt;br /&gt;
&lt;b&gt;&lt;br /&gt;
&lt;/b&gt;&lt;br /&gt;
&lt;b&gt;Module 5: Windows &amp;amp; UNIX Attacking Techniques&amp;nbsp;&lt;/b&gt;&lt;br /&gt;
&lt;br /&gt;
This module introduces the student to various types of&amp;nbsp;vulnerabilities&amp;nbsp;inside windows xp found inside windows Xp hashing mechanism. The module also talks about unix attacking techniques. However, I was expecting a bit more of material related to UNIX attacking techniques.&lt;br /&gt;
&lt;br /&gt;
&lt;b&gt;Module 6: Windows &amp;amp; UNIX Post-Exploitation Techniques&amp;nbsp;&lt;/b&gt;&lt;br /&gt;
&lt;br /&gt;
This module covers Windows and Unix post exploitation techniques in depth introducing the student to various topics such as&amp;nbsp;meterpreter, privilege escalation, local password cracking, impersonation, routing / pivoting and other topics, for both Windows and UNIX.&lt;br /&gt;
&lt;br /&gt;
&lt;b&gt;Module 7:&lt;/b&gt; &lt;b&gt;Web Exploitation Techniques &amp;nbsp;&lt;/b&gt;&lt;br /&gt;
&lt;b&gt;&lt;br /&gt;
&lt;/b&gt;&lt;br /&gt;
This module is the longest module of all with around 5 hours of practical demonstrations. The module starts by &amp;nbsp;&amp;nbsp;explaining&amp;nbsp;various scanning and application footprinting techniques. Right&amp;nbsp;after&amp;nbsp;the scanning part the author directly dives the students inside web application exploitation techniques such as&amp;nbsp;&lt;b&gt;SQL injection&lt;/b&gt; and&lt;b&gt; Blind SQLi, File Upload &lt;/b&gt;and &lt;b&gt;Remote File Include (RFI) vulnerabilities&lt;/b&gt;, &lt;b&gt;Command Injection&lt;/b&gt;, &lt;b&gt;Cross Site Scripting&lt;/b&gt; (XSS) (both reflected and stored), and &lt;b&gt;Cross-Site Request Forgery (CSRF)&lt;/b&gt;.&lt;br /&gt;
&lt;br /&gt;
&lt;b&gt;Module 8: Windows Exploit Development&lt;/b&gt;&lt;br /&gt;
&lt;b&gt;&lt;br /&gt;
&lt;/b&gt;&lt;br /&gt;
This module was by far my favorite as the instructor has done&amp;nbsp;tremendous job in&amp;nbsp;explaining&amp;nbsp;the windows exploit development process.&amp;nbsp;&amp;nbsp;The module covers a step by step process of development of a buffer overflow exploit. &amp;nbsp;The instructor has made the complex exploit development process look so easy for the students that even script kiddies can learn it with a little bit of effort.&lt;br /&gt;
&lt;br /&gt;
The ninja-sec team also offers a certificate for any one who completes the following lab challenges:&lt;br /&gt;
&lt;br /&gt;
&lt;img src="http://ninja-sec.com/wp-content/uploads/lab.png" /&gt; &lt;br /&gt;
&lt;br /&gt;
The end goal is to collect a key.txt file inside of impossible network.&lt;br /&gt;
&lt;br /&gt;
&lt;b&gt;&lt;a href="http://ninja-sec.com/"&gt;Click Here To Enroll Your self&lt;/a&gt;&lt;/b&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/3121270199089759062-7250573157422691821?l=www.rafayhackingarticles.net' alt='' /&gt;&lt;/div&gt;&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/HackingAndCracking?a=F1khSODOprU:g5KcSbiBkZ4:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/HackingAndCracking?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/HackingAndCracking?a=F1khSODOprU:g5KcSbiBkZ4:63t7Ie-LG7Y"&gt;&lt;img src="http://feeds.feedburner.com/~ff/HackingAndCracking?d=63t7Ie-LG7Y" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/HackingAndCracking?a=F1khSODOprU:g5KcSbiBkZ4:-BTjWOF_DHI"&gt;&lt;img src="http://feeds.feedburner.com/~ff/HackingAndCracking?i=F1khSODOprU:g5KcSbiBkZ4:-BTjWOF_DHI" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/HackingAndCracking?a=F1khSODOprU:g5KcSbiBkZ4:V_sGLiPBpWU"&gt;&lt;img src="http://feeds.feedburner.com/~ff/HackingAndCracking?i=F1khSODOprU:g5KcSbiBkZ4:V_sGLiPBpWU" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/HackingAndCracking?a=F1khSODOprU:g5KcSbiBkZ4:qj6IDK7rITs"&gt;&lt;img src="http://feeds.feedburner.com/~ff/HackingAndCracking?d=qj6IDK7rITs" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/HackingAndCracking?a=F1khSODOprU:g5KcSbiBkZ4:gIN9vFwOqvQ"&gt;&lt;img src="http://feeds.feedburner.com/~ff/HackingAndCracking?i=F1khSODOprU:g5KcSbiBkZ4:gIN9vFwOqvQ" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/HackingAndCracking?a=F1khSODOprU:g5KcSbiBkZ4:4cEx4HpKnUU"&gt;&lt;img src="http://feeds.feedburner.com/~ff/HackingAndCracking?i=F1khSODOprU:g5KcSbiBkZ4:4cEx4HpKnUU" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;&lt;img src="http://feeds.feedburner.com/~r/HackingAndCracking/~4/F1khSODOprU" height="1" width="1"/&gt;</content><link rel="replies" type="application/atom+xml" href="http://www.rafayhackingarticles.net/feeds/7250573157422691821/comments/default" title="Post Comments" /><link rel="replies" type="text/html" href="http://www.rafayhackingarticles.net/2012/04/penetration-testing-in-real-world.html#comment-form" title="0 Comments" /><link rel="edit" type="application/atom+xml" href="http://www.blogger.com/feeds/3121270199089759062/posts/default/7250573157422691821?v=2" /><link rel="self" type="application/atom+xml" href="http://www.blogger.com/feeds/3121270199089759062/posts/default/7250573157422691821?v=2" /><link rel="alternate" type="text/html" href="http://feedproxy.google.com/~r/HackingAndCracking/~3/F1khSODOprU/penetration-testing-in-real-world.html" title="Penetration Testing In Real World - &quot;Codename: Samurai Skills&quot;" /><author><name>Rafay Baloch</name><uri>https://profiles.google.com/113902000528448760189</uri><email>noreply@blogger.com</email><gd:image rel="http://schemas.google.com/g/2005#thumbnail" width="32" height="32" src="//lh4.googleusercontent.com/-QFpq0g9Pn_g/AAAAAAAAAAI/AAAAAAAABeU/sxaLN0wQah8/s512-c/photo.jpg" /></author><thr:total>0</thr:total><feedburner:origLink>http://www.rafayhackingarticles.net/2012/04/penetration-testing-in-real-world.html</feedburner:origLink></entry><entry gd:etag="W/&quot;DkQAQXs4cCp7ImA9WhVXFkQ.&quot;"><id>tag:blogger.com,1999:blog-3121270199089759062.post-3748760833427548219</id><published>2012-04-17T13:15:00.007-07:00</published><updated>2012-04-17T13:25:40.538-07:00</updated><app:edited xmlns:app="http://www.w3.org/2007/app">2012-04-17T13:25:40.538-07:00</app:edited><category scheme="http://www.blogger.com/atom/ns#" term="Metasploit" /><title>How To Hack Windows 7 And Bypass Firewall And Kaspersky Antivirus</title><content type="html">&lt;div dir="ltr" style="text-align: left;" trbidi="on"&gt;&lt;div align="center" class="MsoNormal" style="text-align: center;"&gt;&lt;div class="separator" style="clear: both; text-align: center;"&gt;&lt;a href="http://1.bp.blogspot.com/-CTjPhV1tMEE/T43LAudptuI/AAAAAAAAB48/yRoySeQqxyo/s1600/windows-7_1512539c.jpg" imageanchor="1" style="margin-left: 1em; margin-right: 1em;"&gt;&lt;img border="0" src="http://1.bp.blogspot.com/-CTjPhV1tMEE/T43LAudptuI/AAAAAAAAB48/yRoySeQqxyo/s1600/windows-7_1512539c.jpg" /&gt;&lt;/a&gt;&lt;/div&gt;&lt;span style="text-align: left;"&gt;&lt;br /&gt;
&lt;/span&gt;&lt;br /&gt;
&lt;span style="text-align: left;"&gt;Ever tried to hack a windows 7?, Ever tired of bypassing antiviurs?, Then this is the tutorial for you.Ok, so you want to know how to attack a fully secured and protected windows 7 sp1 x64 with all security defenses working and running ( UAC,DEP,ASLR,EMET,etc.)&lt;/span&gt;&lt;br /&gt;
&lt;span style="text-align: left;"&gt;&lt;/span&gt;&lt;br /&gt;
&lt;a name='more'&gt;&lt;/a&gt;&lt;span style="text-align: left;"&gt;&lt;br /&gt;
&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;br /&gt;
&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;v:shapetype coordsize="21600,21600" filled="f" id="_x0000_t75" o:preferrelative="t" o:spt="75" path="m@4@5l@4@11@9@11@9@5xe" stroked="f"&gt;  &lt;v:stroke joinstyle="miter"&gt;  &lt;v:formulas&gt;   &lt;v:f eqn="if lineDrawn pixelLineWidth 0"&gt;   &lt;v:f eqn="sum @0 1 0"&gt;   &lt;v:f eqn="sum 0 0 @1"&gt;   &lt;v:f eqn="prod @2 1 2"&gt;   &lt;v:f eqn="prod @3 21600 pixelWidth"&gt;   &lt;v:f eqn="prod @3 21600 pixelHeight"&gt;   &lt;v:f eqn="sum @0 0 1"&gt;   &lt;v:f eqn="prod @6 1 2"&gt;   &lt;v:f eqn="prod @7 21600 pixelWidth"&gt;   &lt;v:f eqn="sum @8 21600 0"&gt;   &lt;v:f eqn="prod @7 21600 pixelHeight"&gt;   &lt;v:f eqn="sum @10 21600 0"&gt;  &lt;/v:f&gt;&lt;/v:f&gt;&lt;/v:f&gt;&lt;/v:f&gt;&lt;/v:f&gt;&lt;/v:f&gt;&lt;/v:f&gt;&lt;/v:f&gt;&lt;/v:f&gt;&lt;/v:f&gt;&lt;/v:f&gt;&lt;/v:f&gt;&lt;/v:formulas&gt;  &lt;v:path gradientshapeok="t" o:connecttype="rect" o:extrusionok="f"&gt;  &lt;o:lock aspectratio="t" v:ext="edit"&gt; &lt;/o:lock&gt;&lt;/v:path&gt;&lt;/v:stroke&gt;&lt;/v:shapetype&gt;&lt;v:shape id="Picture_x0020_1" o:spid="_x0000_i1051" style="height: 87.75pt; mso-wrap-style: square; visibility: visible; width: 6in;" type="#_x0000_t75"&gt;  &lt;v:imagedata o:title="" src="file:///C:\Users\mohaab\AppData\Local\Temp\msohtmlclip1\01\clip_image001.png"&gt; &lt;/v:imagedata&gt;&lt;/v:shape&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/div&gt;&lt;div class="separator" style="clear: both; text-align: center;"&gt;&lt;a href="http://4.bp.blogspot.com/-rDzfqHfZy-0/T42-gw2awnI/AAAAAAAAAHg/akG0161rx98/s1600/image001.png" imageanchor="1" style="margin-left: 1em; margin-right: 1em;"&gt;&lt;img border="0" height="130" src="http://4.bp.blogspot.com/-rDzfqHfZy-0/T42-gw2awnI/AAAAAAAAAHg/akG0161rx98/s640/image001.png" width="577" /&gt;&lt;/a&gt;&lt;/div&gt;&lt;div class="separator" style="clear: both; text-align: center;"&gt;&lt;a href="http://3.bp.blogspot.com/-d9uC6HgBBIk/T42-h97OiHI/AAAAAAAAAHo/jQQuSTPwiI4/s1600/image002.png" imageanchor="1" style="margin-left: 1em; margin-right: 1em;"&gt;&lt;img border="0" height="235" src="http://3.bp.blogspot.com/-d9uC6HgBBIk/T42-h97OiHI/AAAAAAAAAHo/jQQuSTPwiI4/s640/image002.png" width="577" /&gt;&lt;/a&gt;&lt;/div&gt;&lt;br /&gt;
&lt;div class="MsoNormal"&gt;&lt;br /&gt;
&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;v:shape id="Picture_x0020_4" o:spid="_x0000_i1050" style="height: 159pt; mso-wrap-style: square; visibility: visible; width: 6in;" type="#_x0000_t75"&gt;  &lt;v:imagedata o:title="" src="file:///C:\Users\mohaab\AppData\Local\Temp\msohtmlclip1\01\clip_image002.png"&gt; &lt;/v:imagedata&gt;&lt;/v:shape&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;Not just that but also there is &lt;span style="color: red;"&gt;Kaspersky internet security 2012 &lt;/span&gt;activated and updated till this moment and running with default options like (firewall, application control, proactive defense, etc.)&lt;o:p&gt;&lt;/o:p&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;v:shape id="Picture_x0020_2" o:spid="_x0000_i1049" style="height: 326.25pt; mso-wrap-style: square; visibility: visible; width: 6in;" type="#_x0000_t75"&gt;  &lt;v:imagedata o:title="" src="file:///C:\Users\mohaab\AppData\Local\Temp\msohtmlclip1\01\clip_image003.png"&gt; &lt;/v:imagedata&gt;&lt;/v:shape&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;v:shape id="Picture_x0020_3" o:spid="_x0000_i1048" style="height: 315pt; mso-wrap-style: square; visibility: visible; width: 6in;" type="#_x0000_t75"&gt;  &lt;v:imagedata o:title="" src="file:///C:\Users\mohaab\AppData\Local\Temp\msohtmlclip1\01\clip_image004.png"&gt; &lt;/v:imagedata&gt;&lt;/v:shape&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;br /&gt;
&lt;/div&gt;&lt;div class="separator" style="clear: both; text-align: center;"&gt;&lt;a href="http://2.bp.blogspot.com/-HRH4wQRf2CM/T42-jV87SkI/AAAAAAAAAHw/sPtvCN-8Tqg/s1600/image003.png" imageanchor="1" style="margin-left: 1em; margin-right: 1em;"&gt;&lt;img border="0" height="483" src="http://2.bp.blogspot.com/-HRH4wQRf2CM/T42-jV87SkI/AAAAAAAAAHw/sPtvCN-8Tqg/s640/image003.png" width="577" /&gt;&lt;/a&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;o:p&gt;&lt;br /&gt;
&lt;/o:p&gt;&lt;/div&gt;&lt;div class="separator" style="clear: both; text-align: center;"&gt;&lt;a href="http://1.bp.blogspot.com/-4XR66FAyYw4/T42-kn1QhSI/AAAAAAAAAH4/39scVee9SHo/s1600/image004.png" imageanchor="1" style="margin-left: 1em; margin-right: 1em;"&gt;&lt;img border="0" height="466" src="http://1.bp.blogspot.com/-4XR66FAyYw4/T42-kn1QhSI/AAAAAAAAAH4/39scVee9SHo/s640/image004.png" width="577" /&gt;&lt;/a&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;o:p&gt;&lt;br /&gt;
&lt;/o:p&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;As we know that windows 7 sp1 doesn’t have any remote exploits like (ms08-067) for xp and (MS09-050) for vista/&amp;nbsp;Because windows 7 is more secured and exploitation (exploit development) is very hard (good job Microsoft).&amp;nbsp;Most internet users have Firefox, chrome and internet explorer not all of them but one for two of them (I am using all of them at once &lt;span style="font-family: Wingdings;"&gt;J&lt;/span&gt; )&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;br /&gt;
&lt;br /&gt;
&lt;/div&gt;&lt;div class="MsoNormal"&gt;And they have flash player from adobe and java from oracle so they watch online clips/movies from YouTube and enjoy online games and applications that requires java and flash payer.&amp;nbsp;Most of them have anti-virus with firewall enabled by default, they use&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;( eset,avira,avast,Kaspersky,bitdefender,etc.)&lt;br /&gt;
&lt;br /&gt;
Let’s take a look at the best anti-virus in the world&amp;nbsp;&lt;a href="http://www.av-comparatives.org/en/comparativesreviews/dynamic-tests" title="Real World Protection Test"&gt;&lt;b&gt;&lt;span style="background-attachment: initial; background-clip: initial; background-color: white; background-image: initial; background-origin: initial; color: #d27400; font-family: Arial, sans-serif; font-size: 9pt; line-height: 115%;"&gt;"Real World" Protection Test - chart updated!&lt;/span&gt;&lt;/b&gt;&lt;/a&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;br /&gt;
And download&lt;o:p&gt;&lt;/o:p&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;br /&gt;
&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;a href="http://www.av-comparatives.org/images/stories/test/dyn/avc_factsheet2012_03.pdf"&gt;http://www.av-comparatives.org/images/stories/test/dyn/avc_factsheet2012_03.pdf&lt;/a&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;br /&gt;
&lt;/div&gt;&lt;div class="MsoNormal"&gt;We can see that &lt;span style="color: red;"&gt;Kaspersky internet security 2012 and bit defender &lt;/span&gt;are the best &lt;o:p&gt;&lt;/o:p&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;br /&gt;
&lt;/div&gt;&lt;div class="separator" style="clear: both; text-align: center;"&gt;&lt;a href="http://4.bp.blogspot.com/-zhrwaXxnHVo/T42-mCQViJI/AAAAAAAAAIA/41VGzjTuY18/s1600/image005.png" imageanchor="1" style="margin-left: 1em; margin-right: 1em;"&gt;&lt;img border="0" height="320" src="http://4.bp.blogspot.com/-zhrwaXxnHVo/T42-mCQViJI/AAAAAAAAAIA/41VGzjTuY18/s640/image005.png" width="577" /&gt;&lt;/a&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;br /&gt;
&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;v:shape id="Picture_x0020_6" o:spid="_x0000_i1047" style="height: 216.75pt; mso-wrap-style: square; visibility: visible; width: 6in;" type="#_x0000_t75"&gt;  &lt;v:imagedata o:title="" src="file:///C:\Users\mohaab\AppData\Local\Temp\msohtmlclip1\01\clip_image005.png"&gt; &lt;/v:imagedata&gt;&lt;/v:shape&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;br /&gt;
&lt;/div&gt;&lt;div class="MsoNormal"&gt;But Kaspersky is the best one from my point of view &lt;span style="font-family: Wingdings;"&gt;J&lt;/span&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;Let’s imagine this scenario:&lt;o:p&gt;&lt;/o:p&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;I am working as a penetration tester in a big security company; they asked me to conduct a penetration testing (client side/social engineering) no web penetration testing, network/wireless penetration testing just client side for a big customer&lt;o:p&gt;&lt;/o:p&gt;&lt;br /&gt;
&lt;br /&gt;
&lt;/div&gt;&lt;div class="MsoNormal"&gt;I said ok let’s do it.&lt;o:p&gt;&lt;/o:p&gt;&lt;br /&gt;
&lt;br /&gt;
&lt;/div&gt;&lt;div class="MsoNormal"&gt;We finished all paper work and other legal stuff then I am thinking now how I can penetrate this company???&lt;o:p&gt;&lt;/o:p&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;My big company told me that the big customer web site URL is (&lt;a href="http://www.bigx.com/"&gt;http://www.bigx.com&lt;/a&gt;)&lt;o:p&gt;&lt;/o:p&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;I made a quick search using Google&lt;o:p&gt;&lt;/o:p&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;br /&gt;
&lt;/div&gt;&lt;div class="separator" style="clear: both; text-align: center;"&gt;&lt;a href="http://3.bp.blogspot.com/-qqSOWzEInVU/T42-nBs4pqI/AAAAAAAAAII/a3LpWxOaPEQ/s1600/image006.png" imageanchor="1" style="margin-left: 1em; margin-right: 1em;"&gt;&lt;img border="0" height="622" src="http://3.bp.blogspot.com/-qqSOWzEInVU/T42-nBs4pqI/AAAAAAAAAII/a3LpWxOaPEQ/s640/image006.png" width="577" /&gt;&lt;/a&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;br /&gt;
&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;v:shape id="Picture_x0020_7" o:spid="_x0000_i1046" style="height: 420pt; mso-wrap-style: square; visibility: visible; width: 6in;" type="#_x0000_t75"&gt;  &lt;v:imagedata o:title="" src="file:///C:\Users\mohaab\AppData\Local\Temp\msohtmlclip1\01\clip_image006.png"&gt; &lt;/v:imagedata&gt;&lt;/v:shape&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;Then I used another tool called (the harvester), you can find it in backtrack 5 r2 or download it from &lt;a href="http://www.edge-security.com/theHarvester.php"&gt;http://www.edge-security.com/theHarvester.php&lt;/a&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;&amp;nbsp;I found many emails:&lt;o:p&gt;&lt;/o:p&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;a href="mailto:admin@bigx.com"&gt;admin@bigx.com&lt;/a&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;a href="mailto:webmaster@bigx.com"&gt;webmaster@bigx.com&lt;/a&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;a href="mailto:lolo@bigx.com"&gt;lolo@bigx.com&lt;/a&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;a href="mailto:ceo@bigx.com"&gt;ceo@bigx.com&lt;/a&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;br /&gt;
&lt;/div&gt;&lt;div class="MsoNormal"&gt;That is good, now I have a starting point to target and attack all emails I found&lt;o:p&gt;&lt;/o:p&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;Now I know that this is a big customer and a big company so they must use a big security as well &lt;o:p&gt;&lt;/o:p&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;And they have anti-virus and modern and secured operating systems like (windows 7 sp1)&lt;o:p&gt;&lt;/o:p&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;So public exploits against IE,Firefox,flash,adobe and other local programs will not work and I will got detected using Anti-virus that will detect my exploits that I will send to my targets and remove it&lt;o:p&gt;&lt;/o:p&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;So the best chance I have is to use an evil java applet to trick the victim to open it &lt;o:p&gt;&lt;/o:p&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;But the victim must have java installed on his system&lt;o:p&gt;&lt;/o:p&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;Ok this is good as many internet users have java installed including me &lt;span style="font-family: Wingdings;"&gt;J&lt;/span&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;v:shape id="Picture_x0020_8" o:spid="_x0000_i1045" style="height: 290.25pt; mso-wrap-style: square; visibility: visible; width: 383.25pt;" type="#_x0000_t75"&gt;  &lt;v:imagedata o:title="" src="file:///C:\Users\mohaab\AppData\Local\Temp\msohtmlclip1\01\clip_image007.png"&gt; &lt;/v:imagedata&gt;&lt;/v:shape&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;br /&gt;
&lt;/div&gt;&lt;div class="separator" style="clear: both; text-align: center;"&gt;&lt;a href="http://2.bp.blogspot.com/-z0XlWuQPBf8/T42-pCqCNyI/AAAAAAAAAIQ/qkgcl2mSWK8/s1600/image007.png" imageanchor="1" style="margin-left: 1em; margin-right: 1em;"&gt;&lt;img border="0" height="242" src="http://2.bp.blogspot.com/-z0XlWuQPBf8/T42-pCqCNyI/AAAAAAAAAIQ/qkgcl2mSWK8/s320/image007.png" width="320" /&gt;&lt;/a&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;br /&gt;
&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;o:p&gt;&lt;br /&gt;
&lt;/o:p&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;o:p&gt;&lt;br /&gt;
&lt;/o:p&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;Ok, time to hunt them all ….&lt;o:p&gt;&lt;/o:p&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;I searched in pipl.com&lt;o:p&gt;&lt;/o:p&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;br /&gt;
&lt;/div&gt;&lt;div class="separator" style="clear: both; text-align: center;"&gt;&lt;a href="http://3.bp.blogspot.com/-BKZ61PZi-o8/T42-rYXjOMI/AAAAAAAAAIY/gwjS6e38BmY/s1600/image008.png" imageanchor="1" style="margin-left: 1em; margin-right: 1em;"&gt;&lt;img border="0" height="453" src="http://3.bp.blogspot.com/-BKZ61PZi-o8/T42-rYXjOMI/AAAAAAAAAIY/gwjS6e38BmY/s640/image008.png" width="577" /&gt;&lt;/a&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;br /&gt;
&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;v:shape id="Picture_x0020_9" o:spid="_x0000_i1044" style="height: 306pt; mso-wrap-style: square; visibility: visible; width: 6in;" type="#_x0000_t75"&gt;  &lt;v:imagedata o:title="" src="file:///C:\Users\mohaab\AppData\Local\Temp\msohtmlclip1\01\clip_image008.png"&gt; &lt;/v:imagedata&gt;&lt;/v:shape&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;I entered all emails I have and found many interesting information like:&lt;o:p&gt;&lt;/o:p&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;br /&gt;
&lt;/div&gt;&lt;div class="separator" style="clear: both; text-align: center;"&gt;&lt;a href="http://3.bp.blogspot.com/-gC-NEY0R9LQ/T42-txntxOI/AAAAAAAAAIg/qKrbGIoQtAQ/s1600/image009.png" imageanchor="1" style="margin-left: 1em; margin-right: 1em;"&gt;&lt;img border="0" height="327" src="http://3.bp.blogspot.com/-gC-NEY0R9LQ/T42-txntxOI/AAAAAAAAAIg/qKrbGIoQtAQ/s640/image009.png" width="577" /&gt;&lt;/a&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;br /&gt;
&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;br /&gt;
&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;v:shape id="Picture_x0020_10" o:spid="_x0000_i1043" style="height: 221.25pt; mso-wrap-style: square; visibility: visible; width: 6in;" type="#_x0000_t75"&gt;  &lt;v:imagedata o:title="" src="file:///C:\Users\mohaab\AppData\Local\Temp\msohtmlclip1\01\clip_image009.png"&gt; &lt;/v:imagedata&gt;&lt;/v:shape&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;br /&gt;
&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;span style="color: red;"&gt;Note: this is FAKE I cannot disclose sensitive information about the big Company &lt;/span&gt;&lt;span style="color: red; font-family: Wingdings;"&gt;J&lt;/span&gt;&lt;span style="color: red;"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;br /&gt;
&lt;/div&gt;&lt;div class="MsoNormal"&gt;As you can see ( name,age,location,genere) and also &lt;a href="http://www.rafayhackingarticles.net/2010/01/4-ways-on-how-to-hack-facebook-password.html"&gt;Facebook account &lt;/a&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;br /&gt;
&lt;/div&gt;&lt;div class="MsoNormal"&gt;I added this &lt;a href="mailto:admin@bigx.com"&gt;admin@bigx.com&lt;/a&gt; as a friend in Facebook and we are now friends&lt;o:p&gt;&lt;/o:p&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;br /&gt;
&lt;/div&gt;&lt;div class="MsoNormal"&gt;I chatted with him about his company and some general talk&lt;o:p&gt;&lt;/o:p&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;br /&gt;
&lt;/div&gt;&lt;div class="MsoNormal"&gt;After some time we have a small trust with each other (I can send him images or links)&lt;o:p&gt;&lt;/o:p&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;br /&gt;
&lt;/div&gt;&lt;div class="MsoNormal"&gt;Now I will start my backtrack 5 r2 machine and run this cool program &lt;o:p&gt;&lt;/o:p&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;br /&gt;
&lt;/div&gt;&lt;div class="MsoNormal"&gt;(Social engineering toolkit) AKA (SET)&lt;o:p&gt;&lt;/o:p&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;br /&gt;
&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;v:shape id="Picture_x0020_12" o:spid="_x0000_i1042" style="height: 185.25pt; mso-wrap-style: square; visibility: visible; width: 6in;" type="#_x0000_t75"&gt;  &lt;v:imagedata o:title="" src="file:///C:\Users\mohaab\AppData\Local\Temp\msohtmlclip1\01\clip_image010.png"&gt; &lt;/v:imagedata&gt;&lt;/v:shape&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/div&gt;&lt;div class="separator" style="clear: both; text-align: center;"&gt;&lt;a href="http://4.bp.blogspot.com/-Q3L93tu6oIM/T42-y3YZ0NI/AAAAAAAAAIo/3D6b8KuEN9o/s1600/image010.png" imageanchor="1" style="margin-left: 1em; margin-right: 1em;"&gt;&lt;img border="0" height="274" src="http://4.bp.blogspot.com/-Q3L93tu6oIM/T42-y3YZ0NI/AAAAAAAAAIo/3D6b8KuEN9o/s640/image010.png" width="577" /&gt;&lt;/a&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;br /&gt;
&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;v:shape id="Picture_x0020_13" o:spid="_x0000_i1041" style="height: 332.25pt; mso-wrap-style: square; visibility: visible; width: 6in;" type="#_x0000_t75"&gt;  &lt;v:imagedata o:title="" src="file:///C:\Users\mohaab\AppData\Local\Temp\msohtmlclip1\01\clip_image011.png"&gt; &lt;/v:imagedata&gt;&lt;/v:shape&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/div&gt;&lt;div class="separator" style="clear: both; text-align: center;"&gt;&lt;a href="http://1.bp.blogspot.com/-LmIARaPOzaQ/T42-4dNYSOI/AAAAAAAAAIw/5nqUhWD0dWY/s1600/image011.png" imageanchor="1" style="margin-left: 1em; margin-right: 1em;"&gt;&lt;img border="0" height="492" src="http://1.bp.blogspot.com/-LmIARaPOzaQ/T42-4dNYSOI/AAAAAAAAAIw/5nqUhWD0dWY/s640/image011.png" width="577" /&gt;&lt;/a&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;br /&gt;
&lt;/div&gt;&lt;div class="MsoNormal"&gt;Now time to attack my target&lt;o:p&gt;&lt;/o:p&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;br /&gt;
&lt;/div&gt;&lt;div class="separator" style="clear: both; text-align: center;"&gt;&lt;a href="http://3.bp.blogspot.com/-8kuhL6JBDeo/T42-6CGFRqI/AAAAAAAAAI4/jCHt6rmf2c4/s1600/image012.png" imageanchor="1" style="margin-left: 1em; margin-right: 1em;"&gt;&lt;img border="0" src="http://3.bp.blogspot.com/-8kuhL6JBDeo/T42-6CGFRqI/AAAAAAAAAI4/jCHt6rmf2c4/s1600/image012.png" /&gt;&lt;/a&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;o:p&gt;&lt;br /&gt;
&lt;/o:p&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;v:shape id="Picture_x0020_15" o:spid="_x0000_i1040" style="height: 192pt; mso-wrap-style: square; visibility: visible; width: 229.5pt;" type="#_x0000_t75"&gt;  &lt;v:imagedata o:title="" src="file:///C:\Users\mohaab\AppData\Local\Temp\msohtmlclip1\01\clip_image012.png"&gt; &lt;/v:imagedata&gt;&lt;/v:shape&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;I will create an evil java applet&lt;o:p&gt;&lt;/o:p&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;I will choose &lt;o:p&gt;&lt;/o:p&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;2) Website Attack Vectors&lt;o:p&gt;&lt;/o:p&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;Then&lt;o:p&gt;&lt;/o:p&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;&amp;nbsp;1) Java Applet Attack Method&lt;o:p&gt;&lt;/o:p&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;br /&gt;
&lt;/div&gt;&lt;div class="separator" style="clear: both; text-align: center;"&gt;&lt;a href="http://4.bp.blogspot.com/-ojRKeuJrgrc/T42-79FCBHI/AAAAAAAAAJA/3il5wRH0in8/s1600/image013.png" imageanchor="1" style="margin-left: 1em; margin-right: 1em;"&gt;&lt;img border="0" src="http://4.bp.blogspot.com/-ojRKeuJrgrc/T42-79FCBHI/AAAAAAAAAJA/3il5wRH0in8/s1600/image013.png" /&gt;&lt;/a&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;br /&gt;
&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;v:shape id="Picture_x0020_16" o:spid="_x0000_i1039" style="height: 154.5pt; mso-wrap-style: square; visibility: visible; width: 287.25pt;" type="#_x0000_t75"&gt;  &lt;v:imagedata o:title="" src="file:///C:\Users\mohaab\AppData\Local\Temp\msohtmlclip1\01\clip_image013.png"&gt; &lt;/v:imagedata&gt;&lt;/v:shape&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;After that&lt;o:p&gt;&lt;/o:p&gt;&lt;/div&gt;&lt;div class="MsoListParagraph" style="margin-left: 23.25pt; mso-add-space: auto; mso-list: l0 level1 lfo1; text-indent: -18.0pt;"&gt;1)&lt;span style="font-size: 7pt;"&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &lt;/span&gt;&lt;span dir="LTR"&gt;&lt;/span&gt;Web Templates&lt;o:p&gt;&lt;/o:p&gt;&lt;/div&gt;&lt;div class="MsoListParagraph" style="margin-left: 23.25pt; mso-add-space: auto; mso-list: l0 level1 lfo1; text-indent: -18.0pt;"&gt;&lt;br /&gt;
&lt;/div&gt;&lt;div class="separator" style="clear: both; text-align: center;"&gt;&lt;a href="http://1.bp.blogspot.com/-GIaHh7IWxmQ/T42-80NTEqI/AAAAAAAAAJI/cE6GTQER1rg/s1600/image014.png" imageanchor="1" style="margin-left: 1em; margin-right: 1em;"&gt;&lt;img border="0" src="http://1.bp.blogspot.com/-GIaHh7IWxmQ/T42-80NTEqI/AAAAAAAAAJI/cE6GTQER1rg/s1600/image014.png" /&gt;&lt;/a&gt;&lt;/div&gt;&lt;div class="MsoListParagraph" style="margin-left: 23.25pt; mso-add-space: auto; mso-list: l0 level1 lfo1; text-indent: -18.0pt;"&gt;&lt;br /&gt;
&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;v:shape id="Picture_x0020_17" o:spid="_x0000_i1038" style="height: 81pt; mso-wrap-style: square; visibility: visible; width: 191.25pt;" type="#_x0000_t75"&gt;  &lt;v:imagedata o:title="" src="file:///C:\Users\mohaab\AppData\Local\Temp\msohtmlclip1\01\clip_image014.png"&gt; &lt;/v:imagedata&gt;&lt;/v:shape&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;And then&lt;o:p&gt;&lt;/o:p&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;4. Facebook&lt;o:p&gt;&lt;/o:p&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;br /&gt;
&lt;/div&gt;&lt;div class="separator" style="clear: both; text-align: center;"&gt;&lt;a href="http://4.bp.blogspot.com/-zi_55m4l6eI/T42-96bOqlI/AAAAAAAAAJQ/w99tq7Q1PBc/s1600/image015.png" imageanchor="1" style="margin-left: 1em; margin-right: 1em;"&gt;&lt;img border="0" src="http://4.bp.blogspot.com/-zi_55m4l6eI/T42-96bOqlI/AAAAAAAAAJQ/w99tq7Q1PBc/s1600/image015.png" /&gt;&lt;/a&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;br /&gt;
&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;v:shape id="Picture_x0020_18" o:spid="_x0000_i1037" style="height: 75pt; mso-wrap-style: square; visibility: visible; width: 186.75pt;" type="#_x0000_t75"&gt;  &lt;v:imagedata o:title="" src="file:///C:\Users\mohaab\AppData\Local\Temp\msohtmlclip1\01\clip_image015.png"&gt; &lt;/v:imagedata&gt;&lt;/v:shape&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;br /&gt;
&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;br /&gt;
&lt;/div&gt;&lt;div class="separator" style="clear: both; text-align: center;"&gt;&lt;a href="http://2.bp.blogspot.com/-1nI-nGtignU/T42_Iggt-VI/AAAAAAAAAJY/xvE7YiR69jw/s1600/image016.png" imageanchor="1" style="margin-left: 1em; margin-right: 1em;"&gt;&lt;img border="0" height="166" src="http://2.bp.blogspot.com/-1nI-nGtignU/T42_Iggt-VI/AAAAAAAAAJY/xvE7YiR69jw/s320/image016.png" width="320" /&gt;&lt;/a&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;o:p&gt;&lt;br /&gt;
&lt;/o:p&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;v:shape id="Picture_x0020_19" o:spid="_x0000_i1036" style="height: 225pt; mso-wrap-style: square; visibility: visible; width: 6in;" type="#_x0000_t75"&gt;  &lt;v:imagedata o:title="" src="file:///C:\Users\mohaab\AppData\Local\Temp\msohtmlclip1\01\clip_image016.png"&gt; &lt;/v:imagedata&gt;&lt;/v:shape&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;br /&gt;
&lt;/div&gt;&lt;div class="MsoNormal"&gt;Now the most important part, we must use a payload that is not detected by any security products like ( AV,IPS)&lt;o:p&gt;&lt;/o:p&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;br /&gt;
&lt;/div&gt;&lt;div class="MsoNormal"&gt;I know that my victim is using Kaspersky internet security 2012 and windows 7 sp1, I asked him in our facebook chat “what is the best anti-virus you recommended?”&lt;o:p&gt;&lt;/o:p&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;br /&gt;
&lt;/div&gt;&lt;div class="MsoNormal"&gt;He replied “Oh, the best one is Kaspersky internet security 2012, we are using it in our company and I personally use it installed on windows 7”&lt;o:p&gt;&lt;/o:p&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;br /&gt;
&lt;/div&gt;&lt;div class="MsoNormal"&gt;I tried in my penetration testing lab many of payloads and most of them detected by Kaspersky &lt;span style="font-family: Wingdings;"&gt;L&lt;/span&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;But the payload number 11&lt;o:p&gt;&lt;/o:p&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;br /&gt;
&lt;/div&gt;&lt;div class="MsoNormal"&gt;&amp;nbsp; 11) SE Toolkit Interactive Shell&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Custom interactive reverse toolkit designed for SET&lt;o:p&gt;&lt;/o:p&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;br /&gt;
&lt;/div&gt;&lt;div class="separator" style="clear: both; text-align: center;"&gt;&lt;a href="http://4.bp.blogspot.com/-b__hCG7_ELM/T42_KUArLmI/AAAAAAAAAJg/OuHfTUlOp8s/s1600/image017.png" imageanchor="1" style="margin-left: 1em; margin-right: 1em;"&gt;&lt;img border="0" height="14" src="http://4.bp.blogspot.com/-b__hCG7_ELM/T42_KUArLmI/AAAAAAAAAJg/OuHfTUlOp8s/s640/image017.png" width="577" /&gt;&lt;/a&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;br /&gt;
&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;v:shape id="Picture_x0020_20" o:spid="_x0000_i1035" style="height: 9.75pt; mso-wrap-style: square; visibility: visible; width: 6in;" type="#_x0000_t75"&gt;  &lt;v:imagedata o:title="" src="file:///C:\Users\mohaab\AppData\Local\Temp\msohtmlclip1\01\clip_image017.png"&gt; &lt;/v:imagedata&gt;&lt;/v:shape&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;Is working like charm and no AV detects it &lt;span style="font-family: Wingdings;"&gt;J&lt;/span&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;span style="font-family: Wingdings;"&gt;&lt;br /&gt;
&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;Then I choose it and choose port 443 to b my local port that payload will connect to me&lt;o:p&gt;&lt;/o:p&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;br /&gt;
&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;v:shape id="Picture_x0020_21" o:spid="_x0000_i1034" style="height: 54pt; mso-wrap-style: square; visibility: visible; width: 6in;" type="#_x0000_t75"&gt;  &lt;v:imagedata o:title="" src="file:///C:\Users\mohaab\AppData\Local\Temp\msohtmlclip1\01\clip_image018.png"&gt; &lt;/v:imagedata&gt;&lt;/v:shape&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/div&gt;&lt;div class="separator" style="clear: both; text-align: center;"&gt;&lt;a href="http://1.bp.blogspot.com/-EjJ_EEvbfu0/T42_MqJbpgI/AAAAAAAAAJo/BAWTXA6yjWA/s1600/image018.png" imageanchor="1" style="margin-left: 1em; margin-right: 1em;"&gt;&lt;img border="0" height="80" src="http://1.bp.blogspot.com/-EjJ_EEvbfu0/T42_MqJbpgI/AAAAAAAAAJo/BAWTXA6yjWA/s640/image018.png" width="577" /&gt;&lt;/a&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;br /&gt;
&lt;/div&gt;&lt;div class="MsoNormal"&gt;Note:&amp;nbsp; I opened two ports in my router ( 443,80) , so the victim can connect to me when payload is successfully executed&lt;o:p&gt;&lt;/o:p&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;br /&gt;
&lt;/div&gt;&lt;div class="MsoNormal"&gt;Now we are good and ready &lt;o:p&gt;&lt;/o:p&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;br /&gt;
&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;v:shape id="Picture_x0020_22" o:spid="_x0000_i1033" style="height: 63pt; mso-wrap-style: square; visibility: visible; width: 6in;" type="#_x0000_t75"&gt;  &lt;v:imagedata o:title="" src="file:///C:\Users\mohaab\AppData\Local\Temp\msohtmlclip1\01\clip_image019.png"&gt; &lt;/v:imagedata&gt;&lt;/v:shape&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/div&gt;&lt;div class="separator" style="clear: both; text-align: center;"&gt;&lt;a href="http://3.bp.blogspot.com/-ysSnG-A4oec/T42_OLpXExI/AAAAAAAAAJw/RDZiLLWqEYE/s1600/image019.png" imageanchor="1" style="margin-left: 1em; margin-right: 1em;"&gt;&lt;img border="0" height="93" src="http://3.bp.blogspot.com/-ysSnG-A4oec/T42_OLpXExI/AAAAAAAAAJw/RDZiLLWqEYE/s640/image019.png" width="577" /&gt;&lt;/a&gt;&lt;/div&gt;&lt;div class="separator" style="clear: both; text-align: center;"&gt;&lt;a href="http://3.bp.blogspot.com/-ysSnG-A4oec/T42_OLpXExI/AAAAAAAAAJw/RDZiLLWqEYE/s1600/image019.png" imageanchor="1" style="margin-left: 1em; margin-right: 1em;"&gt;&lt;img border="0" height="93" src="http://3.bp.blogspot.com/-ysSnG-A4oec/T42_OLpXExI/AAAAAAAAAJw/RDZiLLWqEYE/s640/image019.png" width="577" /&gt;&lt;/a&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;br /&gt;
&lt;/div&gt;&lt;div class="MsoNormal"&gt;Now we must send our external ip to victim, we can use this website &lt;o:p&gt;&lt;/o:p&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;br /&gt;
