Showing posts with label hack. Show all posts
Showing posts with label hack. Show all posts

Wednesday, November 24, 2010

Airtel reliance 1000% working trick

Welcome to all new users you are most welcome in my daily updated blog.
Today m sharing a easy way to hack reliance and airtel net and tried by me 1000% working
1. You should download handler opera or ucweb or bolt,snaptu,ebuddy or any handler browser.
Handler means in any browser a pop up comes which say operator trick and you have to fill all that blanks.
2. Here m providing handler opera mini from which u can download and browse unlimited.m writing from mobile so i cant post screenshots here.so u can download

1- operamini 4.2 handler from below link
(http://plunder.com/8e8a081438)
or
(http://www.plunder.com/Handler-opera-mini-download-8e8a081438.htm)


2- Opera 5.0(multiple tabs and multiple downloading)

(www.mydesi.mobie.in/New%20Opera%20Mini%205%20Handler%204%20FREE)

now after downloading follow these procedures
1.open opera handler
2.select settings and select custom which is on the top
3.select primary server then edit it and paste this(http://server4.operamini.com)
2. select secondary server then paste (socket://server4.operamini.com)
3.select proxy type put http
4. select proxy server then paste(wap.mauj.com.beta.opera-mini.net)
5.and remaining fiels blank.now save ur setting.and start browsing and downloading as much as u want through
airtel-select mobile office
reliance-rcomwap or rcommms.
any problem u can contact me here or
email:- dpundir71@gmail.com

Monday, July 12, 2010

Types of hacking Attacks

There are alot of different attacks but I'm going to cover only these:

Eavesdropping
Snooping
Interception
Modification Attacks
Repudiation Attacks
Denial-of-service (DoS) Attacks
Distributed denial-of-service (DDoS) Attacks
Back door Attacks
Spoofing Attacks
Man-in-the-Middle Attacks
Replay Attacks
Password Guessing Attacks

Eavesdropping -

This is the process of listening in or overhearing parts of a conversation. It also includes attackers listening in on your network traffic. Its generally a passive attack, for example, a coworker may overhear your dinner plans because your speaker phone is set too loud. The opportunity to overhear a conversation is coupled with the carelessness of the parties in the conversation.

Snooping -

]This is when someone looks through your files in the hopes of finding something interesting whether it is electronic or on paper. In the case of physical snooping people might inspect your dumpster, recycling bins, or even your file cabinets; they can look under your keyboard for post-It-notes, or look for scraps of paper tracked to your bulletin board. Computer snooping on the other hand, involves someone searching through your electronic files trying to find something interesting.

Interception -

This can be either an active or passive process. In a networked environment, a passive interception might involve someone who routinely monitors network traffic. Active interception might include putting a computer system between sender and receiver to capture information as it is sent. From the perspective of interception, this process is covert. The last thing a person on an intercept mission wants is to be discovered. Intercept missions can occur for years without the knowledge of the intercept parties.


:Modification Attacks

This involves the deletion, insertion, or alteration of information in an unauthorized manner that is intended to appear genuine to the user. These attacks can be very hard to detect. The motivation of this type of attack may be to plant information, change grades in a class, alter credit card records, or something similar. Website defacements are a common form of modification attacks.

Repudiation Attacks -

This makes data or information to appear to be invalid or misleading (Which can even be worse). For example, someone might access your email server and inflammatory information to others under the guise of one of your top managers. This information might prove embarrassing to your company and possibly do irreparable harm. This type of attack is fairly easy to accomplish because most email systems don't check outbound email for validity. Repudiation attacks like modification attacks usually begin as access attacks.

Denial-of-service Attacks

[They prevent access to resources by users by users authorized to use those resources. An attacker may try to bring down an e-commerce website to prevent or deny usage by legitimate customers. DoS attacks are common on the internet, where they have hit large companies such as Amazon, Microsoft, and AT&T. These these attacks are often widely publicized in the media. Several types of attacks can occur in this category. These attacks can deny access to information, applications, systems, or communications. A DoS attack on a system crashes the operation system (a simple reboot may restore the server to normal operation). A common DoS attack is to open as many TCP sessions as possible; This type of attack is called TCP SYN flood DoS attack. Two of the most common are the ping of death and the buffer overflow attack. The ping of death operates by sending Internet control message protocol (ICMP) packets that are lrger than the system can handle. Buffer overflow attacks attempt to put more data into the buffer than it can handle. Code red, slapper and slammer are attacks that took advantage of buffer overflows, sPing is an example of ping of death.

