RSS
Showing posts with label Computer Security. Show all posts
Showing posts with label Computer Security. Show all posts

Beginners Guides To Hacking, Hacker, Vulnerability etc.,


What is a hacker?

The term hacker was once used to describe a clever programmer. Today, it’s applied to those who exploit security vulnerabilities to break into a computer system. You can think of it as electronic burglary. Hackers regularly break into both individual computers and large networks. Once they have access, they may install malicious programs, steal confidential data, or perhaps use compromised computers to distribute spam.

What is a vulnerability?

Today’s computer software is very complex, comprised of thousands of lines of code. Since software is written by humans, it’s hardly surprising that they contain programming mistakes, known as vulnerabilities. These loopholes are used by hackers to break into systems; they are also used by authors of malicious code to launch their programs automatically on your computer.


How do I protect myself from hackers?

Hackers are like electronic burglars, who use loopholes in your programs - vulnerabilities - to break into your computer system. You can protect yourself from hackers by using a firewall. A firewall program, which often comes as part of an anti-virus software package, protects a PC by detecting potential intruders and making the PC invisible to hackers.

read comments Read User's Comments

Computer Security FAQ For Beginners


Computer Security FAQ

In the past, PCs were mainly under threat from viruses and worms. The main purpose of these programs was to spread; however, some programs were also designed to cause damage to files and PCs. Such malicious software, or “malware”, could be described as ‘cyber vandalism’.

What is the difference between a virus and a worm?
What is a TROJAN and where did the name come from?
What is a DoS attack? What is a DDoS attack?
What is a "DRIVE-BY DOWNLOAD”?
What is a MALWARE?
What is a SPYWARE?
What is a KEYLOGGER?
What is PHISHING?
What is a ROOTKIT?
What is ADWARE?
What is a BOTNET?


A virus is a program that replicates, i.e. it spreads from file to file on your system and from PC to PC. In addition, it may be programmed to erase or damage data.
Worms are generally considered to be a subset of viruses, but with certain key differences. A worm is a computer program that replicates, but does not infect other files. Instead, it installs itself once on a computer and then looks for a way to spread to other computers.
In the case of a virus, the longer it goes undetected, the more infected files there will be on the computer. Worms, however, create a single instance of their code. Moreover, unlike a virus, a worm code is stand-alone. In other words, a worm is a separate file while a virus is a set of code which adds itself to existing files.

A Denial-of-Service (DoS) attack is designed to hinder or stop the normal functioning of a web site, server or other network resource. There are various ways for hackers to achieve this. One common method is to flood a server by sending it more requests than it is able to handle. This will make the server run slower than usual (and web pages will take much longer to open), and may crash the server completely (causing all websites on the server to go down).
A distributed-Denial-of-Service (DDoS) attack differs only in the fact that the attack is conducted using multiple machines. The hacker typically uses one compromised machine as the ‘master’ and co-ordinates the attack across other, so-called ‘zombie’, machines. Both master and zombie machines are typically compromised by exploiting a vulnerability in an application on the computer, to install a Trojan or other piece of malicious code.

Phishing is a very specific type of cybercrime designed to trick you into disclosing personal financial details. Cybercriminals create a fake website that looks just like a bank’s website (or any other web site where online financial transactions are conducted e.g. eBay). They then try to trick you into visiting this site and typing in your confidential data, such as your login, password or PIN. Typically, cybercriminals send out a large numbers of e-mails containing a hyperlink to the fake site.

This term describes a collection of programs used by a hacker to evade detection while trying to gain unauthorized access to a computer. The term originated in the Unix world, although it has since been applied to the techniques used by authors of Trojans that run under Microsoft® Windows® to conceal their actions. Rootkits have been used increasingly as a form of stealth to hide Trojan activity. When installed on the system, rootkits are not only invisible to users, but they are designed to escape detection of security software as well. The fact that many people log into their computers with administrator rights, rather than creating a separate account with restricted access, makes it easier for cybercriminals to install a rootkit.

Malware - short for malicious software - is an umbrella term that refers to any software program deliberately created to perform an unauthorized and often harmful action. Viruses, backdoors, keyloggers, password stealers and other Trojan horse programs, Word and Excel macro viruses, boot sector viruses, script viruses (batch, windows shell, java, etc.) and Trojans, crimeware, spyware and adware are but a few examples of what is considered malware.
It was once sufficient to call something a 'virus' or 'Trojan horse', but infection methods and vectors evolved and the terms virus and Trojan no longer provided a satisfactory definition for all the types of rogue programs that exist.
The term Trojan refers to the wooden horse used by the Greeks to sneak inside the city of Troy and capture it. The classic definition of a Trojan is a program that poses as legitimate software but when launched will do something harmful. Trojans can't spread by themselves, which is what distinguishes them from viruses and worms.
Today, Trojans are typically installed secretly and deliver their malicious payload without your knowledge. Much of today’s crimeware is comprised of different types of Trojans, all of which are purpose-built to carry out a specific malicious function. The most common are Backdoor Trojans (often they include a keylogger), Trojan Spies, password stealing Trojans and Trojan Proxies that convert your computer into a spam distribution machine.

