Password Cracking
There are a lot of tools with which we can
crack any OS password. Kon-Boot is one of the best tools with which you can log
in into Windows without password. It works by entering into the system BIOS and
temporarily changing the contents of the Windows kernel while booting. It then
allows you to enter anything (or You can leave it blank) as the password during
login. The next time you start the computer without Kon-Boot, the original
password will be back, the temporary changes will be discarded and the system
will behave as if nothing has happened.
And the technique can be taken as a remedy
for forgotten password.
With the help of kon boot U can login into
any OS without knowing the actual password. Kon boot simply byepass the
password by entering into the system BIOS and temporarily changing the contents
of the Windows kernel while booting and then we can access that computer.
To install and boot with kon boot just follow
the given steps::-
Step
1 : Extract the downloaded file anywhere on your
system.
Step
2 : Now
only insert a USB drive for Konboot (deattach all other USB drives ).
Step
3 : In
extracted files, find a file with name KonBootInstall.
Step
4: Open this
file as Run as administrator.
Step
5 : Select the
drive and chose Install to USB stick (with EFI support).
Step
6 : while
the process finishes and after this your USB stick is ready.
Step
7 : Now
Boot from this USB stick.
Step
8 : After
booting with this device, You will see the login screen as usual with a
password
box.
Step
9 : Type
anything there or leave blank and Just hit enter. And it's done.
Advantages of Rooting Android
Advantages of Rooting Android
Advantages of Rooting Android : These days android rooting is becoming a trend which every android user wants to follow but always has a sense of fear. Well rooting is important for the users because they love having the authority to customize their phone to the fullest and many other benefits. Rooting an Android Phone also gives a user faster performance with its device and also enables him to install custom ROMs.Firstly you should know what is Android rooting?
Android rooting is the process of allowing users of Smartphone’s, tablets, and other devices running the Android mobile operating system to get the full control and authority within subsystem. When you root an Android phone it enables you to act as the administrator of the phone. Android rooting provides you the facility to completely remove and replace your device’s operating system, usually with a more recent release of its current operating system for example from ICS to JellyBean Though the rooting is very popular these days but many Android users are completely unaware how to root their Smartphone’s and tablets. Before, Rooting an device was cumbersome task and moreover rooting also removed the manufacturer’s warranty from the device. As a result, many users were frightened away from rooting their Android. But today users can root their devices in minutes. Thanks to new rooting software programs; any user can root the device easily and quickly.
- Plenty of Apps.
- Speed /Battery life Boosts.
- A Free Wi-Fi Hotspot.
- Better Backup.
- Latest Operating System (OS)Updates.
- Infinite Features.
- Increases Performance.
- Reversible.
- Access Blocked Features.
- Install Custom ROM’s.
- Full control over your system.
Android Hacking Tricks
Android Hacking Tricks: Today, The best
android hacking apps or Download Best Android Hacking Apps. As we all know
hacking and pen testing is only can be done on computers. But now the world is
changing now your mobile is small hacking toolkit using these apps.
Apart from the normal mobile user, techie
guys also like their flexible feature that allows them to do various new tasks.
As with this its security concerns also headed up. Recently we have noted that
many of the cyber hackers are targeting Android users. There are many techie
guys have also unrestricted the features that are restricted by its owners,
Google. So I think the below words are familiar to them but many of them have
not been aware. Here I am discussing some of the Apps that are meant for the
Security tester, Ethical hacker and for those guys who really explore the tech
world.
Best Android Hacking Apps
Let’s see 12 Android Hacking Apps that are
meant for hacking, hackers, security researchers;
1) Hackode
Hackode : The hacker’s Toolbox is an
application for penetration tester, Ethical hackers, IT administrator and Cyber
security professional to perform different tasks like reconnaissance, scanning
performing exploits etc.
2) Androrat
Remote Administration Tool for Android.
Androrat is a client/server application developed in Java Android for the
client side and in Java/Swing for the Server.