Distributed Denial-of-service Attacks

This is similar to a DoS attack. This type of attack amplifies the concepts of DoS attacks by using multiple computer systems to conduct the attack against a single organization. These attacks exploit the inherent weaknesses of dedicated networks such as DSL and Cable. These permanently attached systems have little, if any, protection. The attacker can load an attack program onto dozens or even hundreds of computer systems that use DSL or Cable modems. The attack program lies dormant on these computers until they get attack signal from the master computer. This signal triggers these systems which launch an attack simultaneously on the target network or system.

Back door Attacks

This can have two different meanings, the original term back door referred to troubleshooting and developer hooks into systems. During the development of a complicated operating system or application, programmers add back doors or maintenance hooks. These back doors allow them to examine operations inside the code while the program is running. The second type of back door refers to gaining access to a network and inserting a program or utility that creates an entrance for an attacker. The program may allow a certain user to log in without a password or gain administrative privileges. A number of tools exist to create a back door attack such as, Back Orifice (Which has been updated to work with windows server 2003 as well as erlier versions), Subseven,NetBus, and NetDevil. There are many more. Fortunately, most anti-virus software will recognize these attacks.

Spoofing Attacks

This is an attempt by someone or something to masquerade as someone else. This type of attack is usually considered as an access attack. The most popular spoofing attacks today are IP spoofing and DNS spoofing. The goal of IP spoofing is to make the data look like it came from a trusted host when it really didn't. With DNS spoofing, The DNS server is given information about a name server that it thinks is legitimate when it isn't. This can send users to a website other than the one they wanted to go to.

Back door Attacks

This can have two different meanings, the original term back door referred to troubleshooting and developer hooks into systems. During the development of a complicated operating system or application, programmers add back doors or maintenance hooks. These back doors allow them to examine operations inside the code while the program is running. The second type of back door refers to gaining access to a network and inserting a program or utility that creates an entrance for an attacker. The program may allow a certain user to log in without a password or gain administrative privileges. A number of tools exist to create a back door attack such as, Back Orifice (Which has been updated to work with windows server 2003 as well as erlier versions), Subseven,NetBus, and NetDevil. There are many more. Fortunately, most anti-virus software will recognize these attacks.

Man-in-the-Middle Attacks

This can be fairly sophisticated, This type of attack is also an access attack, but it can be used as the starting point of a modification attack. This involves placing a piece of software between a server and the user that neither the server administrators nor the user are aware of. This software intercepts data and then send the information to the server as if nothing is wrong. The server responds back to the software, thinking it's communicating with the legitimate client. The attacking software continues sending information to the server and so forth.

Replay Attacks

These are becoming quite common, This occur when information is captured over a network. Replay attacks are used for access or modification attacks. In a distributed environment, logon and password information is sent over the network between the client and the authentication system. The attacker can capture this information and replay it later. This can also occur security certificates from systems such as kerberos: The attacker resubmits the certificate, hoping to be validated by the authentication system, and circumvent any time sensitivity.

Password Guessing Attacks

This occur when an account is attacked repeatedly. This is accomplished by sending possible passwords to an account in a systematic manner. These attacks are initially carried out to gain passwords for an access or modification attack. There are two types of password guessing attacks:

- Brute-force attack:

Attempt to guess a password until a successful guess occurs. This occurs over a long period. To make passwords more difficult to guess, they should be longer than two or three characters (Six should be the bare minimum), be complex and have password lockout policies.

- Dictionary attack:

This uses a dictionary of common words to attempt to find the users password. Dictionary attacks can be automated, and several tools exist in the public domain to execute them.

Well, there you have it, the only way basically to prevent these types of attacks is to get a good firewall, anti-virus software, and a good Intrusion Detection System (IDS). Tell your firewall to drop ICMP packets, that will prevent ICMP flooding. I will write another article in which I will cover only TCP and UDP attacks such as:
Sniffing
Port Scanning
TCP Syn or TCP ACk Attack
TCP Sequence number attack
TCP Hijacking
ICMP Attacks
Smurf Attacks
ICMP Tunelling

Sunday, July 11, 2010

Basic concept of Hacking

Basic concept of Hacking
I have got many emails, in which readers have asked to tell about how to hack any account like facebook, orkut etc.



So I thought to tell you all about the 3 concept of hacking from very basic level, by reading these articles even an illiterate person can understand all concept.(illiterate in the sense of computer knowledge).