In a drive-by download, your computer becomes infected just by visiting a website which contains malicious code. Cybercriminals search the Internet looking for vulnerable web servers that can be hacked. On such servers, cybercriminals can inject their malicious code (often in the form of malicious script) onto the web pages. If your operating system or one of your applications is un-patched, a malicious program is downloaded to your computer automatically when you access the infected web page.

These are programs which record key presses (i.e. what a user types on the keyboard) and can be used by a hacker to obtain confidential data (login details, passwords, credit card numbers, PINs, etc.). Backdoor Trojans typically come with an integrated keylogger.

Adware is the general term applied to programs that either launch advertisements (often pop-up banners) or re-direct search results to promotional web sites. Adware is often built into freeware or shareware programs: if you download a freeware program, the adware is installed on your system without your knowledge or consent. Sometimes a Trojan will secretly download an adware program from a web site and install it on your computer.
Web browsers that aren’t up-to-date often contain vulnerabilities. Such browsers are vulnerable to hackers tools (often referred to as Browser Hijackers) that can download adware to your computer. Browser Hijackers may change browser settings, redirect incorrectly typed or incomplete URLs to a specific site, or change the default homepage. They may also redirect searches to pay-to-view (often pornographic) web sites.
Typically, adware programs do not show themselves in the system in any way: there will be no listing under Start | Programs, no icons in the system tray and nothing in the task list. They seldom come with a de-installation procedure and attempts to remove them manually may cause the original carrier program to malfunction.

The term used for a network of computers controlled by cybercriminals using a Trojan or other malicious program.

As the name suggests, this is software that is designed to harvest your data and forward it to a third party without your consent or knowledge. Such programs may monitor key presses ('keyloggers'), collect confidential information (passwords, credit card numbers, PIN numbers, etc.), harvest e-mail addresses or track browsing habits. In addition to all of this, spyware inevitably affects your computer’s performance.

read comments Read User's Comments

How To Stoping Dos and DDos Tutorial

Officially I don't think you can stop the attacks but you can make your server feel less or no blow at all.

Dos & DDos - A denial-of-service attack (DoS attack) or distributed denial-of-service attack (DDoS attack) is an attempt to make a computer resource unavailable to its intended users.

You want to make yourself less vulnerable to these attacks. They attack your server by flooding their victims computer with traffic. The attackers use of thousands/hundreds of machines to attack one server

Stopping this is extremely complicated. So I'll just tell you how to make yourself more safe against these ever day attacks. Having open ports just makes it easier on the Doser themselves. Keep ports you dont need Closed.

FireWalls

Having a regular firewall can stop hackers but a plain firewall can not protect you against a strong Dos. A firewall was intrusion measures that can kick bad traffic out and still allow normal traffic in. This can help with some of the attack parts which wont get on your system.

Recommended Firewalls

ZoneAlarm- http://www.zonealarm.com/bin/free/1025_u...tup_en.exe

OutPost- http://download.cnet.com/Agnitum-Outpost...?tag=mncol

Comodo- http://www.download.comodo.com/cis/downl...ta_x32.exe

read comments Read User's Comments

Blackshades Scanner | Scan With 30 AV | Histories | FREE!

Blackshades Scanner is exactly what it says: a multi Anti-Virus scanner which can help you determine the validity of a file. We pride ourselves on keeping the AV database up to date, so you have the best idea if your file is safe or not. The great thing about the scanner is that it is available for public download and public registration. Register with our software, and you will get 5 scans for free! 

Sorry, all images are down...


Features

When you login, you are greeted with the following screen which will display all of your current account information.

 main screen


Scanning:

To scan a file, all that you must do is add a file, select upload, and wait for it to be sent to our server. Our server will then scan the file with the AVs and report back to you when done -- it is as simple as that.

Reports:

You are able to view in-depth reports, AV by AV about their detection, and even the strings in the file!

Histories:

Of course, keeping these scans are important, so we will store your histories of your scans for you.



