Showing posts with label hacking. Show all posts
Showing posts with label hacking. Show all posts

Friday, 28 February 2014

NSA and GCHQ jointly to violate Yahoo users privacy



The news came into picture about Government who are conducting Global Mass surveillance. Edward Snowden have defaced the US Intelligence Agency NSA, who were taking care of a number of projects like PRISM, XKeyscore, DROPOUTJEEP, and various others to carry out surveillance of millions of people.

It has been revealed that the US National Security Agency (NSA) helped its British counterpart, the Government Communications Headquarters (GCHQ), to allegedly capture and store nude images and others from webcam chats of millions of unsuspecting Yahoo users, The Guardian reported.

Documents given to the Guardian by the former NSA contractor Edward Snowden stated that the GCHQ's worked with the US intelligence agency NSA on a joint project known as ‘Optic Nerve’. The project carried out a bulk surveillance program, under which they seized webcam images every five minutes from random Yahoo users' video chats and stored them in a database.

The project didn't target individuals but rather targeted Yahoo Webcam chats between 2008 and 2010. In just six months time period the still images of about 1.8 million users were captured and stored in the government servers in 2008. Instead of saving full videos, the program logged one image every five minutes from a user's chat. The document says that between 3 and 11 percent of the images taken contain "undesirable nudity." The collected webcam data was stored in the NSA's XKeyscore search tool, and the NSA research was used to build the tool which identified Yahoo's webcam traffic, reads the report.



GCHQ webcam spying program, Optic Nerve, was still active in 2012, according to an internal GCHQ wiki page accessed that year.

One GCHQ document states, "It would appear that a surprising number of people use webcam conversations to show intimate parts of their body to the other person."

The document stated that the images were collected by the government agency, so that the researcher could experiment with facial recognition.

"Face detection has the potential to aid selection of useful images for 'mugshots' or even for face recognition by assessing the angle of the face," it reads. "The best images are ones where the person is facing the camera with their face upright."




The GCHQ agency staffs were allowed to display "webcam images associated with similar Yahoo identifiers to your known target", the document reads, also it states “Bulk surveillance of Yahoo users was begun” as "Yahoo webcam is known to be used by GCHQ targets."

Yahoo denied for any involvement with the GCHQ describing the activity as "a whole new level of violation of our users' privacy."

GCHQ spokesman said in a statement, "It is a longstanding policy that we do not comment on intelligence matters. Furthermore, all of GCHQ's work is carried out in accordance with a strict legal and policy framework which ensures that our activities are authorized, necessary and proportionate, and that there is rigorous oversight, including from the secretary of state, the interception and intelligence service commissioners and the Parliamentary Intelligence and Security Committee,” adding, “All our operational processes rigorously support this position."

The NSA spokesperson declined to respond saying, "As we've said before, the National Security Agency does not ask its foreign partners to undertake any intelligence activity that the US government would be legally prohibited from undertaking it."

Source: THE HACKERS NEWS


Read more…

Wednesday, 26 February 2014

Chameleon, An airbourne virus that travels wirelessly.



Recently, A virus has been developed that travel wirelessly and can infect WiFi networks which has open access like one available on airports or coffee shops. A serious security risk, as there are more numbers of access points in close proximity, so infection rates are high in very less time.

“Chameleon behaved like an airborne virus, travelling across the Wi-Fi network via access points (APs) that connect households and businesses to Wi-Fi networks,” explained Alan Marshall, professor of network security at the University’s School of Computer Science and Electrical Engineering and Electronics.

A team of researchers at the University of Liverpool, UK, demonstrated how a virus known as Chameleon was able to spread undetected over Wi-Fi by exploiting vulnerabilities in access points.

It propagates in the following sequence:

1. It Establish a list of susceptible APs within the range
2. Bypass any encryption Security on the targeted AP
3. Bypass the administrative interface on the targeted AP
4. Identify and Store AP System Settings
5. Replace the AP firmware on with the virus-loaded firmware.
6. Import the victim original AP System Settings on newly loaded firmware
7. Let's Propagate! Back to Step one to next Target

The experimental simulated demonstration was performed in two cities i.e. Belfast, NI and London, England.

"When Chameleon attacked an AP it didn’t affect how it worked, but was able to collect and report the credentials of all other Wi-Fi users who connected to it," says Alan Marshall. "The virus then sought out other Wi-Fi APs that it could connect to and infect".

Its far more complex to detect and control the spread of Chameleon virus. As Antivirus are only effective aganist virus that can be detected on hard drives, in memory, or in network traffic, but in the case of Chameleon it is the Wi-Fi network itself that is infected. It is also not detected by Wireless Intrusion Detection System (IDS).

"Hence, this attack is considered advanced and difficult to detect, as IDS rogue AP detection methods typically rely on a change in credentials, location or traffic levels."

“WiFi connections are increasingly a target for computer hackers because of well-documented security vulnerabilities, which make it difficult to detect and defend against a virus,” says Marshall.

Well, Chameleon virus is developed for demo purpose in the research lab only, though it is very likely that a malicious version could be created and released into the wild by cyber criminals and malware writers.

Read more…

Wednesday, 19 February 2014

Kali Linux: The New Version of Backtrack

Kali Linux is a Debian based Linux distribution designed for advanced Penetration Testing, Digital Forensics and Security Auditing Linux distribution. Kali Linux is a complete rewriting of BackTrack Linux developed by Amti Aharoni and Devon Kearns of Offensive Security. It is a supported platform of the Metasploit Project's Metasploit Framework, a tool for developing and executing security exploits.

Kali Linux is preinstalled with more then 300 penetration-testing and digital forensics tools.

Here are the list of tools available on Kali Linux

Information gathering:  DNS Analysis:
dnsdict6
dnsenum
dnsmap
dnsrecon
dnsrevenum6
dnstracer
dnswalk
fierce
maltego
nmap
urlcrazy

Network Scanners:
dmitry
dnmap-client
dnmap-server
netdiscover
nmap

Live Host Identification:
alive6
arping
cdpsnarf
detect-new-ip-6
detect-sniffer6
dmitry
dnmap-client
dnmap-server
fping
hping3
inverse_lookup6
miranda
ncat
netdiscover
nmap
passive_discovery6
thcping6
wol-e
xprobe2

SMB Analysis:
accheck
nbtscan
nmap

OSINT Analysis:
casefile
creepy
dmitry
jigsaw
maltego
metagoofil
theharvester
twofi
urlcrazy
Route Analysis:
dnmap-client
dnmap-server
intrace
netmask
trace6

Service Fingerprinting:
dnmap-client
dnmap-server
implementation6
implementation6d
ncat
sslscan
sslyze
tlssled

SSL Analysis:
sslcaudit
ssldump
sslh
sslscan
sslsniff
sslstrip
sslyze
stunnel4
tlssled

Telephony Analysis:
ace

SMTP Analysis:
nmap
smtp-user-enum
swalks

OS Fingerprinting:
dnmap-client
dnmap-server
miranda
nmap

IDS/IPS Identification:
fragroute
fragrouter
wafw00f

SNMP Analysis:
braa
cisco-auditing-tool
cisco-torch
copy-router-config
merge-router-config
nmap
onesixtyone

Traffic Analysis:
cdpsnarf
intrace
irpas-ass
irpass-cdp
p0f
tcpflow
wireshark

VPN Analysis:ike-scan

VoIP Analysis:
ace
enumiax

Fuzzing Tools:
bed
fuzz_ip6
ohrwurm
powerfuzzer
sfuzz
siparmyknife
spike-generic_chunked
spike-generic_listen_tcp
spike-generic_send_tcp
spike-generic_listen_upd

Vulnerability Analysis:CiscoTools:
cisco-auditing-tool
cisco-global-exploiter
cisco-ocs
cisco-torch
yersinia

Open-vasopenvas-gsd
openvas-setup

Database Explotation:
bbqsql
sqlninja

Database Assessment:
bbqsql
dbpwaudit
hexorbase
mdb-export
mdb-parsecsv
mdb-sql
mdb-tables
oscanner
sidguesser
sqldict
sqlmap
sqlninja
sqlsus
tnscmd10g
sqlsus

Misc Scanners:
lynis
nikto
nmap
unix-privesc-check

Web Applications:CMS Identifaction:
blindelephant
plecost
wpscan

Open Source Assessmentcasefile:
maltego

IDS/IPS Identifacation:ua-tester

Web Application Fuzzers:
burpsuite
powerfuzzer
webscarab
webslayer
websploit
wfuzz
xsser
zaproxy

Web Application Proxies:
burpsuite
paros
proxystrike
vega
webscarab
zaproxy

Web Crawlers:
apache-users
burpsuite
cutycapt
dirb
dirbuster
vega
webscarab
webslayer
zaproxy

Web Vulnerability Scanners:
burpsuite
cadaver
davtest
deblaze
fimap
grabber
joomscan
nikto
padbuster
proxystrike
skipfish
sqlmap
vega
w3af
wapiti
webscarab
webshag-cli
webshaggui
websploit
wpscan
xsser
zaproxy


Offline Attacks:
cachedump
chntpw
cmospwd
crunch
dictstat
hashcat
hash-identifier
john
johnny
lsadump
maskgen
oclhashcat-lite
oclhashcat-plus
ophcrack
ophcrack-cli
policygen
pwdump
pyrit
rainbowcrack
rcracki_mt
rsmangler
samdump2
sipcrack
sucrack
truecrack

Online Attacks:
accheck
burpsuite
cewl
cisco-auditing-tool
dbpwaudit
findmyhash
hydra
hydra-gtk
medusa
ncrack
onesixtyone
patator
phrasendrescher
thc-pptp-bruter
webscarab
zaproxy

RFIDiot A CG:
brute force hitag2
bruteforce mifare
calculate jcop mifare keys
continuous select tag
copy iso15693b tag
epassport read write clone
format mifare 1k value blocks
identify hf tag type
identify if tag type
jcop info
jcop mifare read write
jcop set atr historical bytes
read acg reader eeprom
read if tag
read mifare
read tag
read write clone unique (em4x02)
reset q5 tag
select tag
set fdx-b id
test acg lahf

RFID/NFC Tools:NFC Tools:
mfcuk
mfoc
mifare-classic-format
nfc-list
nfc-mfclassic

Other Wireless Tools:zbassocflood
zbconvert
zbdsniff
zbdump
zbfind
zbgoodfind
zbreplay
zbstumbler

Wireless Attacks:Bluetooth Tools:
bluelog
bluemaho
blueranger
btscanner
fang
spooftooph

Exploitation Tools:Cisco Attacks:
cisco-auditing-tool
cisco-global-exploiter
cisco-ocs
cisco-torch
yersinia

Wireless Tools:
aircrack-ng
aireplay-ng
airmon-ng
airodump-ng
asl;eap
cowpatty
eapmd5pass
fern-wifi-cracker
genkeys
genpmk
giskismet
kismet
mdk3
wifiarp
wifidns
wifi-honey
wifiping
wifitap
wifite

RFIDiot PCSC:
bruteforce mifare
calculate jcop mifare keys
chip & pin info
continuous select tag
epassport read write clone
identify hf tag type
jcop info
jcop mifare read write
jcop set atr historical bytes
read mifare
read tag
select tag

RFIDiot FROSCH:
read write clone unique (em4x02)
reset hitag2 tag
set fdx-b id
test frosch reader

Exploit Database:searchsploit

Metasploit:
metasploit community / pro
metasploit diagnostic logs
metasploit diagnostic shell
metasploit framework
update metasploit

Network Exploitation:
exploit6
ikat
jboss-autopwn-linux
jboss-autopwn-win
termineter

Social Engineering Toolkit:se-toolkit

Sniffing/Spoofing:Network Sniffers:
darkstat
dnschef
dnsspoof
dnsniff
ettercap-graphical
hexinject
mailsnarf
netsniff-ng
passive_discovery6
sslsniff
tcpflow
urlsnarf
webmitm
webspy
wireshark

Network Spoofing:
dnschef
ettercap-graphical
evilgrade
fake_advertise6
fake_dns6d
fake_dnsupdate6
fake_mipv6
fake_mld26
fake_mld6
fake_mldrouter6
fake_router6
fake_solicitate6
fiked
macchanger
parasite6
randicmp6
rebind
redir6
sniffjoke
sslstrip
tcpreplay
wifi-honey
yersinia

Voice and Surveillance:msgsnarf

VoIP Tools:
iaxflood
inviteflood
ohrwurm
protos-sip
rtpbreak
rtpflood
rtpinsertsound
rtpmixsound
sctpscan
sipmyknife
sipp
sipsak
svcrack
svcrash
svmap
svreport
svwar
viophopper

Web Sniffers:
burpsuite
dnsspoof
driftnet
ferret
mitmproxy
urlsnarf
webmitm
webscarab
webspy
zaproxy

Maintaining Access:OS Backdoors:
cymothoa
dbd
intersect
powersploit
sbd
u3-pwn

Tunneling Tools:
cryptcat
dbd
dns2tcpc
dns2tcpd
iodine
miredo
ncat
proxychains
proxytunnel
ptunnel
pwnat
sbd
socat
sslh
stunnel4
updtunnel

