468x60 Ads

Saturday, May 12, 2012

RedKit Exploit Kit : New web malware exploitation pack

Posted by THN Reporter On 5/06/2012 09:31:00 AM

Share This news with your friends on Facebook/Twitter/Forums

RedKit Exploit Kit : New web malware exploitation pack : The Hacker News ~ http://thehackernews.com/2012/05/redkit-exploit-kit-new-web-malware.html
If you enjoyed The Hacker News, Make sure you subscribe to our RSS feed. Stay Updated about latest Security threats, Hacking threads & IT Issues from all over the world.!The content of This News RedKit Exploit Kit : New web malware exploitation pack and Other Information is provided by Various Sources (Emails, Messages, etc..) for Educational Purpose & Security Awareness only. Please Feel free to Contact Us. Thank You !

View the original article here

Monday, January 23, 2012

How To Hack Facebook

How To Hack Facebook


INTRODUCTION

He asks how you hack Facebook password? Now, before you can do this, it is necessary to preserve the forms of piracy, which really work and are just scams, and no work to understand. So in this site we will discuss some possible ways to hack Facebook password !

Every day I receive many e-mails from people asking me, Facebook passwords from your spouse, boyfriend or girlfriend to reveal their secret relationship (if any) to hack.

Most of them are even willing to pay for the service. Deny, however, any application,because it does not provide services paid for piracy. But anyway, I decided to write this topic, so you can learn the tricks for you, and try at your own risk. (only try this for education and Testing purpose)
Facebook one of latest teen fashion. I've seen many people waste hours to find the various methods and forms of hacking your Facebook friend or enemy. Most sites that claim to teach simple methods are hacking facebook messages and try useless ebooks softwares.Some hacking or other nonsense even claim to sell Facebook hack passwords for you for free. Let me clarify something first to you, there are no software or tool to reset the password to your Facebook account hack for you. But piracy of Facebook accounts is not entirely impossible, I would say that more can be done easily if you give your time and you decide to be patient. There may be hundreds of ways to hack Facebook accounts, but I'm here to give you some possible ways. This is a long post and I tried to provide all the methods in detail in order to achieve me.Now start.

  • 1) keylogging
Type: - Software ,Hardware
Tools Required-Keylogger software ,keylogger device
Special skills required: - no special skills needed, but a little common sense, knowledge about the purpose and power of conviction.
The main enemy: - anti-virus software and firewalls.

Keylogger is one of the simplest and most common hacker hack Facebook passwords.The word means keylogger monitor / record keystrokes computer.There in two main forms of keyloggers, software and hardware.


1) Hardware:-


specialized equipment for key logging equipment. They are the keyboard cable and then connected to the CPU. It seems that part of the keyboard cable and can not simply be detected.

* Bad points:- This trick is particularly preferable to hack facebook passwords, because the devices are expensive and need physical access to the computer.

2) Software: -
There are so many different programs, keyloggers, etc
From the keylogger can be remotely installed to hack Facebook passwords.They preferred track of the keys on the target computer, while keeping the rest hidden and after a moment, please send an e-mail to the user, without the knowledge of the destination ..

* Bad points :-Most of the keyloggers are detected by antivirus software and firewalls, but some keyloggers are able to bypass antivirus and firewall. You have to convince them to install keylogger remote destination during installation.

Tips: - The category of parental controls that are used by parents to monitoring children's online activities.These keyloggers are mostly anti-virus and firewall easily. The usual firewall and AV detect when it was discovered that know the child and be of no use. The Easy thing of keylogger is that it has a remote installation feature.

  • 2) PHISHING

Special skills required: - no special skills required, but a convincing performance.
Enemies - Intelligent targets

Phishing is the method used to hack Facebook password. In phishing hacker,attacker sends the target a link. By clicking and going to the link destination, with the goal of a fake website that looks like the real home page of Facebook.The attacker convinces the target to log in through that page .

When the target types his password and clicks the log in button,The password is pretty much just send it to the attacker and then redirected back to the real site

  • Here is a tutorial on phishing.
Step 1) First have to sign up to a free web-hosting service that www.byethost.com
And save the subdomain.
Determined to have a subdomain like www.myname.byethost.com

Step 2) Now connect your account, to "Control Panel" and select the option to administer the site, go to "online file manager" and open the folder "htdocs".

Step 3) Now Download this file to your hard disk, then extract. Within the folder, two files are index.htm and write.php.

Step 4) Now Replace this file index.html in the "htdocs", in the "online file manager" with your 'index.htm' file in the folder on your hard disk .after that  upload 'write.php' file in "htdocs"  now,almost done.

Step 5) Now www.myname.byethost.com Home has become a phisher.
open it,now you see your page www.myname.byethost.com the login page of the site that you want hack.now everything you need to do is,send this link to the person who you want to hack or steal passward.when that person tries to login through it you will receive a file password.html in your "htdocs" folder of you phpnet.us that the username and password of your person,we can call victim .



Personal Note: - The hacker must have good persuasion to facebook password hack with this method have. Please use this trick with caution as it is now generally known and the goal may soon guessed. The destination can report wrong place and you will have to pay the price.

  • 3) HTTP SESSION HIJACKING (Stealing Cookies)

Tools required: - Firesheep software , laptop with wireless Internet.
Specific skills required: - No special skills is needed.
The main enemy: - BlackSheep


This trick is somewhat less known, but in past months has become very popular by the introduction of "Fire Sheep" software. When you sign into your account on a website, your browser sends your user name and password for the Web. The password is encrypted and then sent over the network. Then the server checks the user name and password for the database, and if the two match the user's browser a "cookie" a text which the browser uses for further requests to the web server) sends but unlike cookie is not encrypted and sent, as it is in the network, cookies can be easily detected as they travel across a busy network or WiFi. With he use of Firefox extension call "Firesheep" it is easier to do that. In fact, so simple that even a total cloud can capture this cookie.
Firesheep tutorial (Http Session Hijacking)
Firesheep Firefox has made it a very popular easy-to-one HTTP session hijacking attack. HTTP session hijacking attack is not a very sophisticated attack methods are considered, but we need to fulfill some technical knowledge. But the attack on Firesheep makes it a breeze. Firesheep made by Eric Butler for Firefox.
Now try to understand how it really works .When you enter your user name and encrypted password into the login form and send different Web browser, the first password and sends it over the network. In order to compare the information against its internal database, and if they match, it sends a cookie (a small text file) in your browser. The browser stores the cookie and uses it to authenticate the user on the site when the user opens another page of the site. When the user logs in to your account the only browser to delete cookies.

The main problem is that cookies are not encrypted before sending across the network, because of that hacker,attacker can capture this by using cookies and authenticate him as the user whose cookie was stolen.

Step 1) First download and install WinPcap (Windows WinPcap is used to capture the network traffic.)
Use pcap libpcap library for UNIX on a system.
Download WinPcap

Step 2) Download and open Firesheep in Firefox, it will install automatically. Or simply drag and drop to Firefox (Firesheep is not currently supported by Firefox 4).
DOWNLOAD Firesheep.

Step 3) Once installed in Firefox, go to View - Sidebar> -> Firesheep. A box appears in the Browser with a button "Start Capture" button is pressed and sit down. Within seconds you will see the account details with photos of the target. Click on one of it and you will directly enter in his account. Simple as that

Note:- Using this method (Firesheep) to hijack others account is illegal .So never do it ,avoid doing it 

Personal Note:
The FireSheep addon has become very popular in recent times that the software was developed that Fire Sheep Black Sheep.



  • 4) Social Engineering

Type: Psychological
Specific skills: - patience and trust.
The main enemy: - Smart targets.

This is not a 100% way to hack facebook password, But given the time and performance pressures patience can earn pretty interesting engineering attack results.Social ways to collect information from the target, or by prior knowledge of the target and then use it to get the password from facebook hack the target by guessing the word or the Resetting the base passwordGather information about the target, as
• Date of birth

• Mobile Phone
• The capacity is good.
• favorite historical figure, etc.
this information and tries to guess the password of the target, you'll be amazed so many people take to guess passwords.

Personal note: - While this is an effective way to not lose too much time on him because there are so many other aspects of social engineering.

  • USING FORGOT PASSWORD HACK
Type:- social engineering.
Specific skills required: - Logic.
The main enemy: - Smart targets.

All social networking sites offers password recovery system for the user if he or she forgets the password. Facebook has a password recovery system that can be used with care in order to hack Facebook accounts.

  • Facebook Hacking Methods that Do Not Work!
Today there are hundreds of scam sites out there, waiting to rip out of your pockets through false promises . These sites claim to experts in the field of piracy and offer immediately to get the passwords for you. Most people are victims of these pages and lose their hard-earned money. So the idea behind this paper exposed the truth behind hacking Facebook (or any password e-mail), you can learn to do and stay away from all the scam sites. Below are some of the hacking methods that do not really work:

First :-Many fraudulent Web sites try to exploit a vulnerability in the Facebook page as a way to break the password. Unfortunately, no such flaw in Facebook (or other online account) that can be used to decrypt the password. I suggest you stay away from sites such as fraud.

Second :-There is no program ready software available to use Facebook password, with the exception keylogger (spyware) hack. Are in fact quite generic and keyloggers designed to keystrokes on a computer, the password and of course the record. Note that apart from the key logger, there is no such program was specifically designed to access Facebook accounts. Stay away from any site you want to sell the program.

Third :-Beware! Forum websites and many Internet users, one is often counterfeit goods on piracy on Facebook. Most of them will say something like this: "We need passwordretrieve@facebook.com e-mail with your user name and password" (or something similar). Never enter your password to anyone or send any e-mail address. If you do, you lose your password in an attempt to hack the password of another person.

I never promote,encourage  Facebook  hacking  or other e-mail account, I just want to tells you about  the security of Facebook and the risks involved consciously with the primary e-mail address connected to Facebook.I appreciate your efforts when you talk about how we keep track Facebook safely.so please make your valuable comments