I would like to tell you all that I am still a learner so don’t expect something great or very exclusive from me.(As one of my friend dheeraj asked me to hack FBI website and another friend pankaj asked me to hack www.songs.pk which is not my cup of tea at present).But still whatever I know, am gonna teach here and everything here is written by me and I have tried my level best to make you all understand in simplest way.If you find any problem in understanding then you can ask me here itself or even you can mail me to deeppundir09@gmail.com



WHAT IS HACKING?

Hacking is gaining access of something where public access is not there.Many of you just think that hacking is getting passwords of email ids but hacking is a vast arena having much more things other than just getting passwords or accessing someone’s computer.



White Hat Hakers :

These type of hakers are mainly security experts who finds the weaknesses of any system or network and try to correct it.These type of hakers are also known as Ethical hakers.

Eg: Manish Sharma, Ankit Fadia.





Black Hat Hakers :

These type of hakers do not come under good reputation in society.Their main work is to exploit the weaknesse of network for bad doings like hacking websites,uploading viruses,cracking the cyber security and much more.



Grey Hat Hakers:

These type of hackers may commit good or bad things , which depends on their mood.If most of these type of hakers does any bad attempt then they do it for just the sake of having fun and most of them do not have any wrong intentions behind cracking any system.



Red Hat Hakers:

I think very few of you have heard about red hat hakers , as these hakers come under black hat hackers but they only focus for money as transferring money from other’s account etc.



I think I have made all of you clear about concept of hacking, if you have any doubts then please ask me and now let us learn how to do hacking in next post.

Basic lesson of hacking

Basic lesson of Hacking : I P Address




IP address stands for internet protocol address.

Every ip address is the unique address on which data is sent to user. Your internet service provider make itself sure that data is transferring to you bcoz they are sending data on the4 address specially assigned to you.


Tracing IP address and its location :



How to know your ip address??

Click on start > RUN > type ‘cmd’ and hit enter which will open command prompt window in front of you or open command prompt from programs in vista and win7.

On command prompt window type’netstat-n’

And hit enter .A list will appear on your screen, look at local address , the first local ip address is yours.

Or

The second method to find out ip address is by visiting this site- whatismyip.com , on this site you can easily get your ip address.



Changing your IP address (PROXY):

While hacking your safety is very important, to do this the best thing is to change your ip address.



How to change ip address or doing Proxy-

Proxy is changing your ip address , as I already told you above that your ip address is the unique address on which data are sent to you. Now think that if you are doing any wrong work on net then what will get to police to look up…..it’s your ip address….so if you tell the web wrong ip address then police will goto any other’s ip address and you will be safe . So learning proxy is very much important while doing any cyber attacks.



Benefits of Proxy:



(a) There are many sites which allows only one account on one ip address, on those sites you can make multiple ids by proxy.

(b) We can download multiple files from websites like megaupload, rapidshare without having premium account on them.

(c) As I mentioned above , for being safe while doing cyber hacks/attacks, it is very much essential to change your ip address.



Simple way to understand it :



Your computer(ip)»»»[web]»»»ur comp.



After proxy:



Your comp»»»[proxy server]»»»»[web]»»»[proxy server]»»»your computer.



You can change your ip address by downloading many such softwares which can change your ip address by googling up.

To change your ip address manually :

For changing your ip address manually just use this simple trick-



Goto google search engine , search for “free proxy server”, then goto any of the links there which would be shown in result. Now on that website you will find many iup addresses of proxy servers. Copy anyone of the addresses (both port number and ip address).



Then in your web browser, I use mozilla firefox so telling for that goto Tools>Options>advanced>Network>

Settings and in settings put the ip address and port no.

The settings are almost same for all browsers, if you use anyother browser then find them yourself.

hack through keylogging

What is Keylogger?
A keylogger is basically a program or software which monitors or records each key typed by an user in computer system.So we can use it to hack anybody's email and passwords by using a keylogger.As the user types any keystroke, the keylogger collects each keystroke and saves it as a text in its own miniature harddrive.

A keylogger program does not require any physical access to users computer.It can be directly installed on victim's computer by binding.When keylogger is installed in victim's computer then program records each keystroke the user types and uploads the information in a fix interval of time on the internet to the person who have installed it.

Hardware keylogger :
They are used for keystroke logging, a method of capturing and recording computer user keystrokes. They plug in between a computer keyboard and a computer and log all keyboard activity to an internal memory. They are designed to work with PS/2 keyboards, and more recently with USB keyboards. A hardware keylogger appears simply as a USB pendrive (thumb drive) or any other computer peripheral so that the victims can never doubt that it is a keylogger. So by looking at it’s appearence it is not possible to identify it as a keylogger.