http://besthackingforums.blogspot.com/ Hacking It http://besthackingforums.blogspot.com/
 

Police scientists have hailed a new technique,the capability, called "electrical network frequency analysis" (ENF) is now attracting interest from the FBI & is thought to be the exciting new frontier in digital forensics, with power lines acting as witnesses to crime.In a high profile murder trial, which was earlier this year. ENF meant prosecutors were able to show that a seized voice recording that had became vital to their case was indeed authentic. Defence lawyers suggested it could have been concocted by a witness to incriminate the accused.

The police force that ran the investigation this week declined to name the murderer in response to requests from The Register, citing undisclosed operational reasons.

ENF relies on frequency variations in the electricity supplied by the National Grid. Digital devices such as CCTV , telephone recorders & camcorders that are plugged in to or located near the mains pick up these deviations in the power supply, which are caused by peaks & troughs in demand. Battery-powered devices are not immune to to ENF analysis, as grid frequency variations can be induced in their recordings from a distance.

At the Metropolitan Police's forensics lab in Penge, south London, scientists have created a database that has recorded these deviations once every one & a half seconds for the last five years. Over a short period they form a unique signature of the electrical frequency at that time, which research has shown is the same in London as it is in Glasgow.

On receipt of recordings made by the police , the scientists are then able to detect the variations in mains electricity occuring at the time the recording was made. This signature is extracted & automatically matched against their ENF database, which indicates when it was made.

Dr Alan Cooper, the leader of the Met's project, said the technique is proving invaluable in serious cases, where audio or video evidence & its authenticity is often questioned.

ENF analysis is founded on research originally carried out by Dr Catalin Grigoras, a Romanian audio forensics expert. The British team showed Dr Grigoras' findings in eastern Europe were applicable to the UK National Grid & had developed algorithms to automate the analysis.

"ENF has basically been made possible by the move to digital recording," Dr Cooper said.

"Old magnetic cassette or VHS tapes didn't keep time accurately enough to extract reliable data, but now we can analyse even cheap voice recorders.

"The Americans are very interested. It's fair to say this is the most significant development in the field since techniques were developed to analyse the Watergate Tapes."

The field of audio forensics was largely established as a result of the Watergate scandal. In 1973 a federal court commissioned a panel of audio engineers to investigate the infamous 18 minutes gap in President Nixon's Watergate Tapes, the magnetic recordings he secretly made of his White House conversations.

In contrast to the months of work on the Watergate Tapes, the computer power now cheaply available means the Met's ENF lab could authenticate a month-long digital audio or video recording in 10 to 12 minutes

Other News & Features
>


get your site online with web hosting plans
Large word list + all reversed 148 kb Download
As above with 1st letter uppercase 149kb Download
Same as above all in uppercase 153kb Download
Large list of names 80kb Download
List of surnames 1kb Download
Dos reference words 3kb Download
Family names 46kb Download
Given names 24kb Download
Chinese words 2kb Download
Common passwords 4kb Download
Huge list 3300kb Download
Girls names 13kb Download
Boys names 11kb Download
Great List 285kb Download

If that hasn`t worked here

.Begginners guides to build basic trojans-viruses-keyloggers.
If you`ve an interest in learning about hacking but dont know where to start
checkout the beginners section for a full list of what you need to know & how
to go about it- & once youve progressed a touch try the links to some of the hacking resources & forums :-0








Photobucket

Hacker news

Lamo labeled a grass

Former grey hatter Adrian Lamo,has been revealed to be an informant ,
according to sources, he has spilled the beans on former friend,Bradley Manning,
who has been accused of leaking top secret information to wikileaks.As well leaking embassy cables & communications,is also thought to be behind the leaking of the video showing the massacre of Journalists & Medical personnel carried out by an Apache helicopter in Iraq .Lamo says Manning approached him to brag about the leaks,saying he had leaked more than 250 thousand classified documents.Lamo went straight to the army with this information & later met with the FBI.Lamo reported the information with the thought that innocent people may lose there lives when in shark contrast to this,wikileak aims to notify people that may be in danger before any publishing is made.Manning stands by the fact the he was only making the public aware of the wrong doings & scandal.


New e-crime unit, nine arrested

Nine suspects in a banking Trojan case have been arrested by specialist cybercops from the UK's new Police Central E-Crime Unit (PCeU).

The suspects - four women and five men - were arrested following police raids in south east London. Investigators reckon the group of UK-based eastern European nationals used malware planted on compromised machines to steal login credentials and plunder online banking accounts.

The arrests follow the establishments of a virtual crime force, involving more than 50 officers from the PCeU and the Met's specialist crime directorate.

Deputy assistance commissioner Janet Williams, ACPO lead for e-crime, said Wednesday's operation illustrated that the long-awaited national e-crime unit was already up and running Computer Weekly reports

Photobucket

Indian politico's webmail hacked

Fraudsters have hacked into the email account of an Indian politician in a bid to extort money from his contacts.

Senior Congress politico Mani Shankar Aiyar's Hotmail account was broken into on Wednesday in order to send messages claiming he'd lost his wallet & was in urgent need of cash to settle a $3,500 hotel bill in England & return home.

Indian Express tracked the former union minister down to New York, from where he confirmed his webmail account had been hacked into to send the dodgy "loan-requesting" emails. Unidentified hackers, who probably took advantage of weak passwords to break into the account in the first place, have locked Aiyar out of his account.

"Unfortunately, the hacker has changed my password so I cannot access my email account," Aiyar told Indian Express. "I am in New York attending a seminar on local self-government at Columbia University. I request all recipients to ignore this message."

The Times of India reports that fashion designer Rina Dhaka was hit by a similar scam last week. Delhi police are advising users to make use of strong passwords, it added.

Aiyer is far from the first high-profile politician left explaining a webmail hack. Previous examples have famously included Alaska governor Sarah Palin & former Republican candidate, as well as UK justice minister & former home secretary Jack Straw.

The 'person in plight' scam isn't new either & has recently moved on from messages from hacked email accounts to electronic communiques from compromised social networking sites.
*********************************************

Hackers exploiting unpatched directx bugs using quicktime



It`s looking like yet another security scare for microsoft user`s in which hackers
are exploiting an unpatched critical vulnerability, it allows remote code execution, & attacks versions of direct x 7-8-9 in windows 2000,xp & server 2003.Newer versions of vista , server 2008 & windows 7 are`nt being affected,so they seem to have already fixed the problem in there newer software but haven`t addressed the issue in there older operating systems.
Microsoft has had quite a spate of serious vulnerabilities recently, it seems resourceful hackers are targeting applications & components of the OS rather than the actual OS or networking stack. 3 times in the last 3 months microsoft have warned of the vulnerability in the software.

Thursday, Microsoft issued a security advisory that said hackers were already using attack code that leveraged a bug in DirectX, a Windows subsystem that`s crucial to games & also used when streaming video from sites.

Hackers are using malicious QuickTime files — QuickTime is rival Apple Inc.’s default video format — to hijack PCs, Microsoft said. “The vulnerability could allow remote code execution if [the] user opened a specially crafted QuickTime media file,” the company said in the advisory. “Microsoft is aware of limited, active attacks that use this exploit code.”