&lt;/div&gt;&lt;div class="MsoNormal"&gt;Getip.com&lt;o:p&gt;&lt;/o:p&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;br /&gt;
&lt;/div&gt;&lt;div class="MsoNormal"&gt;And you will find your external ip like this&lt;o:p&gt;&lt;/o:p&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;br /&gt;
&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;v:shape id="Picture_x0020_23" o:spid="_x0000_i1032" style="height: 154.5pt; mso-wrap-style: square; visibility: visible; width: 6in;" type="#_x0000_t75"&gt;  &lt;v:imagedata o:title="" src="file:///C:\Users\mohaab\AppData\Local\Temp\msohtmlclip1\01\clip_image020.png"&gt; &lt;/v:imagedata&gt;&lt;/v:shape&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/div&gt;&lt;div class="separator" style="clear: both; text-align: center;"&gt;&lt;a href="http://4.bp.blogspot.com/-HdMxebF4nmU/T42_PVbHN_I/AAAAAAAAAJ4/9bZEyI9Lm4M/s1600/image020.png" imageanchor="1" style="margin-left: 1em; margin-right: 1em;"&gt;&lt;img border="0" height="229" src="http://4.bp.blogspot.com/-HdMxebF4nmU/T42_PVbHN_I/AAAAAAAAAJ4/9bZEyI9Lm4M/s640/image020.png" width="577" /&gt;&lt;/a&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;br /&gt;
&lt;/div&gt;&lt;div class="MsoNormal"&gt;And we can hide our external ip by using bit.ly website to &lt;span style="color: red;"&gt;shorten and conceal it&lt;/span&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;v:shape id="Picture_x0020_33" o:spid="_x0000_i1031" style="height: 185.25pt; mso-wrap-style: square; visibility: visible; width: 6in;" type="#_x0000_t75"&gt;  &lt;v:imagedata o:title="" src="file:///C:\Users\mohaab\AppData\Local\Temp\msohtmlclip1\01\clip_image021.png"&gt; &lt;/v:imagedata&gt;&lt;/v:shape&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;br /&gt;
&lt;/div&gt;&lt;div class="separator" style="clear: both; text-align: center;"&gt;&lt;a href="http://1.bp.blogspot.com/-uLTEwggv-OU/T42_Qx1hzxI/AAAAAAAAAKA/fjpcR2Qf2Ok/s1600/image021.png" imageanchor="1" style="margin-left: 1em; margin-right: 1em;"&gt;&lt;img border="0" height="274" src="http://1.bp.blogspot.com/-uLTEwggv-OU/T42_Qx1hzxI/AAAAAAAAAKA/fjpcR2Qf2Ok/s640/image021.png" width="577" /&gt;&lt;/a&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;o:p&gt;&lt;br /&gt;
&lt;/o:p&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;You can see that my external ip is hidden now!&lt;o:p&gt;&lt;/o:p&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;br /&gt;
&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;a href="http://bit.ly/HPTZN0"&gt;http://bit.ly/HPTZN0&lt;/a&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;br /&gt;
&lt;/div&gt;&lt;div class="MsoNormal"&gt;Now I can send him this link and when he click on it he will see facebook.com loaded with your java applet exploit.&amp;nbsp;Note that Kaspersky is running&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;br /&gt;
&lt;/div&gt;&lt;div class="MsoNormal"&gt;And he will click run (he is secured and don’t fear from anything&amp;nbsp; &lt;span style="font-family: Wingdings;"&gt;J&lt;/span&gt; )&lt;o:p&gt;&lt;/o:p&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;br /&gt;
&lt;/div&gt;&lt;div class="MsoNormal"&gt;Now he clicked run and I can see&lt;o:p&gt;&lt;/o:p&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;br /&gt;
&lt;/div&gt;&lt;div class="separator" style="clear: both; text-align: center;"&gt;&lt;a href="http://1.bp.blogspot.com/-KdobgXeHyBY/T42_W2G3WQI/AAAAAAAAAKQ/0iSsGFhKZaE/s1600/image023.png" imageanchor="1" style="margin-left: 1em; margin-right: 1em;"&gt;&lt;img border="0" height="158" src="http://1.bp.blogspot.com/-KdobgXeHyBY/T42_W2G3WQI/AAAAAAAAAKQ/0iSsGFhKZaE/s640/image023.png" width="577" /&gt;&lt;/a&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;o:p&gt;&lt;br /&gt;
&lt;/o:p&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;v:shape id="Picture_x0020_27" o:spid="_x0000_i1029" style="height: 107.25pt; mso-wrap-style: square; visibility: visible; width: 6in;" type="#_x0000_t75"&gt;  &lt;v:imagedata o:title="" src="file:///C:\Users\mohaab\AppData\Local\Temp\msohtmlclip1\01\clip_image023.png"&gt; &lt;/v:imagedata&gt;&lt;/v:shape&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;br /&gt;
&lt;/div&gt;&lt;div class="MsoNormal"&gt;Kaspersky is running and java is running and everything is secure &lt;span style="font-family: Wingdings;"&gt;J&lt;/span&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;span style="font-family: Wingdings;"&gt;&lt;br /&gt;
&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;But I have a remote shell on my target machine&lt;o:p&gt;&lt;/o:p&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;br /&gt;
&lt;/div&gt;&lt;div class="MsoNormal"&gt;Now I can do many things like:&lt;o:p&gt;&lt;/o:p&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;br /&gt;
&lt;/div&gt;&lt;div class="separator" style="clear: both; text-align: center;"&gt;&lt;a href="http://3.bp.blogspot.com/-d80vU0OIWcI/T42_Ynz9E6I/AAAAAAAAAKY/cwdmETQIpPU/s1600/image024.png" imageanchor="1" style="margin-left: 1em; margin-right: 1em;"&gt;&lt;img border="0" height="223" src="http://3.bp.blogspot.com/-d80vU0OIWcI/T42_Ynz9E6I/AAAAAAAAAKY/cwdmETQIpPU/s640/image024.png" width="577" /&gt;&lt;/a&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;o:p&gt;&lt;br /&gt;
&lt;/o:p&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;v:shape id="Picture_x0020_28" o:spid="_x0000_i1028" style="height: 150.75pt; mso-wrap-style: square; visibility: visible; width: 6in;" type="#_x0000_t75"&gt;  &lt;v:imagedata o:title="" src="file:///C:\Users\mohaab\AppData\Local\Temp\msohtmlclip1\01\clip_image024.png"&gt; &lt;/v:imagedata&gt;&lt;/v:shape&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;Just press 1 to start interacting with the opened session&lt;o:p&gt;&lt;/o:p&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;br /&gt;
&lt;/div&gt;&lt;div class="MsoNormal"&gt;And then type help to view all supported commands&lt;o:p&gt;&lt;/o:p&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;br /&gt;
&lt;/div&gt;&lt;div class="MsoNormal"&gt;I always like a pure windows command shell&lt;o:p&gt;&lt;/o:p&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;br /&gt;
&lt;/div&gt;&lt;div class="MsoNormal"&gt;I will type “shell “&lt;o:p&gt;&lt;/o:p&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;br /&gt;
&lt;/div&gt;&lt;div class="separator" style="clear: both; text-align: center;"&gt;&lt;a href="http://3.bp.blogspot.com/-A31dons6oYM/T42_ZlLaDZI/AAAAAAAAAKg/kN2MjJZla3M/s1600/image025.png" imageanchor="1" style="margin-left: 1em; margin-right: 1em;"&gt;&lt;img border="0" height="82" src="http://3.bp.blogspot.com/-A31dons6oYM/T42_ZlLaDZI/AAAAAAAAAKg/kN2MjJZla3M/s640/image025.png" width="577" /&gt;&lt;/a&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;br /&gt;
&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;v:shape id="Picture_x0020_29" o:spid="_x0000_i1027" style="height: 55.5pt; mso-wrap-style: square; visibility: visible; width: 6in;" type="#_x0000_t75"&gt;  &lt;v:imagedata o:title="" src="file:///C:\Users\mohaab\AppData\Local\Temp\msohtmlclip1\01\clip_image025.png"&gt; &lt;/v:imagedata&gt;&lt;/v:shape&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;And I will type “tasklist” to view all running process and services&lt;o:p&gt;&lt;/o:p&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;br /&gt;
&lt;/div&gt;&lt;div class="separator" style="clear: both; text-align: center;"&gt;&lt;a href="http://4.bp.blogspot.com/-CVHebSQApiQ/T42_c3R04UI/AAAAAAAAAKo/lpC4FQ06DJU/s1600/image026.png" imageanchor="1" style="margin-left: 1em; margin-right: 1em;"&gt;&lt;img border="0" height="383" src="http://4.bp.blogspot.com/-CVHebSQApiQ/T42_c3R04UI/AAAAAAAAAKo/lpC4FQ06DJU/s640/image026.png" width="577" /&gt;&lt;/a&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;br /&gt;
&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;v:shape id="Picture_x0020_30" o:spid="_x0000_i1026" style="height: 258.75pt; mso-wrap-style: square; visibility: visible; width: 6in;" type="#_x0000_t75"&gt;  &lt;v:imagedata o:title="" src="file:///C:\Users\mohaab\AppData\Local\Temp\msohtmlclip1\01\clip_image026.png"&gt; &lt;/v:imagedata&gt;&lt;/v:shape&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;Then&lt;o:p&gt;&lt;/o:p&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;br /&gt;
&lt;/div&gt;&lt;div class="separator" style="clear: both; text-align: center;"&gt;&lt;a href="http://1.bp.blogspot.com/-QpzCpej6mYY/T42_eWpwWrI/AAAAAAAAAKw/PAFaQJ_c2KA/s1600/image027.png" imageanchor="1" style="margin-left: 1em; margin-right: 1em;"&gt;&lt;img border="0" height="90" src="http://1.bp.blogspot.com/-QpzCpej6mYY/T42_eWpwWrI/AAAAAAAAAKw/PAFaQJ_c2KA/s640/image027.png" width="577" /&gt;&lt;/a&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;br /&gt;
&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;v:shape id="Picture_x0020_31" o:spid="_x0000_i1025" style="height: 60.75pt; mso-wrap-style: square; visibility: visible; width: 6in;" type="#_x0000_t75"&gt;  &lt;v:imagedata o:title="" src="file:///C:\Users\mohaab\AppData\Local\Temp\msohtmlclip1\01\clip_image027.png"&gt; &lt;/v:imagedata&gt;&lt;/v:shape&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;OMG “Kaspersky is&amp;nbsp;running :)”&lt;o:p&gt;&lt;/o:p&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;br /&gt;
&lt;/div&gt;&lt;div class="MsoNormal"&gt;This is time to view files and download /upload and do some Real World Windows Post exploitation&lt;o:p&gt;&lt;/o:p&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;And we owned our victim and found many sensitive Bigx.com files like usernames and passwords and some private docs and photos &lt;span style="font-family: Wingdings;"&gt;J&lt;/span&gt; and found filezilla ftp username and passwords and connect with those ftp credentials and you know the rest ……&amp;nbsp; &lt;o:p&gt;&lt;/o:p&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;b&gt;&lt;br /&gt;
&lt;/b&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;b&gt;“Man , WE Defeated Them all !!”&lt;o:p&gt;&lt;/o:p&gt;&lt;/b&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;br /&gt;
&lt;/div&gt;&lt;div class="MsoNormal"&gt;Now it is time to write a nice report&lt;o:p&gt;&lt;/o:p&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;br /&gt;
&lt;/div&gt;&lt;div class="MsoNormal"&gt;I hope you enjoyed this (FAKE) Real World scenario&lt;br /&gt;
&lt;br /&gt;
&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;b&gt;About The Author&lt;/b&gt;&lt;br /&gt;
&lt;br /&gt;
Mohamed Ramadan is a security researcher from Egypt. He is interested in Penetration Testing, Malware Reverse Engineering, Securing Websites and Servers and Forensics.He also teaches Penetration Testing at &lt;b&gt;Ninja-Sec.com&lt;/b&gt;.&lt;/div&gt;&lt;/div&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/3121270199089759062-3748760833427548219?l=www.rafayhackingarticles.net' alt='' /&gt;&lt;/div&gt;&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/HackingAndCracking?a=3LhBCV8yBW0:WUVDhz9lm8g:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/HackingAndCracking?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/HackingAndCracking?a=3LhBCV8yBW0:WUVDhz9lm8g:63t7Ie-LG7Y"&gt;&lt;img src="http://feeds.feedburner.com/~ff/HackingAndCracking?d=63t7Ie-LG7Y" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/HackingAndCracking?a=3LhBCV8yBW0:WUVDhz9lm8g:-BTjWOF_DHI"&gt;&lt;img src="http://feeds.feedburner.com/~ff/HackingAndCracking?i=3LhBCV8yBW0:WUVDhz9lm8g:-BTjWOF_DHI" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/HackingAndCracking?a=3LhBCV8yBW0:WUVDhz9lm8g:V_sGLiPBpWU"&gt;&lt;img src="http://feeds.feedburner.com/~ff/HackingAndCracking?i=3LhBCV8yBW0:WUVDhz9lm8g:V_sGLiPBpWU" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/HackingAndCracking?a=3LhBCV8yBW0:WUVDhz9lm8g:qj6IDK7rITs"&gt;&lt;img src="http://feeds.feedburner.com/~ff/HackingAndCracking?d=qj6IDK7rITs" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/HackingAndCracking?a=3LhBCV8yBW0:WUVDhz9lm8g:gIN9vFwOqvQ"&gt;&lt;img src="http://feeds.feedburner.com/~ff/HackingAndCracking?i=3LhBCV8yBW0:WUVDhz9lm8g:gIN9vFwOqvQ" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/HackingAndCracking?a=3LhBCV8yBW0:WUVDhz9lm8g:4cEx4HpKnUU"&gt;&lt;img src="http://feeds.feedburner.com/~ff/HackingAndCracking?i=3LhBCV8yBW0:WUVDhz9lm8g:4cEx4HpKnUU" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;&lt;img src="http://feeds.feedburner.com/~r/HackingAndCracking/~4/3LhBCV8yBW0" height="1" width="1"/&gt;</content><link rel="replies" type="application/atom+xml" href="http://www.rafayhackingarticles.net/feeds/3748760833427548219/comments/default" title="Post Comments" /><link rel="replies" type="text/html" href="http://www.rafayhackingarticles.net/2012/04/hack-windows-7-and-bypass-antivirus.html#comment-form" title="12 Comments" /><link rel="edit" type="application/atom+xml" href="http://www.blogger.com/feeds/3121270199089759062/posts/default/3748760833427548219?v=2" /><link rel="self" type="application/atom+xml" href="http://www.blogger.com/feeds/3121270199089759062/posts/default/3748760833427548219?v=2" /><link rel="alternate" type="text/html" href="http://feedproxy.google.com/~r/HackingAndCracking/~3/3LhBCV8yBW0/hack-windows-7-and-bypass-antivirus.html" title="How To Hack Windows 7 And Bypass Firewall And Kaspersky Antivirus" /><author><name>Rafay Baloch</name><uri>https://profiles.google.com/113902000528448760189</uri><email>noreply@blogger.com</email><gd:image rel="http://schemas.google.com/g/2005#thumbnail" width="32" height="32" src="//lh4.googleusercontent.com/-QFpq0g9Pn_g/AAAAAAAAAAI/AAAAAAAABeU/sxaLN0wQah8/s512-c/photo.jpg" /></author><media:thumbnail xmlns:media="http://search.yahoo.com/mrss/" url="http://1.bp.blogspot.com/-CTjPhV1tMEE/T43LAudptuI/AAAAAAAAB48/yRoySeQqxyo/s72-c/windows-7_1512539c.jpg" height="72" width="72" /><thr:total>12</thr:total><feedburner:origLink>http://www.rafayhackingarticles.net/2012/04/hack-windows-7-and-bypass-antivirus.html</feedburner:origLink></entry><entry gd:etag="W/&quot;A0YFQnYzfCp7ImA9WhVXFUQ.&quot;"><id>tag:blogger.com,1999:blog-3121270199089759062.post-890756903468961256</id><published>2012-04-16T10:46:00.001-07:00</published><updated>2012-04-16T10:58:33.884-07:00</updated><app:edited xmlns:app="http://www.w3.org/2007/app">2012-04-16T10:58:33.884-07:00</app:edited><category scheme="http://www.blogger.com/atom/ns#" term="Sponsored Reivews" /><title>elearnSecurity Penetration Testing Professional V2 - Review</title><content type="html">&lt;div class="separator" style="clear: both; text-align: center;"&gt;&lt;a href="http://3.bp.blogspot.com/-11RoEXBjSSU/T4xSHKCwUxI/AAAAAAAAB40/mNUBAOVBcXI/s1600/Untitled.png" imageanchor="1" style="margin-left: 1em; margin-right: 1em;"&gt;&lt;img border="0" height="235" src="http://3.bp.blogspot.com/-11RoEXBjSSU/T4xSHKCwUxI/AAAAAAAAB40/mNUBAOVBcXI/s640/Untitled.png" width="577" /&gt;&lt;/a&gt;&lt;/div&gt;&lt;br /&gt;
Few months back we reviewed&lt;b&gt;&lt;a href="http://www.rafayhackingarticles.net/2011/12/elearn-security-beginners-course-for.html"&gt; elearnsecurity Penetration testing student course&lt;/a&gt;&lt;/b&gt;. We received&amp;nbsp;tremendous&amp;nbsp;amount from feedback from our readers who took the course. Therefore i decided to review elearnsecurity's newly launched&amp;nbsp;&lt;b&gt;Penetration Testing Course Professional v2&lt;/b&gt;. elearnsecurity offers one of the finest&amp;nbsp;training&amp;nbsp;related to &lt;b&gt;&lt;a href="http://hacking-book.com/"&gt;Ethical hacking &lt;/a&gt;&lt;/b&gt;and Penetration testing in the market.&amp;nbsp;Version 1 of the elearnsecurity training course has had over 2,000 students from 82 different countries in the world and professionals Military agencies and Fortune 50.&lt;br /&gt;
&lt;br /&gt;
&lt;a name='more'&gt;&lt;/a&gt;The whole course is divided in to following parts:&lt;br /&gt;
&lt;br /&gt;
&lt;b&gt;1.&lt;/b&gt; System Security&lt;br /&gt;
&lt;b&gt;2. &lt;/b&gt;Networking Security&lt;br /&gt;
&lt;b&gt;3. &lt;/b&gt;Web Application Security&lt;br /&gt;
&lt;h4&gt;System Security&lt;/h4&gt;&lt;div class="separator" style="clear: both; text-align: center;"&gt;&lt;a href="http://3.bp.blogspot.com/-RvNcE404dNI/T4xQf7c2ecI/AAAAAAAAB4s/YZ7rYCAbRnY/s1600/Untitled.png" imageanchor="1" style="margin-left: 1em; margin-right: 1em;"&gt;&lt;img border="0" height="350" src="http://3.bp.blogspot.com/-RvNcE404dNI/T4xQf7c2ecI/AAAAAAAAB4s/YZ7rYCAbRnY/s640/Untitled.png" width="577" /&gt;&lt;/a&gt;&lt;/div&gt;&lt;br /&gt;
&lt;b&gt;Module 1 :&lt;/b&gt; Introduction&lt;br /&gt;
&lt;b&gt;Module 2 :&lt;/b&gt; Cryptography and Password cracking&lt;br /&gt;
&lt;b&gt;Module 3 :&lt;/b&gt; Buffer overflow&lt;br /&gt;
&lt;b&gt;Module 4 : &lt;/b&gt;Shellcoding&lt;br /&gt;
&lt;b&gt;Module 5 : &lt;/b&gt;Malware&lt;br /&gt;
&lt;b&gt;Module 6 :&lt;/b&gt; Rootkit coding&lt;br /&gt;
&lt;br /&gt;
The module starts by covering the basics of C++, ASM and x86 Architecture and than graudually starts moving towards advanced topics such as Cryptography, bufferoverflows, shellcoding etc. I must say that I was impressed the way they explained a complex topics like &lt;b&gt;"Buffer Overflows"&amp;nbsp;&lt;/b&gt;and &lt;b&gt;"Shell coding"&lt;/b&gt;. Module 4&lt;b&gt; "Shellcoding"&lt;/b&gt; is something you won't find in majority of courses on Penetration testing.&lt;br /&gt;
&lt;br /&gt;
Just for your information if by looking at Module 5 &lt;b&gt;"Malware"&lt;/b&gt;&amp;nbsp;you probably think that this module will only cover script kiddie stuff such as Prorat, netbus etc usage. Then you are wrong. A thorough and detailed classification of types of malware is the introduction of a module featuring the most advanced and obscure techniques used by modern malwares.&lt;br /&gt;
&lt;h4&gt;Network Security&amp;nbsp;&lt;/h4&gt;&lt;div class="separator" style="clear: both; text-align: center;"&gt;&lt;a href="http://1.bp.blogspot.com/-PhGXi-mfPcs/T4xQYS0rTjI/AAAAAAAAB4c/hvK8UDnCpMw/s1600/networksecurity.png" imageanchor="1" style="margin-left: 1em; margin-right: 1em;"&gt;&lt;img border="0" height="396" src="http://1.bp.blogspot.com/-PhGXi-mfPcs/T4xQYS0rTjI/AAAAAAAAB4c/hvK8UDnCpMw/s640/networksecurity.png" width="577" /&gt;&lt;/a&gt;&lt;/div&gt;&lt;br /&gt;
&lt;b&gt;Module 1:&amp;nbsp;&lt;/b&gt;Information Gathering&lt;br /&gt;
&lt;b&gt;Module 2:&amp;nbsp;&lt;/b&gt;Scanning&lt;br /&gt;
&lt;b&gt;Module 3:&amp;nbsp;&lt;/b&gt;Enumeration&lt;br /&gt;
&lt;b&gt;Module 4:&amp;nbsp;&lt;/b&gt;Sniffing and MITM attacks&lt;br /&gt;
&lt;b&gt;Module 5:&amp;nbsp;&lt;/b&gt;Exploitation&lt;br /&gt;
&lt;b&gt;Module 6:&amp;nbsp;&lt;/b&gt;Post-exploitation&lt;br /&gt;
&lt;b&gt;Module 7:&amp;nbsp;&lt;/b&gt;Anonymity&lt;br /&gt;
