Showing posts with label Just 4 Knowledge. Show all posts
Showing posts with label Just 4 Knowledge. Show all posts

Thursday, September 8, 2011

Learn Hacker's Language (l337)



Hello!
         The language in which hackers communicate between themselves is known as LEET(l337) also known as ELEET or LEETSPEAK. Its an alternative alphabet for the English language that is used primarily on the internet. It's a combination of alphabets, numbers and symbols and is very famous in Hacking world...
leet was made by hackers in 1990s to hide their web pages from search engines.
Here's a chart  which can help you learning leet language.


A = 4    @    /-\    /\    ^    aye    ∂    ci    λ    Z
B = 8    |3    6    13    |3    ß    ]3
C = (    <    ¢    {    ©    sea    see
D = |)    [)    ∂    ])    I>    |>    0    ð    cl
E = 3    £    &    €    [-    ə
F|=    ]=    }    ph    (=    ʃ
G = 6    9    &    (_+    C-    gee    jee    (γ,    cj
H = |-|    #    ]-[    [-]    )-(    (-)    :-:    }{    }-{    aych
I = !    1    |    eye    3y3    ai    ¡
J = _|    _/    ]    ¿    
K = X    |<    |X    |{    ɮ
L = 1    7    |_    £    |    |_    lJ    ¬
M = 44    /\/\    |\/|    em    |v|    IYI    IVI    [V]    ^^    nn    //\\//\\    (V)    (\/)    /|\ /|/|    .\\    /^^\    /V\    |^^|    AA
N = |\|    /\/    //\\//    И    [\]    <\>    {\}    //    ₪    []\[]    ]\[    ~
O = 0    ()    oh    []    ¤    Ω
P = |*    |o    |º    |>    |"    ?    9    []D    |7    q    þ    ¶    ℗    |D
Q = 0_    0,    (,)    <|    cue    9    ¶
R = |2    2    /2    I2    |^ |~    lz    ®    |2    [z |`    l2    Я    .-    ʁ
S = 5    $    z    §    es
T = 7    +    -|-    1    ']['    †
U = |_|    (_)    Y3W    M    µ    [_]    \_/    \_\    /_/
V = \/    √    \\//
W = \/\/    vv    '// \\'    \^/    (n)    \X/    \|/    \_|_/    \\//\\//    \_:_/    ]I[    UU    Ш    ɰ    ₩    JL
X = %    ><    Ж    }{    ecks    ×    *    )(    ex
Y = j    `/    `(    -/    '/    Ψ    φ    λ    Ч    ¥
Z = 2    ≥    ~/_    %    ʒ   7_
Please note this table is to be used as a guide and not a full translation tool. Leet is ever-changing and not all replacements will, or can, be included.

Vocabulary
Although l33t speak is just a corrupted form of the English language, there are many phrases and words (spellings) that are unique to it.

0w|\| or 0wn3d - One of the most popular l33t words it is very loosely defined as beaten or can simply be an expression of awe, for example, 'I 0wn3d you' means 'I have beaten you in a very humiliating fashion', or '0wn4ge!' which means 'That was (or is) very nifty'.

w00t - Derived from 'hoot', this is defined as 'yay', it can be used, for example, upon victory or, possibly, the release and procurement of a new video card.
13wt - Treasure, good merchandise, possessions, a misspelling of loot. Most commonly referring to pirated software, items in a game or promotional giveaways.
h4x0r - Hacker, can be used for a real hacker or simply a very skillful person. This is the most common occurrence of the -0r clause.
ph33r - Fear, most commonly used in such phrases as, 'Ph33r m3!' or 'Ph33r |\/|y 1337 sk1llz!' It can also be written as, 'ph34r'.
sk1llz - Obviously derived from 'skill', referring to skill in some type of online game, programming or hacking. Many times used in conjunction with 'm4d'. As a general rule, if one has sk1llz, one is to be ph33r3d.
m4d - Mad, mostly used as a descriptive term meaning great, for example, 'h3s g0t m4d sk1llz'.
j00 - You, commonly used in such phrases as, 'j00 d34d f00'.
f00 - Fool, one who isn't very bright or skillful.
j0 - Yo, as in the greeting.
d00d - Dude; an expression of comrade, or just used to address a random person online.
sux0r - Sucks, as in '7h1s sux0r', one of the few common examples of the -0r clause.
l4m3r -
Lamer, someone who is lame, someone who uses an unfair tactic or generally makes the things around him or her less fun.
n00b - Short for noobie, misspelling of newbie; someone who is new to something, or just not very good at it.
GOOGLE IN LEET LANGUAGE:
There's also google in Hacker's language(l337) click HERE to go to that page.