According to Christopher Budd, the spokesman for the Microsoft Security Response Center, QuickTime itself isn`t flawed. Instead, the QuickTime parser in DirectShow, a component of DirectX, contains the bug. “An attacker would try to exploit the vulnerability by crafting a specially formed video file , then posting it on a website or sending it as an attachment in e-mail,,” Budd said in an entry on the MSRC blog.

Because the bug is in DirectShow, any browser using a plug-in that relies on DirectShow is also vulnerable.Until there`s a patch available, users can protect their PCs by disabling QuickTime parsing. To do that requires editing the Windows registry, normally a task most users would do there best to shy away from, but Microsoft say`s they have automated the workaround. “We’ve gone ahead & built a ‘Fix it’ that implements the ‘Disable the parsing of QuickTime content in quartz.dll’ registry change,” Budd said. “We have also built a ‘Fix it’ that will undo the workaround automatically.”

Earlier this month microsoft announced
a vulnerability in Microsoft Internet Information Services (IIS) that could allow Elevation of Privilege. Products affected are IIS 5.0, IIS 5.1, & d IIS 6.0. The advisory contains guidance & workarounds that customers can use to help protect themselves. We will continue to monitor the situation & post updates to the advisory & the MSRC Blog as we become aware of any important new information.

At this time, we are not aware of any known attacks that attempt to use this vulnerability.

An elevation of privilege vulnerability exists in the way that the WebDAV extension for IIS handles HTTP requests. An attacker could exploit this vulnerability by creating a specially crafted anonymous HTTP request to gain access to a location that typically requires authentication.

Microsoft will take the appropriate action to protect our customers, which may include providing a solution through our monthly security update release process, or an out-of-cycle security update, depending on customer needs.

To better help understand the issue, Microsoft security experts have provided additional technical details on the Microsoft Security Research & Defense blog.

Photobucket

Obama setting up security task force

President Obama is expected to announce late this week his decision to create a senior White House official responsible for protecting the nation’s government-run & private computer networks from attack, according to a report.

The “cyber czar” will probably be a member of the National Security Council but will report to the national security adviser and the senior White House economic advisor, according to The Washington Post, which cited unnamed officials who had been briefed on there new plan`s. As of Friday, Obama had not yet settled on the advisor’s rank and title.

The announcement is set to coincide with the release of a 40-page report evaluating the government’s strategy for securing government networks & other infrastructure deemed critical to national security. The timing of the report & the details included in the Washington Post report suggest`s the plan may have run into problems with some of the advisors to Obama.

Officially the rank & title have not yet been decided but they will be working with the National Security Council and the Economic division of the government.

Photobucket
more news

Chinese Down time due to Dos attack

Latest news shows a few million Chinese Internet users had trouble accessing websites yesterday due to a DDoS attack on the DNS system from one of the countries registrars.

It just shows that China has an inherently weak infrastructure if such a large portion of people can be disrupted with an attack to a single location.

An attack on the servers of a domain registrar in China caused an online video application to cripple Internet access in parts of the country late on Wednesday.

Internet access was affected in five northern and coastal provinces after the DNS (domain name system) attack, which targeted just one company but caused unanswered information requests to flood China’s telecommunications networks, China’s IT ministry said in a statement on its Web site. The DNS is what computers use to find each other on the Internet.

The incident revealed holes in China’s DNS that are “very strange” for such a big country, said Konstantin Sapronov, head of Kaspersky’s Virus Lab in China.

The problems started when registrar DNSPod’s DNS servers were targeted with a DDOS (distributed denial of service) attack, described by the company in an online statement. In such an attack, the attacker orders a legion of compromised computers to try to communicate with a server all at once, which overwhelms the server and crushes its ability to return requests for information.


Read all about it !
Full hacker news index can be found
here


page rank search tool

Photobucket

.Begginners guides to build basic trojans-viruses-keyloggers.
If youve an interest in learning about hacking but dont know where to start
checkout the beginners section for a full list of what you need to know & how
to go about it- & once youve progressed a touch try the links to some of the hacking resources & forums :-0


I thought I will post a small write-up for total newbies who have no idea how to use this...

Step 1 - Copy everything inside box that says code in the first post.
Step 2 - Open Notepad and paste it in there
Step 3 - Save this file as script.php (in the save as type select "All Files")
Step 4 - Upload this file to your website's root
Step 5 - Type yourwebsite.com/script.php in your browser (Replace yourwebsite.php with your domain) You will get a screen like this -


In the box that shows - Write your domain name along with the keyphrase - something like this



In this case google.com, yahoo.com and blackhatworld.com are URLs to your websites and keyword, gay and blackhat are your keywords.

Once done hit Submit Query and you're good to go!

(.+?)<\/title>/';
preg_match($regex,$AskApache_result,$output);
echo $output[1] . '
';
flush();
ob_flush();

curl_setopt ($ch, CURLOPT_URL, 'http://pingomatic.com/ping/?title=' . urlencode($keyword) . '&blogurl=' . urlencode($url) . '&rssurl=http%3A%2F%2F&chk_weblogscom=on&chk_blogs=on&chk_technorati=on&chk_feedburner=on&chk_syndic8=on&chk_newsgator=on&chk_myyahoo=on&chk_pubsubcom=on&chk_blogdigger=on&chk_blogrolling=on&chk_blogstreet=on&chk_moreover=on&chk_weblogalot=on&chk_icerocket=on&chk_newsisfree=on&chk_topicexchange=on&chk_google=on&chk_tailrank=on&chk_bloglines=on&chk_postrank=on&chk_skygrid=on&chk_bitacoras=on&chk_collecta=on');
$AskApache_result = curl_exec ($ch);


if(preg_match('/Pinging complete!/', $AskApache_result))
{
echo $url . ' - Pinged!
';
}
else
{
echo $url . ' - Pinging Failed!
';
}

flush();
ob_flush();
}
}
} else {
?>

Links|Anchors :







Linux tools:-
winrar
wine

Get Started With Linux for
Beginners
What is Linux?
Trying it out
Installing
What to do now
The Console

Introduction :-)

This tutorial is written with the Linux n00b in mind.
Too many n00bs get totally confused by asking what
the best distro is. They seem to get flooded with to many
answers in so short a time. This will cover a total of two basic distros. You may
learn to strongly prefer other ones but this is aimed to get
you started. It touch`s on a number of topics that would be impossible to
go into in depth in one tutorial, so actively seek
out more about the concepts that are made reference to.


I. What is Linux?

Linux is basically an operating system (OS for short). The Windows
machine you're most likely to be using now uses the Mcft Windows
operating system.

What's so different about Linux?

Linux is part of a revolutionary movement called the open-source
movement. The history and intricacies of that movement are well beyond
the scope of this tutorial, but I'll try and explain it simply. Open
source means that the developers release the source code for all their
customers to view and alter to fit what they need the software to do,
what they want the software to do, and what they feel software should
do. Linux is a programmer?s dream come true, it has the best compilers,
libraries, and tools in addition to its being open-source. A
programmer's only limit then, is his knowledge, skill, time, and
resolve.

What is a distro?

A distro is short for a distribution. It's someone's personal
modification or recreation of Linux.

What do you mean by distros?

Since Linux is open source, every developer can write his own version.
Most of those developers release their modifications, or entire
creations as free and open source. A few don't and try to profit from
their product, which is a topic of moral debate in the Linux world.
The actual Linux is just a kernel that serves as a node of
communication between various points of the system (such as the CPU,
the mouse, the hard drive etc.). In order to use this kernel, we must
find a way to communicate with it. The way we communicate is with a
shell. Shells will let us enter commands in ways that make sense to
us, and send those commands to the kernel in ways that makes sense to
it. The shell most Linux's use it the BASH shell (Bourne Again SHell).
The kernel by itself will not do, and just a shell on top of the kernel
won?t either for most users; we are then forced to use a distribution.

What distro is best?

This is not the question you want to ask a large number of people at
one time. This is very much like asking what kind of shoe is best,
you'll get answers anywhere from running shoes, hiking boots, cleats,
to wingtips. You need to be specific about what you plan on using
Linux for, what system you want to use it on, and many other things. I
will cover two that are quick and easy to get running. They may not be
the best, or the quickest, or the easiest, or the most powerful, but
this is a guide for getting started, and everyone has to start
somewhere.

How much does it cost?

computer + electricity + internet + CD burner & CDs = Linux

However a few do charge for their distros, but they aren't
all that common & can be worked around. Also, if you lack internet
access or a CD burner or CDs or you just want to, you can normally
order CDs of the distro for a few dollars each.



II. Trying it out.

Wouldn't it stink if you decide to wipe out your hard drive and install
Linux as the sole operating system only to learn that you don't know
how to do anything and hate it? Wouldn?t it be better to take a test
drive? 95 out of a 100 of you know where I'm heading with this section
and can therefore skip it. For those of you who don't know, read on.

There are many distros, and most distros try to have something that
makes them stand out. Knoppix was the first live-CD distro. Although
most of the other main distros have formed their own live-CDs, Knoppix
is still the most famous & we will be covering how to acquire it.

A live-CD distro is a distribution of Linux in which the entire OS can
be run off of the CD-ROM & your RAM. This means that no installation
is required & the distro will not touch your hard disk or current OS
On bootup, the CD will automatically detect
your hardware & launch into Linux. To get back to Windows, just
reboot & take the CD out.

Go to the Knoppix website (http://www.knoppix.com). Look around some to get
more of an idea on what Knoppix is. When you're ready, click Download.
You'll be presented with a large amount of mirrors, some of which have
ftp & some have http`s .

the speed of the mirrors vary greatly & you may want to
change mirrors should your download be significantly slow.

Choose a mirror. Read the agreement & choose accept it. You'll probably
want to download the newest version . So choose the newest file ending in
-EN.iso

you might want to also verify the md5 checksums after the
download, if you don't understand this, don't worry . You just
might have to download it again should the file get corrupted (you'll
have to anyway with the md5). Also, a lot of times a burn can be
botched for who-knows what reason. If the disk doesn?t work at all,
try to reburn.

Once the .iso file is done downloading, fire up your favorite
CD-burning software. Find the option to burn a CD image (for Nero, this
is under copy and backup) and burn it to a disk. Make sure you don't
just copy the .iso, you have to burn the image, which will unpack all
the files onto the CD.

Once the disk is done, put it in the CD-ROM drive and reboot the
computer. While your computer is booting, enter CMOS (how to get to
CMOS varies for each computer, some get to it by F1 or F2 or F3, etc.)
Go to the bootup configuration and place CD-ROM above hard disk. Save
changes and exit. Now, Knoppix will automatically start. You will be
presented with a boot prompt. Here you can input specific boot
parameters (or cheatcodes), or just wait & let it boot up using
the default.

Sometimes USB keyboards don`t work until the OS has somewhat
booted up. Once your actually in Knoppix, your USB keyboard should
work, but you may not be able to use cheatcodes. If you need to,
attach a PS/2 keyboard temporarily. Also, if a particular aspect of
hardware detection does`nt work, look for a cheatcode to disable it.
Cheatcodes can be found on the Knoppix website in text format (or in
HTML at http://www.knoppix.net/docs/index.php/CheatCodes).

Upon entering the KDE desktop environment, spend some time exploring
around. Surf the web, get on IM, play some games, explore the
filesystem, and whatever else seems interesting. When your done, open
up the console (also called terminal, xterm, konsole, or even shell)
and get ready for the real Linux. See section V for what to do from
here.

note: to function as root (or the superuser) type su.


It's not entirely necessary that you are a console wizard at this point
(although you will need to be sooner or later), but a little messing
around wont hurt.

Just as there are many Linux distros, so there are also many types of
Knoppix. I won?t go into using any of them, but they should all be
somewhat similar. Some of them include: Gnoppix, Knoppix STD, Morphix,
and PHLAK. Other distros also have live-CDs.

III. Installing

I will guide you through the installation of Fedora Core 2. The reason
for choosing Fedora is because it contains the Anaconda installer, which is
an easy installer.

Download the discs from here:
http://download.fedora.redhat.com/pub/fe.../i386/iso/
If the link doesn?t work, then go to http://www.redhat.com - navigate your
way to downloading Fedora (odds are your architecture is i386).
You will want to download the FC2-i386-disc1.iso & burn it using the
method for Knoppix. Do the same for all the discs.

dont download the FC2-i386-SRPMS-disc1.iso files.

once your ready, insert disc 1 into the drive & reboot.

The installer should come up automatically (if not, then see the
Knoppix section on CMOS).

Note: installer may vary depending on version. Follow directions best
you can using your best judgement.

1. Language: choose English hit enter
2. Keyboard: choose us (probably) hit enter
3. Installation media: choose local CDROM (probably) hit enter
4. CD test: you can choose to test or skip
5. Intro: click next
6. Monitor: choose your monitor to the best of your ability, if your unsure, choose on of the generic ones
7. Installation type: choose which ever you want-default will be fine
8. Partition: choose to automatically partition (unless you know what your doing)
9. Partition: the default partitions should suffice
10. Boot loader: choose your boot loader (grub for default)
11. Network settings: choose the correct settings for your network (generally, dont mess with anything unless you know what your doing)
12. Firewall: you can choose a firewall if you want to
13. Language support: choose any additional language support you want
14. Time zone: pick your time zone
15. Root password: set your root password (root is the admin, or superuser; you want it to be secure)
16. Packages: choose which packages you want to install. For hard drives over 10 gigs, you can go ahead and choose all
packages (depending on how much disk space you plan on taking up later, note that most everything you need is a package: the exception
being large media files). You will generally want to install all the packages you think you?ll ever need. Two desktop environments aren?t necessary.
Make sure you have at least one & the X window system! (if you want a GUI that is).

