Showing posts with label Ethical Hacking. Show all posts
Showing posts with label Ethical Hacking. Show all posts

Thursday, 30 August 2012

What Is Hacker

| 0 comments


A hacker is someone who likes to tinker with electronics or computer systems. Hackers like to explore and learn how computer systems work, finding ways to make them do what they do better, or do things they weren’t intended to do.  There are different types of hackers,



The hacker community usually distinguishes its members into the following groups, mainly based on the individual aim and ability:

CRACKERS(The Black Hat Hackers): Those who will enter your computer just for the fun of it, or to prove their technical skills, which are usually mid to high level;

BLUE HAT HACKERS: A blue hat hacker is someone outside computer security consulting firms that are used to bug test a system prior to its launch, looking for exploits so they can be closed. The term has also been associated with a roughly annual security conference by Microsoft, the unofficial name coming from the blue color associated with Microsoft employee badges.

GRAY HAT HACKERS: A gray hat hacker is a hacker of ambiguous ethics and/or borderline legality, often frankly admitted (the color itself stands somewhere in between 'black' and 'white', the 'bad' and the 'good' guys).


WHITE HAT HACKER: A white hat hacker (sometimes referred to as 'ethical hacker') is someone who breaks security but who does so for altruistic or at least non-malicious reasons. White hats generally have a clearly defined code of ethics, and will often attempt to work with a manufacturer or owner to improve discovered security weaknesses, although many reserve the implicit or explicit threat of public disclosure after a "reasonable" time as a prod to ensure timely response from a corporate entity. The term is also used to describe hackers who work to deliberately design and code more secure systems. To white hats, the darker the hat, the more the ethics of the activity can be considered dubious. Conversely, black hats may claim the lighter the hat, the more the ethics of the activity are lost.

SCRIPT KIDDIES: Script kiddie is a pejorative term for a computer intruder with little or no skill; a person who simply follows directions or uses a cook-book approach -- typically using other people's scripts and shell-codes -- without fully understanding the meaning of the steps they are performing.

HACKTIVIST (rare): A hacktivist is a hacker who utilizes technology to announce a political message. Web vandalism is not necessarily hacktivism.
These categories tend to have a 'closed' approach with one another, meaning white hatters will tend to stay away from black hatters, and vice versa -- which is mainly due to the fact that the single most important thing all these communities have in common is the central role of their 'online reputation'.

We will discuss various hacking tricks and tips in this blog, stay connected with us..

Read More

Wednesday, 29 August 2012

Protect Yourself - Using Proxis

| 0 comments

This section will go over using proxies, which mask your IP address when on the web. This is useful for doing things you don't want to be traced to your IP address, or if you just want to hide your IP address from a certain website.

What is a proxy?

Think of a proxy as a man in the middle for the internet. Normally when you open a website, your PC sends your IP address to the website, so that it may then send the webpage to your computer. With a proxy, your information is being sent to the proxy first, and then the proxy is pulling the website for you, then forwarding it to you. This way, on the websites end, they see the IP address of the proxy you used, and not yours.

Where to get a proxy?

Proxies are all over the web, a quick google search will pull up a bunch. Below are some websites you can use to find proxy servers. Note that you may have to try multiple proxies before finding a working one.

http://www.proxy-list.org
http://www.hidemyass.com

How to use a proxy?

This tutorial will go over setting up a proxy in internet explorer, but it should be very similar for other browsers as well.

  1. Find a proxy server you want to use. You will need the IP address and port of the server.
  2. In internet explorer, click on internet options
  3. Navigate to the connections tab and click on LAN settings
  4. Check Use a proxy server for your LAN and enter in the proxy servers IP address and port
  5. Click apply and you're done! Now when you navigate to a website, it will be through the proxy you entered. To stay 100% anon, make sure you use a proxy server that doesn't log IP addresses. These proxies will usually be advertised as being anonymous proxies.

