Saturday, 21 April 2018

British Schoolboy Who Hacked CIA Director Gets 2-Year Prison Term

The British teenager who managed to hack into the online accounts of several high-profile US government employees sentenced to two years in prison on Friday.

Kane Gamble, now 18, hacked into email accounts of former CIA director John Brennan, former Director of National Intelligence James Clapper, former FBI Deputy Director Mark Giuliano, and other senior FBI officials—all from his parent's home in Leicestershire.

Gamble, who went by the online alias Cracka, was just 15 at the time of carrying out those attacks and was the alleged founder of a hacking group calling themselves Crackas With Attitude (CWA).







The notorious pro-Palestinian hacking group carried out a series of embarrassing attacks against U.S. intelligence officials and leaked personal details of 20,000 FBI agents, 9,000 officers from Department of Homeland Security, and some number of DoJ staffers in 2015.

The teenager was arrested in February 2016 at his home in Coalville and pleaded guilty to 8 charges last October of "performing a function with intent to secure unauthorised access" and 2 charges of "unauthorised modification of computer material."

On Friday afternoon in the Old Bailey central criminal court in London, Gamble was finally sentenced after his first sentencing hearing in January was postponed, and the judge ruled that he'll have to serve 2 years at a youth detention center, BBC reported.

While Gamble's defence said he was "naive" and never meant to "harm" any individuals during the court hearing, the judge said he carried out "an extremely nasty campaign of politically-motivated cyber terrorism."

Between June 2015 and February 2016, Gamble posed as Brennan and tricked call center and helpline staff into giving away broadband and cable passwords, using which his team also gained access to extremely sensitive documents for intelligence operations in Afghanistan and Iran.

Besides hacking into their networks, Gamble also taunted his victims and their families, bombarded them with calls and messages, released their personal details, downloaded and installed porn onto their computers and took control of their iPads and TV screens.

Gamble even made hoax calls to Brennan's home and took control of his wife's iPad. At one point, he also sent DHS secretary Johnson a photograph of his daughter and said he would f*** her.

Gamble also phoned Mr. Johnson's wife, leaving a disturbing voicemail message which said: "Hi Spooky, am I scaring you?," and even managed to display the message "I own you" on the couple's home television.

Gamble said he targeted the US government because he was "getting more and more annoyed about how corrupt and cold-blooded the US Government" was and "decided to do something about it."

According to previous reports, Gamble is suffering from an autistic spectrum disorder, and at the time of his offending, he had the mental development of a 12 or 13-year-old.

Gamble's defence had argued court on Friday for a suspended sentence, so he can sit his GCSEs in June and read computer science studies at university to pursue a "useful" career.

Two other members of Crackas With Attitude—Andrew Otto Boggs and Justin Gray Liverman—were arrested by FBI in September 2016 and had already been sentenced to two and five years in federal prison respectively

Tuesday, 1 October 2013

How to install android Emulator in bACKtrack kali linux

Android-Emulator-on-Backtrack5

android emulator



The following steps will help to setup
AndroidEmulator on BackTrack Linux 5

Check Java version
#java -version 

java version "1.6.0_20"
OpenJDK Runtime Environment (IcedTea6 1.9.13) (6b20-1.9.13-0ubuntu1~10.04.1)
OpenJDK Server VM (build 19.0-b09, mixed mode)


Step 1
Download the Android SDK 
from android
developer website
Step 2
Extract the downloaded SDK
#cd android-sdk-linux
android-sdk-linux# 
android-sdk-linux#  cd tools 
android-sdk-linux/tools# 
tools#./android list

Available Android targets:
Available Android Virtual Devices:
tools#./android update sdk

Saturday, 20 July 2013

How To Earn Money Through Affiliate Programs $$$

How To Earn Money Through Affiliate Programs $$$



Hello! friends Today i am here with new interesting material that how one can earn money online.
As we all know that in today's life most of the work is going online. I should say the world has became online and most of the people are doing jobs online, making money online more than they earn offline.
So, today i am going to tell you that you can earn money online through affiliate programs.

Yes its true, you have not even to go out of your home. You can earn money by just sitting on your chair in front of your personal computer by affiliate programs. Affiliate marketing programs are one of the best way of earning money online. Many people are trying and earning a lot of money $$$ by these affiliate programs and now many of the affiliate programs are grown up and giving lot of money $$$

Don't worry if you don't know about these programs, i will tell you deeply that what these affiliate programs are, how they works, and how do these programs give you money.