Note: Knoppix uses the KDE Desktop environment

17. Make sure everything is all right, install
18. You can now create a boot disk

Note: Desktop environments might have a set-up once you enter them

What to do now

Now that you have a Linux set-up & running, there are many paths you
can head down. First, you should explore your GUI & menus. Browse
the web with Mozilla, get on IM with GAIM, play games, add/delete
users, check out OpenOffice, anything else that might be part of
your daily use. Also, set up a few servers on your computer to play
around with, specifically SMTP (*wink*wink*), FTP (vsftp is a good
one), and either telnet or SSH (OpenSSH is a good one). The setup &
use of these are beyond this tutorial, but researching
them could prove to be educational.

The filesystem
The Linux (and Unix) filesystem is different from the normal Windows
that you?re used to. In Windows, your hard drive is denoted ?C:\? (or
whatever). In Linux, it is called the root directory and is denoted
?/?. In the / directory, there are several default folders, including
dev (device drivers) mnt (mount) bin (binaries) usr (Unix System
Resources) home, etc.

Once you are well situated, it?s time to get into the heart
of Linux: the console. The next step`s will guide you through it &
set you on the path to finding out how to do thing`s for yourself. You
will (probably) want to start learning to rely less & less on the
GUI & figure out how to do everything through the console (try
launching all your programs from the console, for example).

V. The Console

The Console might look familiar to DOS if youve ever used it. The
prompt should look like the following:

AvatharTri@localhost avathartri$

With the blinking _ following it. This can vary greatly as it is fully
customizable. Let?s get started with the commands.

First, let?s explore the file system. The command ls will "list" the
files in the current directory. Here?s an example:

AvatharTri@localhost avathartri$ ls

It should then display the contents of the current directory if there
are any. Almost all commands have options attached to them. For
example, using the -l option, which is short for "long" will display
more information about the files listed.

AvatharTri@localhost avathartri$ ls -l

We will get into how to find out the options for commands and what
they do later.

The second command to learn will be the cd command, or "change
directory". To use it, you type cd followed by a space and the
directory name you wish to go into. In Linux, the top directory is /
(as opposed to C:\ in Windows). Let?s get there by using this command:

AvatharTri@localhost avathartri$ cd /
AvatharTri@localhost /$

Now, we are in the top directory. Use the ls command you learned
earlier to see everything that?s here. You should see several items,
which are directories. Now, let?s go into the home directory:

AvatharTri@localhost /$ cd home
AvatharTri@localhost home$

And you can now ls and see what?s around. In Linux there are some
special symbol shortcuts for specific folders. You can use these
symbols with cd, ls, or several other commands. The symbol ~ stands
for your home folder. One period . represents the directory your
currently in. Two periods .. represent the directory immediately above
your own. Here?s an example of the commands:

AvatharTri@localhost home$ cd ~
AvatharTri@localhost avathartri$

This moved us to our user?s personal directory.

AvatharTri@localhost avathartri$ cd .
AvatharTri@localhost avathartri$ cd ..
AvatharTri@localhost home$

The cd .. moved us up to the home directory.
As you?ve probably noticed by now, the section behind the prompt
changes as you change folders, although it might not always be the
case as it?s up to the personal configuration.

You can use these symbols with the ls command also to view what is in
different folders:
AvatharTri@localhost home$ ls ~
AvatharTri@localhost home$ ls ..

And you can view what is in a folder by specifying its path:

AvatharTri@localhost home$ ls /
AvatharTri@localhost home$ ls /home

The last command we will cover as far as finding your way around the
filesystem is the cat command. The cat command will show the contents
of a file. Find a file by using the cd and ls commands and then view
its contents with the cat command.

AvatharTri@localhost home$ cd [directory]
AvatharTri@localhost [directory]$ ls
AvatharTri@localhost [directory]$ cat [filename]

Where [directory] is the directory you want to view and [filename] is
the name of the file you want to view. Omit the brackets. Now, if the
file you viewed was a text file, you should see text, but if it wasn?t,
you might just see jumbled garbage, but this is ok. If the file goes
by too fast and goes off the screen, don?t worry, we will get to how
to scroll through it later.

One of the most useful commands is the man command, which displays the
"manual" for the command you want to know more about. To learn more
about the ls command:

AvatharTri@localhost home$ man ls

And you will see the manual page for ls. It displays the syntax, a
description, options, and other useful tidbits of information. Use the
up and down arrows to scroll and press q to exit. You can view the
manual pages for any command that has one (most commands do). Try this
out with all the commands that you know so far:

AvatharTri@localhost home$ man cd
AvatharTri@localhost home$ man cat
AvatharTri@localhost home$ man man

One very crucial option to the man command is the -k option. This will
search the descriptions of manual pages for the word you specify. You
can use this to find out what command to do what you need to do. For
example, let?s say we want to use a text editor:

AvatharTri@localhost home$ man -k editor

And you should see a list of apps with a short description and the
word "editor" in the description.

With a blank prompt, you can hit tab twice for Linux to display all
the possible commands. For Linux to display all the commands beginning
with a certain letter or series of letters, type those letters and hit
tab twice.

Note: This is actually a function of BASH and not Linux, but BASH is
the default Linux shell.

Now that you know a little about moving around the filesystem and
viewing manual pages, there is one more trick that we will cover to
help you out. Remember how the man pages were scrollable as in you
could use the arrow keys to scroll up and down? That is because the
man pages use something called the less pager. We?re not going to go
into what this does exactly and how it works, but that?s definitely
something that you will want to look up. Here?s how to use the less
pager with a file:

AvatharTri@localhost home$ cat [filename] | less

That uses something called a pipe. The line is the vertical line above
enter on your keyboard. Briefly, what this does is take the output
from the cat command, and stick it in the less pager. By doing this,
you can view files that would normally run off the screen and scroll
up and down.

Some final commands to check out:

mkdir - make directories
cp - copy file
mv - move file
rm - remove file
rmdir - remove directory
grep - search a file for a keyword
pwd - display current working directory
top - display system resources usage (kill the program with control + c)

Internet Explorer 7 & 8's default security settings can be unsafe for internal, intranet-based Web applications, according to a newly published report.

Cesar Cerrudo, founder & CEO of Argeniss, a security consulting firm in Argentina, has demonstrated that IE's default features for intranet "zones" can be abused to wage attacks on internal Web applications both from the outside & from within the organization. Cerrudo has released his findings, which show how default settings can be used both to detect & exploit vulnerabilities in intranet applications.

The attacks take advantage of the fact that local intranet zone settings are inherently more trusted than ones in the Internet zone. But Internet-facing Web apps are basically safe from most of these attacks: "IE Internet zone settings are stronger,they will prevent & mitigate most of the attacks," he says.

Microsoft was not available for comment at the time of this posting.

Researchers previously have demonstrated attacks on intranets using internal host scanning & attacks on internal hosts, for instance, he says, but not the type of practical cross-site scripting, SQL injection, or cross-site request forgery attacks on these intranet apps from the Internet that he is demonstrating with IE. "All this is done from the Internet, abusing Internet Explorer's weak default-security settings," Cerrudo says.

One of the first big revelations of how vulnerable intranets can be came at Black Hat USA in 2006, when Jeremiah Grossman & Robert "RSnake" Hansen showed how Java Script-based attacks against Websites could also be used to hack internal Web apps using XSS.

"Cesar is expounding upon the research & making it IE-specific, with more & better examples of how attacks can happen," says Grossman, CTO at WhiteHat Security.

Cerrudo's research points out how IE 7 and 8's default security settings in the so-called Local Intranet Zone are more "relaxed" than the ones in the Internet zone. According to Cerrudo, the weak default settings are: automatic logon in the intranet zone; Websites with fewer privileges can reach this zone; script-initiated windows are allowed regardless of their size or position; Websites can open windows with an address or status bar & Version 8's XSS filter is disabled by default.

These features in various instances & combinations leave intranet-based apps vulnerable to phishing, cross-site scripting and SQL injection-combination attacks, and cross-site request forgery attacks, for instance. An attacker could perform these attacks to steal, modify, or wipe out data on a server, as well as take over a server altogether, according to the research.

Cerrudo says the attacks he has demonstrated require some insider information on the targeted internal Web-based applications. "I demonstrate practical intranet Web application attacks that only require some insider information -- Web applications information ,& also how to detect vulnerabilities in order to exploit them," he says.

"All of these attacks are dangerous. The result of the attacks go from hosts/servers/network compromises to data being stolen, deleted, modified, etc.," he says.

So how can organizations protect their intranet apps from such attacks? Cerrudo says first, be sure intranet Web apps are secure & free of vulnerabilities that can be exploited. Also, change IE default security settings, although that isn't necessarily straightforward: "This can cause problems to users since some functionality could break, browsing experience won't be nicer, etc.," he says. "I would set intranet zone settings the same as default Internet zone settings. If this causes problems with some Websites, then these Websites could be added to Trusted Sites security zone & set in that zone the needed settings."

WhiteHat's Grossman says changing the settings is worth any headache it will cause. "While it would break certain use-cases, I think it's worth it," Grossman says. "Dont automatically allow connections to the intranet originated from Internet Web pages. Make users explicitly allow it."

Meanwhile, Cerrudo says it would be helpful if IE supported custom security zones. "Something that IE is lacking is allowing the user to create custom security zones where Websites can be added & then security settings can be set based on your specific needs," he says.

Network Solutions Hacked, 500k Credit Cards Exposed

Malware planted on web servers belonging to Network Solutions LLC, a hosting company and domain registrar, reportedly compromised more than a half a million credit card accounts belonging to customers of its e-commerce merchants.

The company said it found unauthorized code on servers that support some of its e-commerce merchants' websites. It's reported that transaction data for about 4,343 of its merchant websites was stolen and redirected to outside servers. (Source: techtarget.com)

Half a Million Cardholders Affected

Approximately 573,928 cardholders were affected by the breach that resulted in credit card data being stolen. Those transactions impacted took place between March 12 and June 8 of this year.

The breach only affected Network Solutions e-commerce customers. Domain customers, email accounts and other sites hosted by Network Solutions are safe.

TransUnion LLC will work on behalf of Network Solutions merchants to contact affected customers and law enforcement is investigating the breach.

Breach Highlights Risk of Cloud Computing

Unauthorized code appears to have transmitted information about credit card transactions while they were being completed. The vulnerability did not involve the way data is stored in Network Solutions' systems.

According to Tech Target, Imperva chief technology officer of database security Amichai Shulman said the breach highlights the fundamental security risk of cloud computing. As more companies turn to cloud-based services to host data, the databases and servers used by hosting companies become more attractive to cybercriminals. (Source: techtarget.com)

Once the cloud has been penetrated, cybercriminals have an easy path to sensitive data

Las Vegas ATMs may have malware

The U.S. Secret Service said on Monday it is investigating a group of ATM machines in Las Vegas that are debiting people's accounts but not dispensing the cash.

The case came to light after Defcon hacker conference presenter Chris Paget tried to withdraw $200 on Sunday from his account at the Rio All-Suite Hotel & Casino. He wanted to buy a metallic copy of the Bill of Rights, a joke gift designed to set off airport metal detectors from the magicians Penn & Teller.

The ATM "whirred & chugged," Paget said, "but no money came out." His account, however, was debited.

He wasn't the only one. Paget spoke with an Israeli man who had tried to withdraw $1,000, as well as a woman who tried to take out $400. At least a half dozen people experienced the same problem at various machines in the hotel, Paget said.

Paget, who has expertise in credit-card security and runs a hardware security consulting company, notified the hotel staff, who didn't take action to shut down the machines.

"The best they would do was put a sign on the ATM saying 'Out of order,'" Paget said. "We were standing by the ATMs warning people."

Paget considered unplugging the machines, but the hotel's security told him he would potentially be prosecuted for vandalism.

Paget's experience points to the increasing frequency with which criminals are targeting ATMs. One scam is to attach a device to the ATM known as a skimmer that can record details stored on a card's magnetic stripe. A person's PIN (Personal Identification Number) can be captured with an overlay on the keypad or a video camera. Then, the card can be cloned.

Security experts have also seen samples of malicious software designed for ATMs that can record card details. Earlier this year, analysts at Trustwave's SpiderLabs research group said the malware came from a financial institution that had been affected in Eastern Europe.

In Paget's case, a Rio hotel representative said on Monday that she was unaware of the problem & advised calling the hotel's accounting office later. A Secret Service officer in the Las Vegas area confirmed the agency was looking into the issue along with the Las Vegas Metropolitan Police Department. Paget said he left a voicemail with the Federal Bureau of Investigation.

Paget also contacted Global Cash Access, a company that specializes in managing cash machines for the casino industry. The company told Paget they had no record of the withdrawal, although it showed up when he checked his online banking statement.

Paget said it is possible that the machines have been infected with malware. The program could be directing the machines not to dispense cash, which then is picked up by an insider in on the scam, he said. But it's too early to tell.

If the problem is not simply malfunctioning machines, it would be at least the second incident of something funny going on with ATMs around Defcon.

Earlier in the week, conference attendees at the Riviera Hotel noticed what was on inspection a bogus ATM machine positioned in the lobby. They shined a light into its screen, which revealed a PC behind it. Law enforcement later confiscated it.