3) APKInspector
APKinspector is a powerful GUI tool for
analysts to analyze the Android applications. The goal of this project is to
aide analysts and reverse engineers to visualize compiled Android packages and
their corresponding DEX code.
4) DroidBox
Droid Box is developed to offer dynamic
analysis of Android applications.
5) Burp Suite
Burp Suite is an integrated platform for
performing security testing of web applications. Its various tools work
seamlessly together to support the entire testing process, from initial mapping
and analysis of an application’s attack surface, through to finding and
exploiting security vulnerabilities.
6) zANTI
zANTI is a comprehensive network diagnostics
toolkit that enables complex audits and penetration tests at the push of a
button. It provides cloud-based reporting that walks you through simple
guidelines to ensure network safety.
7) Droid Sheep
Droid Sheep can be easily used by anybody who
has an Android device and only the provider of the web service can protect the
users. So Anybody can test the security of his account by himself and can
decide whether to keep on using the web service.
8) dSploit
DSploit is an Android network analysis and
penetration suite which aims to offer to IT security experts/geeks the most
complete and advanced professional toolkit to perform network security
assessments on a mobile device.
9) AppUse
Android Pen test Platform Unified Standalone
Environment:- AppSec Labs recently developed the AppUse Virtual Machine. This
system is a unique, free, platform for mobile application security testing in
the android environment, and it includes unique custom-made tools created by AppSec
Labs.
10) Shark for Root
Traffic sniffer, works on 3G and Wi-Fi (works
on FroYo tethered mode too). To open dump use Wireshark or similar software,
for preview dump on phone use Shark Reader. Based on tcpdump.
11) Nmap for Android
Nmap (network mapper) is one the best among
different network scanner (port finder) tool, Nmap mainly developed for Unix OS
but now it is available on Windows and Android as well. Nmap for android is a
Nmap apps for your phone! Once your scan finishes you can e-mail the results.
This application is not a official apps but it looks good.
12) SSHDroid
Android Secure Shell: Secure shell or SSH is
the best protocol that provides an extra layer of security while you are
connecting with your remote machine.SSHDroid is a SSH server implementation for
Android. This application will let you to connect to your device from a PC and
execute commands (like “terminal” and “adb shell”).
In this way you able to Download Best Android
Hacking Apps or best android tools for hacking, As we all know hacking and pen
testing is only can be done on computers. But now the world is changing now
your mobile is small hacking toolkit using these apps.
Why Hackers choose Linux
Why
Hackers Choose Linux ? However, in terms of hacking, programming or any other
related Geeky stuffs, Linux is at the top a good overview with this is because
Linux use is growing at an amazing rate. This operating system, which has no
public relations department, advertising, or government lobby, is being used
widely in homes and server rooms alike. It’s also free, and 100% open source,
meaning anyone can look at each and every line of code in the Linux kernel.
Linux
is a true multiuser operating system, and has been since the very first
version. It is powerful in it’s simplicity. Linux use is growing at an amazing
rate. This operating system, which has no public relations department,
advertising, or government lobby, is being used widely in homes and server
rooms alike. It’s also free, and 100% open source, meaning anyone can look at
each and every line of code in the Linux kernel. Linux is a true multiuser
operating system, and has been since the very first version. It is powerful in
it’s simplicity. Though there are robust graphical environments and tools, you can
still do everything you could possibly need with just a keyboard and a shell
prompt. Since you have the code, you could even make Linux do things it was
never meant to. That’s one of the things that draws both the gurus and the
attackers alike. When deciding on an operating system to cover in depth, we had
a variety to choose from: Windows 95/98/NT/2000/ME/etc, MacOS, OpenBSD, NetBSD,
FreeBSD, Solaris, HPUX, AIX, IRIX, and many others. So how did Linux win our
favor?
Features
:
·
It’s use is on the
rise.
·
It’s an Open Source
operating system.
·
It’s available to
everyone at a great price — free.
·
It comes in many
flavors (aka distributions.)
·
It is too commonly
broken into due to out of date packages, poor system configuration, and its
ubiquity.
