Latest News

Showing posts with label General Awareness. Show all posts
Showing posts with label General Awareness. Show all posts

Do not use your mobile for unwanted commercial SMS and calls

TRAI MANDATE
 
Do not use your mobile for unwanted commercial SMS and calls.
 
The defaulting number will be liable for disconnection.

Please note the new Telecom Commercial Communications Customer Preference (TWELFTH AMENDMENT) Regulations, 2013 (6 OF 2013)

The Regulation states: If any mobile number is used to send Unsolicited Commercial Communication (SMS or Calls) and a complaint is registered on TRAI portal on the same, following action will be taken:
  • Disconnection on first instance post investigation
  • Disconnection of all the telecom resources allotted under the same name and address
  • Upload information on TRAI portal, for other service providers to disconnect all telecom resources provided by them on same name and address
  • Blacklisting of the subscriber for 2 years under same name and address
For further information please visit the following TRAI link:

http://www.trai.gov.in/WriteReadData/WhatsNew/Documents/twelth%20amendment%20final23.5.13.pdf
 

2013 Security Threat Report: 5 Threats to Watch


Published on Dec 19, 2012
http://www.sophos.com/threatreport Join Richard Wang, Director of Threat Research at Sophos to learn about threats you should keep an eye on now and into the new year. He'll discuss new attack platforms and the changing threats, protection strategies to combat these threats, blackhole and ransomware, and security predictions for 2013.

When is a password not a password?

GreHack 2013 - CFP EXTENDED TO JULY,16 - Conf: Nov. 15, Grenoble, France

From: "F. Duchene"
Date: Sun, 30 Jun 2013 10:32:20 +0200


--------------------------------------------------------------------------------

If you have security research to submit, please note that the CFP Submission deadline for GreHack'13 has been EXTENDED to *JULY 16*.

---------------------------
*GreHack 2013* — Call For Papers - EXTENDED SUBMISSION DEADLINE: JULY 16 Event: November 15, Grenoble, France http://grehack.org — Twitter: @grehack
---------------------------

*Topics*

The 2nd International Symposium on Grey-Hat Hacking — aka GreHack 2013

— will gather researchers and practitioners from academia, industry, and government to discuss new advances in computer and information security research.

All topics related to vulnerability discovery are within scope. In addition, topics of interest also include but are not limited to:
 - Reverse Engineering and Obfuscation
 - Vulnerability Discovery, