<?xml version="1.0" encoding="UTF-8"?>
<?xml-stylesheet type="text/xsl" media="screen" href="/~d/styles/atom10full.xsl"?><?xml-stylesheet type="text/css" media="screen" href="http://feeds.feedburner.com/~d/styles/itemcontent.css"?><feed xmlns="http://www.w3.org/2005/Atom" xmlns:openSearch="http://a9.com/-/spec/opensearch/1.1/" xmlns:georss="http://www.georss.org/georss" xmlns:gd="http://schemas.google.com/g/2005" xmlns:thr="http://purl.org/syndication/thread/1.0" xmlns:feedburner="http://rssnamespace.org/feedburner/ext/1.0" gd:etag="W/&quot;Dk4HRHk9eCp7ImA9WhRWFU8.&quot;"><id>tag:blogger.com,1999:blog-1471177219230458745</id><updated>2012-01-02T22:52:15.760+05:30</updated><category term="Posts on Yahoo" /><category term="How to use" /><category term="Wireless" /><category term="Penetration Testing" /><category term="Awareness" /><category term="Basics" /><category term="Posts on Facebook" /><category term="posts on cisco router" /><category term="Posts on Gmail" /><category term="Video" /><title>FACT-IN-HACK</title><subtitle type="html">SCHOOL FOR NON-HACKER AND NON-CRACKERS</subtitle><link rel="http://schemas.google.com/g/2005#feed" type="application/atom+xml" href="http://fact-in-hack.blogspot.com/feeds/posts/default" /><link rel="alternate" type="text/html" href="http://fact-in-hack.blogspot.com/" /><link rel="next" type="application/atom+xml" href="http://www.blogger.com/feeds/1471177219230458745/posts/default?start-index=26&amp;max-results=25&amp;redirect=false&amp;v=2" /><author><name>RANGER</name><uri>http://www.blogger.com/profile/06036199197859149872</uri><email>noreply@blogger.com</email><gd:image rel="http://schemas.google.com/g/2005#thumbnail" width="31" height="23" src="http://4.bp.blogspot.com/_vQ0G0XnGsvA/S27T88R4woI/AAAAAAAAAG8/Vo28r74EWBk/S220/ddos.gif" /></author><generator version="7.00" uri="http://www.blogger.com">Blogger</generator><openSearch:totalResults>36</openSearch:totalResults><openSearch:startIndex>1</openSearch:startIndex><openSearch:itemsPerPage>25</openSearch:itemsPerPage><atom10:link xmlns:atom10="http://www.w3.org/2005/Atom" rel="self" type="application/atom+xml" href="http://feeds.feedburner.com/blogspot/MVzR" /><feedburner:info uri="blogspot/mvzr" /><atom10:link xmlns:atom10="http://www.w3.org/2005/Atom" rel="hub" href="http://pubsubhubbub.appspot.com/" /><feedburner:browserFriendly></feedburner:browserFriendly><entry gd:etag="W/&quot;CE8ESH87fCp7ImA9WhdbEEw.&quot;"><id>tag:blogger.com,1999:blog-1471177219230458745.post-2659976908572715676</id><published>2011-10-08T00:08:00.001+05:30</published><updated>2011-10-08T00:10:09.104+05:30</updated><app:edited xmlns:app="http://www.w3.org/2007/app">2011-10-08T00:10:09.104+05:30</app:edited><category scheme="http://www.blogger.com/atom/ns#" term="Video" /><category scheme="http://www.blogger.com/atom/ns#" term="Penetration Testing" /><category scheme="http://www.blogger.com/atom/ns#" term="How to use" /><title>Penetration Testing</title><content type="html">&lt;div dir="ltr" style="text-align: left;" trbidi="on"&gt;
&lt;br /&gt;
Hello all,&lt;br /&gt;
&amp;nbsp;&amp;nbsp; This video is an example of performing manual penetration testing on a network.&lt;br /&gt;
&lt;br /&gt;&lt;div class="separator" style="clear: both; text-align: center;"&gt;
&lt;object width="320" height="266" class="BLOGGER-youtube-video" classid="clsid:D27CDB6E-AE6D-11cf-96B8-444553540000" codebase="http://download.macromedia.com/pub/shockwave/cabs/flash/swflash.cab#version=6,0,40,0" data-thumbnail-src="http://i.ytimg.com/vi/LXI3uTAV4Rk/0.jpg"&gt;&lt;param name="movie" value="http://www.youtube.com/v/LXI3uTAV4Rk?version=3&amp;f=user_uploads&amp;c=google-webdrive-0&amp;app=youtube_gdata" /&gt;
&lt;param name="bgcolor" value="#FFFFFF" /&gt;
&lt;embed width="320" height="266"  src="http://www.youtube.com/v/LXI3uTAV4Rk?version=3&amp;f=user_uploads&amp;c=google-webdrive-0&amp;app=youtube_gdata" type="application/x-shockwave-flash"&gt;&lt;/embed&gt;&lt;/object&gt;&lt;/div&gt;
&lt;/div&gt;
&lt;div class="blogger-post-footer"&gt;http://feeds.feedburner.com/blogspot/MVzR&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/1471177219230458745-2659976908572715676?l=fact-in-hack.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel="replies" type="application/atom+xml" href="http://fact-in-hack.blogspot.com/feeds/2659976908572715676/comments/default" title="Post Comments" /><link rel="replies" type="text/html" href="http://fact-in-hack.blogspot.com/2011/10/penetration-testing.html#comment-form" title="0 Comments" /><link rel="edit" type="application/atom+xml" href="http://www.blogger.com/feeds/1471177219230458745/posts/default/2659976908572715676?v=2" /><link rel="self" type="application/atom+xml" href="http://www.blogger.com/feeds/1471177219230458745/posts/default/2659976908572715676?v=2" /><link rel="alternate" type="text/html" href="http://fact-in-hack.blogspot.com/2011/10/penetration-testing.html" title="Penetration Testing" /><author><name>RANGER</name><uri>http://www.blogger.com/profile/06036199197859149872</uri><email>noreply@blogger.com</email><gd:image rel="http://schemas.google.com/g/2005#thumbnail" width="31" height="23" src="http://4.bp.blogspot.com/_vQ0G0XnGsvA/S27T88R4woI/AAAAAAAAAG8/Vo28r74EWBk/S220/ddos.gif" /></author><thr:total>0</thr:total></entry><entry gd:etag="W/&quot;CEYNQHc6cCp7ImA9WhdQFUU.&quot;"><id>tag:blogger.com,1999:blog-1471177219230458745.post-8824922898817379522</id><published>2011-07-16T01:22:00.003+05:30</published><updated>2011-08-17T17:26:31.918+05:30</updated><app:edited xmlns:app="http://www.w3.org/2007/app">2011-08-17T17:26:31.918+05:30</app:edited><category scheme="http://www.blogger.com/atom/ns#" term="Posts on Facebook" /><category scheme="http://www.blogger.com/atom/ns#" term="Awareness" /><title>Facebook login security</title><content type="html">&lt;div dir="ltr" style="text-align: left;" trbidi="on"&gt;
Hello,

I was just going through what improvement have our Email providers and social networking sites had done in recent past.

I first looked into Facebook which is the most happening social networking site in the world. I felt happy when they brought some methods to stop hackers logging into someones account even though you have their login details. This works by the Geo IP location, say If I had logged into the account from USA today and I have been using this profile  from Australia for the past 3 months, I will be challenged with the new security measure introduced my Facebook.Below is the step by step procedure of this process.&lt;br /&gt;
&lt;br /&gt;
Step 1: type the hacked username and password as normal, but you will get the following mesage as shown in the picture. Click continue.
&lt;br /&gt;
&lt;div class="separator" style="clear: both; text-align: center;"&gt;
&lt;a href="http://2.bp.blogspot.com/-LmJycU5FNDE/TiCHO4MondI/AAAAAAAAAUY/wBr_9YPlC1Y/s1600/step1.JPG" imageanchor="1" style="margin-left: 1em; margin-right: 1em;"&gt;&lt;img border="0" height="361" src="http://2.bp.blogspot.com/-LmJycU5FNDE/TiCHO4MondI/AAAAAAAAAUY/wBr_9YPlC1Y/s640/step1.JPG" width="640" /&gt;&lt;/a&gt;&lt;/div&gt;
Step 2; Type the text shown in captcha as shown below&lt;br /&gt;
&lt;div class="separator" style="clear: both; text-align: center;"&gt;
&lt;a href="http://4.bp.blogspot.com/-7ws5jhBySJg/TiCIHlYXQnI/AAAAAAAAAUg/yzF8M9yg6mg/s1600/frm00073.bmp" imageanchor="1" style="margin-left: 1em; margin-right: 1em;"&gt;&lt;img border="0" height="394" src="http://4.bp.blogspot.com/-7ws5jhBySJg/TiCIHlYXQnI/AAAAAAAAAUg/yzF8M9yg6mg/s640/frm00073.bmp" width="640" /&gt;&lt;/a&gt;&lt;/div&gt;
Step 3:you can see the tree option to prove your the owner of the account.

&lt;br /&gt;
&lt;div class="separator" style="clear: both; text-align: center;"&gt;
&lt;a href="http://1.bp.blogspot.com/-EsnIOsyxOEo/TiCI2oUMgSI/AAAAAAAAAUo/tv-HgChlUNg/s1600/frm00074.bmp" imageanchor="1" style="margin-left: 1em; margin-right: 1em;"&gt;&lt;img border="0" height="394" src="http://1.bp.blogspot.com/-EsnIOsyxOEo/TiCI2oUMgSI/AAAAAAAAAUo/tv-HgChlUNg/s640/frm00074.bmp" width="640" /&gt;&lt;/a&gt;&lt;/div&gt;
Step 4: Here you need to select any one option but unfortunately all three options have some drawbacks.&lt;br /&gt;
&lt;br /&gt;
option 1: "Identify photos of friends"&lt;br /&gt;
The way I tried is, simply doing some social engineering or in simple words studing the profile of the account you are trying to hack.
&lt;br /&gt;
&lt;div class="separator" style="clear: both; text-align: center;"&gt;
&lt;a href="http://2.bp.blogspot.com/-VfSkQwQZkrE/TiCNSWnyd2I/AAAAAAAAAUw/T_qFF4Kh0ms/s1600/frm00075.bmp" imageanchor="1" style="margin-left: 1em; margin-right: 1em;"&gt;&lt;img border="0" height="394" src="http://2.bp.blogspot.com/-VfSkQwQZkrE/TiCNSWnyd2I/AAAAAAAAAUw/T_qFF4Kh0ms/s640/frm00075.bmp" width="640" /&gt;&lt;/a&gt;&lt;/div&gt;
&lt;b&gt;All I did is, made a search on my Facebook account for the email which I am trying to hack. That will bring back the profile holder of that mail id, then yu just need to go to his friends list and start to search for the name that has been given as the option 70 % of the user has the habit of using their picture as the profile picture so you can straight away compare the picture on the option and the profile picture of the person you are looking for if both matches you can select that name and move on to the next picture. If you identify 5 person on the 7 slides you will get into the account.

&lt;/b&gt;&lt;br /&gt;
&lt;div class="separator" style="clear: both; text-align: center;"&gt;
&lt;a href="http://4.bp.blogspot.com/-Bd9lpZcmkvQ/TiCPaM-d8pI/AAAAAAAAAU4/iAE-fShsGzg/s1600/step4.JPG" imageanchor="1" style="margin-left: 1em; margin-right: 1em;"&gt;&lt;img border="0" height="376" src="http://4.bp.blogspot.com/-Bd9lpZcmkvQ/TiCPaM-d8pI/AAAAAAAAAU4/iAE-fShsGzg/s640/step4.JPG" width="640" /&gt;&lt;/a&gt;&lt;/div&gt;
This method can be done by anyone and if the account you are trying to access is your friend it is much easier, you can pass through this security test.&lt;br /&gt;
&lt;br /&gt;
Option 2: "Answer the security question"&lt;br /&gt;
&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Again it more about profiling the individule and we can make out very easily.&lt;br /&gt;
&lt;br /&gt;
.

Option 3:" Use your mobile phone"&lt;br /&gt;
&lt;br /&gt;
&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; .

This is something like what gmail has, since they realized the loophole in that they had now went to two step protection which is safer at the moment. We will discuss about that next time.

Let me give you a scenario, if you are sharing your house and you had left your mobile at the couch and you went to get some coffee, person next to you can easily   go for this option and get the access code and reset your password by the time you come back.&lt;br /&gt;
&lt;br /&gt;
&lt;b&gt;Remember most of the time the person who want to hack you account is the person you know well. I also suggest people not to use your photo as the profile picture and change your account settings so your wall and photos are not visible to everyone.

So I still think Facebook should improve their security.
What do you guys think about this?? 



&lt;/b&gt;&lt;/div&gt;&lt;div class="blogger-post-footer"&gt;http://feeds.feedburner.com/blogspot/MVzR&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/1471177219230458745-8824922898817379522?l=fact-in-hack.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel="replies" type="application/atom+xml" href="http://fact-in-hack.blogspot.com/feeds/8824922898817379522/comments/default" title="Post Comments" /><link rel="replies" type="text/html" href="http://fact-in-hack.blogspot.com/2011/07/facebook-login-security.html#comment-form" title="0 Comments" /><link rel="edit" type="application/atom+xml" href="http://www.blogger.com/feeds/1471177219230458745/posts/default/8824922898817379522?v=2" /><link rel="self" type="application/atom+xml" href="http://www.blogger.com/feeds/1471177219230458745/posts/default/8824922898817379522?v=2" /><link rel="alternate" type="text/html" href="http://fact-in-hack.blogspot.com/2011/07/facebook-login-security.html" title="Facebook login security" /><author><name>RANGER</name><uri>http://www.blogger.com/profile/06036199197859149872</uri><email>noreply@blogger.com</email><gd:image rel="http://schemas.google.com/g/2005#thumbnail" width="31" height="23" src="http://4.bp.blogspot.com/_vQ0G0XnGsvA/S27T88R4woI/AAAAAAAAAG8/Vo28r74EWBk/S220/ddos.gif" /></author><media:thumbnail xmlns:media="http://search.yahoo.com/mrss/" url="http://2.bp.blogspot.com/-LmJycU5FNDE/TiCHO4MondI/AAAAAAAAAUY/wBr_9YPlC1Y/s72-c/step1.JPG" height="72" width="72" /><thr:total>0</thr:total></entry><entry gd:etag="W/&quot;CEUFSH0-eyp7ImA9WhdQFUU.&quot;"><id>tag:blogger.com,1999:blog-1471177219230458745.post-6167575444434242731</id><published>2011-06-05T13:39:00.000+05:30</published><updated>2011-08-17T17:26:59.353+05:30</updated><app:edited xmlns:app="http://www.w3.org/2007/app">2011-08-17T17:26:59.353+05:30</app:edited><category scheme="http://www.blogger.com/atom/ns#" term="Video" /><category scheme="http://www.blogger.com/atom/ns#" term="How to use" /><title>HOW TO CRACK THE HASH</title><content type="html">Hello friends,&lt;br /&gt;
&lt;br /&gt;
On my last post you would have seen how to hack the SAM file which will save your password in hashed form. I this video we will see how to crack those hash.&lt;br /&gt;
&lt;br /&gt;
&lt;object width="425" height="344"&gt;&lt;param name="movie" value="http://www.youtube.com/v/UJn5VgIoFDY?hl=en&amp;fs=1"&gt;&lt;/param&gt;&lt;param name="allowFullScreen" value="true"&gt;&lt;/param&gt;&lt;param name="allowscriptaccess" value="always"&gt;&lt;/param&gt;&lt;embed src="http://www.youtube.com/v/UJn5VgIoFDY?hl=en&amp;fs=1" type="application/x-shockwave-flash" allowscriptaccess="always" allowfullscreen="true" width="425" height="344"&gt;&lt;/embed&gt;&lt;/object&gt;&lt;div class="blogger-post-footer"&gt;http://feeds.feedburner.com/blogspot/MVzR&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/1471177219230458745-6167575444434242731?l=fact-in-hack.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel="replies" type="application/atom+xml" href="http://fact-in-hack.blogspot.com/feeds/6167575444434242731/comments/default" title="Post Comments" /><link rel="replies" type="text/html" href="http://fact-in-hack.blogspot.com/2011/06/how-to-crack-hash.html#comment-form" title="0 Comments" /><link rel="edit" type="application/atom+xml" href="http://www.blogger.com/feeds/1471177219230458745/posts/default/6167575444434242731?v=2" /><link rel="self" type="application/atom+xml" href="http://www.blogger.com/feeds/1471177219230458745/posts/default/6167575444434242731?v=2" /><link rel="alternate" type="text/html" href="http://fact-in-hack.blogspot.com/2011/06/how-to-crack-hash.html" title="HOW TO CRACK THE HASH" /><author><name>RANGER</name><uri>http://www.blogger.com/profile/06036199197859149872</uri><email>noreply@blogger.com</email><gd:image rel="http://schemas.google.com/g/2005#thumbnail" width="31" height="23" src="http://4.bp.blogspot.com/_vQ0G0XnGsvA/S27T88R4woI/AAAAAAAAAG8/Vo28r74EWBk/S220/ddos.gif" /></author><thr:total>0</thr:total></entry><entry gd:etag="W/&quot;CEUFSH0-fCp7ImA9WhdQFUU.&quot;"><id>tag:blogger.com,1999:blog-1471177219230458745.post-622378157114416018</id><published>2011-05-19T17:34:00.015+05:30</published><updated>2011-08-17T17:26:59.354+05:30</updated><app:edited xmlns:app="http://www.w3.org/2007/app">2011-08-17T17:26:59.354+05:30</app:edited><category scheme="http://www.blogger.com/atom/ns#" term="Video" /><category scheme="http://www.blogger.com/atom/ns#" term="How to use" /><title>HOW TO HACK ADMIN ACCOUNT FROM SAM FILE</title><content type="html">&lt;div dir="ltr" style="text-align: left;" trbidi="on"&gt;Hello all, today we will see how we can hack the SAM file which will contain all the system user password.&lt;br /&gt;
&lt;br /&gt;
I am going to explain with a real time example now, I had hacked into a Windows server but the account I got is guest account, so I need a account in that system which have admin rights so that I can penetrate into the network. &lt;br /&gt;
&lt;br /&gt;
Watch this video to know how to do this..&lt;br /&gt;
&lt;br /&gt;
&lt;object width="425" height="344"&gt;&lt;param name="movie" value="http://www.youtube.com/v/7npmKa93Tw0?hl=en&amp;fs=1"&gt;&lt;/param&gt;&lt;param name="allowFullScreen" value="true"&gt;&lt;/param&gt;&lt;param name="allowscriptaccess" value="always"&gt;&lt;/param&gt;&lt;embed src="http://www.youtube.com/v/7npmKa93Tw0?hl=en&amp;fs=1" type="application/x-shockwave-flash" allowscriptaccess="always" allowfullscreen="true" width="425" height="344"&gt;&lt;/embed&gt;&lt;/object&gt;&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
We will see how to crack those hash which we got using this tool in my next post.&lt;/div&gt;&lt;div class="blogger-post-footer"&gt;http://feeds.feedburner.com/blogspot/MVzR&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/1471177219230458745-622378157114416018?l=fact-in-hack.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel="replies" type="application/atom+xml" href="http://fact-in-hack.blogspot.com/feeds/622378157114416018/comments/default" title="Post Comments" /><link rel="replies" type="text/html" href="http://fact-in-hack.blogspot.com/2011/05/how-to-hack-admin-account-from-sam-file.html#comment-form" title="0 Comments" /><link rel="edit" type="application/atom+xml" href="http://www.blogger.com/feeds/1471177219230458745/posts/default/622378157114416018?v=2" /><link rel="self" type="application/atom+xml" href="http://www.blogger.com/feeds/1471177219230458745/posts/default/622378157114416018?v=2" /><link rel="alternate" type="text/html" href="http://fact-in-hack.blogspot.com/2011/05/how-to-hack-admin-account-from-sam-file.html" title="HOW TO HACK ADMIN ACCOUNT FROM SAM FILE" /><author><name>RANGER</name><uri>http://www.blogger.com/profile/06036199197859149872</uri><email>noreply@blogger.com</email><gd:image rel="http://schemas.google.com/g/2005#thumbnail" width="31" height="23" src="http://4.bp.blogspot.com/_vQ0G0XnGsvA/S27T88R4woI/AAAAAAAAAG8/Vo28r74EWBk/S220/ddos.gif" /></author><thr:total>0</thr:total></entry><entry gd:etag="W/&quot;CEYDQ387eip7ImA9WhdQFUU.&quot;"><id>tag:blogger.com,1999:blog-1471177219230458745.post-2283804627779685339</id><published>2011-05-11T14:43:00.003+05:30</published><updated>2011-08-17T17:26:12.102+05:30</updated><app:edited xmlns:app="http://www.w3.org/2007/app">2011-08-17T17:26:12.102+05:30</app:edited><category scheme="http://www.blogger.com/atom/ns#" term="How to use" /><title>BACKTRACK 5 DOWNLOAD</title><content type="html">&lt;div dir="ltr" style="text-align: left;" trbidi="on"&gt;Hello friends ,&lt;br /&gt;
&lt;br /&gt;
Offensive security has released the most awaiting &lt;b&gt;Backtrack 5&lt;/b&gt; on 10th May 2011.&lt;br /&gt;
I had also left the link for you guys to &lt;b&gt;download backtrack 5&lt;/b&gt; through my blog please go to TOOLS page or simply click here&lt;a href="http://fact-in-hack.blogspot.com/p/videos.html"&gt; TOOLS&lt;/a&gt;. The official website is becoming slow so I thought you can do it from here.&lt;br /&gt;
&lt;br /&gt;
I will play with it and will come back to you with the useful tools in it and how good it is from BT 4 r2.&lt;br /&gt;
Keep visiting my blog for more. On my next post you will see how to hack a Hyper V web server.&lt;br /&gt;
&lt;br /&gt;
&lt;div class="separator" style="clear: both; text-align: center;"&gt;&lt;a href="http://1.bp.blogspot.com/-DOcwDSm4Fmw/TcpylJc4yyI/AAAAAAAAATk/9ElyAqUQaFM/s1600/BT+5-2011-05-11-12-08-31.png" imageanchor="1" style="clear: left; float: left; margin-bottom: 1em; margin-right: 1em;"&gt;&lt;img border="0" height="300" src="http://1.bp.blogspot.com/-DOcwDSm4Fmw/TcpylJc4yyI/AAAAAAAAATk/9ElyAqUQaFM/s400/BT+5-2011-05-11-12-08-31.png" width="400" /&gt;&lt;/a&gt;&lt;/div&gt;&lt;span style="font-size: large;"&gt;&lt;a href="https://rapidshare.com/files/461866190/BT5-KDE-32.torrent"&gt;Backtrack 5 iso download&lt;/a&gt;&lt;/span&gt;&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;/div&gt;&lt;div class="blogger-post-footer"&gt;http://feeds.feedburner.com/blogspot/MVzR&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/1471177219230458745-2283804627779685339?l=fact-in-hack.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel="replies" type="application/atom+xml" href="http://fact-in-hack.blogspot.com/feeds/2283804627779685339/comments/default" title="Post Comments" /><link rel="replies" type="text/html" href="http://fact-in-hack.blogspot.com/2011/05/backtrack-5.html#comment-form" title="1 Comments" /><link rel="edit" type="application/atom+xml" href="http://www.blogger.com/feeds/1471177219230458745/posts/default/2283804627779685339?v=2" /><link rel="self" type="application/atom+xml" href="http://www.blogger.com/feeds/1471177219230458745/posts/default/2283804627779685339?v=2" /><link rel="alternate" type="text/html" href="http://fact-in-hack.blogspot.com/2011/05/backtrack-5.html" title="BACKTRACK 5 DOWNLOAD" /><author><name>RANGER</name><uri>http://www.blogger.com/profile/06036199197859149872</uri><email>noreply@blogger.com</email><gd:image rel="http://schemas.google.com/g/2005#thumbnail" width="31" height="23" src="http://4.bp.blogspot.com/_vQ0G0XnGsvA/S27T88R4woI/AAAAAAAAAG8/Vo28r74EWBk/S220/ddos.gif" /></author><media:thumbnail xmlns:media="http://search.yahoo.com/mrss/" url="http://1.bp.blogspot.com/-DOcwDSm4Fmw/TcpylJc4yyI/AAAAAAAAATk/9ElyAqUQaFM/s72-c/BT+5-2011-05-11-12-08-31.png" height="72" width="72" /><thr:total>1</thr:total></entry><entry gd:etag="W/&quot;D08BQHc4eSp7ImA9Wx9bEEo.&quot;"><id>tag:blogger.com,1999:blog-1471177219230458745.post-2359894793998199308</id><published>2011-01-23T02:02:00.006+05:30</published><updated>2011-02-19T06:07:31.931+05:30</updated><app:edited xmlns:app="http://www.w3.org/2007/app">2011-02-19T06:07:31.931+05:30</app:edited><category scheme="http://www.blogger.com/atom/ns#" term="Video" /><category scheme="http://www.blogger.com/atom/ns#" term="Awareness" /><title>HACKING YOUR COMPUTER IS, HACKING  INTO YOUR  LIFE!</title><content type="html">&lt;div dir="ltr" style="text-align: left;" trbidi="on"&gt;HI guys,&lt;br /&gt;
&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&lt;span style="font-size: small;"&gt;&lt;b&gt; This time I am going to given an scenario where an hacker had hacked your system and how he can turn your life into a real shit!&lt;a name='more'&gt;&lt;/a&gt;&lt;/b&gt;&lt;/span&gt;&lt;br /&gt;
&lt;br /&gt;
&lt;span style="font-size: small;"&gt;&lt;b&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; It doesn't matter what OS you have or what anti-virus you run, you will be owned by the hacker if you don't have some commonsense. &lt;/b&gt;&lt;/span&gt;&lt;br /&gt;
&lt;span style="font-size: small;"&gt;&lt;b&gt;&lt;br /&gt;
&lt;/b&gt;&lt;/span&gt;&lt;br /&gt;
&lt;span style="font-size: small;"&gt;&lt;b&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; You may think nothing major can happen to my life at most you may loss all your data in you pc but it doesn't stops there. No one need you 100GB of data. A real hacker, all they need is a machine which can work for him any day, any time at any part of the world.&lt;/b&gt;&lt;/span&gt;&lt;br /&gt;
&lt;span style="font-size: small;"&gt;&lt;b&gt;&lt;br /&gt;
&lt;/b&gt;&lt;/span&gt;&lt;br /&gt;
&lt;span style="font-size: small;"&gt;&lt;b&gt;There are lot of vulnerable on most of the commonly used application on your day to day life like Adobe reader, Win amp,Quicklime, Itune, MS office or your browser . One example I Am going to talk about is your browser, you can't avoid this when you are using internet.&lt;/b&gt;&lt;/span&gt;&lt;br /&gt;
&lt;span style="font-size: small;"&gt;&lt;b&gt;&lt;br /&gt;
&lt;/b&gt;&lt;/span&gt;&lt;br /&gt;
&lt;span style="font-size: small;"&gt;&lt;b&gt;Ok how does this going to affect my life?&lt;/b&gt;&lt;/span&gt;&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;span style="font-size: small;"&gt;&lt;b&gt;&lt;br /&gt;
&lt;/b&gt;&lt;/span&gt;&lt;br /&gt;
&lt;span style="font-size: small;"&gt;&lt;b&gt;Here is the scenario, you have connected to internet and your system had fell into the hands of an hacker. &lt;/b&gt;&lt;/span&gt;&lt;br /&gt;
&lt;span style="font-size: small;"&gt;&lt;b&gt;.&lt;/b&gt;&lt;/span&gt;&lt;br /&gt;
&lt;span style="font-size: small;"&gt;&lt;b&gt;Do you believe me if I say an hacker will come to know what you and your family members doing in the room or what you speaking with them in case if it is a home PC or he can come to know whats going on in an office environment without your knowledge.&lt;/b&gt;&lt;/span&gt;&lt;br /&gt;
&lt;span style="font-size: small;"&gt;&lt;b&gt;&lt;br /&gt;
&lt;/b&gt;&lt;/span&gt;&lt;br /&gt;
&lt;span style="font-size: small;"&gt;&lt;b&gt;OK how many of them use Skype or any messenger?? 9/10 people so you should be having a mic and a cam connected to your system almost every time it is connected to your pc in case of laptop it is with you where ever u carry your laptop..&lt;/b&gt;&lt;/span&gt;&lt;br /&gt;
&lt;span style="font-size: small;"&gt;&lt;b&gt;&lt;br /&gt;
&lt;/b&gt;&lt;/span&gt;&lt;br /&gt;
&lt;span style="font-size: small;"&gt;&lt;b&gt;Yes an compromised PC can be used even to spy on your location. The attacker can access your web cam and also your microphone and he can save it remotely. &lt;/b&gt;&lt;/span&gt;&lt;br /&gt;
&lt;span style="font-size: small;"&gt;&lt;b&gt;&lt;br /&gt;
&lt;/b&gt;&lt;/span&gt;&lt;br /&gt;
&lt;span style="font-size: small;"&gt;&lt;b&gt;Imagine that you are speaking with you partner about a banking detail or anything, the attacker will hear and he can later use the information that you spoken. He can even click an snap of you and post it on somewhere. I can create a fake Id card, driving license. &lt;/b&gt;&lt;/span&gt;&lt;br /&gt;
&lt;span style="font-size: small;"&gt;&lt;b&gt;&lt;br /&gt;
&lt;/b&gt;&lt;/span&gt;&lt;br /&gt;
&lt;span style="font-size: small;"&gt;&lt;b&gt;This type of hacking will be more serious if the hacker is near your house or sharing the house or internet. If&amp;nbsp; I need to steal your bike from your house I can listen to the conversation you had and find a time when no one is at the house.&lt;/b&gt;&lt;/span&gt;&lt;br /&gt;
&lt;span style="font-size: small;"&gt;&lt;b&gt;&lt;br /&gt;
&lt;/b&gt;&lt;/span&gt;&lt;br /&gt;
&lt;span style="font-size: small;"&gt;&lt;b&gt;You will not have any suspicious thought at all, you believe my PC or laptop is in logoff mode but you still didn't shutdown ,so the remote hacker can connect and still do what ever he wants. As I said before, they all need a slave to work from them,may not you data, so they will install some program on your system which will try to help him to hack many more system from there. Even if some one finds that his system is been attacked the police is going to question you not the real hacker.&lt;/b&gt;&lt;/span&gt;&lt;br /&gt;
&lt;span style="font-size: small;"&gt;&lt;b&gt;&lt;br /&gt;
&lt;/b&gt;&lt;/span&gt;&lt;br /&gt;
&lt;span style="font-size: small;"&gt;&lt;b&gt;Countermeasures:&lt;/b&gt;&lt;/span&gt;&lt;br /&gt;
&lt;ul style="text-align: left;"&gt;&lt;li&gt;&lt;span style="font-size: small;"&gt;&lt;b&gt;You have to disconnect your web cam and microphone from the jack when you are not using it.&lt;/b&gt;&lt;/span&gt;&lt;/li&gt;
&lt;li&gt;&lt;span style="font-size: small;"&gt;&lt;b&gt;Turn you internet router or modem when your not in need of it.&lt;/b&gt;&lt;/span&gt;&lt;/li&gt;
&lt;li&gt;&lt;span style="font-size: small;"&gt;&lt;b&gt;I would say it is best to turn your PC.&lt;/b&gt;&lt;/span&gt;&lt;/li&gt;
&lt;li&gt;&lt;span style="font-size: small;"&gt;&lt;b&gt;Always update your OS and the antivirus it will help you at least when they had found the threat signature.&lt;/b&gt;&lt;/span&gt;&lt;/li&gt;
&lt;li&gt;&lt;span style="font-size: small;"&gt;&lt;b&gt;Keep checking you log for any user login, you can do it by looking into the event viewer. If you find someone had logged in you can trace from which user name they had dialed in.&lt;/b&gt;&lt;/span&gt;&lt;/li&gt;
&lt;li&gt;&lt;span style="font-size: small;"&gt;&lt;b&gt; Hacker mostly use the same account detail that you have, so it is worth changing the password every month at least every 2 months.&lt;/b&gt;&lt;/span&gt;&lt;/li&gt;
&lt;li&gt;&lt;span style="font-size: small;"&gt;&lt;b&gt;Check your cpu usage and process running on your system. If you find some suspicious process running on your system please end the task.&amp;nbsp; &lt;/b&gt;&lt;/span&gt;&lt;/li&gt;
&lt;/ul&gt;&lt;div class="separator" style="clear: both; text-align: center;"&gt;&lt;object class="BLOGGER-youtube-video" classid="clsid:D27CDB6E-AE6D-11cf-96B8-444553540000" codebase="http://download.macromedia.com/pub/shockwave/cabs/flash/swflash.cab#version=6,0,40,0" data-thumbnail-src="http://i.ytimg.com/vi/sOECLa-Nmwk/0.jpg" height="266" width="320"&gt;&lt;param name="movie" value="http://www.youtube.com/v/sOECLa-Nmwk?f=user_uploads&amp;c=google-webdrive-0&amp;app=youtube_gdata" /&gt;&lt;param name="bgcolor" value="#FFFFFF" /&gt;&lt;embed width="320" height="266" src="http://www.youtube.com/v/sOECLa-Nmwk?f=user_uploads&amp;c=google-webdrive-0&amp;app=youtube_gdata" type="application/x-shockwave-flash"&gt;&lt;/embed&gt;&lt;/object&gt;&lt;/div&gt;&lt;span style="font-size: small;"&gt;&lt;b&gt;&lt;br /&gt;
&lt;/b&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="blogger-post-footer"&gt;http://feeds.feedburner.com/blogspot/MVzR&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/1471177219230458745-2359894793998199308?l=fact-in-hack.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel="replies" type="application/atom+xml" href="http://fact-in-hack.blogspot.com/feeds/2359894793998199308/comments/default" title="Post Comments" /><link rel="replies" type="text/html" href="http://fact-in-hack.blogspot.com/2011/01/hacking-your-computer-is-hacking-into.html#comment-form" title="0 Comments" /><link rel="edit" type="application/atom+xml" href="http://www.blogger.com/feeds/1471177219230458745/posts/default/2359894793998199308?v=2" /><link rel="self" type="application/atom+xml" href="http://www.blogger.com/feeds/1471177219230458745/posts/default/2359894793998199308?v=2" /><link rel="alternate" type="text/html" href="http://fact-in-hack.blogspot.com/2011/01/hacking-your-computer-is-hacking-into.html" title="HACKING YOUR COMPUTER IS, HACKING  INTO YOUR  LIFE!" /><author><name>RANGER</name><uri>http://www.blogger.com/profile/06036199197859149872</uri><email>noreply@blogger.com</email><gd:image rel="http://schemas.google.com/g/2005#thumbnail" width="31" height="23" src="http://4.bp.blogspot.com/_vQ0G0XnGsvA/S27T88R4woI/AAAAAAAAAG8/Vo28r74EWBk/S220/ddos.gif" /></author><thr:total>0</thr:total></entry><entry gd:etag="W/&quot;A04DQHo4eSp7ImA9Wx9WF0g.&quot;"><id>tag:blogger.com,1999:blog-1471177219230458745.post-4163977262241326948</id><published>2010-12-22T06:02:00.009+05:30</published><updated>2011-01-23T10:49:31.431+05:30</updated><app:edited xmlns:app="http://www.w3.org/2007/app">2011-01-23T10:49:31.431+05:30</app:edited><category scheme="http://www.blogger.com/atom/ns#" term="Video" /><category scheme="http://www.blogger.com/atom/ns#" term="Awareness" /><title>Web Vulnerability Testing</title><content type="html">Hello friends,&lt;br /&gt;
&lt;br /&gt;
This is the time to revel the Vulnerability on one of the website. This site had &lt;b&gt;Xss vulnerability&lt;/b&gt;  and I was able to access the admin page. &lt;br /&gt;
&lt;br /&gt;
This video is to bring awareness to the web developers. &lt;br /&gt;
&lt;br /&gt;
&lt;i&gt;No one in this world is master, so always be a student to reach high.&lt;/i&gt;&lt;br /&gt;
&lt;object id="vbbplayer" width="425" height="344" &gt;&lt;param name="movie" value="http://videobb.com/player/player.swf?setting=aHR0cDovL3ZpZGVvYmIuY29tL3BsYXllcl9jb250cm9sL3NldHRpbmdzLnBocD92PWc2SUJlWVozZnNycyZlbT1UUlVF" &gt;&lt;/param&gt;&lt;param name="allowFullScreen" value="true" &gt;&lt;/param&gt;&lt;param name="allowscriptaccess" value="always"&gt;&lt;/param&gt;&lt;embed src="http://videobb.com/player/player.swf?setting=aHR0cDovL3ZpZGVvYmIuY29tL3BsYXllcl9jb250cm9sL3NldHRpbmdzLnBocD92PWc2SUJlWVozZnNycyZlbT1UUlVF&amp;em=TRUE" type="application/x-shockwave-flash" allowscriptaccess="always" allowfullscreen="true" width="425" height="344"&gt;&lt;/embed&gt;&lt;/object&gt;&lt;div class="blogger-post-footer"&gt;http://feeds.feedburner.com/blogspot/MVzR&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/1471177219230458745-4163977262241326948?l=fact-in-hack.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel="replies" type="application/atom+xml" href="http://fact-in-hack.blogspot.com/feeds/4163977262241326948/comments/default" title="Post Comments" /><link rel="replies" type="text/html" href="http://fact-in-hack.blogspot.com/2010/12/web-vulnerability-testing.html#comment-form" title="0 Comments" /><link rel="edit" type="application/atom+xml" href="http://www.blogger.com/feeds/1471177219230458745/posts/default/4163977262241326948?v=2" /><link rel="self" type="application/atom+xml" href="http://www.blogger.com/feeds/1471177219230458745/posts/default/4163977262241326948?v=2" /><link rel="alternate" type="text/html" href="http://fact-in-hack.blogspot.com/2010/12/web-vulnerability-testing.html" title="Web Vulnerability Testing" /><author><name>RANGER</name><uri>http://www.blogger.com/profile/06036199197859149872</uri><email>noreply@blogger.com</email><gd:image rel="http://schemas.google.com/g/2005#thumbnail" width="31" height="23" src="http://4.bp.blogspot.com/_vQ0G0XnGsvA/S27T88R4woI/AAAAAAAAAG8/Vo28r74EWBk/S220/ddos.gif" /></author><thr:total>0</thr:total></entry><entry gd:etag="W/&quot;DkABRHk7eCp7ImA9Wx9RFk4.&quot;"><id>tag:blogger.com,1999:blog-1471177219230458745.post-1062034215371355402</id><published>2010-12-18T05:59:00.002+05:30</published><updated>2010-12-18T06:42:35.700+05:30</updated><app:edited xmlns:app="http://www.w3.org/2007/app">2010-12-18T06:42:35.700+05:30</app:edited><category scheme="http://www.blogger.com/atom/ns#" term="Video" /><category scheme="http://www.blogger.com/atom/ns#" term="Awareness" /><title>Firewall Hacked</title><content type="html">Hello friends,&lt;br /&gt;
&lt;br /&gt;
This video is just to show how the firewall/ IDS works and the feature that Fortigate's IDS has in it. I couldn't show much on this video since this is an hacked device, so I can't do much changes to it. Please don't try to hack this device since the admin has been informed about this and they have changed the policies now.&lt;br /&gt;
&lt;br /&gt;
&lt;b&gt;OUT LOOK:&lt;/b&gt;&lt;br /&gt;
&lt;br /&gt;
&lt;object id="vbbplayer" width="425" height="344" &gt;&lt;param name="movie" value="http://videobb.com/player/player.swf?setting=aHR0cDovL3ZpZGVvYmIuY29tL3BsYXllcl9jb250cm9sL3NldHRpbmdzLnBocD92PVFobWR2SGJtc1ZTdyZlbT1UUlVF" &gt;&lt;/param&gt;&lt;param name="allowFullScreen" value="true" &gt;&lt;/param&gt;&lt;param name="allowscriptaccess" value="always"&gt;&lt;/param&gt;&lt;embed src="http://videobb.com/player/player.swf?setting=aHR0cDovL3ZpZGVvYmIuY29tL3BsYXllcl9jb250cm9sL3NldHRpbmdzLnBocD92PVFobWR2SGJtc1ZTdyZlbT1UUlVF&amp;em=TRUE" type="application/x-shockwave-flash" allowscriptaccess="always" allowfullscreen="true" width="425" height="344"&gt;&lt;/embed&gt;&lt;/object&gt;&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;b&gt;DETAIL:&lt;/b&gt;&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;object id="vbbplayer" width="425" height="344" &gt;&lt;param name="movie" value="http://videobb.com/player/player.swf?setting=aHR0cDovL3ZpZGVvYmIuY29tL3BsYXllcl9jb250cm9sL3NldHRpbmdzLnBocD92PTZQUVRaMm9vbUhLMCZlbT1UUlVF" &gt;&lt;/param&gt;&lt;param name="allowFullScreen" value="true" &gt;&lt;/param&gt;&lt;param name="allowscriptaccess" value="always"&gt;&lt;/param&gt;&lt;embed src="http://videobb.com/player/player.swf?setting=aHR0cDovL3ZpZGVvYmIuY29tL3BsYXllcl9jb250cm9sL3NldHRpbmdzLnBocD92PTZQUVRaMm9vbUhLMCZlbT1UUlVF&amp;em=TRUE" type="application/x-shockwave-flash" allowscriptaccess="always" allowfullscreen="true" width="425" height="344"&gt;&lt;/embed&gt;&lt;/object&gt;&lt;div class="blogger-post-footer"&gt;http://feeds.feedburner.com/blogspot/MVzR&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/1471177219230458745-1062034215371355402?l=fact-in-hack.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel="replies" type="application/atom+xml" href="http://fact-in-hack.blogspot.com/feeds/1062034215371355402/comments/default" title="Post Comments" /><link rel="replies" type="text/html" href="http://fact-in-hack.blogspot.com/2010/12/firewall-hacked.html#comment-form" title="0 Comments" /><link rel="edit" type="application/atom+xml" href="http://www.blogger.com/feeds/1471177219230458745/posts/default/1062034215371355402?v=2" /><link rel="self" type="application/atom+xml" href="http://www.blogger.com/feeds/1471177219230458745/posts/default/1062034215371355402?v=2" /><link rel="alternate" type="text/html" href="http://fact-in-hack.blogspot.com/2010/12/firewall-hacked.html" title="Firewall Hacked" /><author><name>RANGER</name><uri>http://www.blogger.com/profile/06036199197859149872</uri><email>noreply@blogger.com</email><gd:image rel="http://schemas.google.com/g/2005#thumbnail" width="31" height="23" src="http://4.bp.blogspot.com/_vQ0G0XnGsvA/S27T88R4woI/AAAAAAAAAG8/Vo28r74EWBk/S220/ddos.gif" /></author><thr:total>0</thr:total></entry><entry gd:etag="W/&quot;D08NRngyfip7ImA9Wx9bEEo.&quot;"><id>tag:blogger.com,1999:blog-1471177219230458745.post-4674465511658204313</id><published>2010-11-15T17:29:00.001+05:30</published><updated>2011-02-19T06:08:17.696+05:30</updated><app:edited xmlns:app="http://www.w3.org/2007/app">2011-02-19T06:08:17.696+05:30</app:edited><category scheme="http://www.blogger.com/atom/ns#" term="How to use" /><category scheme="http://www.blogger.com/atom/ns#" term="Awareness" /><title>LAN Hacking</title><content type="html">&lt;div dir="ltr" style="text-align: left;" trbidi="on"&gt;Hello everyone this time i am going to refresh about LAN security again, this time I am going to explain with one of the security tool called CAIN &amp;amp; ABEL.&lt;br /&gt;
&lt;a name='more'&gt;&lt;/a&gt; As a beginner I would suggest you to play around with two tools WIRESHARK and CAIN&amp;amp;ABEL.  I had done some videos where I had used these tools. &lt;br /&gt;
&lt;br /&gt;
Before I move on I would like to give a overview of this tool. CAIN &amp;amp; ABEL is a tool which allows us to easily  recover various kind of passwords which is dumped in the local system. This tool is supported only in windows platform. This can also be used for decryption of hashed keys. Other main feature of this tool is to, scan for live hosts. &lt;br /&gt;
&lt;br /&gt;
&lt;div class="separator" style="clear: both; text-align: center;"&gt;&lt;a href="http://1.bp.blogspot.com/_vQ0G0XnGsvA/TOEgdTsiJSI/AAAAAAAAAJE/9N-ytw2sHW0/s1600/testftp.JPG" imageanchor="1" style="margin-left: 1em; margin-right: 1em;"&gt;&lt;img border="0" height="200" src="http://1.bp.blogspot.com/_vQ0G0XnGsvA/TOEgdTsiJSI/AAAAAAAAAJE/9N-ytw2sHW0/s320/testftp.JPG" width="320" /&gt;&lt;/a&gt;&lt;/div&gt;This tool can also used for sniffing the data across the network, cracking encrypted passwords using Dictionary, Brute-Force and Cryptanalysis attacks. We can also record the VoIP conversations, recover wireless network keys, revealing password boxes. &lt;br /&gt;
&lt;br /&gt;
If you want to study about protocol then hangout this weekend with Wireshark. There are lot of manuals to work with Wireshark.&lt;/div&gt;&lt;div class="blogger-post-footer"&gt;http://feeds.feedburner.com/blogspot/MVzR&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/1471177219230458745-4674465511658204313?l=fact-in-hack.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel="replies" type="application/atom+xml" href="http://fact-in-hack.blogspot.com/feeds/4674465511658204313/comments/default" title="Post Comments" /><link rel="replies" type="text/html" href="http://fact-in-hack.blogspot.com/2010/11/lan-hacking.html#comment-form" title="0 Comments" /><link rel="edit" type="application/atom+xml" href="http://www.blogger.com/feeds/1471177219230458745/posts/default/4674465511658204313?v=2" /><link rel="self" type="application/atom+xml" href="http://www.blogger.com/feeds/1471177219230458745/posts/default/4674465511658204313?v=2" /><link rel="alternate" type="text/html" href="http://fact-in-hack.blogspot.com/2010/11/lan-hacking.html" title="LAN Hacking" /><author><name>RANGER</name><uri>http://www.blogger.com/profile/06036199197859149872</uri><email>noreply@blogger.com</email><gd:image rel="http://schemas.google.com/g/2005#thumbnail" width="31" height="23" src="http://4.bp.blogspot.com/_vQ0G0XnGsvA/S27T88R4woI/AAAAAAAAAG8/Vo28r74EWBk/S220/ddos.gif" /></author><media:thumbnail xmlns:media="http://search.yahoo.com/mrss/" url="http://1.bp.blogspot.com/_vQ0G0XnGsvA/TOEgdTsiJSI/AAAAAAAAAJE/9N-ytw2sHW0/s72-c/testftp.JPG" height="72" width="72" /><thr:total>0</thr:total></entry><entry gd:etag="W/&quot;D04GRn0_eSp7ImA9Wx9bEEo.&quot;"><id>tag:blogger.com,1999:blog-1471177219230458745.post-1018986360737316833</id><published>2010-10-19T03:01:00.014+05:30</published><updated>2011-02-19T06:08:47.341+05:30</updated><app:edited xmlns:app="http://www.w3.org/2007/app">2011-02-19T06:08:47.341+05:30</app:edited><category scheme="http://www.blogger.com/atom/ns#" term="Video" /><category scheme="http://www.blogger.com/atom/ns#" term="Awareness" /><title>VULNERABILITY  IN SHOPPING CART</title><content type="html">&lt;div dir="ltr" style="text-align: left;" trbidi="on"&gt;Hi guys this time I am here to show one of the issue with the web developing&amp;nbsp; vulnerability. I am going to show how one can play around with simple tool to enumerate a vulnerability in shopping cart...&lt;br /&gt;
&lt;a name='more'&gt;&lt;/a&gt; Most of you may know how the communication works between the server and browser. There are two main steps in communicating with the web server, those are GET&amp;nbsp; &amp;amp; POST. I am tampering the data before it reaches the webserver and I am getting back the request according to the request I made.&lt;br /&gt;
&lt;br /&gt;
&lt;object height="385" width="410"&gt;&lt;param name="movie" value="http://www.youtube.com/v/cwNcJ3Fi1qU?fs=1&amp;amp;hl=en_US"&gt;&lt;/param&gt;&lt;param name="allowFullScreen" value="true"&gt;&lt;/param&gt;&lt;param name="allowscriptaccess" value="always"&gt;&lt;/param&gt;&lt;embed src="http://www.youtube.com/v/cwNcJ3Fi1qU?fs=1&amp;amp;hl=en_US" type="application/x-shockwave-flash" allowscriptaccess="always" allowfullscreen="true" width="410" height="385"&gt;&lt;/embed&gt;&lt;/object&gt;&lt;br /&gt;
&lt;br /&gt;
We can simply prevent this by using encrypted value rather than the plain text. Web developers should also need to concentrate on the web security as they do for outlook of the page while designing a page.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
This is for educational purpose only...&lt;/div&gt;&lt;div class="blogger-post-footer"&gt;http://feeds.feedburner.com/blogspot/MVzR&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/1471177219230458745-1018986360737316833?l=fact-in-hack.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel="replies" type="application/atom+xml" href="http://fact-in-hack.blogspot.com/feeds/1018986360737316833/comments/default" title="Post Comments" /><link rel="replies" type="text/html" href="http://fact-in-hack.blogspot.com/2010/10/vulnerability-in-shopping-cart.html#comment-form" title="0 Comments" /><link rel="edit" type="application/atom+xml" href="http://www.blogger.com/feeds/1471177219230458745/posts/default/1018986360737316833?v=2" /><link rel="self" type="application/atom+xml" href="http://www.blogger.com/feeds/1471177219230458745/posts/default/1018986360737316833?v=2" /><link rel="alternate" type="text/html" href="http://fact-in-hack.blogspot.com/2010/10/vulnerability-in-shopping-cart.html" title="VULNERABILITY  IN SHOPPING CART" /><author><name>RANGER</name><uri>http://www.blogger.com/profile/06036199197859149872</uri><email>noreply@blogger.com</email><gd:image rel="http://schemas.google.com/g/2005#thumbnail" width="31" height="23" src="http://4.bp.blogspot.com/_vQ0G0XnGsvA/S27T88R4woI/AAAAAAAAAG8/Vo28r74EWBk/S220/ddos.gif" /></author><thr:total>0</thr:total></entry><entry gd:etag="W/&quot;D04CSHg9eCp7ImA9Wx9bEEo.&quot;"><id>tag:blogger.com,1999:blog-1471177219230458745.post-552114187848960374</id><published>2010-05-15T08:48:00.001+05:30</published><updated>2011-02-19T06:09:29.660+05:30</updated><app:edited xmlns:app="http://www.w3.org/2007/app">2011-02-19T06:09:29.660+05:30</app:edited><category scheme="http://www.blogger.com/atom/ns#" term="Posts on Gmail" /><category scheme="http://www.blogger.com/atom/ns#" term="Awareness" /><title>GMAIL GIVES WAY TO HACKERS</title><content type="html">&lt;div dir="ltr" style="text-align: left;" trbidi="on"&gt;&lt;span style="font-weight: bold;"&gt;All security measures will have loophole in it&lt;/span&gt;, to prove this we will see a case here.&lt;br /&gt;
Google had created many user application and gadgets for the benefit of user but these applications and features also turn back as a security threats. One such is 'Google hack'&lt;br /&gt;
&lt;a name='more'&gt;&lt;/a&gt; witch is nothing but using the popular search engine to get the unsecured cam in the internet by using the search codes like &lt;a href="http://www.google.com/search?q=inurl%3Aview%2FindexFrame.shtml"&gt;inurl:view/indexFrame.shtml&lt;/a&gt; and more queries like this we can also see a unprotected admin page, password file in a FTP server and many more. In my next topic we will see how this will lead to hack a router. Similarly now I came across with another security hole in a gadget in a GMAIL.&lt;br /&gt;
&lt;br /&gt;
If you login to your mail, after loading the page at the bottom you will find few details in small font like you see in this picture belo&lt;span style="text-decoration: underline;"&gt;w,&lt;br /&gt;
&lt;br /&gt;
&lt;/span&gt;&lt;a href="http://1.bp.blogspot.com/_jx77fJNTtTU/SoYUgFJ4RXI/AAAAAAAAAFA/qgOXYPqtivU/s1600-h/ip+foot.jpeg" onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}"&gt;&lt;img alt="" border="0" id="BLOGGER_PHOTO_ID_5370002147057878386" src="http://1.bp.blogspot.com/_jx77fJNTtTU/SoYUgFJ4RXI/AAAAAAAAAFA/qgOXYPqtivU/s400/ip+foot.jpeg" style="cursor: pointer; height: 131px; width: 404px;" /&gt;&lt;/a&gt;&lt;br /&gt;
&lt;span style="text-decoration: underline;"&gt;&lt;br /&gt;
&lt;/span&gt;&lt;br /&gt;
&lt;a href="http://4.bp.blogspot.com/_jx77fJNTtTU/SoYT4WEel1I/AAAAAAAAAE4/wqdodDhijCI/s1600-h/ativity+of+this+acc.jpeg" onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}"&gt;&lt;img alt="" border="0" id="BLOGGER_PHOTO_ID_5370001464403859282" src="http://4.bp.blogspot.com/_jx77fJNTtTU/SoYT4WEel1I/AAAAAAAAAE4/wqdodDhijCI/s400/ativity+of+this+acc.jpeg" style="cursor: pointer; height: 400px; width: 385px;" /&gt;&lt;/a&gt;&lt;br /&gt;
.&lt;br /&gt;
You will find a detail about your total capacity of the mail and the used space, next to that you will find a statement "LAST ACCOUNT ACTIVITY 1 HOUR IP: 111.111.111.111 WHICH IS YOUR PUBLIC IP WHICH YOU USED LAST TIME TO LOGIN and next to that you will find a link DETAIL here you can see the last 5 login sessions and ip address used and the type of service you have used to open the mail.&lt;br /&gt;
This service is given by gmail to know is some one had accessed your account or if you have opened the same account in any other device like mobile or in different browser we can close those sessions. Just imagine if some one shoulder sniff this detail or ur account is been compromised by a hacker he can come to know about the IP address if the last five session has been from same ip he will come to a conclusion that this ip should be your personal system's IP and if that user unfortunately uses the same username and password for his orkut he can sign in and he can get the personal information from his profile and use that for getting through your personal computer, most user use ther name or date of birth or even same password of the mail to their PC's login details, so this will be very easy for the hacker to get into the system remotely.&lt;br /&gt;
&lt;br /&gt;
If the hacker come to know your private ip address he can scan your system for the vulnerability and compromise your system.&lt;br /&gt;
&lt;br /&gt;
So be sure you are alone when you check your mail for at least still Google come to know about this threat.&lt;/div&gt;&lt;div class="blogger-post-footer"&gt;http://feeds.feedburner.com/blogspot/MVzR&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/1471177219230458745-552114187848960374?l=fact-in-hack.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel="replies" type="application/atom+xml" href="http://fact-in-hack.blogspot.com/feeds/552114187848960374/comments/default" title="Post Comments" /><link rel="replies" type="text/html" href="http://fact-in-hack.blogspot.com/2009/08/gmail-gives-way-to-hackers.html#comment-form" title="0 Comments" /><link rel="edit" type="application/atom+xml" href="http://www.blogger.com/feeds/1471177219230458745/posts/default/552114187848960374?v=2" /><link rel="self" type="application/atom+xml" href="http://www.blogger.com/feeds/1471177219230458745/posts/default/552114187848960374?v=2" /><link rel="alternate" type="text/html" href="http://fact-in-hack.blogspot.com/2009/08/gmail-gives-way-to-hackers.html" title="GMAIL GIVES WAY TO HACKERS" /><author><name>RANGER</name><uri>http://www.blogger.com/profile/06036199197859149872</uri><email>noreply@blogger.com</email><gd:image rel="http://schemas.google.com/g/2005#thumbnail" width="31" height="23" src="http://4.bp.blogspot.com/_vQ0G0XnGsvA/S27T88R4woI/AAAAAAAAAG8/Vo28r74EWBk/S220/ddos.gif" /></author><media:thumbnail xmlns:media="http://search.yahoo.com/mrss/" url="http://1.bp.blogspot.com/_jx77fJNTtTU/SoYUgFJ4RXI/AAAAAAAAAFA/qgOXYPqtivU/s72-c/ip+foot.jpeg" height="72" width="72" /><thr:total>0</thr:total></entry><entry gd:etag="W/&quot;DEcEQ384cSp7ImA9Wx9bEEo.&quot;"><id>tag:blogger.com,1999:blog-1471177219230458745.post-4328443602499479979</id><published>2009-12-27T04:06:00.002+05:30</published><updated>2011-02-19T06:10:02.139+05:30</updated><app:edited xmlns:app="http://www.w3.org/2007/app">2011-02-19T06:10:02.139+05:30</app:edited><category scheme="http://www.blogger.com/atom/ns#" term="Basics" /><title>What is  Distributed Denial Of Service ( DDOS) PART : 2</title><content type="html">&lt;div dir="ltr" style="text-align: left;" trbidi="on"&gt;In my previous post you would have read about smurf attack which is one of the method to cause DDOS attack.&lt;br /&gt;
Now we will see another type of attack called &lt;b&gt;TCP SYN attack. &lt;/b&gt;Before talking about TCP SYN attack we have to know how TCP communication will be established.&lt;br /&gt;
&lt;a name='more'&gt;&lt;/a&gt; &lt;br /&gt;
When a two user need to communicate with each other through TCP connection there will be a negotiation between two system, the diagram below will explain you how it happens.&lt;br /&gt;
First, the client will send the SYN packet to the server and the server will reply back with SYN/ACK packets to the client and then client will reply back with the ACK packets.&lt;br /&gt;
&lt;div class="separator" style="clear: both; text-align: center;"&gt;&lt;a href="http://1.bp.blogspot.com/_vQ0G0XnGsvA/SzaE6LvgqqI/AAAAAAAAAGQ/3BriUHMe84c/s1600-h/tcp+hand.jpg" imageanchor="1" style="margin-left: 1em; margin-right: 1em;"&gt;&lt;img border="0" src="http://1.bp.blogspot.com/_vQ0G0XnGsvA/SzaE6LvgqqI/AAAAAAAAAGQ/3BriUHMe84c/s400/tcp+hand.jpg" /&gt;&lt;/a&gt;&lt;/div&gt;&lt;div class="separator" style="clear: both; text-align: center;"&gt;&lt;br /&gt;
&lt;/div&gt;&lt;div class="separator" style="clear: both; text-align: center;"&gt;&lt;br /&gt;
&lt;/div&gt;&lt;br /&gt;
Now lets see how the TCP SYN attack works, the attacker will keep on sending the SYN packets and the victim will be sending SYN ACK packets back to SYN packets. Now the attacker will not respond back to the SYN ACK, so the resources will be wasted and the bandwidth will be utilized a lot and the legitimate user will not be able to communicate with the victims system.&lt;br /&gt;
&lt;div class="separator" style="clear: both; text-align: center;"&gt;&lt;a href="http://2.bp.blogspot.com/_vQ0G0XnGsvA/SzaPxPb5O7I/AAAAAAAAAGY/sBKzDDGbtP0/s1600-h/syn+attack.jpg" imageanchor="1" style="margin-left: 1em; margin-right: 1em;"&gt;&lt;img border="0" src="http://2.bp.blogspot.com/_vQ0G0XnGsvA/SzaPxPb5O7I/AAAAAAAAAGY/sBKzDDGbtP0/s400/syn+attack.jpg" /&gt;&lt;/a&gt;&lt;/div&gt;&lt;/div&gt;&lt;div class="blogger-post-footer"&gt;http://feeds.feedburner.com/blogspot/MVzR&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/1471177219230458745-4328443602499479979?l=fact-in-hack.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel="replies" type="application/atom+xml" href="http://fact-in-hack.blogspot.com/feeds/4328443602499479979/comments/default" title="Post Comments" /><link rel="replies" type="text/html" href="http://fact-in-hack.blogspot.com/2009/12/what-is-distributed-denial-of-service.html#comment-form" title="0 Comments" /><link rel="edit" type="application/atom+xml" href="http://www.blogger.com/feeds/1471177219230458745/posts/default/4328443602499479979?v=2" /><link rel="self" type="application/atom+xml" href="http://www.blogger.com/feeds/1471177219230458745/posts/default/4328443602499479979?v=2" /><link rel="alternate" type="text/html" href="http://fact-in-hack.blogspot.com/2009/12/what-is-distributed-denial-of-service.html" title="What is  Distributed Denial Of Service ( DDOS) PART : 2" /><author><name>RANGER</name><uri>http://www.blogger.com/profile/06036199197859149872</uri><email>noreply@blogger.com</email><gd:image rel="http://schemas.google.com/g/2005#thumbnail" width="31" height="23" src="http://4.bp.blogspot.com/_vQ0G0XnGsvA/S27T88R4woI/AAAAAAAAAG8/Vo28r74EWBk/S220/ddos.gif" /></author><media:thumbnail xmlns:media="http://search.yahoo.com/mrss/" url="http://1.bp.blogspot.com/_vQ0G0XnGsvA/SzaE6LvgqqI/AAAAAAAAAGQ/3BriUHMe84c/s72-c/tcp+hand.jpg" height="72" width="72" /><thr:total>0</thr:total></entry><entry gd:etag="W/&quot;CEMBQ3cyfip7ImA9WxBTGEw.&quot;"><id>tag:blogger.com,1999:blog-1471177219230458745.post-7518907287476739444</id><published>2009-12-14T18:40:00.003+05:30</published><updated>2009-12-14T23:10:52.996+05:30</updated><app:edited xmlns:app="http://www.w3.org/2007/app">2009-12-14T23:10:52.996+05:30</app:edited><category scheme="http://www.blogger.com/atom/ns#" term="Video" /><category scheme="http://www.blogger.com/atom/ns#" term="Posts on Gmail" /><title>who is watching you</title><content type="html">Hi readers I found this video interesting hope you too enjoy it.&lt;br /&gt;
&lt;br /&gt;
&lt;embed type="application/x-shockwave-flash" src="http://current.com/e/91659341/en_US" width="400" height="300" wmode="transparent" allowfullscreen="true" allowscriptaccess="always"&gt;&lt;/embed&gt;&lt;div class="blogger-post-footer"&gt;http://feeds.feedburner.com/blogspot/MVzR&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/1471177219230458745-7518907287476739444?l=fact-in-hack.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel="replies" type="application/atom+xml" href="http://fact-in-hack.blogspot.com/feeds/7518907287476739444/comments/default" title="Post Comments" /><link rel="replies" type="text/html" href="http://fact-in-hack.blogspot.com/2009/12/who-is-watching-you.html#comment-form" title="0 Comments" /><link rel="edit" type="application/atom+xml" href="http://www.blogger.com/feeds/1471177219230458745/posts/default/7518907287476739444?v=2" /><link rel="self" type="application/atom+xml" href="http://www.blogger.com/feeds/1471177219230458745/posts/default/7518907287476739444?v=2" /><link rel="alternate" type="text/html" href="http://fact-in-hack.blogspot.com/2009/12/who-is-watching-you.html" title="who is watching you" /><author><name>RANGER</name><uri>http://www.blogger.com/profile/06036199197859149872</uri><email>noreply@blogger.com</email><gd:image rel="http://schemas.google.com/g/2005#thumbnail" width="31" height="23" src="http://4.bp.blogspot.com/_vQ0G0XnGsvA/S27T88R4woI/AAAAAAAAAG8/Vo28r74EWBk/S220/ddos.gif" /></author><thr:total>0</thr:total></entry><entry gd:etag="W/&quot;DEcAR3s5eyp7ImA9Wx9bEEo.&quot;"><id>tag:blogger.com,1999:blog-1471177219230458745.post-1015915608430923183</id><published>2009-12-01T22:55:00.001+05:30</published><updated>2011-02-19T06:10:46.523+05:30</updated><app:edited xmlns:app="http://www.w3.org/2007/app">2011-02-19T06:10:46.523+05:30</app:edited><category scheme="http://www.blogger.com/atom/ns#" term="Basics" /><category scheme="http://www.blogger.com/atom/ns#" term="Awareness" /><title>How to stop phishing attack</title><content type="html">&lt;div dir="ltr" style="text-align: left;" trbidi="on"&gt;Recently I read an article about phishing attack.&lt;br /&gt;
&lt;br /&gt;
Most of the international banks use various level of security not just your username and password to get into your account through online banking.&lt;br /&gt;
&lt;br /&gt;
Levels they use for authentication:&lt;br /&gt;
&lt;a name='more'&gt;&lt;/a&gt;&lt;br /&gt;
&lt;br /&gt;
1) The first level authentication used to enter was the user name and password.&lt;br /&gt;
&lt;br /&gt;
problem-&amp;gt; If the webpage is not secured i.e is not using ssl it is vulnerable to packet sniffing.&lt;br /&gt;
&lt;br /&gt;
Solution-&amp;gt; Bank used encrypted&amp;nbsp; channel using SSL.&lt;br /&gt;
&lt;br /&gt;
&amp;nbsp;2)&amp;nbsp; The second level&amp;nbsp; authentication used is to enter the security pin.&lt;br /&gt;
&amp;nbsp;3) Bank introduced another level of security by providing a place to enter your security word or number&amp;nbsp;&amp;nbsp;&amp;nbsp; which is different from the username and pin number. &lt;br /&gt;
&lt;br /&gt;
Attacker&amp;nbsp; was intelligent and found a attack called phishing.&lt;br /&gt;
As we already knew, phishing is a fake webpage which is a mimic of the original webpage. Now the attacker try to bring the victim to this mimic webpage some how and the user will enter all this details, since it is looks similar and also the webpage is SSL secured the user will don't have any doubt. Now the attacker has all his information.&lt;br /&gt;
&lt;br /&gt;
Problem-&amp;gt; How to identify the phishing site&lt;br /&gt;
&lt;br /&gt;
Solution -&amp;gt; Always check the certificate issued by the CA where u can find in the url with a symbol of lock some time it would have been highlighted&amp;nbsp; in green color. This solution is for computer savvy but for normal people??? ok there is an another solution this solution just in case you get into those web page through some link which u get through&amp;nbsp; your email, Ok now always type all your details wrongly and check whether it is authenticating or not, if it is authenticating with your wrong account details or username and password it is sure that this web page is fake or phished.&lt;br /&gt;
&lt;br /&gt;
No matter how many pin and password or security question we ask&amp;nbsp; still its going to be same. The attacker will get it if you don't identify the fake web page.&lt;br /&gt;
&lt;br /&gt;
At the end of the day the bank need to save your money, so they have brought a final level of security to protect your money being transferred to the hacker account. They have decided to design a device which will be given out in free of cost to all their customer. This device will be used only in the time of transferring the money, when the client need to transfer the money to a person it will ask the detail of the receiver and also a&amp;nbsp; special key which you can get only from the device. This device will generate a key and you have to enter this key in the details of the receiver, on next time when u need to send money to that user it will ask&amp;nbsp; the user to enter a particular number in your device and that device will generate a different number and you have to enter that number, now the bank will verify this key and the set of keys which is already created with the help of key which you gave during the time of creating the receiver details.&lt;br /&gt;
&lt;br /&gt;
In this situation the attacker though has the full access to the online banking he can't transfer the money to his account. This device will be unique from other and to activate this device you need to have your debit or credit card and you have to enter the pin same as you do in the ATM machine.&lt;br /&gt;
&lt;br /&gt;
By this way you can improve the security and stop hackers from stealing you money.&lt;br /&gt;
&lt;br /&gt;
To add further security we can use finger print authentication&amp;nbsp; for online authentication, and to put this final authentication process as first so the pin number will be keep changing each and every time and even the attacker gets his pin detail on next log in he has to type another pin which can only be done with the device.&lt;br /&gt;
I can understand it's going to take long time just to transfer some money&amp;nbsp; but this is all for your security to your hard earn money.&lt;br /&gt;
&lt;br /&gt;
My solution is to deploy this method in developing countries. &lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Thank you for reading. comments and suggestions are welcome.&lt;/div&gt;&lt;div class="blogger-post-footer"&gt;http://feeds.feedburner.com/blogspot/MVzR&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/1471177219230458745-1015915608430923183?l=fact-in-hack.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel="replies" type="application/atom+xml" href="http://fact-in-hack.blogspot.com/feeds/1015915608430923183/comments/default" title="Post Comments" /><link rel="replies" type="text/html" href="http://fact-in-hack.blogspot.com/2009/12/how-to-stop-phishing-attack.html#comment-form" title="0 Comments" /><link rel="edit" type="application/atom+xml" href="http://www.blogger.com/feeds/1471177219230458745/posts/default/1015915608430923183?v=2" /><link rel="self" type="application/atom+xml" href="http://www.blogger.com/feeds/1471177219230458745/posts/default/1015915608430923183?v=2" /><link rel="alternate" type="text/html" href="http://fact-in-hack.blogspot.com/2009/12/how-to-stop-phishing-attack.html" title="How to stop phishing attack" /><author><name>RANGER</name><uri>http://www.blogger.com/profile/06036199197859149872</uri><email>noreply@blogger.com</email><gd:image rel="http://schemas.google.com/g/2005#thumbnail" width="31" height="23" src="http://4.bp.blogspot.com/_vQ0G0XnGsvA/S27T88R4woI/AAAAAAAAAG8/Vo28r74EWBk/S220/ddos.gif" /></author><thr:total>0</thr:total></entry><entry gd:etag="W/&quot;DEcMRX48eSp7ImA9Wx9bEEo.&quot;"><id>tag:blogger.com,1999:blog-1471177219230458745.post-254207780255520713</id><published>2009-11-30T23:05:00.003+05:30</published><updated>2011-02-19T06:11:24.071+05:30</updated><app:edited xmlns:app="http://www.w3.org/2007/app">2011-02-19T06:11:24.071+05:30</app:edited><category scheme="http://www.blogger.com/atom/ns#" term="Awareness" /><title>What is  Distributed Denial Of Service ( DDOS) PART : 1</title><content type="html">&lt;div dir="ltr" style="text-align: left;" trbidi="on"&gt;Hi readers this time it is about another very important topic and very serious issue in the field of networking.&lt;br /&gt;
&lt;br /&gt;
Distributed denial of service DDOS it's a type of attack which cause a huge damage to the network. In this type of attacks it is impossible to trace back the attacker.&lt;br /&gt;
&lt;a name='more'&gt;&lt;/a&gt; &lt;br /&gt;
If we talk about DDOS attack then we need to know some thing called DOS attack which is denial of service.&lt;br /&gt;
DOS is an attack in which the attacker attack the victim directly through any of the attack methods. In this case the attacker can be traced back or in other words he can be caught for doing that attack, whereas in the case of DDOS attack the attacker is very safe behind some one.&lt;br /&gt;
&lt;br /&gt;
Let us see the various attack methods which is used in both DOS and DDOS attack.&lt;br /&gt;
&lt;br /&gt;
* Smurf Attack:&lt;br /&gt;
&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; This is a normal and easiest type of attack which doesn't required any special software. Basically this attack is done by sending numerous amount of&amp;nbsp; ICMP packets ( Internet control message protocol). This packets are mainly used for doing Ping and trace route. This type of attack is done just using the command prompt or shell. in unix based system.&lt;br /&gt;
Most of them knew this command called PING and this is the command which is used to do this smurf attack. I am not going to give the command here I am leaving it to you to do so search.&lt;br /&gt;
The logic behind this attack is sending this ICMP REQUEST packets to an system with someone's IP address for example: I am the attacker and I am sending ICMP REQUEST packet to an server say Google.com but with the source IP address is your system, now the reply from Google.com will reach your system rather to my system. If this ICMP REQUEST packet is send numerous number to Google, Google will also sedn the ICMP reply packet to your system.&lt;br /&gt;
This method is also can be reversed, if you want to attack the Google server&amp;nbsp; in this case the attacker will send the ICMP request packet to you with the source IP address as Google.com now you will be sending the packets to google but actually the request is send by me. Now the attacker is not known to the victim since there was a third person sending those packet&lt;br /&gt;
Here is the illustration of the attack.&lt;br /&gt;
&lt;div class="separator" style="clear: both; text-align: center;"&gt;&lt;br /&gt;
&lt;/div&gt;&lt;div class="separator" style="clear: both; text-align: center;"&gt;&lt;a href="http://3.bp.blogspot.com/_vQ0G0XnGsvA/SxP-4W9oblI/AAAAAAAAAGE/fyjv40ZVuUU/s1600/SMURF.bmp" imageanchor="1" style="margin-left: 1em; margin-right: 1em;"&gt;&lt;img border="0" src="http://3.bp.blogspot.com/_vQ0G0XnGsvA/SxP-4W9oblI/AAAAAAAAAGE/fyjv40ZVuUU/s640/SMURF.bmp" /&gt;&lt;/a&gt;&lt;/div&gt;&lt;br /&gt;
So if&amp;nbsp; single person used as third person to do this type of attack it is alled DOS attack instead if there where 1000 or more pc doing the same job it will become an DDOS attack. Attacking single server or user with thousand or more user where the attacker hiding behind this actual attack is called DDOS attack.&lt;br /&gt;
&lt;br /&gt;
By doing this attack what is the impact or the final result??&lt;br /&gt;
OK the outcome of this attack is to overwhelm the resource which the victim has. for example the bandwidth will be exited&amp;nbsp; or it will create more traffic to the particular server.&lt;br /&gt;
&lt;br /&gt;
There are several other type of attack which is used in the DDOS attack which we will see in the next post. Thank you for reading. please comment and give your views.&lt;/div&gt;&lt;div class="blogger-post-footer"&gt;http://feeds.feedburner.com/blogspot/MVzR&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/1471177219230458745-254207780255520713?l=fact-in-hack.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel="replies" type="application/atom+xml" href="http://fact-in-hack.blogspot.com/feeds/254207780255520713/comments/default" title="Post Comments" /><link rel="replies" type="text/html" href="http://fact-in-hack.blogspot.com/2009/11/what-is-distributed-denial-of-service.html#comment-form" title="0 Comments" /><link rel="edit" type="application/atom+xml" href="http://www.blogger.com/feeds/1471177219230458745/posts/default/254207780255520713?v=2" /><link rel="self" type="application/atom+xml" href="http://www.blogger.com/feeds/1471177219230458745/posts/default/254207780255520713?v=2" /><link rel="alternate" type="text/html" href="http://fact-in-hack.blogspot.com/2009/11/what-is-distributed-denial-of-service.html" title="What is  Distributed Denial Of Service ( DDOS) PART : 1" /><author><name>RANGER</name><uri>http://www.blogger.com/profile/06036199197859149872</uri><email>noreply@blogger.com</email><gd:image rel="http://schemas.google.com/g/2005#thumbnail" width="31" height="23" src="http://4.bp.blogspot.com/_vQ0G0XnGsvA/S27T88R4woI/AAAAAAAAAG8/Vo28r74EWBk/S220/ddos.gif" /></author><media:thumbnail xmlns:media="http://search.yahoo.com/mrss/" url="http://3.bp.blogspot.com/_vQ0G0XnGsvA/SxP-4W9oblI/AAAAAAAAAGE/fyjv40ZVuUU/s72-c/SMURF.bmp" height="72" width="72" /><thr:total>0</thr:total></entry><entry gd:etag="W/&quot;DEYEQngyeCp7ImA9Wx9bEEo.&quot;"><id>tag:blogger.com,1999:blog-1471177219230458745.post-1493673738832577353</id><published>2009-11-29T03:51:00.004+05:30</published><updated>2011-02-19T06:11:43.690+05:30</updated><app:edited xmlns:app="http://www.w3.org/2007/app">2011-02-19T06:11:43.690+05:30</app:edited><category scheme="http://www.blogger.com/atom/ns#" term="How to use" /><title>WHAT IS SPOOFING</title><content type="html">&lt;div dir="ltr" style="text-align: left;" trbidi="on"&gt;Hi readers, in this post your about read some thing interesting  topic which is nothing but spoofing.&lt;br /&gt;
Spoofing is simply changing the original data with the fake one. Spoofing can be done in different area. I am going to talk about few of those.&lt;br /&gt;
&lt;a name='more'&gt;&lt;/a&gt;&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
1) IP spoofing&lt;br /&gt;
&lt;br /&gt;
2) web page or URL spoofing&lt;br /&gt;
&lt;br /&gt;
3) Mail ID spoofing&lt;br /&gt;
&lt;br /&gt;
4) MAC address spoofing&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;b&gt;IP spoofing &lt;/b&gt;is done simply by changing the original ip address with a fake IP using many softwares.&lt;br /&gt;
This is mainly done when the attacker need to listen to the packets flowing between two users in the network, simply known as 'MAN IN THE MIDDLE'  attack. Here the attacker interpret as a legitimate user and gets his data from the responder.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;b&gt;URL spoofing&lt;/b&gt; is other wise well know as &lt;b&gt;'PHISHING'&lt;/b&gt;. Here the attacker give little more effect to get his data from the victim.  The attacker need to design a webpage which looks and feels similar to the original web page, this can be done as simple as in few mits just by grabbing the  source code. now they just need to edit the source code to change the destination link and the database link. Then they will be hosting their page in different server even for free. Always when  you click a link plz look at the address bar and also at the loading bar which is the left bottom corner of the browser if you find a different web page name rather than the registered website please don't submit your data in it. This phishing attack is mail done for the online banking website and also for the mail providers website.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;b&gt;Mail ID spoofing&lt;/b&gt; is another commonly used and easy way to do again this can be done with many sofware which is of free of cost and also, If a site has configured the mail server to allow connections to the SMTP port, anyone can connect to the SMTP port of a site and (in accordance with that protocol) issue commands that will send email that appears to be from the address of the individual's choice; this can be a valid email address or a fictitious address that is correctly formatted. &lt;br /&gt;
&lt;br /&gt;
Most common mail which every one would had at least received once is " congratulation you have won 10000000 USD DOLLER" which is one type of spamming but still those people use the spoofed ID to claim them self as the legitimate company .&lt;br /&gt;
To check this, if your gmail user go to tha mail look for a down arrow mark near to reply and look for ' SHOW ORIGINAL' it actually shows the message ID, authentication detail, domain name of the SMTP server and other detail about the user. If you study a bit about the header file we can come to a conclusion. This is bit hard to non tech people but still it's a method to find out.&lt;br /&gt;
ADVICE: Never reply to an unfamiliar mails. No one is going to give money for doing nothing, so please ignore those.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;b&gt;MAC address spoofing&lt;/b&gt;, yes believe me it is possible. Few people say that we can't change the physical address of the NIC i.e MAC address, but it's wrong.&lt;br /&gt;
In Microsoft's OS it is possible simply by changing the value of the network driver in the registry file.&lt;br /&gt;
I will tell you how to do it in XP which I tried out.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
a) Go to Start -&amp;gt; Run, type "regedt32" to start registry editor. Do not use      "Regedit".&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
b) Go to "HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\ Control\Class\{4D36E972-E325-11CE-BFC1-08002BE10318}".      Double click on it to expand the tree. The subkeys are 4-digit numbers,      which represent particular network adapters. You should see it starts with      0000, then 0001, 0002, 0003 and so on.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
c) Find the interface you want by searching for the proper "DriverDesc" key.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
d) Edit, or add, the string key "NetworkAddress" (has the data type "REG_SZ")      to contain the new MAC address.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
e) Disable then re-enable the network interface that you changed (or reboot      the system).&lt;br /&gt;
or&lt;br /&gt;
simply use some tool to do those. Google it and also let me know.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;b&gt;In LINUX&lt;/b&gt;&lt;br /&gt;
&lt;br /&gt;
It's only a three step process&lt;br /&gt;
&lt;br /&gt;
a) Bring your interface down= ifconfig eth0 down&lt;br /&gt;
&lt;br /&gt;
b) Enter new mac address= ifconfig eth0 hw ether (00:00:00:11:11:11:11) or any&lt;br /&gt;
&lt;br /&gt;
c) Bring back the interface = ifconfig etho up&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;b&gt;About MAC OS&lt;/b&gt;&lt;br /&gt;
&lt;br /&gt;
Under Mac OS X, the MAC address can be altered in a fashion similar to the Linux and FreeBSD methods: &lt;br /&gt;
&amp;nbsp;&amp;nbsp;&amp;nbsp;sudo ifconfig en0 lladdr 00:01:02:03:04:05 &lt;br /&gt;
or &lt;br /&gt;
&amp;nbsp;&amp;nbsp;&amp;nbsp;sudo ifconfig en0 ether 00:01:02:03:04:05 &lt;br /&gt;
&lt;br /&gt;
&amp;nbsp;Hope this will be informative for you people. Thank you for reading.&lt;/div&gt;&lt;div class="blogger-post-footer"&gt;http://feeds.feedburner.com/blogspot/MVzR&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/1471177219230458745-1493673738832577353?l=fact-in-hack.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel="replies" type="application/atom+xml" href="http://fact-in-hack.blogspot.com/feeds/1493673738832577353/comments/default" title="Post Comments" /><link rel="replies" type="text/html" href="http://fact-in-hack.blogspot.com/2009/08/what-is-spoofing.html#comment-form" title="1 Comments" /><link rel="edit" type="application/atom+xml" href="http://www.blogger.com/feeds/1471177219230458745/posts/default/1493673738832577353?v=2" /><link rel="self" type="application/atom+xml" href="http://www.blogger.com/feeds/1471177219230458745/posts/default/1493673738832577353?v=2" /><link rel="alternate" type="text/html" href="http://fact-in-hack.blogspot.com/2009/08/what-is-spoofing.html" title="WHAT IS SPOOFING" /><author><name>RANGER</name><uri>http://www.blogger.com/profile/06036199197859149872</uri><email>noreply@blogger.com</email><gd:image rel="http://schemas.google.com/g/2005#thumbnail" width="31" height="23" src="http://4.bp.blogspot.com/_vQ0G0XnGsvA/S27T88R4woI/AAAAAAAAAG8/Vo28r74EWBk/S220/ddos.gif" /></author><thr:total>1</thr:total></entry><entry gd:etag="W/&quot;DEYHSXg7eCp7ImA9Wx9bEEo.&quot;"><id>tag:blogger.com,1999:blog-1471177219230458745.post-7454308368057057656</id><published>2009-11-24T03:33:00.005+05:30</published><updated>2011-02-19T06:12:18.600+05:30</updated><app:edited xmlns:app="http://www.w3.org/2007/app">2011-02-19T06:12:18.600+05:30</app:edited><category scheme="http://www.blogger.com/atom/ns#" term="posts on cisco router" /><title>Recent attack on a netwok and the preventive measures.</title><content type="html">&lt;div dir="ltr" style="text-align: left;" trbidi="on"&gt;Hello readers, this time I am going to show how to design a network and safeguard your internal network like web server,ftp server and other system from attacker. Recently there was an attack in an&amp;nbsp; educational institution&lt;br /&gt;
&lt;a name='more'&gt;&lt;/a&gt; which is due to improper placement of firewall and improper configuration of the router.&lt;br /&gt;
This picture will show the network setup of an attacked network.&lt;br /&gt;
&lt;div class="separator" style="clear: both; text-align: center;"&gt;&lt;a href="http://4.bp.blogspot.com/_vQ0G0XnGsvA/SwsDoCkWVdI/AAAAAAAAAFM/84L-BDPhB6M/s1600/ATTACKED.JPG" imageanchor="1" style="clear: left; float: left; margin-bottom: 1em; margin-right: 1em;"&gt;&lt;img border="0" src="http://4.bp.blogspot.com/_vQ0G0XnGsvA/SwsDoCkWVdI/AAAAAAAAAFM/84L-BDPhB6M/s640/ATTACKED.JPG" /&gt;&lt;/a&gt;&lt;/div&gt;&lt;br /&gt;
&lt;div class="separator" style="clear: both; text-align: center;"&gt;&lt;br /&gt;
&lt;/div&gt;&lt;br /&gt;
ok as the figure indicates the WAN link is the interface through which the user in the internet connect to the network. and the gateway here is ROUTER and the other interface of the ROUTER is an local IP or internal network's IP.&lt;br /&gt;
&lt;br /&gt;
When ever you design an network the firewall should be used to protect the network , even though we use an firewall it is not still safe, because the protection of the networks depends on placement of the firewall, i.e placing the firewall outside the network or inside the local area network.&lt;br /&gt;
Most of the attacks where done from outside of the local network than the internal network attack, so the firewall should be placed outside the network as shown below.&lt;br /&gt;
&lt;div class="separator" style="clear: both; text-align: center;"&gt;&lt;br /&gt;
&lt;/div&gt;&lt;div class="separator" style="clear: both; text-align: center;"&gt;&lt;a href="http://3.bp.blogspot.com/_vQ0G0XnGsvA/SwsFtZYQNVI/AAAAAAAAAFc/nIozwPTIykE/s1600/PREVENT.JPG" imageanchor="1" style="clear: left; float: left; margin-bottom: 1em; margin-right: 1em;"&gt;&lt;img border="0" src="http://3.bp.blogspot.com/_vQ0G0XnGsvA/SwsFtZYQNVI/AAAAAAAAAFc/nIozwPTIykE/s640/PREVENT.JPG" /&gt;&lt;/a&gt;&lt;/div&gt;&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Recently one such attack had been took place to an university by compromising the cisco router, which was acting as a gateway and the firewall was placed inside the local network.&lt;br /&gt;
&lt;br /&gt;
The idea of the admin was to allow all traffics to get into the local network first and then to block the unwanted packets but, he didn't think what will happen if the router have been compromised or an DOS attack takes place. The cisco router which they used was not configured securely and the router was given remote management access which is vulnerable. The admin should have placed the firewall outside the LAN and blocked the unwanted packets and services first and then left it into the LAN.&lt;br /&gt;
Now since the router have been attacked the whole internal network had been isolated from the internet, but the interesting part is no one in the internal network will come to know that their web server is down since its in the same network they can access with in the network&lt;br /&gt;
&lt;br /&gt;
Measures to be taken:&lt;br /&gt;
* As I said use the firewall as the gateway, which prevents all most all possible attacks.&lt;br /&gt;
* Change the default password and settings in all the device.&lt;br /&gt;
* Don't allow any service to the device to manage it from remotely ; close telnet, SSh, HTTP .&lt;br /&gt;
* Enable logging on the router to trace out the attacker and to know what went wrong.&lt;br /&gt;
* Monitor the network 24*7.&lt;br /&gt;
* Recruit talented and knowledgeable IT admin. Admin need to keep updating their knowledge and should be aware of possible attacks.&lt;br /&gt;
&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; "Secure the network to save your country"&lt;br /&gt;
&lt;br /&gt;
In following week we will see how to configure the cisco router securely and protect from hacker.&lt;/div&gt;&lt;div class="blogger-post-footer"&gt;http://feeds.feedburner.com/blogspot/MVzR&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/1471177219230458745-7454308368057057656?l=fact-in-hack.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel="replies" type="application/atom+xml" href="http://fact-in-hack.blogspot.com/feeds/7454308368057057656/comments/default" title="Post Comments" /><link rel="replies" type="text/html" href="http://fact-in-hack.blogspot.com/2009/11/where-do-we-need-to-place-firewall.html#comment-form" title="0 Comments" /><link rel="edit" type="application/atom+xml" href="http://www.blogger.com/feeds/1471177219230458745/posts/default/7454308368057057656?v=2" /><link rel="self" type="application/atom+xml" href="http://www.blogger.com/feeds/1471177219230458745/posts/default/7454308368057057656?v=2" /><link rel="alternate" type="text/html" href="http://fact-in-hack.blogspot.com/2009/11/where-do-we-need-to-place-firewall.html" title="Recent attack on a netwok and the preventive measures." /><author><name>RANGER</name><uri>http://www.blogger.com/profile/06036199197859149872</uri><email>noreply@blogger.com</email><gd:image rel="http://schemas.google.com/g/2005#thumbnail" width="31" height="23" src="http://4.bp.blogspot.com/_vQ0G0XnGsvA/S27T88R4woI/AAAAAAAAAG8/Vo28r74EWBk/S220/ddos.gif" /></author><media:thumbnail xmlns:media="http://search.yahoo.com/mrss/" url="http://4.bp.blogspot.com/_vQ0G0XnGsvA/SwsDoCkWVdI/AAAAAAAAAFM/84L-BDPhB6M/s72-c/ATTACKED.JPG" height="72" width="72" /><thr:total>0</thr:total></entry><entry gd:etag="W/&quot;DEYCSXY9fSp7ImA9Wx9bEEo.&quot;"><id>tag:blogger.com,1999:blog-1471177219230458745.post-617613672462197479</id><published>2009-11-12T20:17:00.001+05:30</published><updated>2011-02-19T06:12:48.865+05:30</updated><app:edited xmlns:app="http://www.w3.org/2007/app">2011-02-19T06:12:48.865+05:30</app:edited><category scheme="http://www.blogger.com/atom/ns#" term="How to use" /><title>How to boot any OS from your USB</title><content type="html">&lt;div dir="ltr" style="text-align: left;" trbidi="on"&gt;Hi readers, This time I am going to share some informative things to you people. Do you people use different OS in your PC or laptop ?? OK here is a easy way to boot your OS from your USB.&lt;br /&gt;
&lt;a name='more'&gt;&lt;/a&gt;&lt;br /&gt;
&lt;br /&gt;
Things you need&lt;br /&gt;
* A USB with free capacity of 4 GB or more.&lt;br /&gt;
* Any OS setup CD or setup file.&lt;br /&gt;
* PC running with windows and command prompt.&lt;br /&gt;
&lt;br /&gt;
OK now let me give you the steps you need to follow.&lt;br /&gt;
1) Type cmd in run.&lt;br /&gt;
&lt;br /&gt;
CMD-&amp;gt;diskpart&lt;br /&gt;
Diskpart&amp;gt; list disk&lt;br /&gt;
&lt;br /&gt;
select the usb disk name&lt;br /&gt;
then type following in diskpart&amp;gt;&lt;br /&gt;
&lt;br /&gt;
diskpart&amp;gt; select [name of the disk wanted to erase(Disk 0 or Disk 1 what ever)so the command will look like "select disk1"]&lt;br /&gt;
&lt;br /&gt;
clean&lt;br /&gt;
create partition primary&lt;br /&gt;
select partition 1&lt;br /&gt;
active&lt;br /&gt;
format fs=fat32&lt;br /&gt;
assign&lt;br /&gt;
exit&lt;br /&gt;
&lt;br /&gt;
Now steps to copy the OS from the setup CD to the USB.&lt;br /&gt;
&lt;br /&gt;
If you need to copy the file from cdrom to ur USB type this in command prompt&lt;br /&gt;
&lt;br /&gt;
xcopy (your cd drive name :\to the usb drive name:/s/e/f)&lt;br /&gt;
example: xcopy g:\f:\ /s/e/f&lt;br /&gt;
&lt;br /&gt;
Then u need to go to boot menu and choose include "removable device" for booting at start up.&lt;br /&gt;
&lt;br /&gt;
YOU can also format the usb with other software but this way is to use your command prompt.&lt;br /&gt;
&lt;br /&gt;
I am posting this because there are many OS which you like to try out, so you doesn't need to install in the primary hard disk. Sometime you may get some error while doing a dual boot or you may have un partitioned disk so you can do by this way.&lt;/div&gt;&lt;div class="blogger-post-footer"&gt;http://feeds.feedburner.com/blogspot/MVzR&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/1471177219230458745-617613672462197479?l=fact-in-hack.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel="replies" type="application/atom+xml" href="http://fact-in-hack.blogspot.com/feeds/617613672462197479/comments/default" title="Post Comments" /><link rel="replies" type="text/html" href="http://fact-in-hack.blogspot.com/2009/11/how-to-boot-any-os-from-your-usb.html#comment-form" title="0 Comments" /><link rel="edit" type="application/atom+xml" href="http://www.blogger.com/feeds/1471177219230458745/posts/default/617613672462197479?v=2" /><link rel="self" type="application/atom+xml" href="http://www.blogger.com/feeds/1471177219230458745/posts/default/617613672462197479?v=2" /><link rel="alternate" type="text/html" href="http://fact-in-hack.blogspot.com/2009/11/how-to-boot-any-os-from-your-usb.html" title="How to boot any OS from your USB" /><author><name>RANGER</name><uri>http://www.blogger.com/profile/06036199197859149872</uri><email>noreply@blogger.com</email><gd:image rel="http://schemas.google.com/g/2005#thumbnail" width="31" height="23" src="http://4.bp.blogspot.com/_vQ0G0XnGsvA/S27T88R4woI/AAAAAAAAAG8/Vo28r74EWBk/S220/ddos.gif" /></author><thr:total>0</thr:total></entry><entry gd:etag="W/&quot;DkAMQnYzeip7ImA9WxNVEkQ.&quot;"><id>tag:blogger.com,1999:blog-1471177219230458745.post-7027794720444673276</id><published>2009-10-23T15:52:00.000+05:30</published><updated>2009-10-23T16:16:23.882+05:30</updated><app:edited xmlns:app="http://www.w3.org/2007/app">2009-10-23T16:16:23.882+05:30</app:edited><category scheme="http://www.blogger.com/atom/ns#" term="Video" /><category scheme="http://www.blogger.com/atom/ns#" term="posts on cisco router" /><title>What made you to learn  hacking?</title><content type="html">Hello readers this time its to warn you people about the consequence of hacking.&lt;br /&gt;
&lt;br /&gt;
Have you ever had a dream that you getting a call to your house saying " Hey ru trying to hack into our system" or often getting dream about cops smashing into your bedroom door while your hacking a network?? If so, then you must have to watch this documentary. Learn about network security but ever overwhelm the knowledge that you got into wrong way.&lt;br /&gt;
&lt;br /&gt;
Be nice and stay free from jail.&lt;br /&gt;
&lt;br /&gt;
&lt;center&gt;&lt;object width="400" height="295"&gt;&lt;param name="allowfullscreen" value="true" /&gt;&lt;param name="allowscriptaccess" value="always" /&gt;&lt;param name="movie" value="http://vimeo.com/moogaloop.swf?clip_id=7139612&amp;amp;server=vimeo.com&amp;amp;show_title=1&amp;amp;show_byline=1&amp;amp;show_portrait=0&amp;amp;color=&amp;amp;fullscreen=1" /&gt;&lt;embed src="http://vimeo.com/moogaloop.swf?clip_id=7139612&amp;amp;server=vimeo.com&amp;amp;show_title=1&amp;amp;show_byline=1&amp;amp;show_portrait=0&amp;amp;color=&amp;amp;fullscreen=1" type="application/x-shockwave-flash" allowfullscreen="true" allowscriptaccess="always" width="400" height="295"&gt;&lt;/embed&gt;&lt;/object&gt;&lt;p&gt;&lt;a href="http://vimeo.com/7139612"&gt;Annaliza Savage - Unauthorized Access (documentary)&lt;/a&gt; from &lt;a href="http://vimeo.com/intern0t"&gt;MaXe&lt;/a&gt; on &lt;a href="http://vimeo.com"&gt;Vimeo&lt;/a&gt;.&lt;/p&gt;&lt;/center&gt;&lt;div class="blogger-post-footer"&gt;http://feeds.feedburner.com/blogspot/MVzR&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/1471177219230458745-7027794720444673276?l=fact-in-hack.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel="replies" type="application/atom+xml" href="http://fact-in-hack.blogspot.com/feeds/7027794720444673276/comments/default" title="Post Comments" /><link rel="replies" type="text/html" href="http://fact-in-hack.blogspot.com/2009/10/what-made-you-to-learn-hacking.html#comment-form" title="0 Comments" /><link rel="edit" type="application/atom+xml" href="http://www.blogger.com/feeds/1471177219230458745/posts/default/7027794720444673276?v=2" /><link rel="self" type="application/atom+xml" href="http://www.blogger.com/feeds/1471177219230458745/posts/default/7027794720444673276?v=2" /><link rel="alternate" type="text/html" href="http://fact-in-hack.blogspot.com/2009/10/what-made-you-to-learn-hacking.html" title="What made you to learn  hacking?" /><author><name>RANGER</name><uri>http://www.blogger.com/profile/06036199197859149872</uri><email>noreply@blogger.com</email><gd:image rel="http://schemas.google.com/g/2005#thumbnail" width="31" height="23" src="http://4.bp.blogspot.com/_vQ0G0XnGsvA/S27T88R4woI/AAAAAAAAAG8/Vo28r74EWBk/S220/ddos.gif" /></author><thr:total>0</thr:total></entry><entry gd:etag="W/&quot;DEUERH4zcCp7ImA9Wx9bEEo.&quot;"><id>tag:blogger.com,1999:blog-1471177219230458745.post-1484875365945736766</id><published>2009-10-04T18:11:00.009+05:30</published><updated>2011-02-19T06:13:25.088+05:30</updated><app:edited xmlns:app="http://www.w3.org/2007/app">2011-02-19T06:13:25.088+05:30</app:edited><category scheme="http://www.blogger.com/atom/ns#" term="Video" /><category scheme="http://www.blogger.com/atom/ns#" term="Awareness" /><title>How important is your IP address</title><content type="html">&lt;div dir="ltr" style="text-align: left;" trbidi="on"&gt;This post is to the people who doesn't care about giving their network details in the public. The detail you give out in public is always very sensitive and can be used to do cyber crime with it.&lt;br /&gt;
&lt;br /&gt;
I had explained here about the effect of giving the IP address in the public site and explained what will happen if ur IP address is know to others.&lt;br /&gt;
&lt;a name='more'&gt;&lt;/a&gt;&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;center&gt;&lt;object height="344" width="425"&gt;&lt;param name="movie" value="http://www.youtube.com/v/8hLZ4kw4Rho&amp;hl=en&amp;fs=1&amp;rel=0&amp;color1=0x234900&amp;color2=0x4e9e00"&gt;&lt;/param&gt;&lt;param name="allowFullScreen" value="true"&gt;&lt;/param&gt;&lt;param name="allowscriptaccess" value="always"&gt;&lt;/param&gt;&lt;embed src="http://www.youtube.com/v/8hLZ4kw4Rho&amp;hl=en&amp;fs=1&amp;rel=0&amp;color1=0x234900&amp;color2=0x4e9e00" type="application/x-shockwave-flash" allowscriptaccess="always" allowfullscreen="true" width="425" height="344"&gt;&lt;/embed&gt;&lt;/object&gt;&lt;/center&gt;&lt;/div&gt;&lt;div class="blogger-post-footer"&gt;http://feeds.feedburner.com/blogspot/MVzR&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/1471177219230458745-1484875365945736766?l=fact-in-hack.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel="replies" type="application/atom+xml" href="http://fact-in-hack.blogspot.com/feeds/1484875365945736766/comments/default" title="Post Comments" /><link rel="replies" type="text/html" href="http://fact-in-hack.blogspot.com/2009/10/simple-mistake-led-to-great-effect-in.html#comment-form" title="0 Comments" /><link rel="edit" type="application/atom+xml" href="http://www.blogger.com/feeds/1471177219230458745/posts/default/1484875365945736766?v=2" /><link rel="self" type="application/atom+xml" href="http://www.blogger.com/feeds/1471177219230458745/posts/default/1484875365945736766?v=2" /><link rel="alternate" type="text/html" href="http://fact-in-hack.blogspot.com/2009/10/simple-mistake-led-to-great-effect-in.html" title="How important is your IP address" /><author><name>RANGER</name><uri>http://www.blogger.com/profile/06036199197859149872</uri><email>noreply@blogger.com</email><gd:image rel="http://schemas.google.com/g/2005#thumbnail" width="31" height="23" src="http://4.bp.blogspot.com/_vQ0G0XnGsvA/S27T88R4woI/AAAAAAAAAG8/Vo28r74EWBk/S220/ddos.gif" /></author><thr:total>0</thr:total></entry><entry gd:etag="W/&quot;DEUGRH89eSp7ImA9Wx9bEEo.&quot;"><id>tag:blogger.com,1999:blog-1471177219230458745.post-2090501352068731825</id><published>2009-09-30T16:49:00.008+05:30</published><updated>2011-02-19T06:13:45.161+05:30</updated><app:edited xmlns:app="http://www.w3.org/2007/app">2011-02-19T06:13:45.161+05:30</app:edited><category scheme="http://www.blogger.com/atom/ns#" term="Video" /><category scheme="http://www.blogger.com/atom/ns#" term="Posts on Yahoo" /><title>Man in the middle attack</title><content type="html">&lt;div dir="ltr" style="text-align: left;" trbidi="on"&gt;Hello friends, you can make out from the title what i am going to say in this post. I am going to give a information about this type of attack "Man in the middle".&lt;br /&gt;
What is man in the middle?&lt;br /&gt;
&lt;a name='more'&gt;&lt;/a&gt;&lt;br /&gt;
It is nothing but an attacker who sits in between the two user in an network. Normally the two person will be the user and the router(gateway) in an network. The attacker will try to do few trick and replace the roll of router and he sits in his position.&lt;br /&gt;
This is done by doing DNS spoofing, ARP poisoning, IP spoofing and few more other method.&lt;br /&gt;
In this attack the user will not come to know that, his traffic is been forwarded through the attacker in the network. The attacker can simply gather information about the user and use it later or attacker can try to do active attack to the user.&lt;br /&gt;
&lt;br /&gt;
The few steps to be taken to prevent this is by keeping your system up to date, using key infrastructure, digital certificate, secure connection like ssl or ssh and using strong password which should be an encrypted password.&lt;br /&gt;
&lt;br /&gt;
User guide:&lt;br /&gt;
&lt;br /&gt;
* Always use your own network.&lt;br /&gt;
* Use secure pages.&lt;br /&gt;
* Update your system with latest patches.&lt;br /&gt;
* If you find your network is slow it can be due to MITM, this can also be false positive.&lt;br /&gt;
* Update your anti-virus and firewall frequently.&lt;br /&gt;
* Use strong authentication to sign in to a site(which is in hands of your web server).&lt;br /&gt;
* If your are wireless user please disable auto connection because the attacker may spoof with his device with same BSSID name that you have. &lt;br /&gt;
&lt;br /&gt;
I will demonstrate an attack that the attacker can do with some tools.&lt;br /&gt;
&lt;br /&gt;
I will also show how the secure web page(USING CA) is safer than the normal HTTP page.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;center&gt;&lt;object height="344" width="425"&gt;&lt;param name="movie" value="http://www.youtube.com/v/QOLQAPy1Us0&amp;hl=en&amp;fs=1&amp;rel=0&amp;color1=0x234900&amp;color2=0x4e9e00"&gt;&lt;/param&gt;&lt;param name="allowFullScreen" value="true"&gt;&lt;/param&gt;&lt;param name="allowscriptaccess" value="always"&gt;&lt;/param&gt;&lt;embed src="http://www.youtube.com/v/QOLQAPy1Us0&amp;hl=en&amp;fs=1&amp;rel=0&amp;color1=0x234900&amp;color2=0x4e9e00" type="application/x-shockwave-flash" allowscriptaccess="always" allowfullscreen="true" width="425" height="344"&gt;&lt;/embed&gt;&lt;/object&gt;&lt;/center&gt;&lt;/div&gt;&lt;div class="blogger-post-footer"&gt;http://feeds.feedburner.com/blogspot/MVzR&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/1471177219230458745-2090501352068731825?l=fact-in-hack.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel="replies" type="application/atom+xml" href="http://fact-in-hack.blogspot.com/feeds/2090501352068731825/comments/default" title="Post Comments" /><link rel="replies" type="text/html" href="http://fact-in-hack.blogspot.com/2009/09/man-in-middle-attack.html#comment-form" title="0 Comments" /><link rel="edit" type="application/atom+xml" href="http://www.blogger.com/feeds/1471177219230458745/posts/default/2090501352068731825?v=2" /><link rel="self" type="application/atom+xml" href="http://www.blogger.com/feeds/1471177219230458745/posts/default/2090501352068731825?v=2" /><link rel="alternate" type="text/html" href="http://fact-in-hack.blogspot.com/2009/09/man-in-middle-attack.html" title="Man in the middle attack" /><author><name>RANGER</name><uri>http://www.blogger.com/profile/06036199197859149872</uri><email>noreply@blogger.com</email><gd:image rel="http://schemas.google.com/g/2005#thumbnail" width="31" height="23" src="http://4.bp.blogspot.com/_vQ0G0XnGsvA/S27T88R4woI/AAAAAAAAAG8/Vo28r74EWBk/S220/ddos.gif" /></author><thr:total>0</thr:total></entry><entry gd:etag="W/&quot;C0IASXc6fCp7ImA9WxNUEkk.&quot;"><id>tag:blogger.com,1999:blog-1471177219230458745.post-6585048131171014839</id><published>2009-09-13T04:10:00.006+05:30</published><updated>2009-11-03T15:15:48.914+05:30</updated><app:edited xmlns:app="http://www.w3.org/2007/app">2009-11-03T15:15:48.914+05:30</app:edited><category scheme="http://www.blogger.com/atom/ns#" term="Video" /><category scheme="http://www.blogger.com/atom/ns#" term="Awareness" /><title>Awareness about the cheap tricks</title><content type="html">Hi readers, this post is specially for newbie and young people who want to learn about hacking. In this post i am going to give awareness about the cheap trick people may try on you. &lt;br /&gt;
One such trick is " hack your friends email id" &lt;br /&gt;
they will send a funny script like code and they will ask you to type your username and password and the person's username to be hacked, they will ask you to send it to a id something related to yahoo company like resettingpassword@yahoo.com or yahooserver@yahoo.om it can be any ID, these ID's are created by the person them self who said that they have a trick....&lt;br /&gt;
( you are sending the password by user self just in the anxious about hacking others ID but the fact is your fooling your self)&lt;br /&gt;
&lt;br /&gt;
This video will explain what will happen if you reply to such emails and how it could affect all your other emails once your single ID is been stolen.&lt;br /&gt;
This is for awareness only..&lt;br /&gt;
&lt;br /&gt;
Your not going to earn any thing from hacking others email or system.&lt;br /&gt;
Every one like to become hacker for only one reason, TO SHOW OFF TO YOUR FRIENDS, TEACHERS. Think wider... whats going to happen then??? nothing... your friends may speak about this for a month then what... nothing. Later your friends even will fear to use your computer or even they will think twice to give his laptop.&lt;br /&gt;
&lt;br /&gt;
Learn Network security to prevent from the current hackers but don't become one.&lt;br /&gt;
&lt;br /&gt;
If there is 3rd world war its not going to be with the gun or missiles, they going to attack your country just by sitting in one place through hacking your network, its just not going to affect computers its going to be whole country. Most developed country are more depended on the computers, many countries rail system, power supply, navigation system, oil refineries and even the local traffic signals can be controlled and get affected. &lt;br /&gt;
So, try to be a cyber soldier for your country...&lt;br /&gt;
&lt;br /&gt;
This video is from youtube he tries to do this trick through video&lt;br /&gt;
&lt;center&gt;&lt;br /&gt;
&lt;object width="425" height="344"&gt;&lt;param name="movie" value="http://www.youtube.com/v/m63aEuSuQ38&amp;hl=en&amp;fs=1&amp;"&gt;&lt;/param&gt;&lt;param name="allowFullScreen" value="true"&gt;&lt;/param&gt;&lt;param name="allowscriptaccess" value="always"&gt;&lt;/param&gt;&lt;embed src="http://www.youtube.com/v/m63aEuSuQ38&amp;hl=en&amp;fs=1&amp;" type="application/x-shockwave-flash" allowscriptaccess="always" allowfullscreen="true" width="425" height="344"&gt;&lt;/embed&gt;&lt;/object&gt;&lt;br /&gt;
&lt;br /&gt;
This video is my demo will show you what happens if you do as above. &lt;br /&gt;