Ironically, one of the talks planned for this year's Black Hat and Defcon conferences dealing with ATMs was cancelled. A researcher with Juniper Networks, Barnaby Jack, was supposed to detail a vulnerability affecting a popular line of new ATMs. But Juniper barred Barnaby from giving his presentation after the unnamed ATM vendor threatened legal action.
New Apple Trojan Means Mac Hunting Season Is Open
Image

The Mac has officially gone mainstream.
The proof? On Halloween, professional online criminals were found using Trojan-horse software to target, for the first time, computers running Apple's OS X operating system just as they have been doing for years on the more widely used Windows.
"Apple's day has finally came, Apple users are going to get hit hard," security researcher Gadi Evron said. "OS X is the new Windows 98."
The Trojan comes disguised as a video-decoding plug-in that users are told they must install to watch free porn clips (as screen shot above). Instead, the software burrows into the operating system- diverting some of the victim's future web surfing to sites under the attacker's control. It's the professional attack on Macs that the security community has long predicted, according to Dave Marcus, security research manager at McAfee's Avert Lab, who said it was "written by people who know how to write malware."
The arrival of the Mac Trojan signals that hackers have decided there are finally enough Apple systems on the internet to make attacking them profitable, according to security experts. Apple is the nation's No. 3 desktop & laptop seller in the United States, behind Dell & Hewlett Packard. This year, the Cupertino company accounted for an impressive 8.1 percent of the personal-computer market , up nearly two percentage points from the same period a year ago. Evron & other observers predict that black hats will have a field day with Macs, as well as with Apple's new mobile platforms.
"With over 2 million iPhones & iPod Touches, it makes sense they will think of them as an evolving market to exploit, there are a lot of new Mac users who aren't as savvy as Mac's earlier users," said CEO Alex Eckelberry of Sunbelt Software, which sells security software for Windows based machines.
Carl Howe, an Apple analyst at Blackfriars Communications, disputes the security researchers' theories. He thinks that OS X's Unix heritage makes Apple systems less vulnerable to attack than Windows-based platforms. He argues that even if hacking Macs hasn't been profitable in the past, attackers would have done it anyway if they'd been able- just for the attention.
"I think the market-share thing has always been a myth," Howe said. "It's a good story to talk about."
Announced Wednesday by Mac-focused security company Intego, the Mac Trojan was found on a set of pornography sites, where attackers dangled free movies that supposedly required users to install a special Quicktime codec to view.
The codec, however, is fake. Instead of unlocking a skin flick, it installs what Intego dubbed the OSX.RSPlug.A Trojan horse on the user's computer.
Black-hat hackers have been using fake codecs for more than a year to trick Windows users into installing software. In this case, when the site serving the malware determines that a user is on a Mac, it delivers a Mac-specific version.
Once installed, the Trojan hijacks the system's domain-name service. Internet-connected applications use DNS to translate the domain part of an URL, such as www.Wired.com, into the numeric IP address of a server. By hijacking the DNS, the attacker is able to replace search results with links to sites that he controls, in hopes of making money from online purchases, according to Eckelberry.
The software could also intercept intended visits to sites such as banks, eBay & PayPal & then redirect them to fake websites that harvest users' logins & passwords. The scammers could then use that info to to get money out of the real sites, but neither Sunbelt nor McAfee researchers have seen the malware harvesting personal-finance info.
Unlike many Windows-based attacks, the Trojan doesn't exploit a hole in Apple's software, & can't install itself. Instead, it relies on social engineering, tricking users into downloading the codec, requiring that they type in the administrator password to install it.
But the fact that the hackers aren't attacking through software bugs doesn't change this week's attack, according to Eckelberry. "I don't care if you have to type in your admin password," Eckelberry said. "If you are asked to install a QuickTime plug-in, you will."
For the past year, fake codecs have been among the top problems encountered by Windows users, according to Eckelberry. The attacks have gotten so professional-looking that the fake codecs even have fake, annoying end-license-user agreements that users have to agree to.
The Mac Trojan is created by the same malware crew that has been infecting Windows machines with the Trojans known as Zlob & also DNSChanger, according to Eckelberry & Marcus.
Marcus said McAfee researchers have already found the Mac Trojan on 65 websites. But he said the malware is not living up to its full potential: It only redirects users who attempt to visit one obscure adult website.
"Truthfully, this is kind of strange," said Marcus. "If you are going to mess with someone's DNS, I would have done far more fake DNS entries. I have a sneaking suspicion is that word got out before they wanted it to, but that's only an educated guess."
Evron sees more problems for Apple users than just new Trojans that try to trick users. Hackers will find it profitable & all too easy to find holes in Apple software, because the company hasn't paid sufficient attention to security, said Evron.
He predicts Apple will experience a full-range of attacks, just as Microsoft did a decade ago when Windows & the internet first met.
"It's Mac season. The next two years will be very interesting."


- http://www.wired.com/politics/security/ ... mac_trojan


Real Host Ltd., a so-called bulletproof hosting provider, was shut down by Swedish telecommunications company TeliaSonera after an investigation confirmed connections to a host of Internet-based crimes, including hosting C&Cs linked to the Zeus botnet.

The Zeus botnet, linked to the infection of over three million computers in the U.S. alone, is the major threat hosted on the Real Host network. While Zeus is the core issue, research from HostExploit.com and Andrew Martin of Martin Security shows ties to dozens of crimes and hundreds of malicious domains. And all of this comes from three IP blocks hosted on the autonomous system (Internet Server) AS8206 Junik, in Riga, Latvia.

Once Real Host was exposed, Junik was told by its upstream provider TeliaSonera to kill Real Host’s connections to the Web. Once the links were severed, Real Host joined McColo, Atrivo, and Pricewert as the latest ISP to be closed as a result of its direct link to cyber crime.

So what exactly was Real Host up to? The research from Martin Security and HostExploit offers an interesting look into the offerings of a rogue ISP, and the things its customers did with the services.

The first criminal enterprise is the control of the Zeus botnet. There were six C&C (Command and Control) servers on Real Host for Zeus. Real Host also played a role in money mule scams, Phishing, and one scam that paid criminals for embedding malicious Iframes on compromised Web sites. Moreover, Real Host is linked to the hosting of exploits, aimed at vulnerabilities on poorly patched systems.

“Google’s Safe Browsing -- shows for AS8206 Junik in the last 90 days; 12 sites providing malicious software for drive by downloads, 102 sites acting as intermediaries for the infection of 11,810 other web sites. Finally it found 161 websites hosting malware that infected 20,681 other web sites,” the investigation report outlined.

Various other items of note from the investigation into Real Host include the mass sale of stolen banking and financial information. One site offered a variety of services and information for sale, including PayPal accounts in the U.K. with confirmed balances. The cost to obtain one of these U.K. accounts was 10 percent of the hijacked PayPal account balance. Other criminal businesses included botnet rental, botnet loading and illegal pornographic content, as well as Warez (illegal software distribution) hosting.

The Real Host investigation also turned up evidence of some interesting links to the Russian Business Network (RBN). Many of the discovered linked domains were previously hosted by EstDomains, which was shut down in November of 2008 because of its criminal connections,proving that stopping one source of Web crime only leads to another taking its place.

“All of these were operational elements of RBN (Russian Business Network). So this may not be a reincarnation of the RBN but are clearly Russian organized cyber criminals, in the same vein and at least headed by someone from the old school of RBN.”

