Showing posts with label Linux Hack. Show all posts
Showing posts with label Linux Hack. Show all posts

Saturday, 14 September 2013

Linux vs Windows - Fundamental Differences

Users who decided to switch from Windows to Linux have encountered major differences between the two operating systems and often gave up a free solution in favor of commercial solutions that did not know the fundamental differences between the two operating systems . The process of migrating from +Windows to +Linux would be achieved more easily if users would know exactly the difference. To help with this process will highlight the major fundamental differences between these two operating systems.


+Linux vs +Windows fundamental differences

1. Price

Given the current state of the economy, price plays a major role in the choice of operating system. Increasingly more people pay attention well deserved Linux operating system. In this area Linux supremacy can not be challenged because most distributions are free. Maybe you can think to ask "what is free?", The answer is simple: Linux is designed and developed by a community of programmers who are working for the same company, Linux has been free since the beginning sale. Most programs were developed for Linux are free. There are alternatives to all commercial software that runs only on Windows and that are free does not make them less qualitative. In some cases these free and open source programs are better than commercial alternatives.

2. Freedom

With Linux you have the freedom to choose, we can not say the same about Windows that will block the way Microsoft believes should be working operating system. +Microsoft believes that if offers users a taskbar, Start button, system tray icons and one is enough. For some maybe it is, but most users will have something different or more custom features. Using the +Linux operating system can make it look exactly as you want, the only limits are time and imagination.

3. The hierarchy file system

In Linux uses a secure hierarchical system, it all starts in the root directory "/". Drives are labeled / dev / sda, / dev / sdb, etc.. In Windows system is hierarchical and depends on the number of multiple storage units, use a root for each storage unit. Under Linux just a drive root directory contains the other drives present are mounted in / media /.

4. Hardware Support

Here things are a bit complicated because Windows has a much larger market segment (even huge) and most hardware manufacturers want their product to be 100% compatible with +Windows. Under Linux hardware support depends on how the manufacturer is convinced by the developers to deliver specifications. May encounter cases where specifications are not issued by the manufacturer and such hardware will not work properly under +Linux. However, in recent years attention has been paid increasingly higher hardware manufacturers +Linux operating system and the cases in which the hardware does not work on +Linux are pretty isolated.

5. Security

This topic is highly debated by both parties. Perhaps because of the huge market share, and the attention given to vulnerability of +Windows you are much weaker than +Linux. The main vulnerability of Windows is the access to the root. To do damage on a +Linux system you really need to know the root password. That does not mean that +Linux is 100% sure, there are many security holes in +Linux. When it is discovered a vulnerability in the Linux community it is solved by very quickly when
+Microsoft demonstrated many times that they need too much time to solve a problem.

These are important fundamental differences between +Windows and Linux. What major differences did you notice between these operating systems? Over the fundamental difference do you think the hardest pass a new user of Linux?
+Tech-place

Thursday, 9 May 2013

intro to Dictionary Attacks

  Dictionary Attacks


A dictionary attack is when a text file full of commonly used passwords, or a list of every word from the dictionary is used against a password database. Strong passwords usually aren’t vulnerable to this kind of attack. In the following example, I will use Brutus, a very common password cracker, to show a dictionary attack against an ftp server. Brutus is a Windows only program, but at the end of this chapter I will list a couple more password crackers, some of which are made for Mac, Windows, and Linux.
Dictionary Attacks

Before I get into the example, you must first know what an FTP server is. FTP stands for File Transfer Protocol. FTP is a simple way to exchange files over the internet. If a hacker got FTP access to my website, he could delete/upload anything he wants on my server. An FTP address looks similar to a website address except it uses the prefix ftp:// instead of http://. I set up an FTP server on my computer so I could demonstrate. You can get Brutus at http://www.hoobie.net/brutus/


1. First the hacker would choose a target. In this case it’s my home computer and the IP address for your home computer is 127.0.0.1 .
2. By going to ftp://127.0.0.1 I get a pop-up box asking for a username and password. 
3. Next the hacker would launch a program similar to Brutus and attempt to crack the password.

4. In the target you put the IP address of the website and to the right select the appropriate option, which in this case is FTP.
5. The default port is 21 but some websites change this to make them a little more secure. If you find out that the port isn’t 21, you can find the right one by doing a port scan. We will get into this later in the book.
6. If you don’t know any of the usernames for the FTP server, then you will have to get a list of the most common usernames.
7. For a dictionary attack you will have to choose the pass mode Word List and browse and select the file containing your word list. You can get some good password lists at http://packetstormsecurity.org/Crackers/wordlists/ .

8 .Once you hit Start the program will attempt to connect to the server and begin to try all the possible combinations from your lists.


9.If you’re lucky, eventually it’ll get the right Username:Password combination. As you can see below, it got the correct combination of username – admin and password – password.

10. A smarter hacker would use a proxy when using a program like this. What a proxy does is cloaks your IP address by sending your connection request through another computer before going to the target. This is a smart idea because as you will see in the image below, Brutus leaves a huge log of your presence on the target server.

Tuesday, 23 April 2013

How To Hack Using Man In The Middle Attack | SSL Hacking

Hello hacker Friends this is one of the most common attack that most hacker do to amaze people and i am gonna make it simple for you all so that you can enjoy it and try to learn this is attack so are you all ready so lets start . every one know about http attack but this is SSL means https attack nice trick  so lets begin .. :D u can watch my video on youtube ;) 

Tools Needed:



  •  SSL strip: You can search Google for SSL strip it comes both in windows and Linux versions . I will be using the windows version in this tutorial



  •  Ettercap to carry out mitm attacks..

  • Steps to Perform MITM Attack

    1. Open SSL strip and fill in all the required information for arpsoof, network ,ssl strip, change data .If you don’t know what to enter simply click auto check . remember to check if HTTPS to HTTP is included in Change data , finally click ok 


    2.Now select the victim’s IP and click open



    3. Now open ettercap go to sniff -unsniffed sniffing and select your network interface and click ok 




    4. Now select hosts-scan hosts .Once scanning is completed .Open host list from hosts tab .Now select the IP address of the router as target 1 and the victims IP as target 2


    5. Now select mitm-arp poisoning and click ok as shown 

     6. Finally select start-start sniffing .Now when the victim logs into gmail he will be using HTTP and not HTTPS Hence we are able to get the User id ,passwords 

    way2h security steps:-
    1. whenever you perform an online transaction such as Credit card payment, Bank login or Email login always ensure that you Use HTTPS 

    2. Always check the SSL certificate before doing an online transaction

    Stay Safe.Enjoy !!
    For Educational Purpose Only

    Monday, 15 April 2013

    Kali Linux 1.0.2 Download ISO Image. From Creater Of BackTrack (way2h)





    The most versatile, The most awaited and advanced penetration testing Linux distribution, Kali Linux has been released from the creator of BackTrack Linux. Today, We will discuss its features

      Kali Linux is a complete re-build of BackTrack Linux, adhering completely to Debian development standards. All-new infrastructure has been put in place, all tools were reviewed and packaged.

     According to Offensive Security, Seven years of developing BackTrack Linux has taught us a significant amount about what we, and the security community, think a penetration testing distribution should look like. We’ve taken all of this knowledge and experience and implemented it in our “next generation” penetration testing distribution.After a year of silent development, Offensive Security is proud to announce the release.

    Being based on Debian (Debian Wheezy), Kali also uses its parent distribution’s installation program, the first Debian-based distribution I have reviewed in a while that uses the Debian Installer (DI). What that means is that Kali gives you more features (during installation) than BackTrack, Ubuntu or any other
     distribution derived from Ubuntu. This screen shot shows the installer’s disk partitioning options.

     The Kali Linux ARM Architecture images work like charm on Samsung ARM Chromebook, Raspberry Pi, ODROID U2 / X2 and SainSmart SS808.

    • What's New in Kali Linux:
    • 300 penetration testing tools.
    • FHS (Filesystem Hierarchy Standard) compliant.
    • Enhanced and vast wireless device support.
    • Custom kernel patched for injection.
    • GPG signed packages and repos.
    • Multi-language and completely customizable.
    • ARMEL and ARMHF support.
    • Kali is currently available for the following ARM devices:
      • rk3306 mk/ss808
      • Raspberry Pi
      • ODROID U2/X2
      • Samsung Chromebook

    Monday, 18 February 2013

    Ubuntu password reset/login trick

    Reset Your Forgotten Ubuntu Password in 2 Minutes or Less

    If you’ve ever forgotten your password, you aren’t alone… it’s probably one of the most common tech support problems I’ve encountered over the years. Luckily if you are using Ubuntu they made it incredibly easy to reset your password.

    note:- I AM SHOWING UBUNTU 10.11


    1 Reboot your computer, and then as soon as you see the GRUB Loading screen, make sure to hit the ESC key so that you can get to the menu. 

    its look like this 

      2 Then press 'e'


    3 You’ll want to remove the “ro quiet splash” part with the backspace key, and then add this onto the end:
    rw init=/bin/bash
     I highlighted here 

     4 Then you have to do is press f10 key wait until you something like this



    5 Then simply type cd /home  then its says "root@(none):/home#"  


    6 Now type "ls" and press enter  this will show you the user name of system like this


    7 now u have to do is type passwd <username> example in here its like passwd way2h   then press enter now its tell us to enter new password  for given user  simply type two times and done :) 


    NOTE:- after u done this type
    reboot –f  
    I found that the –f parameter was necessary to get the reboot command to work for some reason. You could always hardware reset instead, but make sure to use the sync command first.

    ONLY FOR YOUR INFORMATION