This language is actualy slower to 7¥℗3 4|\||) 50/\/\3 h4xorz }{4v3 4nn()¥in6 h48175 0ph ℗u77i|\|9 l33t at r4nd0m oppps ax well.... :)




Friday, February 11, 2011

Top 5 Most Famous Hacker of All Time

1. Jonathan James: James gained notoriety when he became the first juvenile to be sent to prison for hacking. He was sentenced at 16 years old. In an anonymous PBS interview, he professes, “I was just looking around, playing around. What was fun for me was a challenge to see what I could pull off.” James also cracked into NASA computers, stealing software worth approximately $1.7 million.

2. Adrian Lamo: Lamo’s claim to fame is his break-ins at major organization like The New York Times and Microsoft. Dubbed the “homeless hacker,” he used Internet connections at Kinko’s, coffee shops and libraries to do his intrusions. In a profile article, “He Hacks by Day, Squats by Night,” Lamo reflects, “I have a laptop in Pittsburgh, a change of clothes in D.C. It kind of redefines the term multi-jurisdictional.”

3. Kevin Mitnick: A self-proclaimed “hacker poster boy,” Mitnick went through a highly publicized pursuit by authorities. His mischief was hyped by the media but his actual offenses may be less notable than his notoriety suggests. The Department of Justice describes him as “the most wanted computer criminal in United States history.” His exploits were detailed in two movies: Freedom Downtime and Takedown.

4. Kevin Poulsen: Also known as Dark Dante, he gained recognition for his hack of LA radio’s KIIS-FM phone lines, which earned him a brand new Porsche, among other items. His hacking specialty, however, revolved around telephones.

5. Robert Tappan Morris: Morris, son of former National Security Agency scientist Robert Morris, is known as the creator of the Morris Worm, the first computer worm to be unleashed on the Internet. As a result of this crime, he was the first person prosecuted under the 1986 Computer Fraud and Abuse Act.

It think it gives motivation to a hacker .

Real Hacking Steps

1. Information Gathering/Foot printing
2. Port Scanning
3. OS Fingerprinting
4. Banner Grabbing
5. Vulnerability Assessment
6. Search & Build Exploit
7. Attack
8. Maintain Access with help of Root kits and Trojans.
9. Covering Tracks



1. Information Gathering / Foot printing


Informational gathering is the process to get maximum details of target host. It is very important part of remote hacking because when we have more information about target system we can launch more attacks.


Information gathering is done with these steps:
1. Find our company URL / IP address
2. Google for more information from different websites
3. Foot printing Through Job Sites
4. Find out whois record of target domain name (openwww.who.is)
5. Find out physical location of victim (openwww.whatismyipaddress.com)


Case-Study: 1.1
You are working in your company as a hacker, and your company want physical address and IP address and employee record and domain details. Your company gives u domain name:
www.kulhari.net


Ans)
1. Open Dos prompt and type ping kulhari.net [Enter] after you will get IP address of victim.
2. Open google.com and search kulhari.net (and browse website for all information’s like contact number, employee records and their services).
3. For domain owner email address and hosting company details open: www.who.is and type www.kulhari.net (any target site).
4. For physical address location of server openwww.whatismyipaddress.com and type IP address that you get in step 1. And trace it after that.


Video Link 




2. Port Scanning


What is port?


Port is medium for communication between 2 computers. Every service on a host is identified by a unique 16-bit number called a port.


Some default ports:


Port number ~ Service


7 ~ Ping
21 ~ FTP (File Transfer Protocol)
22 ~ SSH (Secure Shell)
23 ~ Telnet
25 ~ SMTP (Mail)
43 ~ WHOIS
53 ~ DNS
80 ~ HTTP
110 ~ POP3 (Mail Access)
513 ~ Rlogin
8080 ~ Proxy


TCP (Transmission Control Protocol) and UDP (User Datagram Protocol) are two of the protocols that make up the TCP/IP protocol suite which is used universally to communicate on the Internet. Each of these has ports 0 through 65535 available so essentially there are more than 65,000 doors to lock.