The All In One Ultra Hacker










Rainbow crack
Proxy Pro
Res Hacker
Rocket
Panther
PhpBBAttacker
MIDNITE massacre
Php BB pass extractor
NFO Maker
Mail Boomb 2.0 Yahoo
Stealth Http Scanner
Show Pass
UDP Flood
Ultra Dos
P0kes WormGen
Visa Spam
X Pass
Cable Modem Sniffer
Astaroth Joiner
E-mail Cracker
C C Generator
F.B.I Binder
Google Hacker
Hotmail Hacker Gold
Fuck Mil Bomber
FTP Brute Forcer
PhpBB exploit pack
Key Changer
MSN Flooder
Moore R Port Scanner
MSN Account Cracker
Server Killer
Source Checker
Net Res View
Ping&Nukes
Hotmail Scam Page
Deep Unfreeze
Hack My Space
Grinder 1.1
Hackers Assistant
Bios Pass Remover
Cia 10
Brutus
Craggle
CASXM138
CAYZODQF

http://depositfiles.com/files/j77zzvt7h

get your site online with web hosting plans

For several years from the late 1990s, McKinnon pursued an obsession that led him to hack into more & more websites: He was convinced the United States was concealing evidence of the existance of extraterrestrial life.

He was caught back in 2002 & since has been fighting extradition from Britain to the United States.

His case has become a cause for failing celebrities who view the possible sentence in the United States as over the top, he faces a jail sentance of upto 70 years & a $2-million fine. One MP is quitting Parliament in disgust after failing to persuade fellow MPs to back Mr. McKinnon, although British Prime Minister Gordon Brown has expressed sympathy for the hacker who suffers from Asperger's Syndrome, a form of autism.

But yesterday Mr. McKinnon lost an appeal at Britain's High Court against his extradition, making a U. S. trial more likely.

He has already lost one court battle at the European Court of Human Rights.

The High Court acknowledged arguments by his defence lawyers that extraditing Mr. McKinnon could have disastrous consequences for his health, but said that while he may suffer by being extradited, the process of the law overruled those concerns.

"I have no doubt that he will fight his extradition ,trial & sentence in the United States, very difficult indeed," Lord Justice Stanley Burnton wrote in his judgment, accepting that even suicide could occur.

Mr. McKinnon was recently diagnosed with Asperger's Syndrome, a condition that shows itself as an obsession with certain activities & interests & a level of "social naivety" in evaluating the consequences of his actions.lol

But the judge ruled that Mr. McKinnon's condition was not severe enough to set aside the process of the law.

U. S. officials have already indicated that they feel no pity for Mr. McKinnon.

"This was not some harmless incident. He did very serious & deliberate damage to military & NASA computers and left anti-American messages. All the evidence was that someone was staging a very serious attack on U. S. systems," a senior military officer at the Pentagon told The Daily Telegraph this week.

Mr. McKinnon says he was just naive.

According to press reports, it was after watching the 1983 film WarGames, in which a nerd played by Matthew Broderick brings the world to the brink of war by hacking into the Pentagon computer network, that Mr. Mc-Kinnon began to search for proof of his other passion, UFOs.

"I found out that the U. S. military use Windows," McKinnon told the BBC. " having realized this, I assumed it would probably be an easy hack if they hadn't secured it properly."

Between 1999 & 2002, Mr. McKinnon broke into what were believed to be the most secure computer systems in the world. He linked a number of computer systems to search for U. S. databases that were not protected by a password.

"I could scan 65,000 machines in less than nine minutes," Mr. McKinnon said.

As he searched unprotected databases, he also left messages such as, "Your security is really crap."which is something you would expect from a young child.

"It was frightening because they had little or no security," he said.

His obsession began to take hold of him. He lost his job and his girlfriend. He stopped washing and was not eating properly.

"I was sitting around the house in my dressing gown, doing this all night."

He was caught in 2002 as he tried to download a photograph he believed was an alien spacecraft from NASA. It was easy to track him down as he used his own email address.

"I think I almost wanted to be caught, because it was ruining me. I had this classic thing of wanting to be caught so there would be an end to it," he said after his arrest.

But he insists he was never malicious.

The United States, however, says he did a lot of damage. American authorities say he stole 950 passwords, deleted files, left 300 computers at aU. S. Navy weapons station unusable immediately after the Sept. 11 atrocities & also caused the US 700,000 damage.

As he has fought extradition, celebrities have backed him. David Gilmour, the Pink Floyd musician who sang on a protest song on his behalf, said the United States was being "heavy handed." Sting said the case represented a "travesty of human rights." Actress Julie Christie wrote to the Home Secretary urging him to stand up against the U. S. "bullying."

Prime Minister Gordon Brown said he was "sympathetic" to Mr McKinnon's plight, although he did not intervene.

Supporters are also angry at what they see as an unjust extradition process that favours the United States over the rights of British citizens.

Yesterday, his mother, Janis Sharp, said her son would not survive in a U. S. prison. "I would never see my son again. All to oblige the Americans?

Mr. McKinnon's lawyer has sent a letter to U. S. President Barack Obama, signed by 40 British MPs, asking him to intervene.

"I'm just praying, please hear us, Obama, because I know you would do the right thing," said Ms. Sharp. "I know you would have the strength to stand up & not have this."was the plee