&lt;b&gt;Module 8:&amp;nbsp;&lt;/b&gt;Social Engineering&lt;br /&gt;
&lt;br /&gt;
Network security section covers wide variety of attacks related to Network penetration testing. Talking about exploitation module, The version 1's exploitation module really disappointed me as it just contained introduction to metasploit and other exploitation tools. However, I have seen some dramatic changes with exploitation module. &lt;br /&gt;
&lt;br /&gt;
&lt;h4&gt;Webapplication Security&lt;/h4&gt;&lt;div class="separator" style="clear: both; text-align: center;"&gt;&lt;a href="http://4.bp.blogspot.com/-H2U3BNL1r9s/T4xQcZqwJaI/AAAAAAAAB4k/t7cWk2hfNRo/s1600/webapp.png" imageanchor="1" style="margin-left: 1em; margin-right: 1em;"&gt;&lt;img border="0" height="376" src="http://4.bp.blogspot.com/-H2U3BNL1r9s/T4xQcZqwJaI/AAAAAAAAB4k/t7cWk2hfNRo/s640/webapp.png" width="577" /&gt;&lt;/a&gt;&lt;/div&gt;&lt;br /&gt;
&lt;b&gt;&lt;br /&gt;
&lt;/b&gt;&lt;br /&gt;
&lt;b&gt;Module 1: &lt;/b&gt;Introduction&lt;br /&gt;
&lt;b&gt;Module 2:&lt;/b&gt; Information Gathering&lt;br /&gt;
&lt;b&gt;Module 3:&lt;/b&gt; Vulnerability assessment&lt;br /&gt;
&lt;b&gt;Module 4:&amp;nbsp;&lt;/b&gt;Cross site scripting&lt;br /&gt;
&lt;b&gt;Module 5: &lt;/b&gt;&amp;nbsp;SQL Injection&lt;br /&gt;
&lt;b&gt;Module 6:&lt;/b&gt; Advanced Web Attacks&lt;br /&gt;
&lt;br /&gt;
Since past few years attacks have gravitated towards layer 7. Since it's really easily to exploit then networks where you have to bypass tons of security mechanisms such as IDS, IPS, firewall etc. elearnsecurity's V2 makes a great coverage of webapplication security. &lt;br /&gt;
&lt;br /&gt;
The section starts by introducing the students to basics of webapplications such as basics of http protocol, cookies etc. Then it dives into information gathering, which include tons of tips and trcks in order to gather information about the target which will be used to exploit the webapplication later. &lt;br /&gt;
&lt;br /&gt;
The &lt;b&gt;"SQL Injection"&lt;/b&gt; module is one of the best and offers wide variety of knowledge related to different techniques and tools used to exploit different type of SQL Injection vulnerabilities such as blind sql injection, time based, error based sql injection etc. &lt;br /&gt;
&lt;br /&gt;
After&lt;b&gt; "XSS"&lt;/b&gt; and &lt;b&gt;"SQL Injection"&lt;/b&gt; the webapplication section takes you to "Advance Web Application attacks such as CSRF, Remote file inclusion, restricted file uploads etc.&lt;br /&gt;
&lt;br /&gt;
There is also an&amp;nbsp;availability&amp;nbsp;of colliseum lab where you can practice all kinds of attacks you learned in this section, which makes the section even more interesting.&lt;br /&gt;
&lt;h4&gt;Userfreindly Design And Format&lt;/h4&gt;The whole course is presented in a very user-friendly format. I have personally reviewed tons and tons of courses related to Ethical hacking and penetration testing here on RHA and found elearnsecurity design and format to be one of the best and easy to learn format.&lt;br /&gt;
&lt;b&gt;&lt;/b&gt;&lt;br /&gt;
&lt;h4&gt;&lt;b&gt;Certification&lt;/b&gt;&lt;/h4&gt;On submitting the exam report, You will&amp;nbsp;receive&amp;nbsp;an eCPPT certification.&amp;nbsp;The eCPPT designation stands for &lt;b&gt;"eLearnSecurity Certified Professional Penetration Tester".&lt;/b&gt; eCPPT is a highly respected Ethical Hacking and Penetration Testing Professional certification.&lt;br /&gt;
&lt;b&gt;&lt;/b&gt;&lt;br /&gt;
&lt;h4&gt;&lt;b&gt;What Should Be Improved?&lt;/b&gt;&lt;/h4&gt;&lt;b&gt;elearnsecurity&lt;/b&gt; team has made a great job in providing intermediate level Penetration testing course, However I &amp;nbsp;personally would like to see more stuff in Network security section.&lt;br /&gt;
&lt;h4&gt;Conclusion&lt;/h4&gt;&lt;b&gt;elearnsecurity's&lt;/b&gt; team certainly have made some dramatic changes with it's version 2. It's highly recommended to any one who wish to&amp;nbsp;improve&amp;nbsp;their concepts and knowledge related to Ethical hacking and Penetration testing.&lt;br /&gt;
&lt;b&gt;&lt;a href="http://www.blogger.com/goog_1810869903"&gt;&lt;br /&gt;
&lt;/a&gt;&lt;/b&gt;&lt;br /&gt;
&lt;b&gt;&lt;a href="https://www.plimus.com/jsp/redirect.jsp?contractId=3120354&amp;amp;referrer=707446"&gt;Click Here To Visit The Official Website For The eCPPT Course&lt;/a&gt;&lt;/b&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/3121270199089759062-890756903468961256?l=www.rafayhackingarticles.net' alt='' /&gt;&lt;/div&gt;&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/HackingAndCracking?a=ZpGvLds5erU:KPkx7XCMrwQ:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/HackingAndCracking?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/HackingAndCracking?a=ZpGvLds5erU:KPkx7XCMrwQ:63t7Ie-LG7Y"&gt;&lt;img src="http://feeds.feedburner.com/~ff/HackingAndCracking?d=63t7Ie-LG7Y" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/HackingAndCracking?a=ZpGvLds5erU:KPkx7XCMrwQ:-BTjWOF_DHI"&gt;&lt;img src="http://feeds.feedburner.com/~ff/HackingAndCracking?i=ZpGvLds5erU:KPkx7XCMrwQ:-BTjWOF_DHI" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/HackingAndCracking?a=ZpGvLds5erU:KPkx7XCMrwQ:V_sGLiPBpWU"&gt;&lt;img src="http://feeds.feedburner.com/~ff/HackingAndCracking?i=ZpGvLds5erU:KPkx7XCMrwQ:V_sGLiPBpWU" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/HackingAndCracking?a=ZpGvLds5erU:KPkx7XCMrwQ:qj6IDK7rITs"&gt;&lt;img src="http://feeds.feedburner.com/~ff/HackingAndCracking?d=qj6IDK7rITs" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/HackingAndCracking?a=ZpGvLds5erU:KPkx7XCMrwQ:gIN9vFwOqvQ"&gt;&lt;img src="http://feeds.feedburner.com/~ff/HackingAndCracking?i=ZpGvLds5erU:KPkx7XCMrwQ:gIN9vFwOqvQ" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/HackingAndCracking?a=ZpGvLds5erU:KPkx7XCMrwQ:4cEx4HpKnUU"&gt;&lt;img src="http://feeds.feedburner.com/~ff/HackingAndCracking?i=ZpGvLds5erU:KPkx7XCMrwQ:4cEx4HpKnUU" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;&lt;img src="http://feeds.feedburner.com/~r/HackingAndCracking/~4/ZpGvLds5erU" height="1" width="1"/&gt;</content><link rel="replies" type="application/atom+xml" href="http://www.rafayhackingarticles.net/feeds/890756903468961256/comments/default" title="Post Comments" /><link rel="replies" type="text/html" href="http://www.rafayhackingarticles.net/2012/04/elearnsecurity-penetration-testing.html#comment-form" title="1 Comments" /><link rel="edit" type="application/atom+xml" href="http://www.blogger.com/feeds/3121270199089759062/posts/default/890756903468961256?v=2" /><link rel="self" type="application/atom+xml" href="http://www.blogger.com/feeds/3121270199089759062/posts/default/890756903468961256?v=2" /><link rel="alternate" type="text/html" href="http://feedproxy.google.com/~r/HackingAndCracking/~3/ZpGvLds5erU/elearnsecurity-penetration-testing.html" title="elearnSecurity Penetration Testing Professional V2 - Review" /><author><name>Rafay Baloch</name><uri>https://profiles.google.com/113902000528448760189</uri><email>noreply@blogger.com</email><gd:image rel="http://schemas.google.com/g/2005#thumbnail" width="32" height="32" src="//lh4.googleusercontent.com/-QFpq0g9Pn_g/AAAAAAAAAAI/AAAAAAAABeU/sxaLN0wQah8/s512-c/photo.jpg" /></author><media:thumbnail xmlns:media="http://search.yahoo.com/mrss/" url="http://3.bp.blogspot.com/-11RoEXBjSSU/T4xSHKCwUxI/AAAAAAAAB40/mNUBAOVBcXI/s72-c/Untitled.png" height="72" width="72" /><thr:total>1</thr:total><feedburner:origLink>http://www.rafayhackingarticles.net/2012/04/elearnsecurity-penetration-testing.html</feedburner:origLink></entry><entry gd:etag="W/&quot;D0YGQnc9eyp7ImA9WhVXE0g.&quot;"><id>tag:blogger.com,1999:blog-3121270199089759062.post-1362770779765181252</id><published>2012-04-13T15:12:00.000-07:00</published><updated>2012-04-13T15:12:03.963-07:00</updated><app:edited xmlns:app="http://www.w3.org/2007/app">2012-04-13T15:12:03.963-07:00</app:edited><category scheme="http://www.blogger.com/atom/ns#" term="Cheat and tricks" /><title>How To Bypass Surveys For Free</title><content type="html">&lt;div class="separator" style="clear: both; text-align: center;"&gt;&lt;a href="http://4.bp.blogspot.com/-84xrZo-LY5o/T4ike_VV_QI/AAAAAAAAB4M/mjPkOLei-MY/s1600/cpalead-bypass-survey.png" imageanchor="1" style="margin-left: 1em; margin-right: 1em;"&gt;&lt;img border="0" height="403" src="http://4.bp.blogspot.com/-84xrZo-LY5o/T4ike_VV_QI/AAAAAAAAB4M/mjPkOLei-MY/s640/cpalead-bypass-survey.png" width="577" /&gt;&lt;/a&gt;&lt;/div&gt;&lt;br /&gt;
We often come across sites in which we have to forcefully do a survey because we have to download a file or see some content.In all of these surveys we are forced to disclose our personal information like our phone number , email id  etc.&lt;br /&gt;
Later these sites irritate you with their sms's spam mails of offers in which you not at all are  interested !&lt;br /&gt;
So i've found a way by which you can get through these sites without leaking out your personal information !&lt;br /&gt;
&lt;a name='more'&gt;&lt;/a&gt;&lt;br /&gt;
Let's start -&lt;br /&gt;
&lt;b&gt;&lt;br /&gt;
&lt;/b&gt;&lt;br /&gt;
&lt;b&gt;1. &lt;/b&gt;Download this add on called ''greasemonkey'' for mozilla firefox (mozilla is needed ).&lt;br /&gt;
&lt;br /&gt;
&lt;b&gt;https://addons.mozilla.org/en-US/firefox/addon/greasemonkey/&lt;/b&gt;&lt;br /&gt;
&lt;br /&gt;
&lt;a href="http://1.bp.blogspot.com/-tgjTSpqn7mw/T4iVgrBMrBI/AAAAAAAAAGM/YxmJjOZAs2c/s1600/Capture7.PNG" imageanchor="1" style="font-family: 'Trebuchet MS', sans-serif; margin-left: 1em; margin-right: 1em; text-align: center;"&gt;&lt;img border="0" height="212" src="http://1.bp.blogspot.com/-tgjTSpqn7mw/T4iVgrBMrBI/AAAAAAAAAGM/YxmJjOZAs2c/s640/Capture7.PNG" width="577" /&gt;&lt;/a&gt;&lt;br /&gt;
After installing it,it would appear like this in your browser -&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;b&gt;2.&amp;nbsp;&lt;/b&gt;After installing it download this script which runs with the help of this add on(greasemonkey) --&lt;br /&gt;
&lt;br /&gt;
&lt;b&gt;http://userscripts.org/scripts/show/2560&lt;/b&gt;&lt;br /&gt;
&lt;br /&gt;
Install this script and make sure the monkey on the right side of your mozilla screen is colored (which means greasemonkey is activated,to activate or deactivate just click on it)&lt;br /&gt;
&lt;br /&gt;
&lt;b&gt;3.&amp;nbsp;&lt;/b&gt;Now go to the site which tells you to do the survey and asks for your information  etc..&lt;br /&gt;
&lt;br /&gt;
&lt;b&gt;4.&amp;nbsp;&lt;/b&gt;You'll see an option on top left side of the page which says '' Press CTRL+SHIFT+F to fill in form. ''&lt;br /&gt;
&lt;br /&gt;
&lt;a href="http://2.bp.blogspot.com/-CpZ7MS_RwmU/T4iWNMt1JEI/AAAAAAAAAGU/my4DiyfGRn8/s1600/Capture.PNG" imageanchor="1" style="font-family: 'Trebuchet MS', sans-serif; margin-left: 1em; margin-right: 1em; text-align: center;"&gt;&lt;img border="0" height="384" src="http://2.bp.blogspot.com/-CpZ7MS_RwmU/T4iWNMt1JEI/AAAAAAAAAGU/my4DiyfGRn8/s640/Capture.PNG" width="577" /&gt;&lt;/a&gt;&lt;br /&gt;
&lt;br /&gt;
Do as directed..press  CTRL+SHIFT+F and you will see that the form gets filled on its own and all the information filled out there is completely random !&lt;br /&gt;
&lt;br /&gt;
Click on submit and you are registered on the site and now you can easily download what you wanted to ! :)&lt;br /&gt;
&lt;br /&gt;
This is all random stuff filled by the script.&lt;br /&gt;
&lt;b&gt;&lt;br /&gt;
&lt;/b&gt;&lt;br /&gt;
&lt;b&gt;BUT&lt;/b&gt;&lt;br /&gt;
&lt;br /&gt;
&lt;b&gt;5.&lt;/b&gt; Some sites may tell you to verify your identity by logging into your mail and opening some url or to get some pin ! For this all you have to so is go to http://www.yopmail.com/en/ . Go to this site and you'll get a temporary email id for around 15-30min.&amp;gt;paste that temporary email id at the place of email id which your intelligent form filler has randomly filled&amp;gt;click on submit form.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Here&lt;b&gt; ''yoyo@yopmail.com''&lt;/b&gt; is the yopmail email id which is replaced by the default id given by ''form filler''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;table align="center" cellpadding="0" cellspacing="0" class="tr-caption-container" style="font-family: 'Trebuchet MS', sans-serif; margin-left: auto; margin-right: auto; text-align: center;"&gt;&lt;tbody&gt;
&lt;tr&gt;&lt;td&gt;&lt;a href="http://4.bp.blogspot.com/-0Tl3dSCJa7U/T4iYanNVdRI/AAAAAAAAAGs/PhaLmb9-OLQ/s1600/Capture3.PNG" imageanchor="1" style="margin-left: auto; margin-right: auto;"&gt;&lt;img border="0" height="336" src="http://4.bp.blogspot.com/-0Tl3dSCJa7U/T4iYanNVdRI/AAAAAAAAAGs/PhaLmb9-OLQ/s640/Capture3.PNG" width="577" /&gt;&lt;/a&gt;&lt;/td&gt;&lt;/tr&gt;
&lt;tr&gt;&lt;td class="tr-caption" style="font-size: 13px;"&gt;Here ''yoyo@yopmail.com'' is the yopmail email id which is replaced by the default id given by ''form filler''&lt;/td&gt;&lt;/tr&gt;
&lt;/tbody&gt;&lt;/table&gt;&lt;br /&gt;
&lt;br /&gt;
&lt;b&gt;6.&lt;/b&gt; Check &lt;b&gt;http://www.yopmail.com/en/&lt;/b&gt; Inbox for the mail from the site&amp;gt;Get the pin or confirmation link&amp;gt;you are done !&lt;br /&gt;
&lt;br /&gt;
Here as you can see two mails from the site where we have to forcefully register and the confirmation link plus password (other mails are just spam,ignore them).&lt;br /&gt;
&lt;br /&gt;
&lt;b&gt;OR&lt;/b&gt;&lt;br /&gt;
&lt;br /&gt;
&lt;b&gt;7.&amp;nbsp;&lt;/b&gt;Some sites may ask you for voice calls confirmation ..I have the solution for that too :)&lt;br /&gt;
In that case go to this site http://www.k7.net/ ..on this site you can receive voice calls via mail ! So you bypass Survey again without giving any details !&lt;br /&gt;
&lt;br /&gt;
Register here and you'll be able to receive voice calls via mail.&lt;br /&gt;
&lt;br /&gt;
&lt;b&gt;Author information -&lt;/b&gt;&lt;br /&gt;
&lt;br /&gt;
This article is written by shikhil, he is the newest RHA team member and blogs at&amp;nbsp;&lt;b&gt;http://hacking-tweaks.blogspot.in/&lt;/b&gt;.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/3121270199089759062-1362770779765181252?l=www.rafayhackingarticles.net' alt='' /&gt;&lt;/div&gt;&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/HackingAndCracking?a=f_eYGk6WkoQ:ykpC_Gq_cyk:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/HackingAndCracking?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/HackingAndCracking?a=f_eYGk6WkoQ:ykpC_Gq_cyk:63t7Ie-LG7Y"&gt;&lt;img src="http://feeds.feedburner.com/~ff/HackingAndCracking?d=63t7Ie-LG7Y" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/HackingAndCracking?a=f_eYGk6WkoQ:ykpC_Gq_cyk:-BTjWOF_DHI"&gt;&lt;img src="http://feeds.feedburner.com/~ff/HackingAndCracking?i=f_eYGk6WkoQ:ykpC_Gq_cyk:-BTjWOF_DHI" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/HackingAndCracking?a=f_eYGk6WkoQ:ykpC_Gq_cyk:V_sGLiPBpWU"&gt;&lt;img src="http://feeds.feedburner.com/~ff/HackingAndCracking?i=f_eYGk6WkoQ:ykpC_Gq_cyk:V_sGLiPBpWU" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/HackingAndCracking?a=f_eYGk6WkoQ:ykpC_Gq_cyk:qj6IDK7rITs"&gt;&lt;img src="http://feeds.feedburner.com/~ff/HackingAndCracking?d=qj6IDK7rITs" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/HackingAndCracking?a=f_eYGk6WkoQ:ykpC_Gq_cyk:gIN9vFwOqvQ"&gt;&lt;img src="http://feeds.feedburner.com/~ff/HackingAndCracking?i=f_eYGk6WkoQ:ykpC_Gq_cyk:gIN9vFwOqvQ" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/HackingAndCracking?a=f_eYGk6WkoQ:ykpC_Gq_cyk:4cEx4HpKnUU"&gt;&lt;img src="http://feeds.feedburner.com/~ff/HackingAndCracking?i=f_eYGk6WkoQ:ykpC_Gq_cyk:4cEx4HpKnUU" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;&lt;img src="http://feeds.feedburner.com/~r/HackingAndCracking/~4/f_eYGk6WkoQ" height="1" width="1"/&gt;</content><link rel="replies" type="application/atom+xml" href="http://www.rafayhackingarticles.net/feeds/1362770779765181252/comments/default" title="Post Comments" /><link rel="replies" type="text/html" href="http://www.rafayhackingarticles.net/2012/04/how-to-bypass-surveys-for-free.html#comment-form" title="12 Comments" /><link rel="edit" type="application/atom+xml" href="http://www.blogger.com/feeds/3121270199089759062/posts/default/1362770779765181252?v=2" /><link rel="self" type="application/atom+xml" href="http://www.blogger.com/feeds/3121270199089759062/posts/default/1362770779765181252?v=2" /><link rel="alternate" type="text/html" href="http://feedproxy.google.com/~r/HackingAndCracking/~3/f_eYGk6WkoQ/how-to-bypass-surveys-for-free.html" title="How To Bypass Surveys For Free" /><author><name>Rafay Baloch</name><uri>https://profiles.google.com/113902000528448760189</uri><email>noreply@blogger.com</email><gd:image rel="http://schemas.google.com/g/2005#thumbnail" width="32" height="32" src="//lh4.googleusercontent.com/-QFpq0g9Pn_g/AAAAAAAAAAI/AAAAAAAABeU/sxaLN0wQah8/s512-c/photo.jpg" /></author><media:thumbnail xmlns:media="http://search.yahoo.com/mrss/" url="http://4.bp.blogspot.com/-84xrZo-LY5o/T4ike_VV_QI/AAAAAAAAB4M/mjPkOLei-MY/s72-c/cpalead-bypass-survey.png" height="72" width="72" /><thr:total>12</thr:total><feedburner:origLink>http://www.rafayhackingarticles.net/2012/04/how-to-bypass-surveys-for-free.html</feedburner:origLink></entry><entry gd:etag="W/&quot;DkIDRH05eyp7ImA9WhVXEkg.&quot;"><id>tag:blogger.com,1999:blog-3121270199089759062.post-5896776695090697379</id><published>2012-04-12T11:14:00.001-07:00</published><updated>2012-04-12T11:16:15.323-07:00</updated><app:edited xmlns:app="http://www.w3.org/2007/app">2012-04-12T11:16:15.323-07:00</app:edited><category scheme="http://www.blogger.com/atom/ns#" term="Hacking News" /><title>New Malware Detected in "Angry Birds Space"</title><content type="html">&lt;div style="text-align: center;"&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;&lt;a href="http://3.bp.blogspot.com/-Vu-OdsKrKVQ/T4bA4_mJR2I/AAAAAAAAAFc/ulhNQhwCj2I/s1600/images.jpg" imageanchor="1" style="margin-left: 1em; margin-right: 1em;"&gt;&lt;img border="0" height="223" src="http://3.bp.blogspot.com/-Vu-OdsKrKVQ/T4bA4_mJR2I/AAAAAAAAAFc/ulhNQhwCj2I/s400/images.jpg" width="400" /&gt;&lt;/a&gt;&lt;/div&gt;&lt;br /&gt;
The newly launched &lt;b&gt;“Angry Birds Space” &lt;/b&gt; is found to have a new malware ! The malware was detected by Lookout Security which is a famous anti virus available for android phones. The malware is said to be a new version of  Legacy Native (LeNa) which helps to gain unauthorized privileges from android phone.&lt;br /&gt;
This new variant of LeNa hides its payload just past the “End of Image” marker of an otherwise fully-functional JPEG.&lt;br /&gt;
&lt;br /&gt;
&lt;a name='more'&gt;&lt;/a&gt;&lt;br /&gt;
This latest version of LeNa has recently emerged in alternative markets, and it is not believed to have been in the Google Play market. Among the apps in which this payload appears, however, is a fully functional copy of the recently released Angry Birds Space.&lt;br /&gt;
&lt;b style="text-align: center;"&gt;&lt;br /&gt;
&lt;/b&gt;&lt;br /&gt;
&lt;b style="text-align: center;"&gt;How it Functions?&lt;/b&gt;&lt;br /&gt;
&lt;br /&gt;
LeNa would reportedly trick the user into activating its payload by invoking the SU utility which is used by rooted users to selectively grant super user privileges to applications that request them. After the app gained root access, it performs normally while also secretly installing a native binary file and granting it remote control. But due to its dependence on the SU tool, its spread was limited to rooted devices.&lt;br /&gt;
&lt;b&gt;&lt;br /&gt;
&lt;/b&gt;&lt;br /&gt;
&lt;b&gt;How to Prevent and Be safe :&lt;/b&gt;&lt;br /&gt;
&lt;br /&gt;
&lt;b&gt;1 &lt;/b&gt;.If phones starts working in an unusual manner then there is a possibility that it is affected.&lt;br /&gt;
&lt;br /&gt;
&lt;b&gt;2.&lt;/b&gt; Before downloading the app do look for the comments and reviews of people and also the name of    &lt;br /&gt;
the developer .&lt;br /&gt;
&lt;br /&gt;
&lt;b&gt;3. &lt;/b&gt;Download an anti virus for your mobile. Lookout anti virus, NetQin are some of the trusted names.&lt;br /&gt;
&lt;br /&gt;
&lt;b&gt;About the author:&lt;/b&gt;&lt;br /&gt;
&lt;b&gt;&lt;br /&gt;
&lt;/b&gt;&lt;br /&gt;
Shakil is the newest member of RHA, if you would like to become a part of our team, Kindly send an email to &lt;b&gt;rafayhackingarticles@gmail.com&lt;/b&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/3121270199089759062-5896776695090697379?l=www.rafayhackingarticles.net' alt='' /&gt;&lt;/div&gt;&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/HackingAndCracking?a=WebCenMWSfY:8XGfNQq_c7s:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/HackingAndCracking?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/HackingAndCracking?a=WebCenMWSfY:8XGfNQq_c7s:63t7Ie-LG7Y"&gt;&lt;img src="http://feeds.feedburner.com/~ff/HackingAndCracking?d=63t7Ie-LG7Y" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/HackingAndCracking?a=WebCenMWSfY:8XGfNQq_c7s:-BTjWOF_DHI"&gt;&lt;img src="http://feeds.feedburner.com/~ff/HackingAndCracking?i=WebCenMWSfY:8XGfNQq_c7s:-BTjWOF_DHI" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/HackingAndCracking?a=WebCenMWSfY:8XGfNQq_c7s:V_sGLiPBpWU"&gt;&lt;img src="http://feeds.feedburner.com/~ff/HackingAndCracking?i=WebCenMWSfY:8XGfNQq_c7s:V_sGLiPBpWU" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/HackingAndCracking?a=WebCenMWSfY:8XGfNQq_c7s:qj6IDK7rITs"&gt;&lt;img src="http://feeds.feedburner.com/~ff/HackingAndCracking?d=qj6IDK7rITs" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/HackingAndCracking?a=WebCenMWSfY:8XGfNQq_c7s:gIN9vFwOqvQ"&gt;&lt;img src="http://feeds.feedburner.com/~ff/HackingAndCracking?i=WebCenMWSfY:8XGfNQq_c7s:gIN9vFwOqvQ" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/HackingAndCracking?a=WebCenMWSfY:8XGfNQq_c7s:4cEx4HpKnUU"&gt;&lt;img src="http://feeds.feedburner.com/~ff/HackingAndCracking?i=WebCenMWSfY:8XGfNQq_c7s:4cEx4HpKnUU" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;&lt;img src="http://feeds.feedburner.com/~r/HackingAndCracking/~4/WebCenMWSfY" height="1" width="1"/&gt;</content><link rel="replies" type="application/atom+xml" href="http://www.rafayhackingarticles.net/feeds/5896776695090697379/comments/default" title="Post Comments" /><link rel="replies" type="text/html" href="http://www.rafayhackingarticles.net/2012/04/malware-detected-angry-birds-space.html#comment-form" title="1 Comments" /><link rel="edit" type="application/atom+xml" href="http://www.blogger.com/feeds/3121270199089759062/posts/default/5896776695090697379?v=2" /><link rel="self" type="application/atom+xml" href="http://www.blogger.com/feeds/3121270199089759062/posts/default/5896776695090697379?v=2" /><link rel="alternate" type="text/html" href="http://feedproxy.google.com/~r/HackingAndCracking/~3/WebCenMWSfY/malware-detected-angry-birds-space.html" title="New Malware Detected in &quot;Angry Birds Space&quot;" /><author><name>Rafay Baloch</name><uri>https://profiles.google.com/113902000528448760189</uri><email>noreply@blogger.com</email><gd:image rel="http://schemas.google.com/g/2005#thumbnail" width="32" height="32" src="//lh4.googleusercontent.com/-QFpq0g9Pn_g/AAAAAAAAAAI/AAAAAAAABeU/sxaLN0wQah8/s512-c/photo.jpg" /></author><media:thumbnail xmlns:media="http://search.yahoo.com/mrss/" url="http://3.bp.blogspot.com/-Vu-OdsKrKVQ/T4bA4_mJR2I/AAAAAAAAAFc/ulhNQhwCj2I/s72-c/images.jpg" height="72" width="72" /><thr:total>1</thr:total><feedburner:origLink>http://www.rafayhackingarticles.net/2012/04/malware-detected-angry-birds-space.html</feedburner:origLink></entry><entry gd:etag="W/&quot;DU4BQH8ycSp7ImA9WhVXEUk.&quot;"><id>tag:blogger.com,1999:blog-3121270199089759062.post-1539573944693716530</id><published>2012-04-11T04:01:00.002-07:00</published><updated>2012-04-11T05:39:11.199-07:00</updated><app:edited xmlns:app="http://www.w3.org/2007/app">2012-04-11T05:39:11.199-07:00</app:edited><category scheme="http://www.blogger.com/atom/ns#" term="facebook" /><title>Facebook Hacking: Remote File Inclusion Attack</title><content type="html">&lt;img height="360" src="http://1.bp.blogspot.com/-weB2L7rX8YM/T2rfbCcIKxI/AAAAAAAAB24/1W6hYlAepU4/s640/facebook-lockdown-paint-ars-thumb-640xauto-21476.jpg" width="577" /&gt; &lt;br /&gt;
&lt;br /&gt;
Facebook being the world's largest social networking website has became the major target for the hackers, attackers and other malicious users. Facebook has hired the team world's leading security experts in order for them to improve their website's security. Moreover facebook also pays 500$ to any one who can identify any sort of vulnerability inside facebook.&lt;br /&gt;
&lt;a name='more'&gt;&lt;/a&gt;The facebook security team has done a very great job in improving and taking facebook's security to the maximum level. However, the problem is that Facebook applications are not coded or monitored by facebook, and it's also not possible that facebook to monitor every single app for&amp;nbsp;vulnerabilities. These facebook apps are mostly coded by common programmers who are not well aware of how a code is written securely. Which leaves facebook apps poured with common&amp;nbsp;vulnerabilities&amp;nbsp;like XSS ( CROSS SITE SCRIPTING), Clickjacking, Remote file inclusion etc.&lt;br /&gt;
&lt;br /&gt;
Out of all of these web application vulnerabilities, Remote file inclusion is a very common web application attack which occurs because the application is not able to&amp;nbsp;validate included files. According to &lt;b&gt;imperva, &lt;/b&gt;21% of the apps on facebook are &lt;b&gt;vulnerable to remote file inclusion attack&lt;/b&gt;.&lt;br /&gt;
&lt;br /&gt;
Here is how the attack is carried out:&lt;br /&gt;
&lt;br /&gt;
&lt;b&gt;Step 1 - &lt;/b&gt;The attacker creates a malicious jpg file,&amp;nbsp;because the upload of PHP is mostly banned on webservers with user level&amp;nbsp;privileges. Therefore the hacker renames a PHP shell to some thing like shell.php.jpg in order to upload it to the webserver.&lt;br /&gt;
&lt;br /&gt;
&lt;b&gt;Step 2 -&lt;/b&gt; Next the hacker exploits RFI vulnerability in order to&amp;nbsp;reference&amp;nbsp;malicious JPG, which paramtere is something like.&lt;br /&gt;
&lt;br /&gt;
&lt;b&gt;.php?page=url of your malicious image&lt;/b&gt;&lt;br /&gt;
&lt;br /&gt;
&lt;b&gt;Step 3 -&lt;/b&gt; Next the attacker takes control of the server by just going to the url of the JPG image.&lt;br /&gt;
&lt;br /&gt;
&lt;b&gt;Mitigation:&lt;/b&gt;&lt;br /&gt;
&lt;br /&gt;
Imperva suggests a four step mitigation process which can be found inside the image below, However it includes the deployment of web application firewall, but what if some one is not using a WAF, However will he be protected.&lt;br /&gt;
&lt;br /&gt;
&lt;b&gt;Exploiting RFI And Mitigation&lt;/b&gt;&lt;br /&gt;
&lt;br /&gt;
&lt;div class="separator" style="clear: both; text-align: center;"&gt;&lt;a href="http://1.bp.blogspot.com/-HpyxdVcH9lg/T4VgA7En8yI/AAAAAAAAB30/oJ9Crw0wCak/s1600/6a01156f8c7ad8970c0168e9a5f204970c.jpg" imageanchor="1" style="margin-left: 1em; margin-right: 1em;"&gt;&lt;img border="0" height="320" src="http://1.bp.blogspot.com/-HpyxdVcH9lg/T4VgA7En8yI/AAAAAAAAB30/oJ9Crw0wCak/s320/6a01156f8c7ad8970c0168e9a5f204970c.jpg" width="220" /&gt;&lt;/a&gt;&lt;/div&gt;&lt;div class="separator" style="clear: both; text-align: center;"&gt;&lt;br /&gt;
&lt;/div&gt;&lt;div class="separator" style="clear: both; text-align: left;"&gt;&lt;b&gt;You might also like:&lt;/b&gt;&lt;/div&gt;&lt;div class="separator" style="clear: both; text-align: left;"&gt;&lt;/div&gt;&lt;ul&gt;&lt;li&gt;&lt;b&gt;&lt;a href="http://www.rafayhackingarticles.net/2009/07/how-to-hack-facebook-account.html"&gt;How hack facebook Password&lt;/a&gt;&lt;/b&gt;&lt;/li&gt;
&lt;/ul&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/3121270199089759062-1539573944693716530?l=www.rafayhackingarticles.net' alt='' /&gt;&lt;/div&gt;&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/HackingAndCracking?a=uzxhGQarYyc:h56cn1KUdso:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/HackingAndCracking?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/HackingAndCracking?a=uzxhGQarYyc:h56cn1KUdso:63t7Ie-LG7Y"&gt;&lt;img src="http://feeds.feedburner.com/~ff/HackingAndCracking?d=63t7Ie-LG7Y" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/HackingAndCracking?a=uzxhGQarYyc:h56cn1KUdso:-BTjWOF_DHI"&gt;&lt;img src="http://feeds.feedburner.com/~ff/HackingAndCracking?i=uzxhGQarYyc:h56cn1KUdso:-BTjWOF_DHI" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/HackingAndCracking?a=uzxhGQarYyc:h56cn1KUdso:V_sGLiPBpWU"&gt;&lt;img src="http://feeds.feedburner.com/~ff/HackingAndCracking?i=uzxhGQarYyc:h56cn1KUdso:V_sGLiPBpWU" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/HackingAndCracking?a=uzxhGQarYyc:h56cn1KUdso:qj6IDK7rITs"&gt;&lt;img src="http://feeds.feedburner.com/~ff/HackingAndCracking?d=qj6IDK7rITs" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/HackingAndCracking?a=uzxhGQarYyc:h56cn1KUdso:gIN9vFwOqvQ"&gt;&lt;img src="http://feeds.feedburner.com/~ff/HackingAndCracking?i=uzxhGQarYyc:h56cn1KUdso:gIN9vFwOqvQ" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/HackingAndCracking?a=uzxhGQarYyc:h56cn1KUdso:4cEx4HpKnUU"&gt;&lt;img src="http://feeds.feedburner.com/~ff/HackingAndCracking?i=uzxhGQarYyc:h56cn1KUdso:4cEx4HpKnUU" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;&lt;img src="http://feeds.feedburner.com/~r/HackingAndCracking/~4/uzxhGQarYyc" height="1" width="1"/&gt;</content><link rel="replies" type="application/atom+xml" href="http://www.rafayhackingarticles.net/feeds/1539573944693716530/comments/default" title="Post Comments" /><link rel="replies" type="text/html" href="http://www.rafayhackingarticles.net/2012/04/facebook-hacking-remote-file-inclusion.html#comment-form" title="5 Comments" /><link rel="edit" type="application/atom+xml" href="http://www.blogger.com/feeds/3121270199089759062/posts/default/1539573944693716530?v=2" /><link rel="self" type="application/atom+xml" href="http://www.blogger.com/feeds/3121270199089759062/posts/default/1539573944693716530?v=2" /><link rel="alternate" type="text/html" href="http://feedproxy.google.com/~r/HackingAndCracking/~3/uzxhGQarYyc/facebook-hacking-remote-file-inclusion.html" title="Facebook Hacking: Remote File Inclusion Attack" /><author><name>Rafay Baloch</name><uri>https://profiles.google.com/113902000528448760189</uri><email>noreply@blogger.com</email><gd:image rel="http://schemas.google.com/g/2005#thumbnail" width="32" height="32" src="//lh4.googleusercontent.com/-QFpq0g9Pn_g/AAAAAAAAAAI/AAAAAAAABeU/sxaLN0wQah8/s512-c/photo.jpg" /></author><media:thumbnail xmlns:media="http://search.yahoo.com/mrss/" url="http://1.bp.blogspot.com/-weB2L7rX8YM/T2rfbCcIKxI/AAAAAAAAB24/1W6hYlAepU4/s72-c/facebook-lockdown-paint-ars-thumb-640xauto-21476.jpg" height="72" width="72" /><thr:total>5</thr:total><feedburner:origLink>http://www.rafayhackingarticles.net/2012/04/facebook-hacking-remote-file-inclusion.html</feedburner:origLink></entry><entry gd:etag="W/&quot;DkQCSHgyeSp7ImA9WhVQGEQ.&quot;"><id>tag:blogger.com,1999:blog-3121270199089759062.post-6667826126911571377</id><published>2012-04-08T07:04:00.001-07:00</published><updated>2012-04-08T07:12:49.691-07:00</updated><app:edited xmlns:app="http://www.w3.org/2007/app">2012-04-08T07:12:49.691-07:00</app:edited><category scheme="http://www.blogger.com/atom/ns#" term="Hacking News" /><title>@Al-Qaeda Goes Dark For 12 Days</title><content type="html">&lt;div dir="ltr" style="text-align: left;" trbidi="on"&gt;&lt;div class="separator" style="clear: both; text-align: center;"&gt;&lt;a href="http://4.bp.blogspot.com/-rad3HEZSk7A/T4GPMYLCaKI/AAAAAAAAADw/BkljpqiWgUc/s1600/New+Bitmap+Image+%282%29.bmp" imageanchor="1" style="margin-left: 1em; margin-right: 1em;"&gt;&lt;img alt="Al qaeda down" border="0" height="331" src="http://4.bp.blogspot.com/-rad3HEZSk7A/T4GPMYLCaKI/AAAAAAAAADw/BkljpqiWgUc/s400/New+Bitmap+Image+%282%29.bmp" title="Hacking news(rafayhackingarticles.net)" width="400" /&gt;&lt;/a&gt;&lt;/div&gt;&lt;div style="text-align: justify;"&gt;Now, when the king Osama-bin-laden has been killed, his organization Al-qaeda has weakened in many ways. "The main internet forum of Al-Qaeda has been down since 12 days", further proves the above lines.&lt;/div&gt;&lt;div style="text-align: justify;"&gt;&lt;br /&gt;
&lt;/div&gt;&lt;div style="text-align: justify;"&gt;The backbone of the groups communication has gone down suddenly. The websites have seen the longest downtime of 12 days, which is the longest in history.&amp;nbsp; Along with the several other forums that Al-Qaeda used, many top sites of the terrorist organization have gone to dark and are not functional.&amp;nbsp;&lt;/div&gt;&lt;div style="text-align: justify;"&gt;&lt;br /&gt;
&lt;a name='more'&gt;&lt;/a&gt;&lt;/div&gt;&lt;div style="text-align: justify;"&gt;Yet no organization has taken the responsibility of bringing the forums down, but there are rumors that these attempts have been made by a government authority may be an American hacking group or an individual."The digital sabotage could have been carried out by any number of  governments or private hackers", said James Lewis, director of the  technology and public policy program at the Center for Strategic and  International Studies.&lt;/div&gt;&lt;div style="text-align: justify;"&gt;&lt;br /&gt;
&lt;/div&gt;&lt;div style="text-align: justify;"&gt;There are also news from several agencies that the websites have been taken down by the admins in order to increase the security as there were attempts to infiltrate the websites few days back.&lt;/div&gt;&lt;div style="text-align: justify;"&gt;&lt;br /&gt;
&lt;/div&gt;&lt;div style="text-align: justify;"&gt;The Shumkah site went live again with a message that the cyber-attack was “a failed, miserable campaign,” according to a translation of the message by security consultant Flashpoint Partners.&lt;span style="color: black;"&gt;“The enemies of Allah who boast of their freedoms have not spared any effort to eradicate our blessed media,” the forum said. “Even if it succeeded in stopping the forum, it didn't succeed in achieving its desired aims and goals.” Aaron Zelin, a jihadi website reasercher in Brendis university said that "Its significant because it is Al-Qaeda's lifline to communicate to the outside world".&lt;/span&gt;&lt;/div&gt;&lt;div style="text-align: justify;"&gt;&lt;br /&gt;
&lt;/div&gt;&lt;div class="separator" style="clear: both; text-align: center;"&gt;&lt;object class="BLOGGER-youtube-video" classid="clsid:D27CDB6E-AE6D-11cf-96B8-444553540000" codebase="http://download.macromedia.com/pub/shockwave/cabs/flash/swflash.cab#version=6,0,40,0" data-thumbnail-src="http://1.gvt0.com/vi/4pjm86GdQpU/0.jpg" height="266" width="320"&gt;&lt;param name="movie" value="http://www.youtube.com/v/4pjm86GdQpU&amp;fs=1&amp;source=uds" /&gt;&lt;param name="bgcolor" value="#FFFFFF" /&gt;&lt;embed width="320" height="266"  src="http://www.youtube.com/v/4pjm86GdQpU&amp;fs=1&amp;source=uds" type="application/x-shockwave-flash"&gt;&lt;/embed&gt;&lt;/object&gt;&lt;/div&gt;&lt;div style="text-align: justify;"&gt;&lt;br /&gt;
&lt;/div&gt;&lt;div style="text-align: justify;"&gt;&lt;br /&gt;
&lt;/div&gt;&lt;div style="text-align: justify;"&gt;May be the American army has made this attempt to further break Al-Qaeda after killing the leader, and make the communication between the groups difficult. Whatever be the reason and whoever be the doer, the incident speaks that even the biggest and the most powerful&amp;nbsp; terrorist group is not cyber-safe, and the hackers all over the world have reached a height that they cannot be defeated, doesn't matter who the victim is.&lt;br /&gt;
&lt;br /&gt;
&lt;/div&gt;&lt;div style="text-align: justify;"&gt;&lt;br /&gt;
&lt;div style="text-align: -webkit-auto;"&gt;&lt;b&gt;Author:&lt;/b&gt;&lt;/div&gt;&lt;div style="text-align: -webkit-auto;"&gt;&lt;br /&gt;
&lt;/div&gt;&lt;div style="text-align: -webkit-auto;"&gt;&lt;b&gt;Ajit Singh&lt;/b&gt;&amp;nbsp;is the newest member of RHA team, He blogs at&amp;nbsp;&lt;b&gt;www.coolestwebsite.tk&lt;/b&gt;, If you would like to join our team of authors, Feel free to email at&amp;nbsp;&lt;b&gt;rafayhackingarticles@gmail.com&lt;/b&gt;&lt;/div&gt;&lt;/div&gt;&lt;/div&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/3121270199089759062-6667826126911571377?l=www.rafayhackingarticles.net' alt='' /&gt;&lt;/div&gt;&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/HackingAndCracking?a=oVwo-QFu7CE:ZQ2czHFGfl0:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/HackingAndCracking?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/HackingAndCracking?a=oVwo-QFu7CE:ZQ2czHFGfl0:63t7Ie-LG7Y"&gt;&lt;img src="http://feeds.feedburner.com/~ff/HackingAndCracking?d=63t7Ie-LG7Y" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/HackingAndCracking?a=oVwo-QFu7CE:ZQ2czHFGfl0:-BTjWOF_DHI"&gt;&lt;img src="http://feeds.feedburner.com/~ff/HackingAndCracking?i=oVwo-QFu7CE:ZQ2czHFGfl0:-BTjWOF_DHI" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/HackingAndCracking?a=oVwo-QFu7CE:ZQ2czHFGfl0:V_sGLiPBpWU"&gt;&lt;img src="http://feeds.feedburner.com/~ff/HackingAndCracking?i=oVwo-QFu7CE:ZQ2czHFGfl0:V_sGLiPBpWU" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/HackingAndCracking?a=oVwo-QFu7CE:ZQ2czHFGfl0:qj6IDK7rITs"&gt;&lt;img src="http://feeds.feedburner.com/~ff/HackingAndCracking?d=qj6IDK7rITs" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/HackingAndCracking?a=oVwo-QFu7CE:ZQ2czHFGfl0:gIN9vFwOqvQ"&gt;&lt;img src="http://feeds.feedburner.com/~ff/HackingAndCracking?i=oVwo-QFu7CE:ZQ2czHFGfl0:gIN9vFwOqvQ" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/HackingAndCracking?a=oVwo-QFu7CE:ZQ2czHFGfl0:4cEx4HpKnUU"&gt;&lt;img src="http://feeds.feedburner.com/~ff/HackingAndCracking?i=oVwo-QFu7CE:ZQ2czHFGfl0:4cEx4HpKnUU" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;&lt;img src="http://feeds.feedburner.com/~r/HackingAndCracking/~4/oVwo-QFu7CE" height="1" width="1"/&gt;</content><link rel="replies" type="application/atom+xml" href="http://www.rafayhackingarticles.net/feeds/6667826126911571377/comments/default" title="Post Comments" /><link rel="replies" type="text/html" href="http://www.rafayhackingarticles.net/2012/04/al-qaeda-goes-dark-for-12-days.html#comment-form" title="0 Comments" /><link rel="edit" type="application/atom+xml" href="http://www.blogger.com/feeds/3121270199089759062/posts/default/6667826126911571377?v=2" /><link rel="self" type="application/atom+xml" href="http://www.blogger.com/feeds/3121270199089759062/posts/default/6667826126911571377?v=2" /><link rel="alternate" type="text/html" href="http://feedproxy.google.com/~r/HackingAndCracking/~3/oVwo-QFu7CE/al-qaeda-goes-dark-for-12-days.html" title="@Al-Qaeda Goes Dark For 12 Days" /><author><name>Rafay Baloch</name><uri>https://profiles.google.com/113902000528448760189</uri><email>noreply@blogger.com</email><gd:image rel="http://schemas.google.com/g/2005#thumbnail" width="32" height="32" src="//lh4.googleusercontent.com/-QFpq0g9Pn_g/AAAAAAAAAAI/AAAAAAAABeU/sxaLN0wQah8/s512-c/photo.jpg" /></author><media:thumbnail xmlns:media="http://search.yahoo.com/mrss/" url="http://4.bp.blogspot.com/-rad3HEZSk7A/T4GPMYLCaKI/AAAAAAAAADw/BkljpqiWgUc/s72-c/New+Bitmap+Image+%282%29.bmp" height="72" width="72" /><thr:total>0</thr:total><feedburner:origLink>http://www.rafayhackingarticles.net/2012/04/al-qaeda-goes-dark-for-12-days.html</feedburner:origLink></entry><entry gd:etag="W/&quot;D0YNQ305fCp7ImA9WhVQGE8.&quot;"><id>tag:blogger.com,1999:blog-3121270199089759062.post-1510153404881420528</id><published>2012-04-07T11:59:00.000-07:00</published><updated>2012-04-07T11:59:52.324-07:00</updated><app:edited xmlns:app="http://www.w3.org/2007/app">2012-04-07T11:59:52.324-07:00</app:edited><category scheme="http://www.blogger.com/atom/ns#" term="android" /><title>Android Malware Detected -  "Roar of the Pharaoh"</title><content type="html">&lt;div class="separator" style="clear: both; text-align: center;"&gt;&lt;a href="http://2.bp.blogspot.com/-WKokJXVuMyc/T32TWESZY_I/AAAAAAAAADo/HNu2ZwP0WdU/s1600/New+Bitmap+Image+%282%29.bmp" style="margin-left: 1em; margin-right: 1em;"&gt;&lt;img alt="Android malware" border="0" height="295" src="http://2.bp.blogspot.com/-WKokJXVuMyc/T32TWESZY_I/AAAAAAAAADo/HNu2ZwP0WdU/s320/New+Bitmap+Image+%282%29.bmp" title="Hacking News(rafayhackingarticles.net)" width="320" /&gt;&lt;/a&gt;&lt;/div&gt;&lt;br /&gt;
A Chinese again tries to hack android, and this time from behind a game named "The Roar of the Pharaoh". The bug was spotted by a security researcher from Sophos. The game has no security or permission issues while it is installed which lets the Android user believe that it is a non-malicious software and will not harm the system.&lt;br /&gt;
&lt;br /&gt;
&lt;a name='more'&gt;&lt;/a&gt;But, on the contrary, what the game does is that it collects all the sensitive information from the device and sends it to the authors via an SMS with premium rates, without taking the user's permission. The Trojan sends information like the phonebook entries, SMSs, IMEI number, phone number, OS version etc. Though no cases illegal usage of the users information have been reported yet.&lt;br /&gt;
&lt;br /&gt;
According to the vendor, the malware masquerades as a service called "GameUpdaterService", which sounds like a legitimate name for an application, yet another indication of the social engineering element part of the campaign, next to the actual brand-jacking of a legitimate game’s name.&lt;br /&gt;
&lt;br /&gt;
The application has been detected as an Stinter-A, the mobile phone companies process the money to the authors before the application user gets the bills.Michael Sutton, vice president of security research at cloud-based security provider Zscaler, said "the fake "The Roar of the Pharaoh" app for Android reflects the shift of malware authors to target the Android platform, whether smartphones or tablets. Fake game apps that are really Trojans are increasing and "this is a typical scam for Android now," he added.&lt;br /&gt;
&lt;br /&gt;
The interests of the hackers has now shifted towards the Android phones from computers. The android officials have not spoken anything much about this application, but have warned its users to beware of such malicious applications. &lt;br /&gt;
&lt;br /&gt;
The authors have not been caught yet, and the Chinese Security is still working to put them behind the bars. &lt;br /&gt;
&lt;br /&gt;
&lt;b&gt;Author:&lt;/b&gt;&lt;br /&gt;
&lt;br /&gt;
&lt;b&gt;Ajit Singh&lt;/b&gt; is the newest member of RHA team, He blogs at &lt;b&gt;www.coolestwebsite.tk&lt;/b&gt;, If you would like to join our team of authors, Feel free to email at &lt;b&gt;rafayhackingarticles@gmail.com&lt;/b&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/3121270199089759062-1510153404881420528?l=www.rafayhackingarticles.net' alt='' /&gt;&lt;/div&gt;&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/HackingAndCracking?a=7RxkWgIrb5g:wuEL21Mlchk:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/HackingAndCracking?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/HackingAndCracking?a=7RxkWgIrb5g:wuEL21Mlchk:63t7Ie-LG7Y"&gt;&lt;img src="http://feeds.feedburner.com/~ff/HackingAndCracking?d=63t7Ie-LG7Y" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/HackingAndCracking?a=7RxkWgIrb5g:wuEL21Mlchk:-BTjWOF_DHI"&gt;&lt;img src="http://feeds.feedburner.com/~ff/HackingAndCracking?i=7RxkWgIrb5g:wuEL21Mlchk:-BTjWOF_DHI" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/HackingAndCracking?a=7RxkWgIrb5g:wuEL21Mlchk:V_sGLiPBpWU"&gt;&lt;img src="http://feeds.feedburner.com/~ff/HackingAndCracking?i=7RxkWgIrb5g:wuEL21Mlchk:V_sGLiPBpWU" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/HackingAndCracking?a=7RxkWgIrb5g:wuEL21Mlchk:qj6IDK7rITs"&gt;&lt;img src="http://feeds.feedburner.com/~ff/HackingAndCracking?d=qj6IDK7rITs" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/HackingAndCracking?a=7RxkWgIrb5g:wuEL21Mlchk:gIN9vFwOqvQ"&gt;&lt;img src="http://feeds.feedburner.com/~ff/HackingAndCracking?i=7RxkWgIrb5g:wuEL21Mlchk:gIN9vFwOqvQ" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/HackingAndCracking?a=7RxkWgIrb5g:wuEL21Mlchk:4cEx4HpKnUU"&gt;&lt;img src="http://feeds.feedburner.com/~ff/HackingAndCracking?i=7RxkWgIrb5g:wuEL21Mlchk:4cEx4HpKnUU" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;&lt;img src="http://feeds.feedburner.com/~r/HackingAndCracking/~4/7RxkWgIrb5g" height="1" width="1"/&gt;</content><link rel="replies" type="application/atom+xml" href="http://www.rafayhackingarticles.net/feeds/1510153404881420528/comments/default" title="Post Comments" /><link rel="replies" type="text/html" href="http://www.rafayhackingarticles.net/2012/04/android-malware-detected-roar-of.html#comment-form" title="0 Comments" /><link rel="edit" type="application/atom+xml" href="http://www.blogger.com/feeds/3121270199089759062/posts/default/1510153404881420528?v=2" /><link rel="self" type="application/atom+xml" href="http://www.blogger.com/feeds/3121270199089759062/posts/default/1510153404881420528?v=2" /><link rel="alternate" type="text/html" href="http://feedproxy.google.com/~r/HackingAndCracking/~3/7RxkWgIrb5g/android-malware-detected-roar-of.html" title="Android Malware Detected -  &quot;Roar of the Pharaoh&quot;" /><author><name>Rafay Baloch</name><uri>https://profiles.google.com/113902000528448760189</uri><email>noreply@blogger.com</email><gd:image rel="http://schemas.google.com/g/2005#thumbnail" width="32" height="32" src="//lh4.googleusercontent.com/-QFpq0g9Pn_g/AAAAAAAAAAI/AAAAAAAABeU/sxaLN0wQah8/s512-c/photo.jpg" /></author><media:thumbnail xmlns:media="http://search.yahoo.com/mrss/" url="http://2.bp.blogspot.com/-WKokJXVuMyc/T32TWESZY_I/AAAAAAAAADo/HNu2ZwP0WdU/s72-c/New+Bitmap+Image+%282%29.bmp" height="72" width="72" /><thr:total>0</thr:total><feedburner:origLink>http://www.rafayhackingarticles.net/2012/04/android-malware-detected-roar-of.html</feedburner:origLink></entry><entry gd:etag="W/&quot;CkcNRXg6eip7ImA9WhVQFU4.&quot;"><id>tag:blogger.com,1999:blog-3121270199089759062.post-7616995169905307423</id><published>2012-04-04T01:59:00.001-07:00</published><updated>2012-04-04T02:01:34.612-07:00</updated><app:edited xmlns:app="http://www.w3.org/2007/app">2012-04-04T02:01:34.612-07:00</app:edited><category scheme="http://www.blogger.com/atom/ns#" term="Hacking News" /><title>FBI:"We are not winning."</title><content type="html">&lt;div dir="ltr" style="text-align: left;" trbidi="on"&gt;&lt;div class="separator" style="clear: both; text-align: center;"&gt;&lt;a href="http://4.bp.blogspot.com/-2dsuL-kujGQ/T3cSYFkKHHI/AAAAAAAAADQ/KawSV_wNUzc/s1600/New+Bitmap+Image.bmp" style="margin-left: 1em; margin-right: 1em;"&gt;&lt;img alt="FBI struglling against hackers" border="0" height="314" src="http://4.bp.blogspot.com/-2dsuL-kujGQ/T3cSYFkKHHI/AAAAAAAAADQ/KawSV_wNUzc/s320/New+Bitmap+Image.bmp" title="Hacking news(rafayhackingarticles.net)" width="320" /&gt;&lt;/a&gt;&lt;/div&gt;&lt;div style="text-align: justify;"&gt;The  cyber division of the FBI says that they are losing the war against  hackers. "We are not winning", were the words of the FBI assistant  director Shawn Henry who is the main-man since more than two decades in  the organization.&amp;nbsp; Also, few of the top government officials have said  that America is not able to handle the stream of cyber attacks which are  increasing every other moment.&lt;/div&gt;&lt;div style="text-align: justify;"&gt;&lt;br /&gt;
&lt;a name='more'&gt;&lt;/a&gt;&lt;/div&gt;&lt;div style="text-align: justify;"&gt;Another  official Richard Clarke said that almost every big company has already  been breached by the Chinese hackers.The FBI cyber team is finding data  stolen from the servers of the big companies,without the company getting  any hint about it.&lt;/div&gt;&lt;div style="text-align: justify;"&gt;&lt;br /&gt;
&lt;/div&gt;&lt;div style="text-align: justify;"&gt;The top-cop Richard Henry in a press meeting said, "We have found their data in the middle of other investigations,They  are shocked and, in many cases, they've been hacked for many months,  in some cases&amp;nbsp;years, which means that an adversary had full visibility  into everything occurring on that network, potentially".&lt;br /&gt;
&lt;br /&gt;
&lt;b&gt;Author:&lt;/b&gt;&lt;br /&gt;
&lt;br /&gt;
&lt;b&gt;Ajit Singh, &lt;/b&gt;If you would like to join our team of authors kindly email at&amp;nbsp;&lt;b&gt;rafayhackingarticles@gmail.com&lt;/b&gt;&lt;/div&gt;&lt;/div&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/3121270199089759062-7616995169905307423?l=www.rafayhackingarticles.net' alt='' /&gt;&lt;/div&gt;&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/HackingAndCracking?a=f8JGtSPJZ6s:JCoJlI4cVsI:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/HackingAndCracking?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/HackingAndCracking?a=f8JGtSPJZ6s:JCoJlI4cVsI:63t7Ie-LG7Y"&gt;&lt;img src="http://feeds.feedburner.com/~ff/HackingAndCracking?d=63t7Ie-LG7Y" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/HackingAndCracking?a=f8JGtSPJZ6s:JCoJlI4cVsI:-BTjWOF_DHI"&gt;&lt;img src="http://feeds.feedburner.com/~ff/HackingAndCracking?i=f8JGtSPJZ6s:JCoJlI4cVsI:-BTjWOF_DHI" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/HackingAndCracking?a=f8JGtSPJZ6s:JCoJlI4cVsI:V_sGLiPBpWU"&gt;&lt;img src="http://feeds.feedburner.com/~ff/HackingAndCracking?i=f8JGtSPJZ6s:JCoJlI4cVsI:V_sGLiPBpWU" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/HackingAndCracking?a=f8JGtSPJZ6s:JCoJlI4cVsI:qj6IDK7rITs"&gt;&lt;img src="http://feeds.feedburner.com/~ff/HackingAndCracking?d=qj6IDK7rITs" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/HackingAndCracking?a=f8JGtSPJZ6s:JCoJlI4cVsI:gIN9vFwOqvQ"&gt;&lt;img src="http://feeds.feedburner.com/~ff/HackingAndCracking?i=f8JGtSPJZ6s:JCoJlI4cVsI:gIN9vFwOqvQ" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/HackingAndCracking?a=f8JGtSPJZ6s:JCoJlI4cVsI:4cEx4HpKnUU"&gt;&lt;img src="http://feeds.feedburner.com/~ff/HackingAndCracking?i=f8JGtSPJZ6s:JCoJlI4cVsI:4cEx4HpKnUU" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;&lt;img src="http://feeds.feedburner.com/~r/HackingAndCracking/~4/f8JGtSPJZ6s" height="1" width="1"/&gt;</content><link rel="replies" type="application/atom+xml" href="http://www.rafayhackingarticles.net/feeds/7616995169905307423/comments/default" title="Post Comments" /><link rel="replies" type="text/html" href="http://www.rafayhackingarticles.net/2012/04/fbiwe-are-not-winning.html#comment-form" title="2 Comments" /><link rel="edit" type="application/atom+xml" href="http://www.blogger.com/feeds/3121270199089759062/posts/default/7616995169905307423?v=2" /><link rel="self" type="application/atom+xml" href="http://www.blogger.com/feeds/3121270199089759062/posts/default/7616995169905307423?v=2" /><link rel="alternate" type="text/html" href="http://feedproxy.google.com/~r/HackingAndCracking/~3/f8JGtSPJZ6s/fbiwe-are-not-winning.html" title="FBI:&quot;We are not winning.&quot;" /><author><name>Rafay Baloch</name><uri>https://profiles.google.com/113902000528448760189</uri><email>noreply@blogger.com</email><gd:image rel="http://schemas.google.com/g/2005#thumbnail" width="32" height="32" src="//lh4.googleusercontent.com/-QFpq0g9Pn_g/AAAAAAAAAAI/AAAAAAAABeU/sxaLN0wQah8/s512-c/photo.jpg" /></author><media:thumbnail xmlns:media="http://search.yahoo.com/mrss/" url="http://4.bp.blogspot.com/-2dsuL-kujGQ/T3cSYFkKHHI/AAAAAAAAADQ/KawSV_wNUzc/s72-c/New+Bitmap+Image.bmp" height="72" width="72" /><thr:total>2</thr:total><feedburner:origLink>http://www.rafayhackingarticles.net/2012/04/fbiwe-are-not-winning.html</feedburner:origLink></entry><entry gd:etag="W/&quot;DkINRXY5fCp7ImA9WhVQEk8.&quot;"><id>tag:blogger.com,1999:blog-3121270199089759062.post-3383520593202754016</id><published>2012-03-31T13:09:00.001-07:00</published><updated>2012-03-31T13:09:54.824-07:00</updated><app:edited xmlns:app="http://www.w3.org/2007/app">2012-03-31T13:09:54.824-07:00</app:edited><category scheme="http://www.blogger.com/atom/ns#" term="Security tips" /><title>Hijacking Facebook Users With Clickjacking Attack</title><content type="html">&lt;div class="separator" style="clear: both; text-align: center;"&gt;&lt;a href="http://3.bp.blogspot.com/-Q4xSa-2jv18/T3dj3Zc_MlI/AAAAAAAAB3U/x-IKjUp8UtI/s1600/xl_Facebook_greatest_624-1.jpg" imageanchor="1" style="margin-left: 1em; margin-right: 1em;"&gt;&lt;img border="0" height="358" src="http://3.bp.blogspot.com/-Q4xSa-2jv18/T3dj3Zc_MlI/AAAAAAAAB3U/x-IKjUp8UtI/s640/xl_Facebook_greatest_624-1.jpg" width="577" /&gt;&lt;/a&gt;&lt;/div&gt;&lt;br /&gt;
&lt;div class="MsoNormal"&gt;Clickjacking is one of most used attack on Facebook. Scammers use this attack to increase like of a Facebook page and spread some malicious links on Facebook user’s profile. Most of the strange looking auto spreading scams on Facebook are Clickjacking attacks.&lt;o:p&gt;&lt;/o:p&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;br /&gt;
&lt;a name='more'&gt;&lt;/a&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;br /&gt;
Clickjacking name is taken from click Hijacking. In this attack, hacker hijacks users’ click to perform some actions on the webpage. This attack is also known as User Interface redress attack, UI redress attack or UI redressing. In this attack, hacker tricks innocent users to click on something which is not the same thing user is clicking. It means user tries to click on some link button for some specific task while the button or link performs something else.&lt;o:p&gt;&lt;/o:p&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;b&gt;&lt;br /&gt;
&lt;/b&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;b&gt;How this attack works?&lt;o:p&gt;&lt;/o:p&gt;&lt;/b&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;br /&gt;
&lt;/div&gt;&lt;div class="MsoNormal"&gt;As the name suggest, hacker hijacks the click of the user. But this sounds complicated. In this attack, hacker use modified frames in the way that only a specific part of the webpage is visible on the page.&lt;o:p&gt;&lt;/o:p&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;For example, imagine a hacker created a web site that has a button on it which says "click here for get free gifts". But, on the top of web page, hacker has embedded an iframe with a button for subscription directly on top of the "free Gifts" button. Victim visitor will try to click on free gifts button but instead actually clicked on the invisible Subscription button.&lt;o:p&gt;&lt;/o:p&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;br /&gt;
&lt;/div&gt;&lt;div class="MsoNormal"&gt;This attack is performed with the help of 2 iFrame. First of all we will add the target button to the top left of the webpage in an iframe. First IFrame is used to hide all other elements of the webpage which originally contains the button. Hacker hide border and scroll. This will make hard to identify the frame on the web page.&lt;o:p&gt;&lt;/o:p&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;b&gt;&lt;br /&gt;
&lt;/b&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;b&gt;&amp;lt;iframe id="inner" src="http://hackingtricks.in" frameborder="none" scrolling="no" width="1000" height="3000"&amp;gt;&amp;lt;/iframe&amp;gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/b&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;b&gt;#inner { position: absolute; left: -600px; top: -600px ;}&lt;o:p&gt;&lt;/o:p&gt;&lt;/b&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;br /&gt;
&lt;/div&gt;&lt;div class="MsoNormal"&gt;Change the position and iframe size according to the button you are adding.&lt;o:p&gt;&lt;/o:p&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;Now add this web page on target web page inside an IFrame at the position where we want to add the button. Second IFrame is used to add this button on the target web page where we want it to be clickjacked. Do not use border and scroll in this frame too. Now add some texts and images around this framed button so that it appears the part of the page. Also put some false message to get users click on the button.&lt;o:p&gt;&lt;/o:p&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;b&gt;&lt;br /&gt;
&lt;/b&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;b&gt;LikeJacking: &amp;nbsp;&lt;/b&gt;Likejacking is not the different attack. It is the Clickjacking attack which is used to increase the like of a Facebook page or a Facebook post. Facebook got the solution to prevent this attack in the Facebook’s hacking event Hackathon. Although, Facebook has implemented many security levels to prevent this attack, but hackers always gets some way to perform this on facebook.&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;b&gt;&lt;br /&gt;
&lt;/b&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;b&gt;Protection against this attack:&lt;/b&gt; This is a harmful attack and can be prevented by server side and client side both. &lt;o:p&gt;&lt;/o:p&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;b&gt;&lt;br /&gt;
&lt;/b&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;b&gt;Server Side Protection:&lt;/b&gt; Most successful server side protection against this attack is "Defending with Frame Breaking Scripts." In this web developer add a script on the web page which prevents the web page to be framed. This is the code which is used to prevent the page to be framed.&lt;o:p&gt;&lt;/o:p&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;b&gt;&amp;lt;script type="text/javascript"&amp;gt;// &amp;lt;![CDATA[&lt;o:p&gt;&lt;/o:p&gt;&lt;/b&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;b&gt;&amp;nbsp;if (self == top) {&lt;o:p&gt;&lt;/o:p&gt;&lt;/b&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;b&gt;&amp;nbsp;&amp;nbsp; var theBody = document.getElementsByTagName('body')[0];&lt;o:p&gt;&lt;/o:p&gt;&lt;/b&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;b&gt;&amp;nbsp;&amp;nbsp; theBody.style.display = "block";&lt;o:p&gt;&lt;/o:p&gt;&lt;/b&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;b&gt;&amp;nbsp;} else {&lt;o:p&gt;&lt;/o:p&gt;&lt;/b&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;b&gt;&amp;nbsp;&amp;nbsp; top.location = self.location;&lt;o:p&gt;&lt;/o:p&gt;&lt;/b&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;b&gt;&amp;nbsp;}&lt;o:p&gt;&lt;/o:p&gt;&lt;/b&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;b&gt;// ]]&amp;gt;&amp;lt;/script&amp;gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/b&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;But there are few methods which can break the protection. &lt;o:p&gt;&lt;/o:p&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;br /&gt;
&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;b&gt;Client Side Protections:&lt;/b&gt; There are some add-ons and tools available which are used to protect browsers against this attack.&lt;o:p&gt;&lt;/o:p&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;br /&gt;
&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;b&gt;NoScript:&lt;/b&gt; No doubt, NoScript is the most useful Firefox add-on which protects users from many types of web attacks. This add-on also prevents users from clicking on invisible or “redressed” page elements of embedded documents or applets. This is the best security tool against this attack.&lt;o:p&gt;&lt;/o:p&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;b&gt;&lt;br /&gt;
&lt;/b&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;b&gt;Ghostery:&lt;/b&gt; This is also a nice browser extension which is also used to protect users against this attack. This privacy browser enables users to detect and control tags, web bugs, pixels, and beacons on the webpage which can collect data from their web browsers.&lt;o:p&gt;&lt;/o:p&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;br /&gt;
&lt;/div&gt;&lt;div class="MsoNormal"&gt;As we know that there is no permanent solution exists to prevent this attack from the server side, we should try to add protections to our web browsing. So I will suggest all users to use client side solutions. If you use Mozilla Firefox, then you must have NoScript Add-on in your web browser. This will protect you against many types of web attacks.&lt;o:p&gt;&lt;/o:p&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;br /&gt;
&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;b&gt;Author Bio:&lt;/b&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;br /&gt;
&lt;/div&gt;&lt;div class="MsoNormal"&gt;Deepanker verma is a security researcher and a computer programmer. You can follow his articles on &lt;a href="http://hackingtricks.in/"&gt;&lt;b&gt;http://hackingtricks.in&lt;/b&gt;&lt;/a&gt; and &lt;b&gt;http://www.tricksndtricks.in&lt;/b&gt; &lt;o:p&gt;&lt;/o:p&gt;&lt;/div&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/3121270199089759062-3383520593202754016?l=www.rafayhackingarticles.net' alt='' /&gt;&lt;/div&gt;&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/HackingAndCracking?a=rYnwxMy7yxs:DlOntRBlqO0:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/HackingAndCracking?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/HackingAndCracking?a=rYnwxMy7yxs:DlOntRBlqO0:63t7Ie-LG7Y"&gt;&lt;img src="http://feeds.feedburner.com/~ff/HackingAndCracking?d=63t7Ie-LG7Y" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/HackingAndCracking?a=rYnwxMy7yxs:DlOntRBlqO0:-BTjWOF_DHI"&gt;&lt;img src="http://feeds.feedburner.com/~ff/HackingAndCracking?i=rYnwxMy7yxs:DlOntRBlqO0:-BTjWOF_DHI" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/HackingAndCracking?a=rYnwxMy7yxs:DlOntRBlqO0:V_sGLiPBpWU"&gt;&lt;img src="http://feeds.feedburner.com/~ff/HackingAndCracking?i=rYnwxMy7yxs:DlOntRBlqO0:V_sGLiPBpWU" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/HackingAndCracking?a=rYnwxMy7yxs:DlOntRBlqO0:qj6IDK7rITs"&gt;&lt;img src="http://feeds.feedburner.com/~ff/HackingAndCracking?d=qj6IDK7rITs" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/HackingAndCracking?a=rYnwxMy7yxs:DlOntRBlqO0:gIN9vFwOqvQ"&gt;&lt;img src="http://feeds.feedburner.com/~ff/HackingAndCracking?i=rYnwxMy7yxs:DlOntRBlqO0:gIN9vFwOqvQ" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/HackingAndCracking?a=rYnwxMy7yxs:DlOntRBlqO0:4cEx4HpKnUU"&gt;&lt;img src="http://feeds.feedburner.com/~ff/HackingAndCracking?i=rYnwxMy7yxs:DlOntRBlqO0:4cEx4HpKnUU" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;&lt;img src="http://feeds.feedburner.com/~r/HackingAndCracking/~4/rYnwxMy7yxs" height="1" width="1"/&gt;</content><link rel="replies" type="application/atom+xml" href="http://www.rafayhackingarticles.net/feeds/3383520593202754016/comments/default" title="Post Comments" /><link rel="replies" type="text/html" href="http://www.rafayhackingarticles.net/2012/03/hijacking-facebook-users-clickjacking.html#comment-form" title="4 Comments" /><link rel="edit" type="application/atom+xml" href="http://www.blogger.com/feeds/3121270199089759062/posts/default/3383520593202754016?v=2" /><link rel="self" type="application/atom+xml" href="http://www.blogger.com/feeds/3121270199089759062/posts/default/3383520593202754016?v=2" /><link rel="alternate" type="text/html" href="http://feedproxy.google.com/~r/HackingAndCracking/~3/rYnwxMy7yxs/hijacking-facebook-users-clickjacking.html" title="Hijacking Facebook Users With Clickjacking Attack" /><author><name>Rafay Baloch</name><uri>https://profiles.google.com/113902000528448760189</uri><email>noreply@blogger.com</email><gd:image rel="http://schemas.google.com/g/2005#thumbnail" width="32" height="32" src="//lh4.googleusercontent.com/-QFpq0g9Pn_g/AAAAAAAAAAI/AAAAAAAABeU/sxaLN0wQah8/s512-c/photo.jpg" /></author><media:thumbnail xmlns:media="http://search.yahoo.com/mrss/" url="http://3.bp.blogspot.com/-Q4xSa-2jv18/T3dj3Zc_MlI/AAAAAAAAB3U/x-IKjUp8UtI/s72-c/xl_Facebook_greatest_624-1.jpg" height="72" width="72" /><thr:total>4</thr:total><feedburner:origLink>http://www.rafayhackingarticles.net/2012/03/hijacking-facebook-users-clickjacking.html</feedburner:origLink></entry><entry gd:etag="W/&quot;DEEER307eyp7ImA9WhVRGUg.&quot;"><id>tag:blogger.com,1999:blog-3121270199089759062.post-2139178658895445284</id><published>2012-03-28T10:43:00.000-07:00</published><updated>2012-03-28T10:43:26.303-07:00</updated><app:edited xmlns:app="http://www.w3.org/2007/app">2012-03-28T10:43:26.303-07:00</app:edited><category scheme="http://www.blogger.com/atom/ns#" term="Hacking News" /><title>Hacker Arrested For leaking 6 Million Passwords</title><content type="html">&lt;div dir="ltr" style="text-align: left;" trbidi="on"&gt;&lt;div style="text-align: justify;"&gt;&lt;a href="http://3.bp.blogspot.com/-1aQZ__R5jyE/T3GGJd2mDuI/AAAAAAAAADE/W-QtrLRP2RE/s1600/news22%2528%2529.bmp"&gt;&lt;img alt="CSDN hacked(Hacking news:www.rafayhackingarticles.net)" border="0" id="BLOGGER_PHOTO_ID_5724504098555170530" src="http://3.bp.blogspot.com/-1aQZ__R5jyE/T3GGJd2mDuI/AAAAAAAAADE/W-QtrLRP2RE/s320/news22%2528%2529.bmp" style="display: block; height: 225px; margin: 0px auto 10px; text-align: center; width: 320px;" title="CSDN hacked" /&gt;&lt;/a&gt;The Chinese Police has arrested a suspect, nicknamed Zeng, who was nabbed in Wenzhou east China's Zhejiang Province, on February 4 after an investigation into the case. He is reported to have stolen around 6 million passwords from China's software developer network. He is in police custody on charges of illegal data acquisition. According to the officials the leaked information contained ids, passwords and other personal information in plain text.&lt;br /&gt;
&lt;br /&gt;
&lt;a name='more'&gt;&lt;/a&gt;&lt;/div&gt;&lt;div style="text-align: justify;"&gt;Looking at the hacked information the police officials were sure that the data was hacked before July 2010. Zeng got caught because he himself had once posted that he has gained the control of the CSDN database and wanted to contribute for the website. He has accepted that he entered the database through a system loophole.&lt;br /&gt;
&lt;br /&gt;
&lt;/div&gt;&lt;div style="text-align: justify;"&gt;After the arrest, the Beijing Police has punished CSDN for keeping poor security of the database. CSDN has announced that its database has been completely secured since September 2010 and the customers need not fear of another security breach.&lt;br /&gt;
&lt;br /&gt;
&lt;b&gt;Author&lt;/b&gt;&lt;br /&gt;
&lt;br /&gt;
&lt;i&gt;Ajit Singh&lt;b&gt;(www.coolestwebsite.co.cc)&lt;/b&gt;&lt;/i&gt;&lt;/div&gt;&lt;/div&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/3121270199089759062-2139178658895445284?l=www.rafayhackingarticles.net' alt='' /&gt;&lt;/div&gt;&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/HackingAndCracking?a=ELy6sSNlK_U:Yla4AFkTfeE:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/HackingAndCracking?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/HackingAndCracking?a=ELy6sSNlK_U:Yla4AFkTfeE:63t7Ie-LG7Y"&gt;&lt;img src="http://feeds.feedburner.com/~ff/HackingAndCracking?d=63t7Ie-LG7Y" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/HackingAndCracking?a=ELy6sSNlK_U:Yla4AFkTfeE:-BTjWOF_DHI"&gt;&lt;img src="http://feeds.feedburner.com/~ff/HackingAndCracking?i=ELy6sSNlK_U:Yla4AFkTfeE:-BTjWOF_DHI" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/HackingAndCracking?a=ELy6sSNlK_U:Yla4AFkTfeE:V_sGLiPBpWU"&gt;&lt;img src="http://feeds.feedburner.com/~ff/HackingAndCracking?i=ELy6sSNlK_U:Yla4AFkTfeE:V_sGLiPBpWU" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/HackingAndCracking?a=ELy6sSNlK_U:Yla4AFkTfeE:qj6IDK7rITs"&gt;&lt;img src="http://feeds.feedburner.com/~ff/HackingAndCracking?d=qj6IDK7rITs" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/HackingAndCracking?a=ELy6sSNlK_U:Yla4AFkTfeE:gIN9vFwOqvQ"&gt;&lt;img src="http://feeds.feedburner.com/~ff/HackingAndCracking?i=ELy6sSNlK_U:Yla4AFkTfeE:gIN9vFwOqvQ" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/HackingAndCracking?a=ELy6sSNlK_U:Yla4AFkTfeE:4cEx4HpKnUU"&gt;&lt;img src="http://feeds.feedburner.com/~ff/HackingAndCracking?i=ELy6sSNlK_U:Yla4AFkTfeE:4cEx4HpKnUU" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;&lt;img src="http://feeds.feedburner.com/~r/HackingAndCracking/~4/ELy6sSNlK_U" height="1" width="1"/&gt;</content><link rel="replies" type="application/atom+xml" href="http://www.rafayhackingarticles.net/feeds/2139178658895445284/comments/default" title="Post Comments" /><link rel="replies" type="text/html" href="http://www.rafayhackingarticles.net/2012/03/hacker-arrested-for-leaking-6-million.html#comment-form" title="1 Comments" /><link rel="edit" type="application/atom+xml" href="http://www.blogger.com/feeds/3121270199089759062/posts/default/2139178658895445284?v=2" /><link rel="self" type="application/atom+xml" href="http://www.blogger.com/feeds/3121270199089759062/posts/default/2139178658895445284?v=2" /><link rel="alternate" type="text/html" href="http://feedproxy.google.com/~r/HackingAndCracking/~3/ELy6sSNlK_U/hacker-arrested-for-leaking-6-million.html" title="Hacker Arrested For leaking 6 Million Passwords" /><author><name>Rafay Baloch</name><uri>https://profiles.google.com/113902000528448760189</uri><email>noreply@blogger.com</email><gd:image rel="http://schemas.google.com/g/2005#thumbnail" width="32" height="32" src="//lh4.googleusercontent.com/-QFpq0g9Pn_g/AAAAAAAAAAI/AAAAAAAABeU/sxaLN0wQah8/s512-c/photo.jpg" /></author><media:thumbnail xmlns:media="http://search.yahoo.com/mrss/" url="http://3.bp.blogspot.com/-1aQZ__R5jyE/T3GGJd2mDuI/AAAAAAAAADE/W-QtrLRP2RE/s72-c/news22%2528%2529.bmp" height="72" width="72" /><thr:total>1</thr:total><feedburner:origLink>http://www.rafayhackingarticles.net/2012/03/hacker-arrested-for-leaking-6-million.html</feedburner:origLink></entry><entry gd:etag="W/&quot;D0QHSHw-fyp7ImA9WhVRFE0.&quot;"><id>tag:blogger.com,1999:blog-3121270199089759062.post-7074836337313809899</id><published>2012-03-22T01:18:00.004-07:00</published><updated>2012-03-22T01:35:39.257-07:00</updated><app:edited xmlns:app="http://www.w3.org/2007/app">2012-03-22T01:35:39.257-07:00</app:edited><category scheme="http://www.blogger.com/atom/ns#" term="Hack Facebook" /><title>Is It Possible To Crack A Facebook Account?</title><content type="html">&lt;div class="separator" style="clear: both; text-align: center;"&gt;&lt;a href="http://1.bp.blogspot.com/-weB2L7rX8YM/T2rfbCcIKxI/AAAAAAAAB24/1W6hYlAepU4/s1600/facebook-lockdown-paint-ars-thumb-640xauto-21476.jpg" imageanchor="1" style="margin-left: 1em; margin-right: 1em;"&gt;&lt;img border="0" height="360" src="http://1.bp.blogspot.com/-weB2L7rX8YM/T2rfbCcIKxI/AAAAAAAAB24/1W6hYlAepU4/s640/facebook-lockdown-paint-ars-thumb-640xauto-21476.jpg" width="577" /&gt;&lt;/a&gt;&lt;/div&gt;We have discussed alot about popular password cracking methods such as Bruteforce, Dictionary attack and Rainbow tables. However a&amp;nbsp;question I get asked frequently is if it's possible to crack a Facebook account. So I wish to clear concepts related to Hacking/Cracking Facebook accounts. First of all &lt;b&gt;"&lt;a href="http://www.rafayhackingarticles.net/2011/08/hack-facebook-account-passwords.html"&gt;Hacking a Facebook account&lt;/a&gt;&lt;/b&gt;" and &lt;b&gt;"Cracking a facebook account&lt;/b&gt;" are both different terminologies.&lt;br /&gt;
&lt;br /&gt;
&lt;a name='more'&gt;&lt;/a&gt;Hacking a facebook account refers to foolproof methods such as&amp;nbsp;&lt;b&gt;&lt;a href="http://www.rafayhackingarticles.net/2009/07/how-to-hack-facebook-account.html"&gt;Phishing&lt;/a&gt;&lt;/b&gt;,&lt;a href="http://www.rafayhackingarticles.net/2011/03/introduction-to-keyloggers-rats-and.html"&gt; &lt;b&gt;keylogging&lt;/b&gt;&lt;/a&gt;, Social engineering etc.&lt;br /&gt;
However the terminology cracking refers to the methods such as B&lt;b&gt;ruteforce, Dictionary attacks&lt;/b&gt; etc.&lt;br /&gt;
&lt;br /&gt;
&lt;h4&gt;Brute Force Attacks&lt;/h4&gt;&lt;br /&gt;
Bruteforce is one of the most common and most reliable password cracking methodologies. A bruteforce attack tries all possible combinations against the medium, until the correct password is found. However the problem with a bruteforce attack is that as the password complexity increases, the time taken to crack a password also increases.&lt;br /&gt;
&lt;br /&gt;
&lt;div class="separator" style="clear: both; text-align: center;"&gt;&lt;a href="http://1.bp.blogspot.com/-9H63bqcnjJA/T2rXty57J0I/AAAAAAAAB2o/Prov0bjJU-Y/s1600/image_6.png" imageanchor="1" style="margin-left: 1em; margin-right: 1em;"&gt;&lt;img border="0" height="272" src="http://1.bp.blogspot.com/-9H63bqcnjJA/T2rXty57J0I/AAAAAAAAB2o/Prov0bjJU-Y/s640/image_6.png" width="577" /&gt;&lt;/a&gt;&lt;/div&gt;&lt;div class="separator" style="clear: both; text-align: left;"&gt;The chart above illustrates the time the estimated time taken by a computer in order to bruteforce a password, assuming that if it's capable of trying 10,000 passwords per second. However, the time taken can be reduced by adding the number of processors to the task. Therefore the only flaw with the attack is that it requires lots of potential.&amp;nbsp;&lt;/div&gt;&lt;div class="separator" style="clear: both; text-align: left;"&gt;&lt;br /&gt;
&lt;/div&gt;&lt;div class="separator" style="clear: both; text-align: left;"&gt;&lt;b&gt;Dictionary Attacks&lt;/b&gt;&lt;/div&gt;&lt;div class="separator" style="clear: both; text-align: left;"&gt;&lt;b&gt;&lt;br /&gt;
&lt;/b&gt;&lt;/div&gt;&lt;div class="separator" style="clear: both; text-align: left;"&gt;The only difference with a bruteforce attack and Dictionary attack is that "A Dictionary attack tries the passwords which we want it to try". Confusing?. In a dictionary attack we have the freedom to choose a huge list of words that people commonly use in their password&amp;nbsp;&lt;b&gt;(Depending upon the situation). &lt;/b&gt;The following video will help you understand more about Dictionary attacks.&lt;/div&gt;&lt;br /&gt;
&lt;object style="height: 390px; width: 577px;"&gt;&lt;param name="movie" value="http://www.youtube.com/v/9B4e0p6zbwk?version=3&amp;feature=player_detailpage"&gt;&lt;param name="allowFullScreen" value="true"&gt;&lt;param name="allowScriptAccess" value="always"&gt;&lt;embed src="http://www.youtube.com/v/9B4e0p6zbwk?version=3&amp;feature=player_detailpage" type="application/x-shockwave-flash" allowfullscreen="true" allowScriptAccess="always" width="577" height="360"&gt;&lt;/object&gt;&lt;br /&gt;
&lt;br /&gt;
&lt;h4&gt;Is It Possible To Crack A Facebook Account?&lt;/h4&gt;&lt;br /&gt;
Coming back to the main topic of this article. A few hours back while I was watching hacking related videos on securitytube.net, I came across to a video in which the hacker claimed that one can use &lt;b&gt;"Hydra To Crack A Facebook Password". &lt;/b&gt;However here is why a bruteforce attack won't work against a facebeook account.&lt;br /&gt;