·
Hackers use Linux.
·
We feel that Linux
can be secured.
The
power and flexibility of Linux makes it the hacker’s playground. They use it,
learn it, and understand it intimately. And that means that if there’s an
insecurity, they’re going to find it. The black-hats have thronged to Linux. It
allows them the control they require to do strange and ingenious things. If
they want to experiment with new or invalid network packets, they can do so
easily without relying on undocumented (or non-existant) API support from the
vendor. Millions of lines of code have been written for Linux applications and
libraries, usually in an extremely modular manner, which allows it to be
integrated into widely diverse projects. For example a library that allows you
to sniff the network for proactive performance monitoring could be used as part
of network hijacking code. The power and flexibility of Linux makes it the
hacker’s playground. They use it, learn it, and understand it intimately. And
that means that if there’s an insecurity, they’re going to find it. However the
very reasons the hackers like Linux are the same reasons more folks are
installing it on their own systems today. The ability to look at each and every
line of Linux code, and patch it when problems arise, means that Linux can be
secured not just by a few programmers locked away in some corporate
headquarters, but by any user at any time. However the very reasons the hackers
always like Linux are the same reasons more folks are installing it on their
own systems today. The ability to look at each and every line of Linux code,
and patch it when problems arise, means that Linux can be secured not just by a
few programmers locked away in some corporate headquarters, but by any user at
any time.
Difference Between Hacking and Cracking
The difference between hacking and cracking :
Hacking, and cracking. Two different forms of Internet and computer related
privacy and copyright breaches, usually malicious. I’ll be discussing the
differences between hacking, and cracking. They are two completely different
things, but people usually get confused between the two, they both end with a
similar sound, or ‘acking’ (that’s probably why!) and they’re both malicious
forms of cyber activity.
Let’s start off by explaining what the words mean,
in computer vocabulary – that is. Hacking, is the act of stealing personal or
private data, without the owner’s knowledge or consent, it could also include
other things like stealing passwords, creating a bot net, or pretty much any
act that breaches someone’s privacy, without their knowledge, or consent.
Now, on to cracking. Cracking is where edit a
program’s source code, or you could create a program, like a key generator
(more commonly known as a ‘keygen’), patch, or some sort of application that
tricks an application in to thinking that a particular process has occurred.
For example, a key generator and a patch for the Adobe Master Collection would
trick the software in to thinking that the key entered is correct, and not let
it verify the key with the Adobe master server. Cracking is pretty much looking
for a back door in software, and exploiting it for malicious use or for a
copyright breaching act.
The difference (if you have not noticed it yet) is
that a hacker is someone that uses their extensive knowledge of computer logic
and code for malicious purposes, while a cracker – looks for back doors in
programs, and exploits those back doors. Cracking is generally less harmful
than hacking. Hackers are usually involved with web related hacking, like MySQL
interception, or phishing, other forms of hacking would include things like
brute force, or password lifting.
Well, the difference is simple. One is more
malicious than the other, crackers usually have an extensive knowledge in code
related to Python and .NET (Visual Basic, C, C++, C#) and Objective C (Mac),
while hackers are fluent in different forms of web code, like PHP, MySQL, Java
Script , Ajax, and HTML and CSS. I hope, after reading this, we all have got
what the difference between hacking, and cracking are. Basically, it’s just
what they do, that’s the difference.
TOP 10 BLACK HAT HACKERS
Top 10 Black
Hat Hackers
A “black hat” hacker is a hacker who violates
computer security for little reason beyond maliciousness or for personal gain.
Black hat hackers form the stereotypical, illegal hacking groups often
portrayed in popular culture, and are the epitome of all that the public fears
in a computer criminal. Black hat hackers break into secure networks to destroy
data or make the network unusable for those who are authorized to use the
network. A black-hat is a term in computing for someone who compromises the
security of a system without permission from an authorized party, usually with
the intent of accessing computers connected to the network. To accompany the
technological advancements of the computer world and the constant changing definition
of a hacker, we thought it was time to look back at ten of the most notorious
black hat hackers and the legendary hacks that earned them such a title.