Read all about it

The new Apple trojan

Hackers have now crossed into new frontiers by devising sophisticated ways to steal personal identification numbers, or PINs, protecting credit & debit cards, says an investigator. The attacks involve both unencrypted & encrypted PINs that attackers have found a way to crack, according to an investigator behind a new report looking at the data breaches.
The attacks, says Bryan Sartin, director of investigative response for Verizon Business, are behind some of the millions of dollars in fraudulent ATM withdrawals that have occurred all over the U.S.
"We're seeing entirely new attacks that a year ago were thought to be only academically possible," says Sartin. Verizon Business released a report Wednesday that examines trends in security breaches. "What we see now is people going right to the source ,stealing the encrypted PIN & using complex ways to un-encrypt it."
The revelation is an indictment of one of the backbone security measures of U.S. consumer banking: PIN codes. In years past, attackers were forced to obtain PINs piecemeal through phishing attacks, or the use of skimmers or cameras installed on ATM & petrol station card readers. Barring these techniques, it was believed that once a PIN was typed on a keypad & then encrypted, it would traverse bank processing networks with complete safety, until it was decrypted & then authenticated by a financial institution on the other side.
But the new PIN-hacking techniques belie this theory & threaten to destabilize the banking systems transaction process.
Information about the theft of PINs first surfaced in an indictment last year against 11 alleged hackers accused of stealing some 40 million debit & credit card details from TJ Maxx & other U.S. retailers. The affidavit, which accused Albert Gonzalez of leading the carding ring, indicated that the thieves had stolen "PIN blocks associated with millions of debit cards" & obtained "technical assistance from criminal associates in decrypting the encrypted PIN numbers."
But until now, no one had confirmed that thieves were actively cracking PIN encryption.
Sartin, whose division at Verizon conducts forensic investigations for companies that experience data breaches, wouldn't identify the institutions that were hit or indicate exactly how much stolen money was being attributed to the attacks, but according to the 2009 Data Breach Investigations report the hacks have resulted in "more targeted & cutting-edge, complex & clever cybercrime than seen previously."
"While statistically not a large percentage of our overall caseload in 2008, attacks against PIN information represent individual data-theft cases having the largest aggregate exposure in terms of unique records," says the report. "In other words, PIN-based attacks and many of the very large compromises from the past year go hand in hand."
Although there are ways to mitigate the attacks, experts say the problem can only really be resolved if the financial industry overhauls the entire payment processing system.
"You really have to start right from the beginning," says Graham Steel, a researcher at the French National Institute for Research in Computer Science who wrote about one solution to mitigate some of the attacks. "But then you make changes that aren't backwards-compatible."
PIN hacks hit consumers particularly hard, because they allow thieves to withdraw cash directly from the consumer's checking savings or brokerage accounts, Sartin says. Unlike fraudulent credit card charges, which generally carry zero liability for the consumer, fraudulent cash withdrawals that involve a customer's PIN can be more difficult to resolve since, in the absence of evidence of a breach, the burden is placed on the customer to prove that they didn't make the withdrawal.
Some of the attacks involve grabbing unencrypted PINs, while they sit in memory on bank systems during the authorization process. But the most sophisticated attacks involve encrypted PINs.
Sartin says the latter attacks involve a device called a hardware security module (HSM), a security appliance that sits on bank networks and on switches through which PIN numbers pass on their way from an ATM or retail cash register to the card issuer. The module is a tamper-resistant device that provides a secure environment for certain functions, such as encryption and decryption, to occur.
According to the payment-card industry, or PCI, standards for credit card transaction security, PIN numbers are supposed to be encrypted in transit, which should theoretically protect them if someone intercepts the data. The problem, however, is that a PIN must pass through multiple HSMs across multiple bank networks en route to the customer's bank. These HSMs are configured and managed differently, some by contractors not directly related to the bank. At every switching point, the PIN must be decrypted, then re-encrypted with the proper key for the next leg in its journey, which is itself encrypted under a master key that is generally stored in the module or in the module's application programming interface, or API.
"Essentially, the thief tricks the HSM into providing the encryption key," says Sartin. "This is possible due to poor configuration of the HSM or vulnerabilities created from having bloated functions on the device."
Sartin says HSMs need to be able to serve many types of customers in many countries where processing standards may be different from the U.S. As a result, the devices come with enabled functions that aren't needed and can be exploited by an intruder into working to defeat the device's security measures. Once a thief captures and decrypts one PIN block, it becomes trivial to decrypt others on a network.
Other kinds of attacks occur against PINs after they arrive at the card-issuing bank. Once encrypted PINs arrive at the HSM at the issuing bank, the HSM communicates with the bank's mainframe system to decrypt the PIN & the customer's account number for a brief period to authorize the transaction.
During that period, the data is briefly held in the system's memory in unencrypted form.
Sartin says some attackers have created malware that scrapes the memory to capture the data.
"Memory scrapers are in as much as a third of all cases we're seeing, or utilities that scrape data from unallocated space," Sartin says. "This is a huge vulnerability."
He says the stolen data is often stored in a file right on the hacked system.
"These victims don't see it," Sartin says. "They rely almost purely on anti-virus to detect things that show up on systems that aren't supposed to be there. But they're not looking for a 30-gig file growing on a system."
Information about how to conduct attacks on encrypted PINs isn't new and has been surfacing in academic research for several years. In the first paper, in 2003, a researcher at Cambridge University published information about attacks that, with the help of an insider, would yield PINs from an issuer bank's system.
The paper, however, was little noticed outside academic circles and the HSM industry. But in 2006, two Israeli computer security researchers outlined an additional attack scenario (.pdf) that got widespread publicity. The attack was much more sophisticated and also required the assistance of an insider who possessed credentials to access the HSM and the API and who also had knowledge of the HSM configuration and how it interacted with the network. As a result, industry experts dismissed it as a minimal threat. But Steel and others say they began to see interest for the attack research from the Russian carding community.
"I got strange Russian e-mails saying, Can you tell me how to crack PINs?" Steel recalls.
But until now no one had seen the attacks actually being used in the wild.
Steel wrote a paper in 2006 that addressed attacks against HSMs (.pdf) as well as a solution to mitigate some of the risks. The paper was submitted to nCipher, a British company that manufactures HSMs and is now owned by Thales. He says the solution involved guidelines for configuring an HSM in a more secure manner and says nCipher passed the guidelines to customers.
Steel says his solution wouldn't address all of the types of attacks. To fix the problem would take a redesign.
But he notes that "a complete rethink of the system would just cost more than the banks were willing to make at this time."
Thales is the largest maker of HSMs for the payment-card and other industries, with "multiple tens of thousands" of HSMs deployed in payment-processing networks around the world, according to the company. A spokesman said the company is not aware of any of the attacks on HSMs that Sartin described, and noted that Thales and most other HSM vendors have implemented controls in their devices to prevent such attacks. The problem, however, is how the systems are configured and managed.
"It's a very difficult challenge to protect against the lazy administrator," says Brian Phelps, director of program services for Thales. "Out of the box, the HSMs come configured in a very secure fashion if customers just deploy them as is. But for many operational reasons, customers choose to alter those default security configurations — supporting legacy applications may be one example — which creates vulnerabilities."
Redesigning the global payment system to eliminate legacy vulnerabilities "would require a mammoth overhaul of virtually every point-of-sale system in the world," he says.
Responding to questions about the vulnerabilities in HSMs, the PCI Security Standards Council said that beginning next week the council would begin testing HSMs as well as unattended payment terminals. Bob Russo, general manager of the global standards body, said in a statement that although there are general market standards that cover HSMs, the council's testing of the devices would "focus specifically on security properties that are critical to the payment system." The testing program conducted in council-approved laboratories would cover "both physical and logical security properties."
This tutourial is how to break windows passwords using cain & able,which you can download from
here :-)


Just follow steps below.

1) Download Cain & Abel v4.9.31 & install it.
2)Start Cain
3)Click on Cracker tab , on the left- choose LM & NTLM Hashes & click on + sign icon on toolbar then Dump NT Hashes from the Local machine

4)Next

5)After this will appear windows accounts,right click on the account you want to break password & choose which type of attack , in this example its brute force attack. Brute force actually means to start with a letter a & encrypting it. Then see if the encrypted strings match. If not then b, c, … until we have access to admin. Then the encrypted strings will match & we’ll know that is the right password. Brute force attack is the slowest method of cracking, but there is no risk that you’ll not find the password. The thing about brute force is that the time of cracking rises rapidly depending on how long the password is, how many characters are being used in it & so on.



Cain & Abel is a password recovery tool for Microsoft Operating Systems. It allows easy recovery of various kind of passwords by sniffing the network, cracking encrypted passwords using Dictionary, Brute-Force and Cryptanalysis attacks, recording VoIP conversations, decoding scrambled passwords, recovering wireless network keys, revealing password boxes, uncovering cached passwords and analyzing routing protocols. The program does not exploit any software vulnerabilities or bugs that could not be fixed with little effort. It covers some security aspects/weakness present in protocol's standards, authentication methods and caching mechanisms; its main purpose is the simplified recovery of passwords and credentials from various sources, however it also ships some "non standard" utilities for Microsoft Windows users.

Jailbreak tutourial for the ipod
Visit the Site