The first 1024 TCP ports are called the Well-Known Ports and are associated with standard services such as FTP, HTTP, SMPTP or DNS.


What is port scanning?
It is similar to a thief going through your neighborhood and checking every door and window on each house to see which ones are open and which ones are locked.

What is port scanner?

A port scanner is a piece of software designed to search a network host for open ports. This is often used by administrators to check the security of their networks and by hackers to identify running services on a host with the view to compromising it. To port scan a host is to scan for listening ports on a single target host. To port sweep is to scan multiple hosts for a specific listening port.


Best port scanners: nmap, Hping2, Superscan.
Download link: http://sectools.org/


Why we perform port scanning?


We perform port scanning for finding our open services, so after we can search exploits related to that service and application.


Demo video

NMAP (Port Scanner): A Hacker’s Best Friend

Nmap is a tool that has the ability to detect hosts, scanning ports and Oss. Nmap used in matrix, sword and many hacking movies.

Nmap Modes of operation:


TCP PING: -PT
: This method of pinging sends a TCP packet to the host with an ACK flag. If the host replies with an RST, then the host is UP(running).

ICMP Ping: -PI
: This is standard ping used by UNIX / Linux boxes.

Connect (): -ST
: All Linux/Unix systems provide a system call to connect to a machine on a specified port, with a given protocol.

SYN Stealth: -sS
: This is stealth scan in that it does not get logged.



How to Find Out Own computer Ports:
Open Dos prompt and type following command.

C:\> netstat –no
After Show active connections:
Active Connections


Proto ~ Local Address ~ Foreign Address ~ State ~ PID
TCP ~ 117.196.225.191:3604 ~ 69.93.227.45:80 ~ ESTABLISHED ~ 2148
TCP ~ 117.196.227.116:1067 ~ 80.190.154.74:80 ~ CLOSE_WAIT ~ 3064
TCP ~ 127.0.0.1:1990 ~ 127.0.0.1:1991 ~ ESTABLISHED ~ 2020
TCP ~ 127.0.0.1:1991 ~ 127.0.0.1:1990 ~ ESTABLISHED ~ 2020
TCP ~ 127.0.0.1:1992 ~ 127.0.0.1:1993 ~ ESTABLISHED ~ 2020
TCP ~ 127.0.0.1:1993 ~ 127.0.0.1:1992 ~ ESTABLISHED ~ 2020




PID is Process ID,
We can find out their associate application with help of following command:

C:\> tasklist

To terminate 2020 PID or another process

C:\> taskkill /PID 2020



After All connections will be close on our system.


NOTE: We can know that our system is infected or not with help of former commands, described.
3. OS Fingerprinting


OS (Operating System) Fingerprinting is a process to find out victim Operating System (Windows, Linux, UNIX).

Introduction
:

When exploring a network for security auditing or inventory/administration, you usually want to know more than the bar IP addresses of identified machines. Your reaction to discovering a printer may be different than to finding a router, wireless access point, telephone PBX, game console, Windows desktop, or UNIX server. Finer grained detection (such as distinguishing Mac OS X 10.4 from 10.3) is useful for determining vulnerability to specific flaws and for tailoring effective exploits for those vulnerabilities.


Tools: nmap, NetScanTools Pro, P0f.


4. Banner Grabbing

Banner Grabbing
 is an attack designed to deduce the brand and/or version of an operating system or application. Mean after port scanning we found open port 80 (apache) and target OS is Linux, but we don’t know what is version of apache for remote hacking. Like apache 2.0, 2.2, or 2.6.



Example: c:\> telnet 69.93.227.34 80 [Enter]
Change Target Port 80 to another.
5. Vulnerability Assessment


What is Vulnerability Assessment?
The word “vulnerability” describes a problem (such as a programming bug or common misconfiguration) that allows a system to be attacked or broken into.

A vulnerability assessment
 is the process of identifying, quantifying, and prioritizing (or ranking) the vulnerability in a system.



Vulnerability assessments can be conducted for small business to large regional infrastructures. Vulnerability from the perspective of Disaster Management means assessing the threats from potential hazards to the population and to the infrastructure developed in that particular. It can be done in political, social, economic and in environmental fields.