&lt;br /&gt;
&lt;object style="height: 390px; width: 577px;"&gt;&lt;param name="movie" value="http://www.youtube.com/v/w8TeD-GO8tc?version=3&amp;feature=player_detailpage"&gt;&lt;param name="allowFullScreen" value="true"&gt;&lt;param name="allowScriptAccess" value="always"&gt;&lt;embed src="http://www.youtube.com/v/w8TeD-GO8tc?version=3&amp;feature=player_detailpage" type="application/x-shockwave-flash" allowfullscreen="true" allowScriptAccess="always" width="577" height="360"&gt;&lt;/object&gt;&lt;br /&gt;
&lt;br /&gt;
Facebook and all other popular social networking websites lock an email account, after few&amp;nbsp;unsuccessful&amp;nbsp;login attempts. They either have introduced an &lt;b&gt;"Account Lockout Feature" &lt;/b&gt;or they either have introduced an &lt;b&gt;"Account Lockout" &lt;/b&gt;feature, which prevents an automated password cracking method to work. However, even if you get it working, A&amp;nbsp;minimum&amp;nbsp;facebook password length is about 6-characters. kindly refer to the chart and find out your success rate.&lt;br /&gt;
&lt;br /&gt;
Likewise, if you have any questions, Feel free to ask.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/3121270199089759062-7074836337313809899?l=www.rafayhackingarticles.net' alt='' /&gt;&lt;/div&gt;&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/HackingAndCracking?a=LC_7bHk2o7c:uuQng3Rn1DY:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/HackingAndCracking?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/HackingAndCracking?a=LC_7bHk2o7c:uuQng3Rn1DY:63t7Ie-LG7Y"&gt;&lt;img src="http://feeds.feedburner.com/~ff/HackingAndCracking?d=63t7Ie-LG7Y" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/HackingAndCracking?a=LC_7bHk2o7c:uuQng3Rn1DY:-BTjWOF_DHI"&gt;&lt;img src="http://feeds.feedburner.com/~ff/HackingAndCracking?i=LC_7bHk2o7c:uuQng3Rn1DY:-BTjWOF_DHI" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/HackingAndCracking?a=LC_7bHk2o7c:uuQng3Rn1DY:V_sGLiPBpWU"&gt;&lt;img src="http://feeds.feedburner.com/~ff/HackingAndCracking?i=LC_7bHk2o7c:uuQng3Rn1DY:V_sGLiPBpWU" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/HackingAndCracking?a=LC_7bHk2o7c:uuQng3Rn1DY:qj6IDK7rITs"&gt;&lt;img src="http://feeds.feedburner.com/~ff/HackingAndCracking?d=qj6IDK7rITs" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/HackingAndCracking?a=LC_7bHk2o7c:uuQng3Rn1DY:gIN9vFwOqvQ"&gt;&lt;img src="http://feeds.feedburner.com/~ff/HackingAndCracking?i=LC_7bHk2o7c:uuQng3Rn1DY:gIN9vFwOqvQ" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/HackingAndCracking?a=LC_7bHk2o7c:uuQng3Rn1DY:4cEx4HpKnUU"&gt;&lt;img src="http://feeds.feedburner.com/~ff/HackingAndCracking?i=LC_7bHk2o7c:uuQng3Rn1DY:4cEx4HpKnUU" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;&lt;img src="http://feeds.feedburner.com/~r/HackingAndCracking/~4/LC_7bHk2o7c" height="1" width="1"/&gt;</content><link rel="replies" type="application/atom+xml" href="http://www.rafayhackingarticles.net/feeds/7074836337313809899/comments/default" title="Post Comments" /><link rel="replies" type="text/html" href="http://www.rafayhackingarticles.net/2012/03/cracking-facebook-account.html#comment-form" title="19 Comments" /><link rel="edit" type="application/atom+xml" href="http://www.blogger.com/feeds/3121270199089759062/posts/default/7074836337313809899?v=2" /><link rel="self" type="application/atom+xml" href="http://www.blogger.com/feeds/3121270199089759062/posts/default/7074836337313809899?v=2" /><link rel="alternate" type="text/html" href="http://feedproxy.google.com/~r/HackingAndCracking/~3/LC_7bHk2o7c/cracking-facebook-account.html" title="Is It Possible To Crack A Facebook Account?" /><author><name>Rafay Baloch</name><uri>https://profiles.google.com/113902000528448760189</uri><email>noreply@blogger.com</email><gd:image rel="http://schemas.google.com/g/2005#thumbnail" width="32" height="32" src="//lh4.googleusercontent.com/-QFpq0g9Pn_g/AAAAAAAAAAI/AAAAAAAABeU/sxaLN0wQah8/s512-c/photo.jpg" /></author><media:thumbnail xmlns:media="http://search.yahoo.com/mrss/" url="http://1.bp.blogspot.com/-weB2L7rX8YM/T2rfbCcIKxI/AAAAAAAAB24/1W6hYlAepU4/s72-c/facebook-lockdown-paint-ars-thumb-640xauto-21476.jpg" height="72" width="72" /><thr:total>19</thr:total><feedburner:origLink>http://www.rafayhackingarticles.net/2012/03/cracking-facebook-account.html</feedburner:origLink></entry><entry gd:etag="W/&quot;CUIGQnk8cSp7ImA9WhVREks.&quot;"><id>tag:blogger.com,1999:blog-3121270199089759062.post-7383300850229835814</id><published>2012-03-20T10:10:00.004-07:00</published><updated>2012-03-20T10:12:03.779-07:00</updated><app:edited xmlns:app="http://www.w3.org/2007/app">2012-03-20T10:12:03.779-07:00</app:edited><category scheme="http://www.blogger.com/atom/ns#" term="Hacking News" /><title>NSA Building the World's Biggest Spy Center ever</title><content type="html">&lt;div dir="ltr" style="text-align: left;" trbidi="on"&gt;&lt;div class="separator" style="clear: both; text-align: center;"&gt;&lt;a href="http://3.bp.blogspot.com/-bJAj5F50ZZY/T2Wtx1cgK6I/AAAAAAAAAK0/xl7Fx9MgDn0/s1600/nsa.jpg" imageanchor="1" style="margin-left: 1em; margin-right: 1em;"&gt;&lt;img border="0" height="263" src="http://3.bp.blogspot.com/-bJAj5F50ZZY/T2Wtx1cgK6I/AAAAAAAAAK0/xl7Fx9MgDn0/s400/nsa.jpg" width="400" /&gt;&lt;/a&gt;&lt;/div&gt;Forget NASA, CIA, FBI or any other agency that can intercept your calls,emails and internet connections.In Bluffdale ,USA National security Agency is busy building the largest Spy center in the history of the world.The immensely secretive and high-priority project is to be completed in 2013.This will make  NSA  the largest, most covert, and potentially most intrusive intelligence agency ever.&lt;br /&gt;
&lt;br /&gt;
&lt;a name='more'&gt;&lt;/a&gt;&lt;br /&gt;
&lt;br /&gt;
The center will serve the purposes of NSA which are related to communications between humans as well as machines.It will have the power to intercept,decipher,analyze and store mammoth data collected from satellites,optical fibres and local and international networks.The under construction $2 billion center will be capable of storing contents of private emails,cell phone calls and messages,Google searches and activities on social networks.Besides these it will have all sorts of personal data-trails parking receipts,bookstore purchases and other digital “pocket litter.”&lt;br /&gt;
&lt;br /&gt;
&amp;nbsp;Accoding to a senior security official,who until recently was involved with the program “this is more than just a data center.It is also critical for breaking codes”.He went on to say , code-breaking is crucial, because much of the data that the center will handle—financial information, stock transactions, business deals, foreign military and diplomatic secrets, legal documents—will be heavily encrypted. According to another top, the agency made a huge breakthrough several years ago in its ability to cryptanalyze, or break, unfathomably complex encryption systems .&lt;br /&gt;
&lt;br /&gt;
&amp;nbsp;The upshot, according to this official: &lt;b&gt;&lt;i&gt;“Everybody’s a target; everybody with communication is a target.”  &lt;/i&gt;&lt;/b&gt;&lt;br /&gt;
&lt;b&gt;&lt;i&gt;&lt;br /&gt;
&lt;/i&gt;&lt;/b&gt;&lt;br /&gt;
&lt;br /&gt;
&lt;div style="text-align: -webkit-auto;"&gt;&lt;b&gt;About The Author&lt;/b&gt;&lt;/div&gt;&lt;div style="text-align: -webkit-auto;"&gt;&lt;br /&gt;
&lt;/div&gt;&lt;div style="text-align: -webkit-auto;"&gt;Aneeq Fasi covers hacking news at RHA. You can follow him on twtter under -&amp;nbsp;&lt;a href="https://twitter.com/#!/aneeqfasi" rel="no follow"&gt;&lt;b&gt;https://twitter.com/#!/aneeqfasi&lt;/b&gt;&lt;/a&gt;. If you would like to become a part of our team, Kindly email to&amp;nbsp;&lt;b&gt;rafayhackingarticles@gmail.com&lt;/b&gt;.&lt;/div&gt;&lt;/div&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/3121270199089759062-7383300850229835814?l=www.rafayhackingarticles.net' alt='' /&gt;&lt;/div&gt;&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/HackingAndCracking?a=PkyaEoxWWog:ZyD3OtPBqyE:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/HackingAndCracking?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/HackingAndCracking?a=PkyaEoxWWog:ZyD3OtPBqyE:63t7Ie-LG7Y"&gt;&lt;img src="http://feeds.feedburner.com/~ff/HackingAndCracking?d=63t7Ie-LG7Y" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/HackingAndCracking?a=PkyaEoxWWog:ZyD3OtPBqyE:-BTjWOF_DHI"&gt;&lt;img src="http://feeds.feedburner.com/~ff/HackingAndCracking?i=PkyaEoxWWog:ZyD3OtPBqyE:-BTjWOF_DHI" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/HackingAndCracking?a=PkyaEoxWWog:ZyD3OtPBqyE:V_sGLiPBpWU"&gt;&lt;img src="http://feeds.feedburner.com/~ff/HackingAndCracking?i=PkyaEoxWWog:ZyD3OtPBqyE:V_sGLiPBpWU" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/HackingAndCracking?a=PkyaEoxWWog:ZyD3OtPBqyE:qj6IDK7rITs"&gt;&lt;img src="http://feeds.feedburner.com/~ff/HackingAndCracking?d=qj6IDK7rITs" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/HackingAndCracking?a=PkyaEoxWWog:ZyD3OtPBqyE:gIN9vFwOqvQ"&gt;&lt;img src="http://feeds.feedburner.com/~ff/HackingAndCracking?i=PkyaEoxWWog:ZyD3OtPBqyE:gIN9vFwOqvQ" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/HackingAndCracking?a=PkyaEoxWWog:ZyD3OtPBqyE:4cEx4HpKnUU"&gt;&lt;img src="http://feeds.feedburner.com/~ff/HackingAndCracking?i=PkyaEoxWWog:ZyD3OtPBqyE:4cEx4HpKnUU" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;&lt;img src="http://feeds.feedburner.com/~r/HackingAndCracking/~4/PkyaEoxWWog" height="1" width="1"/&gt;</content><link rel="replies" type="application/atom+xml" href="http://www.rafayhackingarticles.net/feeds/7383300850229835814/comments/default" title="Post Comments" /><link rel="replies" type="text/html" href="http://www.rafayhackingarticles.net/2012/03/nsa-building-biggest-spy-center-ever.html#comment-form" title="0 Comments" /><link rel="edit" type="application/atom+xml" href="http://www.blogger.com/feeds/3121270199089759062/posts/default/7383300850229835814?v=2" /><link rel="self" type="application/atom+xml" href="http://www.blogger.com/feeds/3121270199089759062/posts/default/7383300850229835814?v=2" /><link rel="alternate" type="text/html" href="http://feedproxy.google.com/~r/HackingAndCracking/~3/PkyaEoxWWog/nsa-building-biggest-spy-center-ever.html" title="NSA Building the World's Biggest Spy Center ever" /><author><name>Rafay Baloch</name><uri>https://profiles.google.com/113902000528448760189</uri><email>noreply@blogger.com</email><gd:image rel="http://schemas.google.com/g/2005#thumbnail" width="32" height="32" src="//lh4.googleusercontent.com/-QFpq0g9Pn_g/AAAAAAAAAAI/AAAAAAAABeU/sxaLN0wQah8/s512-c/photo.jpg" /></author><media:thumbnail xmlns:media="http://search.yahoo.com/mrss/" url="http://3.bp.blogspot.com/-bJAj5F50ZZY/T2Wtx1cgK6I/AAAAAAAAAK0/xl7Fx9MgDn0/s72-c/nsa.jpg" height="72" width="72" /><thr:total>0</thr:total><feedburner:origLink>http://www.rafayhackingarticles.net/2012/03/nsa-building-biggest-spy-center-ever.html</feedburner:origLink></entry><entry gd:etag="W/&quot;CE4CQng8fyp7ImA9WhVQF0Q.&quot;"><id>tag:blogger.com,1999:blog-3121270199089759062.post-3493578722111355065</id><published>2012-03-19T11:58:00.002-07:00</published><updated>2012-04-07T03:02:43.677-07:00</updated><app:edited xmlns:app="http://www.w3.org/2007/app">2012-04-07T03:02:43.677-07:00</app:edited><category scheme="http://www.blogger.com/atom/ns#" term="Security tips" /><category scheme="http://www.blogger.com/atom/ns#" term="Hack Facebook" /><title>Facebook Hacker V1.0 - A Keylogging Software</title><content type="html">&lt;div class="separator" style="clear: both; text-align: center;"&gt;&lt;a href="http://2.bp.blogspot.com/-EWQMGo60Y5g/T2Y08noG0KI/AAAAAAAAAWs/dJ841hq3ukU/s1600/Fig2.jpg" imageanchor="1" style="margin-left: 1em; margin-right: 1em;"&gt;&lt;img border="0" height="640" src="http://2.bp.blogspot.com/-EWQMGo60Y5g/T2Y08noG0KI/AAAAAAAAAWs/dJ841hq3ukU/s640/Fig2.jpg" width="568" /&gt;&lt;/a&gt;&lt;/div&gt;We have wrote several articles on Facebook Hacking, The most recent one we wrote was on &lt;b&gt;&lt;a href="http://www.rafayhackingarticles.net/2011/08/hack-facebook-account-passwords.html"&gt;"Top 10 Ways How Hackers Can Hack Facebook Accounts In 2012&lt;/a&gt;&lt;/b&gt;". Which received&amp;nbsp;tremendous amount of responses. However in today's article we would like you to introduce you a software named &lt;b&gt;"Facebook Hacker&lt;/b&gt;.&amp;nbsp;&lt;span style="text-align: left;"&gt;&lt;b&gt;&lt;a href="http://www.rafayhackingarticles.net/2009/07/how-to-hack-facebook-account.html"&gt;Hacking facebook accounts&lt;/a&gt;&lt;/b&gt; using phishing methods are out of the fashion these days. A new tool known as facebook hacker is introduced. A dangerous tool for the people in need of other’s username and passwords.&lt;/span&gt;&lt;br /&gt;
&lt;div dir="ltr" style="text-align: left;" trbidi="on"&gt;&lt;div class="MsoNormal"&gt;&lt;br /&gt;
&lt;a name='more'&gt;&lt;/a&gt;&lt;br /&gt;
&lt;/div&gt;&lt;div class="MsoNormal"&gt;This tool is extremely easy to connect and use. All you have to do is give an email address and a password where the stolen information is to deliver. Can’t be easier than that.&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;br /&gt;
&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;Just type in the email address and password and then click on the build button. A new &lt;b&gt;“SERVER.EXE&lt;/b&gt;” file will be created and most of the work is already done. Now the big part comes. Just send this file to the victim. Rename it, change the icon and make it more presentable so that the victim opens it for sure.&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;br /&gt;
&lt;/div&gt;&lt;div class="MsoNormal"&gt;As soon as the victim opens the file, Server.exe will get all the passwords saved and facebook account credentials and will give them to you. To avoid detection, the facebook Hacker will also look for all the processes related to a security suite and kill them upon detection. The most important thing this software does is it kills all the security suite detecting it.&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;br /&gt;
&lt;/div&gt;&lt;div class="separator" style="clear: both; text-align: center;"&gt;&lt;a href="http://4.bp.blogspot.com/-Jq5gP3UxSEs/T2Y1Jty0yaI/AAAAAAAAAW0/7TnvCXozTTU/s1600/Fig5.jpg" imageanchor="1" style="margin-left: 1em; margin-right: 1em;"&gt;&lt;img border="0" height="640" src="http://4.bp.blogspot.com/-Jq5gP3UxSEs/T2Y1Jty0yaI/AAAAAAAAAW0/7TnvCXozTTU/s640/Fig5.jpg" width="560" /&gt;&lt;/a&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;br /&gt;
&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;You should know how to protect yourself from such threats. BitDefender detects this as a Trojan. In order to stay safe ensure that you update your antivirus regularly. Also, remember not to run files you may receive as attachments or via IM, or at least, to scan them beforehand.&lt;br /&gt;
&lt;br /&gt;
&lt;b&gt;Download Facebook Hacker V1.0&lt;/b&gt;&amp;nbsp;&lt;b&gt;&lt;a href="http://fileml.com/0N63G8"&gt;here&lt;/a&gt;&lt;/b&gt;&lt;br /&gt;
&lt;br /&gt;
&lt;b&gt;About The Author&lt;/b&gt;&lt;br /&gt;
&lt;b&gt;&lt;br /&gt;
&lt;/b&gt;&lt;br /&gt;
This article has been written by Amin Motiwala, He is the newest member of our team. If you would like to become a member of our team, Kindly shoot an email to rafayhackingarticles@gmail.com&lt;/div&gt;&lt;/div&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/3121270199089759062-3493578722111355065?l=www.rafayhackingarticles.net' alt='' /&gt;&lt;/div&gt;&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/HackingAndCracking?a=O6SzIOfW3Rk:YR34RjXIcUw:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/HackingAndCracking?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/HackingAndCracking?a=O6SzIOfW3Rk:YR34RjXIcUw:63t7Ie-LG7Y"&gt;&lt;img src="http://feeds.feedburner.com/~ff/HackingAndCracking?d=63t7Ie-LG7Y" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/HackingAndCracking?a=O6SzIOfW3Rk:YR34RjXIcUw:-BTjWOF_DHI"&gt;&lt;img src="http://feeds.feedburner.com/~ff/HackingAndCracking?i=O6SzIOfW3Rk:YR34RjXIcUw:-BTjWOF_DHI" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/HackingAndCracking?a=O6SzIOfW3Rk:YR34RjXIcUw:V_sGLiPBpWU"&gt;&lt;img src="http://feeds.feedburner.com/~ff/HackingAndCracking?i=O6SzIOfW3Rk:YR34RjXIcUw:V_sGLiPBpWU" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/HackingAndCracking?a=O6SzIOfW3Rk:YR34RjXIcUw:qj6IDK7rITs"&gt;&lt;img src="http://feeds.feedburner.com/~ff/HackingAndCracking?d=qj6IDK7rITs" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/HackingAndCracking?a=O6SzIOfW3Rk:YR34RjXIcUw:gIN9vFwOqvQ"&gt;&lt;img src="http://feeds.feedburner.com/~ff/HackingAndCracking?i=O6SzIOfW3Rk:YR34RjXIcUw:gIN9vFwOqvQ" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/HackingAndCracking?a=O6SzIOfW3Rk:YR34RjXIcUw:4cEx4HpKnUU"&gt;&lt;img src="http://feeds.feedburner.com/~ff/HackingAndCracking?i=O6SzIOfW3Rk:YR34RjXIcUw:4cEx4HpKnUU" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;&lt;img src="http://feeds.feedburner.com/~r/HackingAndCracking/~4/O6SzIOfW3Rk" height="1" width="1"/&gt;</content><link rel="replies" type="application/atom+xml" href="http://www.rafayhackingarticles.net/feeds/3493578722111355065/comments/default" title="Post Comments" /><link rel="replies" type="text/html" href="http://www.rafayhackingarticles.net/2012/03/facebook-hacker-v10-keylogging-software.html#comment-form" title="38 Comments" /><link rel="edit" type="application/atom+xml" href="http://www.blogger.com/feeds/3121270199089759062/posts/default/3493578722111355065?v=2" /><link rel="self" type="application/atom+xml" href="http://www.blogger.com/feeds/3121270199089759062/posts/default/3493578722111355065?v=2" /><link rel="alternate" type="text/html" href="http://feedproxy.google.com/~r/HackingAndCracking/~3/O6SzIOfW3Rk/facebook-hacker-v10-keylogging-software.html" title="Facebook Hacker V1.0 - A Keylogging Software" /><author><name>Rafay Baloch</name><uri>https://profiles.google.com/113902000528448760189</uri><email>noreply@blogger.com</email><gd:image rel="http://schemas.google.com/g/2005#thumbnail" width="32" height="32" src="//lh4.googleusercontent.com/-QFpq0g9Pn_g/AAAAAAAAAAI/AAAAAAAABeU/sxaLN0wQah8/s512-c/photo.jpg" /></author><media:thumbnail xmlns:media="http://search.yahoo.com/mrss/" url="http://2.bp.blogspot.com/-EWQMGo60Y5g/T2Y08noG0KI/AAAAAAAAAWs/dJ841hq3ukU/s72-c/Fig2.jpg" height="72" width="72" /><thr:total>38</thr:total><feedburner:origLink>http://www.rafayhackingarticles.net/2012/03/facebook-hacker-v10-keylogging-software.html</feedburner:origLink></entry></feed>