What is Affiliate program

These are those programs where a web advertiser recruits webmaster of a website to place ads on their websites. These ads may be banner ads or simply text ads. The webmaster will receive a referral commission when someone clicks on the placed ads and redirect to the advertiser's webpage usually a purchase page or a register page.
The most common types of these affiliate programs are pay per click [PPC] or pay per impression [CPM].

Pay Per Click
In PPC you wiil be paid per click, you were paid when someone clicks on you affiliate banner or text ads. The amount you earn is the major earning through affiliate programs means from pay per click you will earn more than pay per impression.

Thursday, 27 June 2013

WiFi Slax Wireless Hacking Live CD 3.1

 WiFi Slax Wireless Hacking Live CD 3.1



WiFi Slax Wireless Hacking Live CD 3.1*

WiFi Slax Wireless Hacking Live CD 3.1*


WiFi Slax Wireless Hacking Live CD 3.1 | 635 Mb


Fast-forward to last summer, when the first of the latest generation of WEP cracking tools appeared. This current generation uses a combination of statistical techniques focused on unique IVs captured and brute-force dictionary attacks to break 128 bit WEP keys in minutes instead of hours. As Special Agent Bickers noted, "It doesn't matter if you use 128 bit WEP keys, you are vulnerable!"
WEP Hacking - The Next Generation
WEP is an encryption scheme, based on the RC-4 cipher, that is available on all 802.11a, b and g wireless products. WEP uses a set of bits called a key to scramble information in the data frames as it leaves the access point or client adapter and the scrambled message is then decrypted by the receiver.

Both sides must have the same WEP key, which is usually a total of 64 or 128 bits long. A semi-random 24 bit number called an Initialization Vector (IV), is part of the key, so a 64 bit WEP key actually contains only 40 bits of "strong"encryption while a 128 bit key has 104. The IV is placed in encrypted frame's header, and is transmitted in plain text.

Traditionally, cracking WEP keys has been a slow and boring process. An attacker would have to capture hundreds of thousands or millions of packets? a process that could take hours or even days, depending on the volume of traffic passing over the wireless network. After enough packets were captured, a WEP cracking program such as Aircrack would be used to find the WEP key.

Basic Directions:
1)Boot from cd
2)Get the wep key
3)Write it down
4)Reboot into windows
5)Connect using wep key

download
part 1
part 2
part 3

Hacking Software: SpyBoss KeyLogger Pro 4.2.3

 Hacking Software: SpyBoss KeyLogger Pro 4.2.3



Spy Boss Key Logger Pro 4.2.3  4.19 Mb



SpyBoss KeyLogger Pro 4.2.3 pal certainly all familiar with the words keylogger which is one of the most prominent hackers weapon and of course 100% works well to record all keyboard activity on the victim's computer. With all the activity keylogger keyboard work will be recorded automatically with no known casualties so hackers can take over all the data about our own personal accounts such as facebook, email, banking and other accounts.


SpyBoss KeyLogger Pro 4.2.3 Features:

    Secretly Monitor with this feature is certainly shared by every software keylogger, which monitors all activities or activities performed by the keyboard to steal the victim's information secretly.
    Password Protection
    this feature allows you to give the password on this keylogger software so that no one else can access or launch this software.
    Stealth Mode
    here's the best feature of this software. With this feature, you can hide this software for no one knows if you're using this leading software.
    Encrypted Data Files
    all data that has been stored will be encrypted with a secure, so if someone finds your log files, they still will not be able to read it. The log file can only be read using this software.
    Email Log Files
    with this you can send the log files from anywhere on the computer that has installed this keylogger to your email address.
    Record Usernames And Passwords
    with this feature you can steal usernames and passwords of the victim when they open a site like facebook, email, twitter and other sites that use the login / sign-ins.

download

Ethical Hacking Video Training 2.31 GB

 Ethical Hacking Video Training 2.31 GB



Ethical Hacking Video Training 2010 | (2.31Gb)


Ethical Hacking Video Training 2010 | (2.31Gb)






Ethical Hacking Video Training
Size: 2.31GB


VTC Ethical Hacking & Penetration

15 Step to Hacking Windows Using Evilgrade 2.0 on Backtrack 5

 15 Step to Hacking Windows Using Evilgrade 2.0 on Backtrack 5



What is Evilgrade?
Evilgrade is a modular framework that allows the user to take advantage of poor upgrade implementations by injecting fake updates. It comes with pre-made binaries (agents), a working default configuration for fast pentests, and has it's own WebServer and DNSServer modules. Easy to set up new settings, and has an autoconfiguration when new binary agents are set.


From : http://www.infobytesec.com Requirement :


1. Evilgrade


2. Backtrack 5


Step By Step :


1. Extract Evilgrade then run it using the command below


tar xvfz isr-evilgrade-2.0.0.tar.gz cd isr-evilgrade-2.0.0.tar.gz/ ./evilgrade

Secure Sockets Layer (SSL) - An Introduction





Secure Sockets Layer (SSL) - An Introduction 



 

In the OSI model a reference model for effective communication we find a layer named transport layer. Just like a physical layer (where viruses attack normally) transport layer also need some sort of security because transport layer is responsible for transmission of data.
So what actually makes transport layer to make the transmission secure and to protect the data from any intruder.

Have you ever noticed that when you visit some website it starts with http:// and whenever you visit some sort of money transfer and other important websites you find https:// point is clear https means a secure communication it means that your data that transfer from this connection secure by using some cryptography techniques.

SSL or secure sockets layer are cryptographic protocols that provide secure communication over the Internet. So what actually a cryptography is " Cryptography is a science of secrete communication".
SSL uses two keys to encrypt data − a public key known to everyone and a private or secret key known only to the recipient of the message.  

HTTP VS HTTPS 






The above picture shows that when ALICE sends the confidential information over insecure channel that there is a chance to sniff this confidential information (it might be a credit card information or may be your password etc). So the point is that an attacker can easily sniff this data and can easily read, understand and use for illegal activities because the data transfer in plain text regardless of any encryption it is simply a HTTP connection. 





Now consider the second picture when an user send some sort of information over secure channel means if someone using HTTPS than the data first encrypt by using cryptography technique than it sends over channel, so in this case if someone sniff this data than he/she not able to understand it. 

The above broad picture has clearly shows that HTTPS is secure, but how HTTPS is secure? Because it uses secure sockets layer (SSL). A website can implement HTTPS by purchasing an SSL Certificate.

Where there's a will there's a way. By following this amazing quote some researcher has discovered some ways to crack/hack SSL certificate too. To hack SSL certificate we will post an article later on.


Sunday, 16 June 2013

Preload videos on Android

Preload videos on Android

Preloading lets you watch select videos without interruption. For example, if you want to watch videos while you're commuting to work on the subway, you can preload certain videos on your Android phone. The preloaded videos won't be stuck on loading or continually stop and start because of a low signal!
To play these preloaded videos, you’ll still need a network signal (even a weak one). Currently, only subscribed videos and videos in your "Watch Later" playlist are available for preloading.

Enabling preloading

To have preloaded videos available on your phone, you’ll need to make sure that you’re signed into your YouTube account. Once you’re signed in, follow these steps to enable preloading:
  1. Touch the menu icon .
  2. Touch Settings.
  3. Touch Preloading.
  4. Touch Preload subscriptions and/or Preload watch later.
Preloading can be disabled at any time by unchecking these options.

Conditions for preloading

Once you turn on this feature, preloading will happen only when:
  • The device’s battery is charging.
  • The device is connected to a WiFi network.
For videos that are being fetched,  will be displayed in the corner of the video. Once a video has been fetched,  will appear.
Note: Please check with your ISP to determine if your plan has any data caps as preloading will stream large amounts of data.

Smart Phone : How to connect Galaxy S3 to TV with HDMI?

Smart Phone : How to connect  Galaxy S3 to  TV with HDMI?

The Galaxy S3 device can connect to your HDTV using the Samsung HDMI® Universal Adapter available for purchase separatel. The part code is EPL-3FHUBE. It is an 11 pin connector different from what the 5 pin connector of Galaxy S2. The adapter provides you with a standard HDMI connection; HDMI cable not included.
                                                    
                                    img4.gif


Using the HDTV Connector:

The HDTV Adapter allows you to view videos and other media stored on your phone via a compatible HDTV. To connect the HDTV Adapter to your device, follow these steps:

img3.gif

  1. Connect one end of a universal HDMI cable into the HDTV Adapter.
  2. Connect the other end to the HDMI port on your TV.
    If your TV has multiple HDMI ports, you may use any of the ports. Ensure your TV input settings have the right HDMI port selected. See your TV owner's manual to get more information.
    Note: Universal HDMI cables are sold separately.
  3. Connect your Travel Charger to the HDTV Adapter.
  4. Connect your Travel Charger to an approved power source.
  5. Connect the HDTV Adapter connector into the Power/Accessory Interface port on your device. This is the same port you normally use to connect your Travel Charger. The TV screen will instantly display what is on your device home screen.


    Note: Most DRM-protected content cannot be displayed using the HDTV adapter.
    • Please ensure the HDTV is compatible with viewing videos or other media stored on your phone using the HDTV Adapter. Refer to your TV owner's manual for correct HDMI settings.
    • Your HDTV may not display an image when connecting the HDTV Adapter to a desktop dock.


Saturday, 15 June 2013

tor+raspberrypi+onion pi (fbi also cant track you if you do something)


Photo: Thumb Your Nose at the NSA With Raspberry Pi
=============================
The NSA is watching you. But you can get around the agency’s prying eyes with Tor and a Raspberry Pi.

Adafruit has created a handy how-to to help you build a wireless access point that anonymizes your internet browsing. The Onion Pi Tor proxy directs your internet access through the Tor routing service. All your data packets go through three layers of relays before hitting their destination. This level of routing makes it difficult for anyone to determine who and where you are.

The main items you’ll need for the kit include: the Raspberry Pi model B, a Wi-Fi adapter, the Raspbian software distro, and a distaste for being monitored without a warrant. Once finished, you can plug the device into an Ethernet port and create a Wi-Fi hotspot that eludes the long ear of The Man.

Now you can anonymously browse all those brony sites without tipping off the feds, or the hotel you’re staying in.

read more @
http://www.wired.com/gadgetlab/2013/06/thumb-your-nose-at-the-nsa-with-raspberry-pi/
http://www.wired.com/threatlevel/2013/06/snowden-thumb-drive/

http://learn.adafruit.com/onion-pi/overview==Onion Pi


Thumb Your Nose at the NSA With Raspberry Pi
=============================
The NSA is watching you. But you can get around the agency’s prying eyes with Tor and a Raspberry Pi.

Adafruit has created a handy how-to to help you build a wireless access point that anonymizes your internet browsing. The Onion Pi Tor proxy directs your internet access through the Tor routing service. All your data packets go through three layers of relays before hitting their destination. This level of routing makes it difficult for anyone to determine who and where you are.

The main items you’ll need for the kit include: the Raspberry Pi model B, a Wi-Fi adapter, the Raspbian software distro, and a distaste for being monitored without a warrant. Once finished, you can plug the device into an Ethernet port and create a Wi-Fi hotspot that eludes the long ear of The Man.

Now you can anonymously browse all those brony sites without tipping off the feds, or the hotel you’re staying in.

read more @
http://www.wired.com/gadgetlab/2013/06/thumb-your-nose-at-the-nsa-with-raspberry-pi/
http://www.wired.com/threatlevel/2013/06/snowden-thumb-drive/

http://learn.adafruit.com/onion-pi/overview==Onion Pi

CYBERGATE V1.11.0

CYBERGATE V1.11.0

[Image: ijvpCE.PNG]

(It's still showing up trial message, but it's only showing - nothing else, no connection limit)

Changelog:

Platform: Microsoft ® Windows All
License: Private Release

[+] webloader (ability to create a web downloader with 3.5 Kb's);

[+] increased quality on saved files on audio capture;

[+] webcam capture was totally reprogrammed;

[+] password recovery was totally reprogrammed:

-Internet Explorer (auto-complete, auto-save);

-Firefox;

-Chrome;

-Opera;

-Windows Live Messenger;

-Yahoo! Messenger;

-Trillian;

-Internet Download Manager;

-NO-Ip;

-DynDNS;

-Filezilla;

-Paltalk;

-Pidgin.

[+]Run as admin files remotely;

[+]Multi-Thumbnails view on file manager (ability to create thumbs out of any file/all files of remote folder);

[+]Lock station (ability to lock CyberGate after a certain time of idling or by button press ot avoid outsiders from accessing your CyberGate if you leave your computer etc ...)

download

OS FINGERPRINTING

OS FINGERPRINTING




OS (Operating System) Fingerprinting is a process to find out victim's Operating System(Windows, Linux, UNIX)Certain parameters within the TCP protocol definition are left up to the implementation.  Different operating systems, and different versions of the same operating system, set different defaults for these values.  By collecting and examining these values, one may differentiate among various operating systems, and implementations of TCP/IP. The TCP/IP fields that may vary include the following:

Initial packet size (16 bits)
Initial TTL (8 bits)
Window size (16 bits)
Max segment size (16 bits)
Window scaling value (8 bits)
"don't fragment" flag (1 bit)
"sackOK" flag (1 bit)
"nop" flag (1 bit)
These values may be combined to form a 67-bit signature, or fingerprint, for the target machine.
Tools: nmap, NetScanTools Pro, P0f.

HOW TO DETECT HIDDEN BACKDOORS, TROJAN HORSES AND ROOTKIT TOOLS

HOW TO DETECT HIDDEN BACKDOORS, TROJAN HORSES AND ROOTKIT TOOLS







What is a BackDoor?
A backdoor in a computer system (or cryptosystem or algorithm) is a method of bypassing normal authentication, securing remote access to a computer, obtaining access to plaintext, and so on, while attempting to remain undetected, the backdoor may take the form of an installed program, or could be a modification to an existing program or hardware device. It hides in the computer, scans existing loopholes, opens corresponding ports, as well as modifies system registration files.
Backdoor will not duplicate or actively spread itself. It will only open a certain port through which a remote computer in the network can control the infected computer. Generally the backdoor will not influence normal communication of the network, so firewalls or IDS can hardly detect its existence.
Is my network infected with a backdoor?


ALIEN IP 2.3.0



Find people or computers or IP addresses atravez We
Alien IP is very useful and can even show the country and city people who visit your site, people who send e-mails, web servers and other IP owners around the world. It will detect the country, the city and region on the world map by IP or web address.

IP Locator
Size: 14.6 MB
Format: Zip
Language: English

BACKTRACK codename whydah live distribution

BACKTRACK codename whydah live distribution




 BACKTRACK codename whydah is a fast, lightweight and easy slax based linux live distribution focused on wireless security testing, automatic hardware detection, and support for many graphics cards, sound cards, wireless, SCSI and USB device.

BACKTRACK codename whydah provides users with easy access to a comprehensive and large collection of security-related tools. Support for live USB functionality allows users to boot directly from portable media without requiring installation, though permanent installation to hard disk is also an option. With whydah you can easily grasp the concepts and understand the techniques to perform wireless attacks in your own lab. Get started with wireless testing, security and hacking with basic wireless concepts.

download

wifi cracking word lists

WPA WPA2 WORD LIST



WPA WPA2 Word List

Compressed File Size: 4.4 GB Decompressed File Size: 13 GB

The list contains 982,963,904 words exactly no dupes and all optimized for wpa/wpa2.

This is my final series of WPA-PSK wordlist(S) as you can't get any better than this !!!

My word list is compiled from all known & some unknown internet sources such as :
1. openwall
2. coasts password collections
3. Xploitz Master Password Collection(s) vol 1 and vol 2 (official Backtrack 3/4/4R1 wordlist collections, Thanks Xploitz)
4. ftp sites such as; ftp://ftp.ox.ac.uk/pub/wordlists/ & others
5. all wordlists on and (as of 07/11/2010)
6. all wordlists hosted on;
7. all usernames from "100 million Facebook usernames and personal details" as leaked onto Torrent sites
8. all wordlists from the Argon (site now closed)

And as a bonus my personal wordlist of 1.9 GB !!!

Which also includes :

My "WPA-PSK WORDLIST 2 (107 MB).rar" & "WPA-PSK WORDLIST (40 MB).rar" Torrent
& random usernames grabbed from over 30,000+ websites such as youtube, myspace, bebo
& others sites which I can't mention :-)

download

Saturday, 8 June 2013

backtrack script hack

backtrack tools with optional Backtrack Menu on latest ubuntu version. simple run backtrack menu hack script install backtack tools automatic.

Friday, 7 June 2013

How to Change MAC Address in Backtrack

How to Change MAC Address in Backtrack 5


Open your backtrack terminal and type ifconfig to check your MAC Address


In terminal, type ifconfig eth0 down this command is used for disabling the eth0 interface.

Now change the MAC address by using a simple command in backtrack macchanger –r eth0

Now type ifconfig eth0 up this command is used for enabling the eth0 interface



Now you can check your spoofed MAC Address type ifconfig

Thursday, 6 June 2013

OWASP MANTRA SECURITY TOOLKIT - GANDIVA BETA 0.61

OWASP MANTRA SECURITY TOOLKIT - GANDIVA BETA 0.61



Mantra is a dream that came true. It is a collection of free and open source tools integrated into a web browser, which can become handy for students, penetration testers, web application developers, security professionals etc. It is portable, ready-to-run, compact and follows the true spirit of free and open source software. Mantra is a security framework which can be very helpful in performing all the five phases of attacks including reconnaissance, scanning and enumeration, gaining access, escalation of privileges, maintaining access, and covering tracks. Apart from that it also contains a set of tools targeted for web developers and code debuggers which makes it handy for both offensive security and defensive security related tasks.