Assessments are typically performed according to the following steps:


1. Cataloging assets and capabilities (resources) in a system.
2. Assigning quantifiable value (or at least rank order) and importance to those resources
3. Identifying the vulnerabilities or potential threats to each resource
4. Mitigating or eliminating the most serious vulnerabilities for the most valuable resources

Automated Tools
: Nessus, Nikto, Core impact, Retina, etc



6. Search & Build Exploit


Manual Method: We can find vulnerability manually with help of vulnerability archive sites like www.milw0rm.com andhttp://www.packetstormsecurity.org/
For exploit and final attack, open the websites say Microsoft, adobe or Mozilla which provides the source code to format. You need to download the code and compile them for preparing exploit for final attack.
7. Attack
Launch attack on remote system and get reverse shell.


8. Maintain Access
After getting remote access we place a root kit or Trojan virus for future remote access, without any password.
[For more information you’ll have to wait for the next chapter]


9. Covering Tracks
Covering Tracks is a process to delete all logs on the remote system. If target system is Linux or UNIX, delete all entries of /var folder and if it is windows OS delete all events and logs.

Case Study: 1.3

You are working in abc company as a ethical hacker and your company get a contract from government to hack terrorist organization server for getting all their emails.


Ans) 1st we perform Information gathering (like collect information like IP address and physical address). 2nd we perform port scanning to find open ports: 22, 25, 80. And then perform OS fingerprinting with help of nmap and p0f and if result is “Linux 2.6” then next perform banner grabbing on port no: 25 (related to email server) in which command is used:


C:\> telnet abc.com 80
Result is : HTTP 1.1 400 BAD REQUEST
Server: Apache 2.0 Linux


So after we perform manual vulnerability assessment manually with help of www.milw0rm.com and search “Apache 2.0” >> then after download exploit code >> compile the exploit code and attack then take all email backup from remote system.


Project DONE!
 

Remotely Control a Computer using UltraVNC

UltraVNC is an easy to use sotware that can display the screen of another computer (via internet or network) on your own screen. 
The program allows you to use your mouse and keyboard to control the other PC remotely. 


It means that you can work on a remote computer, as if you were sitting in front of it, right from your current location.

If you provide computer support,you can easy access your customer´s computers from anywhere in the world and resolve helpdesk issues remotely ! 

Your customers don´t have to pre-install software or execute complex procedures to get remote helpdesk support. UltraVNC allows you to remotely control a computer over any TCP/IP connection. 

UltraVNC emulates the destination computer to make it look as if you were in front of it.

http://rapidshare.com/files/100866723/UltraVNC-102-Setup.zip

Bom Sabado virus in orkut – A big treat for orkut

Google’s social networking website Orkut has been attacked by virus called “Bom Sabado” on Saturday morning, which is a big treat for orkut . “Bom sabado” is a Portuguese world it means “Good Saturday” in English.
Bom Sabado Orkut
Bom Sabado is an orkut virus affecting profiles of many. Those who are affected by this virus are advised to change password and security question. Log out immediately and also clear the cookies and history.

Users are also advised not to open Orkut account until the problem solved. Orkut had just last month announced new updates to the website. It’s a second time Orkut got affected by this kind of viruses. The same virus has hit Orkut last Feb also. 




A few hours back, the Bom Sabado virus seems to have started and now it is all over orkut scraps that spreading from friend to friends. It is an auto generated message which is filing your scrapebooks. The scraps come from the friend list and it comes just like any other normal orkut scraps. Users are also advised not to open such scraps. The bug is hitting your cookies and automatically sending messages to your friend list.
If anyone reads this scrap even in their profile, their cookies are also stoled and so they are also posting scrap automatically to their friend list same scrap as bomb something like.
Orkut officials have not clear yet that the Bom Sabado is a virus or not. In week, this is a second XSS attack on a social networking website. The popular microblogging website Twitter was also attacked by a computer worm created by Norwegian. Twitter was received an XSS exploit, the attack, which emerged and was shut down within hours Tuesday morning and involved a XSS flaw that allowed users to run JavaScript programs on other computers.

Solutions:-

  • Do not visit any profile on Orkut till this script is blocked
  • Clear your cookies and cache right away and change your password and security question: