Wednesday, 13 March 2013

Kali Linux Released by BackTrack Team With 300+ Hacking Tools

Seven years of developing BackTrack Linux has taught us a significant amount about what we, and the security community, think a penetration testing distribution should look like. We’ve taken all of this knowledge and experience and implemented it in our “next generation” penetration testing distribution.

After a year of silent development, we are incredibly proud to announce the release and public availability of “Kali Linux“, the most advanced, robust, and stable penetration testing distribution to date.


Kali is a more mature, secure, and enterprise-ready version of BackTrack Linux. Trying to list all the new features and possibilities that are now available in Kali would be an impossible task on this single page. We therefore invite you to visit our new Kali Linux Website and Kali Linux Documentation site to experience the goodness of Kali for yourself.


We are extremely excited about the future of the distribution and we can’t wait to see what the BackTrack community will do with Kali. Sign up in the new Kali Forums and join us in IRC in #kali-linux on irc.freenode.net and help us usher in this new era.



ARP Poisoning - FULL EXPLANATION

Being one of the most active members in this WiFi board I can see that a lot of people don't understand this in depth but they only know why are we using it and what is the result. In this thread I will explain to all of you that already know something about this and to all of you that doesn't know a thing for this what exactly is ARP and ARP Poisoning. In this thread I will explain what actually happens in the background of the attack.


What is ARP ?


ARP Poisoning is one of the most famous network hacking attacks but only a few people understand what happens in the background. In order to understand this attack better first I will explain what exactly is ARP. ARP or Address Resolution Protocol is a network protocol that resolves IP addresses to MAC addresses. It is a protocol that connects the Logical Addressing(IP) with the Physical Addressing(MAC) of the networking scheme. In networking you have Layers. Imagine them as different levels. Each layer/level has his own job. These are the 7 Layers according to the OSI Model:

 The Address Resolution Protocol is between the NETWORK LAYER and the DATA LINK LAYER. I know that this looks a bit strange for those of you who haven't worked with networking but if you read a bit about the layers you will understand it better. So once again... ARP is in charge of RESOLVING IP ADDRESSES TO MAC ADDRESSES.


ARP Poisoning


Now that you understand what ARP is I can explain the ARP poisoning to you. I am not sure when exactly but people found a way to trick the ARP. Actually ARP Poisoning is a process where we send a fake or "spoofed" ARP messages to a LAN. Those actually resolve the gateway IP address to our MAC address. There for all the traffic that is meant to be for the gateway goes through US ( this is not the UNITED STATES !!! Roflmao ). So actually what we do is we tell the gateway that we are the slave and we tell the slave that we are the gateway. Illustrated it looks like this:

 In this image the attacker performed ARP poisoning between 2 users on the networks. Therefor each traffic that is from slave A for slave B will first go through the attacker and then he will resend it to its original destination. And vise versa. Each traffic from slave B for slave A goes through the attacker. That is why ARP Poisoning is used for sniffing. All the traffic goes through you and you can analyze the packets passing by with no problems.



Pakistani Student Rewarded by $500 USD for detecting HTML Injection Vulnerability in Facebook

Haider Mehmood Qureshi, an independent security researcher from Islamabad has been rewarded with $500 for detecting HTML Injection Vulnerability in Facebook. 

According to Haider, Facebook was vulnerable in HTML code, their are some serious Remote HTML injection. Remote User was able to add any brand Name and Radio buttons, hence allowing Remote HTML injection. It was as simple as it sounds. The issue can also cause adding junk/spam entries into the database.



Bug details:

Vulnerability title: HTML Injection
Vendor homepage: http://m.facebook.com
Remote/Local: Remote
Tested on: Windows 7 64 bit Firefox browser (but should have worked on other OS and browsers (not sure about IE))
Vulnerability Submitted on: 12/1/2013
Vulnerability Status: FIXED


Detail: Facebook mobile provides a survey to evaluate the mobile user experience as they surf Facebook mobile site. Here is the survey https://m.facebook.com/survey.php . While entering the mobile phone brands , it provides a list of brands in case you didn't type the correct brand.


The list that was provided contained their HTML code inside the parameter https://m.facebook.com/survey.php?incorrect_brand&params=[HTML code of Brands and Radio Buttons]
Remote User was able to add any brand Name and Radio buttons, hence allowing Remote HTML injection. It was as simple as it sounds. The issue can also cause adding junk/spam entries into the database.



Haider Mehmood Qureshi, BS Computer Sciences Student from Comsats Intitute of information technology Islamabad. Started learning pentesting/hacking in 2009. Initially was into defacing, later realized to make Pentesting/security auditing as my career. His Friends motivated him to go for bug bounties. 
Contact: haidermehmoodqureshi@yahoo.com


Saturday, 9 March 2013

DarkComet V4.2 RAT TUTORIAL

If you are not new to RATs, you should have heard the word DarkComet. Because DarkComet is such a great tool for hacking remote computers. It has several features that many RATs do not have. I have explained the basics of RATs and Setting up Extreme RAT in my previous articles. So before proceeding into this article, you must understand the basics of RATing. So please go through those articles first. You can read them from here.

Things you require

1) DARK-COMET RAT

This is the RAT you are going to use. You can get it from HERE.

2) No-ip.biz  account

As our IP-Address is dynamic(in general), we need to make it static.

3) DUC client

We can automatically update our dynamic IP-Adress, by installing DUC client.

4) VPN (If you are behind a router)  VPN is here  also know what vpn is

We must enable our router to allow us to connect to a remote PC. So we need to port forward.
Instead of port forwarding we use a VPN(Virtual Private Network).
You can use Proxpn. and any other you know (its not needed but good if u use) 

Procedure:
 
Step 1:

First you need to create an account in www.no-ip.com

Step 2:

After creating an account, login with your account and create a host. You can do this by just following the steps.

Goto this link, and login. Then follow the steps as shown in the picture.
 
 
 
Finally click “Create Host”.

Step 3: Setting up your server.

First install Dark-Comet RAT on your PC and run it. It opens a window as shown below.
 
Now click on the + button which is at left bottom corner as shown below. 
 

 It opens a small window showing you the port number. Click on “listen” button.


Then it disappears, don’t click the “listen” button again. Now click on “edit server” button at the bottom of the window as shown in the figure.

 It opens a new window with huge amount of options. First lets move on to the main settings. You can set a password to use when listening connections. You can see the default password by checking “security password” and “show chars” in the following picture.

Now we need to set up our “network settings”. Clearly follow the steps here. You need to give your domain name you got from no-ip.com
It looks like yourdomain.no-ip.biz
 
  
We came to the funniest part of our RAT setup. Here you can choose your icon. DarkComet is providing us some beautiful icon. So that our victim can easily believe us. Just follow steps  shown in the figure. It is self explanatory.
 
 
You can bind your server file with a PDF or Image. So when the victim clicks it, it opens the PDF file and the victim will not be able to suspect you. You can follow the steps as shown in the figure. 
Finally click on “Build Server” button. It creates a new server file in the same directory where your dark-comet files are stored.

You are done. 
 Now give your server file to your vicyim by any means. When  he clicks the server file, he will be connected to your computer.

Now you can do anything you want. You can see him with his web cam, downloading files and many more. Just move around the options and play with him. I put two screenshots of how it looks like when you get access to his computer. 

Using RATs on remote systems without their permission is illegal. This article is for educational purpose only. Don't do anything illegal. I will not be held responsible for that.

Thursday, 7 March 2013

The Settlers: Rise of an Empire (Gold Edition)

The Settlers: Rise of an Empire (Gold Edition)

  • Developer: Blue Byte
  • Publisher: Ubisoft
  • Genre: Strategy
  • Release Date: September 16, 2008 (US)

About The Settlers: Rise of an Empire (Gold Edition)

In Settlers: Rise of an Empire Gold Edition, the player creates their own empire of bustling cities in a captivating medieval world. However, threats are always looming so you must be prepared to defend your mighty kingdom. Powered by RenderWare, everything is visible, highly detailed, and real.

Minimum System Requirements

  • OS: Windows XP/Vista
  • Processor: Pentium 4 @ 1.8 GHz or Athlon Equivalent
  • Memory: 512 MB
  • Hard Drive: 3 GB Free
  • Video Memory: 64 MB (NVIDIA GeForce4 Ti/ATI RADEON 9500, Pixel/Vertex Shader 1.1 or 1.3)
  • Sound Card: DirectX Compatible
  • DirectX: 9.0c
  • Keyboard & Mouse
  • DVD Rom Drive
  • Active Internet Connection @ 128KBPs for Online Play

Recommended System Requirements

  • OS: Windows XP/Vista
  • Processor: Pentium 4 @ 3 GHz or Athlon Equivalent
  • Memory: 1 GB
  • Hard Drive: 3 GB Free
  • Video Memory: 128 MB with Pixel/Vertex Shader 2.0 Support
  • Sound Card: DirectX Compatible
  • DirectX: 9.0c
  • Keyboard & Mouse
  • DVD Rom Drive
  • Active Internet Connection @ 128KBPs for Online Play