Here are top
10 black hat hackers.
10.
Vladimir Levin
Vladimir Levin is a Russian-born Jewish individual
famed for his involvement in the attempt to fraudulently transfer US$10.7
million via Citibank’s computers. However, his career as a hacker was only
short lived, with a capture, imprisonment and recovery of all but $400,000 of
the original $10 million. During Levin’s 1997 trial in the United States, he
was said to have coordinated the first ever internet bank raid. The truth is
Levin’s ability to transfer Citibank client funds to his own accounts was
possible through stolen account numbers and PINs. Levin’s scam was a simple
interception of clients’ calls while recording the punched in account numbers.
9.
Albert Gonzalez
he was arrested, authorities seized $1.6 million in
cash including $1.1 million Albert Gonzalez is a computer hacker and computer
criminal who is accused of masterminding the combined credit card theft and
subsequent reselling of more than 170 million card and ATM numbers from 2005
through 2007—the biggest such fraud in history. Gonzalez’s team used SQL
injection techniques to create malware backdoors on several corporate systems
in order to launch packet-sniffing (specifically, ARP Spoofing) attacks,
allowing him to steal computer data from internal corporate networks. When found
in plastic bags placed in a three-foot drum which had been buried in his
parents’ backyard. On March 25, 2010, Gonzalez was sentenced to 20 years in
federal prison.
8.
Kevin Poulsen
The notorious ’80s black hat hacker, Kevin Poulsen,
also known as Dark Dante, gained recognition for his hack of LA radio’s KIIS-FM
phone lines, which earned him a brand new Porsche, among other items. Law
enforcement dubbed him “the Hannibal Lecter of computer crime.”
Authorities
began to pursue Poulsen after he hacked into a federal investigation database.
During this pursuit, he further drew the ire of the FBI by hacking into federal
computers for wiretap information. His hacking specialty, however, revolved
around telephones. Poulsen’s most famous hack, KIIS-FM, was accomplished by
taking over all of the station’s phone lines. In a related feat, Poulsen also
“reactivated old Yellow Page escort telephone numbers for an acquaintance who
then ran a virtual escort agency.” Later, when his photo came up on the show
Unsolved Mysteries, 1-800 phone lines for the program crashed. Ultimately,
Poulsen was captured in a supermarket and served a sentence of five years,
which was the longest sentence ever given for hacking at the time. However,
since serving time, Poulsen has worked as a journalist and is now a senior
editor for Wired News. Poulsen’s most note-worthy article details his work on
identifying 744 sex offenders with MySpace profiles.
7.
Robert Tappan Morris
Robert Tappan Morris is
an American computer scientist, best known for creating the Morris Worm in
1988. That was considered the first computer worm on the Internet. Also he was
the first person convicted under the Computer Fraud and Abuse Act.
Morris created the worm
while he was a graduate student at Cornell University. He released the worm
from MIT to conceal the fact that it actually originated from Cornell. The worm
took down one-tenth of the Internet, crippling 6,000 plus computer systems. It
didn’t take long for the police to track him down. Due in part to the need for
social acceptance that seems to be common among many young hackers, Morris made
the fault of chatting about his worm for months before its release on the
Internet. Morris claimed it was just a stunt, and added that he truly regretted
causing $15 million worth of damage: the estimated amount of carnage his worm left
behind.
Morris was one of the
first to be tried and convicted under the Computer Fraud and Abuse Act . In
December, 1990, was sentenced to three years of probation, 400 hours of
community service, a fine of $10,050, and the costs of his supervision.
6.
Michael Calce
A high school student from West Island, Michael
Demon Calce best known as “MafiaBoy”. He launched a series of widely known
denial-of-service attacks against large commercial websites, including Yahoo!,
Amazon.com, Dell, eBay, and CNN. He hacked Yahoo! when it was still the web’s
leading search engine and caused it to shutdown for about an hour. Like many
hackers, Calce exploited websites primarily for pride and establishing
dominance for himself and his cybergroup, TNT. In 2001, the Montreal Youth
Court sentenced Calce to eight months of open custody, one year of probation,
restricted use of the Internet, and a minimal fine.
5.
Kevin Mitnick
A
self-proclaimed “hacker poster boy,” Mitnick went through a highly publicized
pursuit by authorities. His mischief was hyped by the media but his actual
offenses may be less notable than his notoriety suggests. The Department of
Justice describes him as “the most wanted computer criminal in United States
history.” His exploits were detailed in two movies: Freedom Downtime and
Takedown.
Mitnick
gained unauthorized access to his first computer network in 1979, at 16, when a
friend gave him the phone number for the Ark, the computer system Digital
Equipment Corporation (DEC) used for developing their RSTS/E operating system
software. He broke into DEC’s computer network and copied their software, a
crime he was charged with and convicted of in 1988. According to the U.S.
Department of Justice, Mitnick gained unauthorized access to dozens of computer
networks while he was a fugitive. He used cloned cellular phones to hide his
location and, among other things, copied valuable proprietary software from
some of the country’s largest cellular telephone and computer companies.
Mitnick also intercepted and stole computer passwords, altered computer
networks, and broke into and read private e-mail.
4.
George Hotz
George
Francis Hotz, alias geohot, or simply mil, is an American hacker known for
unlocking the iPhone, allowing the phone to be used with other wireless carriers,
contrary to AT&T and Apple’s intent. Additionally, he developed the
limera1n jailbreak tool, which used his limera1n bootrom exploit.
In
June, 2007, Hotz became the first person to carrier unlock an iPhone. According
to Hotz’s blog, he traded his 2nd unlocked 8 GB iPhone to Terry Daidone, the
founder of Certicell, for a Nissan 350Z and three 8 GB iPhones. Hotz said he
wanted to give the iPhones to the other members of the team who created the
hack with him. His name will forever be associated with the April 2011
PlayStation breach. Being one of the first hackers ever to jailbreak the Sony
PlayStation 3, Hotz found himself in the midst of a very relentless, public and
messy court battle with Sony – perhaps worsened by Hotz’s public release of his
jail breaking methods. In a stated retaliation to Sony’s gap of the unstated
rules of jail breaking – never prosecute – the hacker group Anonymous attacked
Sony in what would be the dubbed as the most costly security break of all time
to date.
At
the end of April 2011, Hackers broke into the PlayStation Network and stole
personal information of some 77 million users. However, Hotz denied any
responsibility for the attack, and added “Running homebrew and exploring
security on your devices is cool; hacking into someone else’s server and
stealing databases of user info. is not cool.”
3.
Adrian Lamo
Adrian
Lamo is a Colombian-American threat analyst and hacker. He used coffee shops,
libraries and internet cafés as his locations for hacking. Apart from being the
homeless hacker, Lamo is widely-known for breaking into a series of
high-profile computer networks, which include The New York Times, Microsoft,
Yahoo!, and MCI WorldCom. In 2002, he added his name to the The New York Times’
internal database of expert sources and utilized LexisNexis account to conduct
research on high-profile subjects.
For
his intrusion at The New York Times, Lamo was ordered to pay approximately
$65,000 in damages and was sentenced to six months house arrest at his parents’
home, with an additional two years of probation. In June 2010, Lamo disclosed
the name of Bradley Manning to U.S. Army authorities as the source of the July
12, 2007 Baghdad airstrike video leak to Wikileaks. Lamo is presently working
as a threat analyst and donates his time and skills to a Sacramento-based
nonprofit organization.
2.
Gary McKinnon
In
2002, an exceptionally odd message appeared on a US Army computer screen: “Your
security system is crap,” it read. “I am Solo. I will continue to disrupt at
the highest levels.” It was later identified as the work of Scottish systems
administrator, Gary McKinnon, who was accused of perpetrating the “biggest
military computer hack of all time”. He is accused of hacking into 97 United
States military and NASA computers over a 13-month period between, using the
name ‘Solo’.