AntiViruses:

Currently, we support the following AV, and are looking to get more:
+ Avira AntiVir
+ Avast
+ AVG
+ Authentium
+ BitDefender
+ ClamAV
+ Emsisoft
+ F-Secure
+ Fortinet
+ Ikarus (A-Squared uses same datbase!)
+ Kaspkersky
+ NOD32
+ Norman
+ Panda
+ Sunbelt
+ Syamantec
+ VBA32
+ VirusBuster

Absolutely free!
Unlike many products, we are willing to let users use this product for absolutely no cost.

read comments Read User's Comments

How to protect your identity online [Part 1] [Extremely DETAILED]


The information I will provide might make you paranoid by the time you are done reading this, so if you don't want to be informed and paranoid, please don't read this.

I will be covering:

1) History - Hackers
2) Website owners
3) Your name
4) Your e-mail
5) What you sign up to
6) Information you expose unknowingly 
7) Keeping you safe


You hear it on the news, you read it on the newspaper, you live with it everywhere without even acknowledging its existence.

"Hackers have stolen identities" I have heard that line so many times this year, it is ridiculous.

Companies promising to "defend" your identity, memberships giving their words to keep your information to themselves only, the government reassuring that they will only have access.

All this is a lie as information ALWAYS gets leaked or there is an inside worker providing information out into the black market.
Not only that, but securities on big companies are always exposed and hackers always find their way in.


1) History - Hackers

I will explain briefly on the type of hackers that there are out there for the sake of academical knowledge. These descriptions are not in dept, instead they are meant to slightly touch the subject and educate those are who are unaware of these titles on the cyber world.

1) Black Hat Hackers - These are the most infamous hackers there are. These are the guys you hear about it on the news due to committing crimes. These people are whose purpose is to gain information and use for their own need. They could be anyone.

-Black Hats tend to be professionals at what they do and are extremely well informed on everything related with the cyber world and crimes.
-Black Hats tend to be educated people who have worked many years to accumulate all the knowledge they hold. They are not your kid who uses "hacking tools" to scare their gaming buddies online.
-Black Hats is the image typically portrayed on movies.

2) White Hat Hackers - These are the lesser known hackers simply because they do the clean up work that goes behind the scenes cleaning up the messes from Black Hat Hackers.

-White Hats are the heroes of the cyber world. They fight crime using their hacking knowledge to patch exploits on system and assure that your information does not gets leaked out or easily acquired by any Black Hats.
-White Hats are professionals at what they do. They have as much knowledge as Black Hats, but use their skills to fight crime rather than aid it.

3) Gray Hat Hackers - These are the somewhat known hackers simply because they are unpredictable on what their actions might turn into. They are known as "Gray Hats" because it's a mixture between the color White + Black = Creating: Gray

-Gray Hats are essentially neutrals on what they do. They might decide to do what's right even if there's some other entity telling them that it's wrong or could be vice versa.

For example, Black Hat steals bank information and leaks out on the internet. Gray Hat could either decide to either use the information OR let the owners, authorities, or the companies know of the exposure.


2) Website owners

Websites, there are millions of them around the world in all languages. You can keep yourself entertained on them or you can become smarter reading potential useful information as you are reading now. Thumbsup

Do you ever wonder "Who owns this website?" or "How can I find out who owns it?"

I decided to include this topic on here since more and more people decide to pay for hosting services to have their very own website for either personal usage or some sort of business. 

Well, unlike in the real world where you fill out papers and they get stacked or hidden in some compartment where not a random person could have access. Websites expose your information unknowingly. Maybe not the websites themselves, but the companies that provide hosting services. 

I will use this website "HackForums.net" as an example to teach what I'm talking about.

There is something known as a "whois" that essentially tells you who registered the domain name.

You can easily Google "whois domain" and a huge list of websites that allow you to whois either a location or a domain to find its location.

My favorite website to do whois is: 

http://whois.domaintools.com/

Now, if we do a whois on HackForums.net, here's what we get.