The Settlers Rise of an Empire (Gold Edition) (2)

The Settlers Rise of an Empire (Gold Edition) (3)

The Settlers Rise of an Empire (Gold Edition) (4)

The Settlers Rise of an Empire (Gold Edition) (5)

The Settlers Rise of an Empire (Gold Edition) (1)

Download The Settlers: Rise of an Empire (Gold Edition) – Direct Links

Part 1 – 700 MB

Part 2 – 700 MB

Part 3 – 700 MB

Part 4 – 700 MB

Part 5 – 700 MB

Part 6 – 505 MB

www.elj-games.blogspot.com

DarkComet Features & How To Use Them


DarkComet Features & How To Use Them


What is DarkComet?

DarkComet-RAT (Remote Administration Tool) is software design to control in the best condition and confort possible any kind of Microsoft Windows machine since Windows 2000.
This software allow you to make hundreds of functions stealthly and remotely without any kind of autorisation in the remote process.
This software is a long time project,started the August 2008,DarkComet-RAT is now one of the best and one of the most stable RAT ever made and totally free.

What features does this RAT have?

DarkComet has many, many features. Below, I will list the most important ones, & what they are used for. The features are under different categories. I will post a picture of the categories, along with each feature that is inside of it.

1. System Info
  • System Monitor
  • Computer Info
  • Trace Map
....


System Monitor: The System Monitor feature allows you to monitor the system which you have infected. From here you can see the CPU Usage & the Ram Usage of your slave.

Computer Info: In Computer Info, you can see various amounts of information having to do with Server Connection, Server General Information, BIOS Information & Server Settings Information.

Trace Map: Here, you can look up a lot of information about where you slave lives. Some of the data that you can see is the IP Address, the Longitude & Latitude, the Timezone & various other pieces of information.

2. Fun Functions
  • Fun Manager
  • Piano
  • Message Box
  • Microsoft Reader
  • Remote Chat


Fun Manager: Here you can do various factors to annoy your slave, such as open & close the CD tray, hide clock, disable task manager, hide desktop & many more other features.

Piano: Here, you can click on a virtual keyboard, & what ever key you click, it will be played to your slave.

Message Box: Here you can enter a title & some text, & it gets sent to your slave as a message box.

Microsoft Reader: Here you can input text, & when you click "Read", it is read to your slave in Microsoft's default voice.

Remote Chat: Here, you have the opportunity to remotely talk to your slave. Once you sned a message, a chat box shows & your slave has the option to send a message back, or simply close & ignore it.

3. File Manager
  • Explore Files
  • Search For Files


Explore Files: Here, you can go through your slaves files, & you can even receive files from their computer & send files from your computer to theirs.

Search For Files: Here, you can search for a specific file name, type & where it is stored.

4. Spy Functions
  • Webcam Capture
  • Sound Capture
  • Remote Desktop
  • Keylogger



Webcam Capture: Here you can see through your slaves webcam, if they have one.

Sound Capture: Here you can hear through your slaves microphone, if they have one.

Remote Desktop: Here, you can see everything that they are doing, & even take over & control the computer yourself.

Keylogger: Here, it stores everything that they have typed, while you have been offline. When you are online, & they are connected to the DarkComet client, it will not record logs. If you want, you can set the logs to be sent to a webhost.

5. Update Server
  • From Url
  • From File


From Url: Here, you can update your server via a Url (Direct Link). You may want to update your server, incase it becomes detected by anti-viruses, & you have re-crypted it.

From File: Here, you can update your server by sending a file on your computer, to theirs. You may want to update your server, incase it becomes detected by anti-viruses, & you have re-crypted it.


All credits to this tutorial go to Text. It has taken me around an hour to make this tutorial. The least you can do is say thanks.

Bypass PC / Laptop password

With this trick you can easily Hack all the PC/laptop when it isXP, VISTA & Windows 7

Requirements:
USB Flashdrive, KONUSB software

Step 1:

Download KONUSB software  
(google it now you are not kid :P ) 


Step 2:
Plug in USB Flashdrive into the PC/laptop and double click
on KONBOOTINSTALL.exe & enter the drive letter of the USB That’s it…

Step 3:
Now insert the Flashdrive into the PC/Laptop whichever u want to hack, and boot via USB (using Pend

if it asks for password, leave blank and press OK

NOTE:
1. PC / Laptop must support USB Flashdrive Booting.

2.This trick won’t change the Password of the PC / Laptop whatever you hacked..
It just bypass the password restriction.. If u remove the USB Flashdrive,
and boot normally it’ll remains the same as it is password protected.