Web Backdoors:
webacoo
weevely

Reverse Engineering:Debuggers:
edb-debugger
ollydbg

Disassembly:jad
rabin2
radiff2
rasm2
recstudio
recstudio-cli

Misc RE Tools:
apktool
clang
clang++
dexwjar
flasm
javasnoop
radare2
rafind2
ragg2
ragg2-cc
rahash2
rarun2
rax2

Stress Testing:Network Stress Testing:
denial6
dhcpig
dos-new-ip6
flodd_advertise6
flood_dhcpc6
flood_mld26
flood_mld6
flood_mldrouter26
flood_router6
flood_solicitate6
fragmentation6
inundator
kill_router6
macof
rsmurf6
siege
smurf6
t50

VoIP Stress Testing:
iaxflood
inviteflood

Web Stress Testing:thc-ssl-dos

WLAN Stress Testing:
mdk3
reaver

Hardware Hacking:Android Tools:
android-sdk
apktool
baksmali
dex 2jar
smali

Forensic Analysis Tools:
affcompare
affcopy
affcrypto
affdiskprint
affinfo
affsign
affstats
affuse
affverify
affxml
autopsy
binwalk
blkcalc
blkcat
blkstat
bulk_extractor
ffind
fls
foremost
galleta
hfind
icat-sleuthkit
ifind
ifind
ils-sleuthkit
istat
jcat
mactime-sleuthkit
missidentify
mmcat
pdgmail
readpst
reglookup
sorter
srch-strings
tsk_recover
vinetto

Digital Forensics:
autopsy
binwalk
bulk_extractor
chrootkit
dc3dd
dcfldd
extundelete
foremost
fsstat
galleta
tsk_comparedir
tsk_loaddb

Forensics:Anti-Virus Forensics Tools:
chrootkit

Arduino Tools:arduino

Forensic Suites:
autopsy
dff

Forensic Imaging Tools:
affcat
affconvert
blkls
dc3dd
dcfldd
ddrescue
ewfacquire
ewfacquirestream
ewfexport
ewfinfo
ewfverify
fsstat
guymager
img_cat
img_stat
mmls
mmstat
tsk_gettimes

Forensic Hashing Tools:
md5deep
rahash2

Forensic Carving Tools:
binwalk
bulk_extractor
foremost
jls
magicrescue
pasco
pev
recoverjpeg
fifiuti
rifiuti2
safecopy
scalpel
scrounge-ntfs

Media Capture:
cutycapt
recordmydesktop

Reporting Tools:Evidence Management:
casefile
keepnote
magictree
maltego
metagoofil
truecrypt

Password Forensic Tools:
chntpw
PDF Forensic Tools:
pdf-parser
peepdf
RAM Forensioc Tools:
volafox
volatility

Network Forensics:p0f

SSH:
sshd restart
sshd start
sshd stop

MySQL:
mysql restart
mysql start
mysql stop

Metasploit:
community / pro start
community / pro stop

System Services:HTTP:
apache2 restart
apache2 start
apache2 stop

Read more…

Tuesday, 18 February 2014

Iranian Hackers to penetrate in U.S Navy computers

It took almost four months to resolve the Iranian hack of the Navy's largest unclassified computer network, raising questions about security gaps exposed to the attack.

On Monday, The current and former U.S officials reported that, The cyberattack targeted the Navy Marine Corps Internet, which is used by the Navy Department to host websites, store nonsensitive information, and handle voice, video, and data communications. The hackers remained in the network until this past November. Which contradicts what officials told the Journal when the attack was first reported in September.

"It was a real big deal," a senior U.S. official told the Journal. "It was a significant penetration that showed a weakness in the system."

The Journal reported that U.S defense officials were surprised at the skill of the hackers, who were able to enter the network through a security gap in a public facing website.

One of the official reported to the Journal that the Iranian Hackers were able to conduct surveillance and compromise communication over the unclassified computer networks of the Navy and Marine Corps. Another reported to the Journal that no e-mail accounts were hacked and no data was stolen. There was no evidence that Iran was able to penetrate into Navy and Marine Corps.

The Vice Adm. Mike Rogers was the one who managed and handled the military response on this hack. Rogers stated that he would like face questioning on plans of to fix security problems and issues which were known by this attack.

President Obama confirmed Rogers to be the next head of National Security Agency.


Read more…