&lt;object width="425" height="344"&gt;&lt;param name="movie" value="http://www.youtube.com/v/AeMyyKPBKlU&amp;hl=en&amp;fs=1"&gt;&lt;/param&gt;&lt;param name="allowFullScreen" value="true"&gt;&lt;/param&gt;&lt;param name="allowscriptaccess" value="always"&gt;&lt;/param&gt;&lt;embed src="http://www.youtube.com/v/AeMyyKPBKlU&amp;hl=en&amp;fs=1" type="application/x-shockwave-flash" allowscriptaccess="always" allowfullscreen="true" width="425" height="344"&gt;&lt;/embed&gt;&lt;/object&gt;&lt;/center&gt;&lt;div class="blogger-post-footer"&gt;http://feeds.feedburner.com/blogspot/MVzR&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/1471177219230458745-6585048131171014839?l=fact-in-hack.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel="replies" type="application/atom+xml" href="http://fact-in-hack.blogspot.com/feeds/6585048131171014839/comments/default" title="Post Comments" /><link rel="replies" type="text/html" href="http://fact-in-hack.blogspot.com/2009/09/awareness-about-cheap-tricks.html#comment-form" title="1 Comments" /><link rel="edit" type="application/atom+xml" href="http://www.blogger.com/feeds/1471177219230458745/posts/default/6585048131171014839?v=2" /><link rel="self" type="application/atom+xml" href="http://www.blogger.com/feeds/1471177219230458745/posts/default/6585048131171014839?v=2" /><link rel="alternate" type="text/html" href="http://fact-in-hack.blogspot.com/2009/09/awareness-about-cheap-tricks.html" title="Awareness about the cheap tricks" /><author><name>RANGER</name><uri>http://www.blogger.com/profile/06036199197859149872</uri><email>noreply@blogger.com</email><gd:image rel="http://schemas.google.com/g/2005#thumbnail" width="31" height="23" src="http://4.bp.blogspot.com/_vQ0G0XnGsvA/S27T88R4woI/AAAAAAAAAG8/Vo28r74EWBk/S220/ddos.gif" /></author><thr:total>1</thr:total></entry><entry gd:etag="W/&quot;DEUCQ3o4fip7ImA9Wx9bEEo.&quot;"><id>tag:blogger.com,1999:blog-1471177219230458745.post-9181605734454857992</id><published>2009-09-08T04:38:00.004+05:30</published><updated>2011-02-19T06:14:22.436+05:30</updated><app:edited xmlns:app="http://www.w3.org/2007/app">2011-02-19T06:14:22.436+05:30</app:edited><category scheme="http://www.blogger.com/atom/ns#" term="Video" /><category scheme="http://www.blogger.com/atom/ns#" term="posts on cisco router" /><title>Wakeup call for all admin</title><content type="html">&lt;div dir="ltr" style="text-align: left;" trbidi="on"&gt;Hi friends, one of our reader asked me to write a post on the port numbers and its usage. Before I go on to that post I would like to show you what are the disadvantage of leaving the ports open. Recently while scanning around I found few routers left unattended which is gateway to few organization. These router are still again from Asian continent.&lt;br /&gt;
&lt;a name='more'&gt;&lt;/a&gt;&lt;br /&gt;
Still Asians need to concentrate more on the network security and protect their organization and as well as their country from cyber terrorist. Next possible type of attack they will be interested  may be through cyber. Just imagine if the terrorist had got your government's network that would be a disaster. Please admins wake up soon are it will be late for us.&lt;br /&gt;
I shall show you an demo of that now. This is only for education purpose, specially for admin who just work with basic knowledge. Admin has to get updated every hour. Your network is been scanned at least thrice a day (min), so be prepared to fight back.&lt;br /&gt;
PART 1:&lt;br /&gt;
&lt;br /&gt;
&lt;center&gt;&lt;br /&gt;
&lt;object height="344" width="425"&gt;&lt;param name="movie" value="http://www.youtube.com/v/3n-IyBl6P98&amp;hl=en&amp;fs=1"&gt;&lt;/param&gt;&lt;param name="allowFullScreen" value="true"&gt;&lt;/param&gt;&lt;param name="allowscriptaccess" value="always"&gt;&lt;/param&gt;&lt;embed src="http://www.youtube.com/v/3n-IyBl6P98&amp;hl=en&amp;fs=1" type="application/x-shockwave-flash" allowscriptaccess="always" allowfullscreen="true" width="425" height="344"&gt;&lt;/embed&gt;&lt;/object&gt;&lt;/center&gt;&lt;br /&gt;
PART 2:&lt;br /&gt;
&lt;br /&gt;
&lt;center&gt; &lt;object height="344" width="425"&gt;&lt;param name="movie" value="http://www.youtube.com/v/cM_x9VsqPBA&amp;hl=en&amp;fs=1"&gt;&lt;/param&gt;&lt;param name="allowFullScreen" value="true"&gt;&lt;/param&gt;&lt;param name="allowscriptaccess" value="always"&gt;&lt;/param&gt;&lt;embed src="http://www.youtube.com/v/cM_x9VsqPBA&amp;hl=en&amp;fs=1" type="application/x-shockwave-flash" allowscriptaccess="always" allowfullscreen="true" width="425" height="344"&gt;&lt;/embed&gt;&lt;/object&gt;&lt;/center&gt;&lt;/div&gt;&lt;div class="blogger-post-footer"&gt;http://feeds.feedburner.com/blogspot/MVzR&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/1471177219230458745-9181605734454857992?l=fact-in-hack.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel="replies" type="application/atom+xml" href="http://fact-in-hack.blogspot.com/feeds/9181605734454857992/comments/default" title="Post Comments" /><link rel="replies" type="text/html" href="http://fact-in-hack.blogspot.com/2009/09/wakeup-call-for-all-admin.html#comment-form" title="1 Comments" /><link rel="edit" type="application/atom+xml" href="http://www.blogger.com/feeds/1471177219230458745/posts/default/9181605734454857992?v=2" /><link rel="self" type="application/atom+xml" href="http://www.blogger.com/feeds/1471177219230458745/posts/default/9181605734454857992?v=2" /><link rel="alternate" type="text/html" href="http://fact-in-hack.blogspot.com/2009/09/wakeup-call-for-all-admin.html" title="Wakeup call for all admin" /><author><name>RANGER</name><uri>http://www.blogger.com/profile/06036199197859149872</uri><email>noreply@blogger.com</email><gd:image rel="http://schemas.google.com/g/2005#thumbnail" width="31" height="23" src="http://4.bp.blogspot.com/_vQ0G0XnGsvA/S27T88R4woI/AAAAAAAAAG8/Vo28r74EWBk/S220/ddos.gif" /></author><thr:total>1</thr:total></entry><entry gd:etag="W/&quot;DEUNQnc5fSp7ImA9Wx9bEEo.&quot;"><id>tag:blogger.com,1999:blog-1471177219230458745.post-494556618068255837</id><published>2009-09-07T15:09:00.002+05:30</published><updated>2011-02-19T06:14:53.925+05:30</updated><app:edited xmlns:app="http://www.w3.org/2007/app">2011-02-19T06:14:53.925+05:30</app:edited><category scheme="http://www.blogger.com/atom/ns#" term="Video" /><title>Does the service provider are aware enough about security?</title><content type="html">&lt;div dir="ltr" style="text-align: left;" trbidi="on"&gt;&lt;div style="text-align: justify;"&gt;Hello every one, today we will see about your service provider's security awareness.&lt;/div&gt;&lt;div style="text-align: justify;"&gt;As a consumer you may ask them about price plan and internet speed and other offer but have you ever asked them about your data protection, the answer is NO.They may provide high quality internet service but not a good security policies.&lt;/div&gt;&lt;div style="text-align: justify;"&gt;I am going to show you a live demo about the security features&lt;br /&gt;
&lt;a name='more'&gt;&lt;/a&gt; they provide and how far the security is strong enough. &lt;/div&gt;&lt;div style="text-align: justify;"&gt;&lt;/div&gt;&lt;div style="text-align: justify;"&gt;This is only for awareness purpose, though your provider doesn't care about you, at lest have to protect yourself.&lt;/div&gt;&lt;div style="text-align: justify;"&gt;&lt;/div&gt;&lt;div style="text-align: justify;"&gt;&lt;/div&gt;&lt;div style="text-align: justify;"&gt;I had masked the tool name and IP address for security purpose. Now the default password had been changed, so black hats don't try. Try to protect our nation. Try to spread good thing out of this rather than the evil things.&lt;br /&gt;
&lt;br /&gt;
&lt;/div&gt;&lt;div style="text-align: justify;"&gt;&lt;/div&gt;&lt;br /&gt;
&lt;center&gt;&lt;br /&gt;
&lt;object height="344" width="425"&gt;&lt;param name="movie" value="http://www.youtube.com/v/eoOnl7daOSw&amp;color1=0xb1b1b1&amp;color2=0xcfcfcf&amp;hl=en&amp;feature=player_embedded&amp;fs=1"&gt;&lt;/param&gt;&lt;param name="allowFullScreen" value="true"&gt;&lt;/param&gt;&lt;param name="allowScriptAccess" value="always"&gt;&lt;/param&gt;&lt;embed src="http://www.youtube.com/v/eoOnl7daOSw&amp;color1=0xb1b1b1&amp;color2=0xcfcfcf&amp;hl=en&amp;feature=player_embedded&amp;fs=1" type="application/x-shockwave-flash" allowfullscreen="true" allowScriptAccess="always" width="425" height="344"&gt;&lt;/embed&gt;&lt;/object&gt;&lt;br /&gt;
&lt;div style="text-align: justify;"&gt;&lt;a href="http://www.youtube.com/watch?v=eoOnl7daOSw"&gt;click here to see my video&lt;/a&gt;&lt;/div&gt;&lt;div style="text-align: justify;"&gt;&lt;/div&gt;&lt;div style="text-align: justify;"&gt;&lt;/div&gt;&lt;/center&gt;&lt;br /&gt;
Readers may have got confused why did I wrote an article about VMware now in this video you will come to know why. I am using VMware to run the Linux machine which is very use full for using few tools. Most of the tools which is used to do pen test are in cli and Linux supported tools. so please try to use the open source Linux based OS. Next time lets see the unsecured router(Cisco, D-Link) which are connected to an organisation.&lt;/div&gt;&lt;div class="blogger-post-footer"&gt;http://feeds.feedburner.com/blogspot/MVzR&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/1471177219230458745-494556618068255837?l=fact-in-hack.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel="replies" type="application/atom+xml" href="http://fact-in-hack.blogspot.com/feeds/494556618068255837/comments/default" title="Post Comments" /><link rel="replies" type="text/html" href="http://fact-in-hack.blogspot.com/2009/09/does-service-provider-are-aware-enough.html#comment-form" title="0 Comments" /><link rel="edit" type="application/atom+xml" href="http://www.blogger.com/feeds/1471177219230458745/posts/default/494556618068255837?v=2" /><link rel="self" type="application/atom+xml" href="http://www.blogger.com/feeds/1471177219230458745/posts/default/494556618068255837?v=2" /><link rel="alternate" type="text/html" href="http://fact-in-hack.blogspot.com/2009/09/does-service-provider-are-aware-enough.html" title="Does the service provider are aware enough about security?" /><author><name>RANGER</name><uri>http://www.blogger.com/profile/06036199197859149872</uri><email>noreply@blogger.com</email><gd:image rel="http://schemas.google.com/g/2005#thumbnail" width="31" height="23" src="http://4.bp.blogspot.com/_vQ0G0XnGsvA/S27T88R4woI/AAAAAAAAAG8/Vo28r74EWBk/S220/ddos.gif" /></author><thr:total>0</thr:total></entry><entry gd:etag="W/&quot;DEQFRH4zfip7ImA9Wx9bEEo.&quot;"><id>tag:blogger.com,1999:blog-1471177219230458745.post-5487937712332776267</id><published>2009-09-02T21:18:00.003+05:30</published><updated>2011-02-19T06:15:15.086+05:30</updated><app:edited xmlns:app="http://www.w3.org/2007/app">2011-02-19T06:15:15.086+05:30</app:edited><category scheme="http://www.blogger.com/atom/ns#" term="How to use" /><title>How to use VMware.</title><content type="html">&lt;div dir="ltr" style="text-align: left;" trbidi="on"&gt;VMware is an vitalization software were you can run multiple OS in a single physical machine with out installing into your hard drive.&lt;br /&gt;
&lt;br /&gt;
Here I will give you step by step instruction to install one.&lt;br /&gt;
&lt;a name='more'&gt;&lt;/a&gt;&lt;br /&gt;
&lt;br /&gt;
fist go to VMware web site www.vmware.com -&amp;gt; look for products -&amp;gt; desktop product -&amp;gt; to your right side of the page u can see download free trail-&amp;gt; click VMware workstation -&amp;gt; now you have to select which platform u need to install(windows or linux, Mac other)and you need to register with them, which will take few mit. Give your real mail ID because they will send the license key. Follow as the say and download it.&lt;br /&gt;
&lt;br /&gt;
Installing in you computer:&lt;br /&gt;
run the exe and finish the setup - hope you don't find any prob in installing if so ask me.&lt;br /&gt;
&lt;br /&gt;
Opening the VMware:&lt;br /&gt;
Now go yo home and click create new VM machine  -&amp;gt; click next-&amp;gt; select typical-&amp;gt; now select which OS you need to run on the machine. Note: you need the CD or DVD or ISO of the OS which u need to install. If you need to install windows then select windows and select the version, if you need to install windows 7 select" windows longhorn" give next and give a name to the machine say "windows 7". select a location in your HDD and click next.&lt;br /&gt;
&lt;br /&gt;
Using network connection:&lt;br /&gt;
Next step is to -&amp;gt; use bridged networking&lt;br /&gt;
&lt;br /&gt;
Disk space:&lt;br /&gt;
give disk space according to your usability of the machine once set you cant increase or decreace( its the hdd spae for virtual machine "virtual hdd"). Click next and setup will be over.&lt;br /&gt;
&lt;br /&gt;
Starting VM machine:&lt;br /&gt;
Now your machine is set to work but you need to do some changes in setting.&lt;br /&gt;
Goto -&amp;gt;Edit virtual machine settings-&amp;gt; click CD ROM in the left side menu.&lt;br /&gt;
&lt;br /&gt;
For CD OR DVD FROM YOUR CD/DVD PLAYER FOLLOW THIS&lt;br /&gt;
If you have the cd or dvd of the windows 7  then click "use physical device" in your right side of the setting window called connection. Now click ok.&lt;br /&gt;
&lt;br /&gt;
FOR ISO IMAGE FILE FOLLOW THIS&lt;br /&gt;
First you have to know the location of your iso file in your hard disk and now in settings click the radio button on "use ISO image" and browse for your ISO file and select it. Now click ok.&lt;br /&gt;
&lt;br /&gt;
Loading the VM machine:&lt;br /&gt;
now press start button or the green arrow.&lt;br /&gt;
It will start to boot the image from the CD/DVD or from the image file.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
your done now...enjoy&lt;br /&gt;
if you need any help ask me...&lt;/div&gt;&lt;div class="blogger-post-footer"&gt;http://feeds.feedburner.com/blogspot/MVzR&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/1471177219230458745-5487937712332776267?l=fact-in-hack.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel="replies" type="application/atom+xml" href="http://fact-in-hack.blogspot.com/feeds/5487937712332776267/comments/default" title="Post Comments" /><link rel="replies" type="text/html" href="http://fact-in-hack.blogspot.com/2009/09/how-to-use-vm-ware.html#comment-form" title="2 Comments" /><link rel="edit" type="application/atom+xml" href="http://www.blogger.com/feeds/1471177219230458745/posts/default/5487937712332776267?v=2" /><link rel="self" type="application/atom+xml" href="http://www.blogger.com/feeds/1471177219230458745/posts/default/5487937712332776267?v=2" /><link rel="alternate" type="text/html" href="http://fact-in-hack.blogspot.com/2009/09/how-to-use-vm-ware.html" title="How to use VMware." /><author><name>RANGER</name><uri>http://www.blogger.com/profile/06036199197859149872</uri><email>noreply@blogger.com</email><gd:image rel="http://schemas.google.com/g/2005#thumbnail" width="31" height="23" src="http://4.bp.blogspot.com/_vQ0G0XnGsvA/S27T88R4woI/AAAAAAAAAG8/Vo28r74EWBk/S220/ddos.gif" /></author><thr:total>2</thr:total></entry></feed>