Read More

Protect Yourself - Clear System Log

| 0 comments

The following steps will walk you through clearing the system logs on a windows computer. The windows system keeps a long of what programs you opened, hardware used, etc, along with time stamps, and a bunch of other information you might not want someone to see. This tutorial assumes you're using a Windows based PC.



1. Navigate to Control Panel
2. Click Administrative tools. In Windows 7, this is under System and Security in the control panel.
3. Double click and open Event Viewer
4. In the left pane, you will see all the different things that are logged. Expand these, right click, and choose Clear log for each log you wanted wiped.

Read More

Protect Yourself - Wi-Fi

| 0 comments

Another way your making all your accounts easily hacked, is by being connected to an insecure wifi, or connected to a wifi with an easily hacked password.



Use free public wifi at your own risk. Anyone connected to the same wifi as you with malicious intent can sniff the traffic over the network and have access to any account you log in to. Facebook, youtube, online banking... anything. Only access accounts you care about on wifi networks you trust.

DO NOT use WEP for your router security, use WPA or preferably WPA2. WEP keys are extremely easy to hack.

If your router has WPS enabled (wireless protected setup), DISABLE IT. An exploit allows WPS to be cracked pretty quickly allowing the attacker to figure out your WPA2 key.

If you think someone on your network may be trying to access your accounts, browse using HTTPS. Most popular websites support HTTPS (facebook, gmail, etc) and this prevents most network sniffing applications fail to retrieve your account info. You can use the HTTPS version of a website simply by replacing HTTP to HTTPS in the url. Example: https://facebook.com instead of http://facebook.com. Some hacks out there can redirect you from the secure HTTPS to HTTP, so if you're onsure of the network you're connected to, stay aware of the URL.

Don't buy things online while connected to a public network. Just don't do it.
Read More

Protect Yourself - Check For Viruses

| 0 comments
All of us know that virus is a malicious and harmful programs which are intended to do some harm to your system.

Therefor now, I'm going to tell you how to check a program for viruses before you run it. Do this with any new software you're unsure about.



1. Buy any good antivirus program, and update it on regular basis so that you get protection from latest harmful viruses 

2. If you don't want to spend money on any software don't worry just Upload the file or file URL to http://www.virustotal.com/

Look at the virustotal scan results. If anything suspicious shows up, delete the file and don't run it.

Simple enough, but most people don't bother to scan things, or have expired anti-virus. If you would like some high quality, free anti-virus software for Windows, I highly recommend Microsoft Security Essentials, and Quick Heal is the best antivirus program I ever had.
Read More

Protect Yourself - Password Security

| 0 comments
Fact : According to a research about 20% of all the passwords can be easily guessed. The  example of such bad passwords are 12345, qwerty, your name, your surname, your birth date etc.

So it is very easy for someone to guess your password and get access to your account, the persons who know you most can be easily get access to your account by guessing if you use such a bad passwords listed above, the persons include your friends who knows much about yourself.



The best way to prevent someone from getting your passwords, is to use a strong password. The best passwords are 8+ characters long, which must contain combination of capital and small letters also contains some numbers and you can also use some special characters.
Using special character string in a password is give you very high security because it is very difficult to guess such passwords, even for the bruitforsing software's.  What is Bruteforcing Software ? It is a program that tries every letter/number/symbol combination to guess your password. If you follow these tips for a stronger password, it will take years to bruteforce your password.

Security questions. The easiest way someone can gain access into your accounts, is to guess the answers to the security questions of your account. These are the questions you're asked when you first make an email account, like What was your first dogs name?, or Whats your first grade teachers name. Make sure the security questions you choose have answers that aren't easily guessable. If you have a security question that asks Where did you meet your spouse? this is a bad question to choose. Anyone who browses your Facebook or asks someone you know can get the answer to this. So make sure you choose questions NO ONE knows the answer to, or make the answers something only you would know.

Don't ever use the same passwords for all of your accounts. Make your e-mail password different from your Facebook password, and so on. If someone manages to get one of your passwords, they will have access to ALL your accounts if you use the same password.

Read More