The
US authorities claim he deleted critical files from operating systems, which shut
down the United States Army’s Military District of Washington network of 2,000
computers for 24 hours. After the September 11 attacks in 2001, he deleted
weapons logs at the Earle Naval Weapons Station, rendering its network of 300
computers inoperable and paralyzing munitions supply deliveries for the US
Navy’s Atlantic Fleet. He is also accused of copying data, account files and
passwords onto his own computer.
In
November 2002, McKinnon was indicted by a federal grand jury in the Eastern
District of Virginia. The indictment contained seven counts of computer-related
crime, each of which carried a potential ten-year jail sentence. The court had
recommended that McKinnon be apprehended to the United States to face charges
of illegally accessing 97 computers, causing a total of $700,000 in damage.
Even more interesting are McKinnon’s motives for the large scale hackings,
which he claims were in search of information on UFOs. He believed the US
government was hiding such information in its military computers.
1.
Jonathan James
16-year-old
black hat hacker Jonathan James, became the first juvenile imprisoned for
cybercrime. James gained his notoriety by implementing a series of successful
intrusions into various systems. In an anonymous PBS interview, he professes,
“I was just looking around, playing around. What was fun for me was a challenge
to see what I could pull off.”
James’
major intrusions targeted high-profile organizations such as NASA and the
Department of Defense. He cracked into NASA computers, stealing software worth
approximately $1.7 million. He also hacked into the Defense Threat Reduction
Agency and intercepted over 3,000 highly secretive messages passing to and from
the DTRA employees, while collecting many usernames and passwords.
Also
known as “c0mrade,” James committed suicide using a gun, On May 18, 2008, at
the age of 25. His suicide was apparently motivated by the belief that he would
be prosecuted for crimes he had not committed. “I honestly, honestly had
nothing to do with TJX,” James wrote in his suicide note, “I have no faith in
the ‘justice’ system. Perhaps my actions today, and this letter, will send a
stronger message to the public. Either way, I have lost control over this
situation, and this is my only way to regain control.”
Internet Protocol version 6
IPv6
(Internet Protocol version 6) is a set of specifications from the Internet
Engineering Task Force (IETF) that's essentially an upgrade of IP version 4
(IPv4). The basics of IPv6 are similar to those of IPv4 -- devices can use IPv6
as source and destination addresses to pass packets over a network, and tools
like ping work for network testing as they do in IPv4, with some slight
variations.
The
most obvious improvement in IPv6 over IPv4 is that IP addresses are lengthened
from 32 bits to 128 bits. This extension anticipates considerable future growth
of the Internet and provides relief for what was perceived as an impending
shortage of network addresses. IPv6 also supports auto-configuration to help
correct most of the shortcomings in version 4, and it has integrated security
and mobility features.
IPv6 features include:
§ Supports source and destination addresses that are
128 bits (16 bytes) long.
§ Requires IPSec support.
§ Uses Flow Label field to identify packet flow for
QoS handling by router.
§ Allows the host to send fragments packets but not
routers.
§ Doesn't include a checksum in the header.
§ Uses a link-local scope all-nodes multicast address.
§ Does not require manual configuration or DHCP.
§ Uses host address (AAAA) resource records in DNS to
map host names to IPv6 addresses.
§ Uses pointer (PTR) resource records in the IP6.ARPA
DNS domain to map IPv6 addresses to host names.
§ Supports a 1280-byte packet size (without
fragmentation).
§ Moves optional data to IPv6 extension headers.
§ Uses Multicast Neighbor Solicitation messages to
resolve IP addresses to link-layer addresses.
§ Uses Multicast Listener Discovery (MLD) messages to
manage membership in local subnet groups.
§ Uses ICMPv6 Router Solicitation and Router
Advertisement messages to determine the IP address of the best default gateway.








aaa.jpg)