Quote:Domain Name: HACKFORUMS.NET
Registrar: MONIKER

Registrant [2341726]:
Moniker Privacy Services
Moniker Privacy Services
20 SW 27th Ave.
Suite 201
Pompano Beach
FL
33069
US

Administrative Contact [2341726]:
Moniker Privacy Services
Moniker Privacy Services
20 SW 27th Ave.
Suite 201
Pompano Beach
FL
33069
US
Phone:             +1.9549848445 begin_of_the_skype_highlighting            +1.9549848445      end_of_the_skype_highlighting      
Fax: +1.9549699155

Billing Contact [2341726]:
Moniker Privacy Services
Moniker Privacy Services
20 SW 27th Ave.
Suite 201
Pompano Beach
FL
33069
US
Phone:             +1.9549848445 begin_of_the_skype_highlighting            +1.9549848445      end_of_the_skype_highlighting      
Fax: +1.9549699155

Technical Contact [2341726]:
Moniker Privacy Services
Moniker Privacy Services
20 SW 27th Ave.
Suite 201
Pompano Beach
FL
33069
US
Phone:             +1.9549848445 begin_of_the_skype_highlighting            +1.9549848445      end_of_the_skype_highlighting      
Fax: +1.9549699155

Domain servers in listed order:

NS1.DALLAS-IDC.COM
NS2.DALLAS-IDC.COM
NS1.ZANMO.COM 69.162.82.250

Record created on: 2005-09-27 14:18:41.0
Database last updated on: 2010-11-29 02:16:59.78
Domain Expires on: 2011-09-27 14:18:41.0

As you can see it exposes a lot of information that you wouldn't want strangers to get a hold of you and then use to sell for their own good. 

  Common Hacking Forums, Websites are registered as a "Private" domain, so no real information is shown of the real owner. Instead, it displays the information of the company providing the service for the domain or hosting. 

This is also how you can contact a company if you want to report a website with disgusting content such as child pornography. 

I'm not going to whois a person's website since it would be against the rules to expose personal information about anyone, but I believe that you get the idea of what can be done to discover information such as address, name, phone number, fax number, and more using nothing but a website name.

Experienced website administrators always should use Private domains to avoid exposing information to the public as much as possible.

If you have a website, whois it yourself and find out whether if you are exposed or not. If you are, call the company you registered your domain and request your domain to be put as private. They might require a fee of around $7 extra a year, but it's worth it knowing that you're not exposed. 

You could also find out the ISP or company by doing a ping on an IP.

Example,

Open Command Prompt and type "ping Hackforums.net" the response will be an IP. Once you have that IP, you can use:

http://iplocation.net/

To tell you where the servers are located and giving you a definite location for the company's machines. 

http://iplocation.net/ Can also be used to find the location of a person's location with their IP.


3) Your name

Your name is as unique as you can be. Your parents/guardians named you and that's what makes you, you. 

Your name can be your worst enemy when you are online as it can be used to expose so much information about you to the point of where you could be blackmailed. 

Where should you ever use your real name online? NEVER. Why? Because, using your name alone anyone can find out where you live within a matter of 5 seconds. 

Websites such as:

http://com.lullar.com/

http://www.pipl.com/email/

http://www.spokeo.com

http://www.emailfinder.com

http://www.411.com/
http://www.ask.com/
http://www.bebo.com/
http://www.facebook.com/
http://www.flickr.com/
http://www.ip-adress.com/ipaddresstolocation/
http://www.myspace.com/
http://www.myyearbook.com/
http://www.searchenginez.com/findpeople.html
http://www.skipease.com/
http://www.sonico.com/
http://www.spock.com/
http://www.twitter.com/
http://www.usatrace.com/
http://www.whitepages.com
http://www.whois.com/
http://www.whois.net/
http://www.wink.com/
http://www.youtube.com
http://www.zabasearch.com/
http://www.zoominfo.com

Make it extremely easy to search names, e-mails, etc to dig information about whoever you want. There are more websites in which I personally use to dig information about people, but I will not mention them since I do not want the news station going crazy on a new rage of identity exposers. 


Here's an example of a person I searched for the sake of showing.
I have satellite pictures using Google Earth to pinpoint exactly where she lives and what her house looks like, but I will not expose that.

Where is this information normally exposed? Hmm...I'll let you guess. Or maybe not...The answer is Social Networks. Ah, Facebook, Myspace, Orkut, and so many others...The list goes on and on.

I highly recommend that you NEVER use your real name, instead use an edited name or initials instead rather than exposing your real name to the real world. If your friends on social networks already know you, they should not need to see your complete name as they will already know you.

For example,

Bill Gates

My recommendation would be to use "Billy Gates" simply because a letter being off makes it so incredibly difficult to pinpoint someone.

You can use your imagination for what you should replace your name instead of your real name. That is, if you want to avoid being looked up.

Something I have found based on experience is that it's much more difficult pinpointing teenagers on the internet since they are not normally registered with government database that eases finding them.

If you are a teenager, do not have your parents names exposed as the name of your parents can be used to pinpoint you or vice versa, if you are a parent. Ironically, it's the teenagers that expose more information than adults and yet, they are the ones harder to pinpoint.

read comments Read User's Comments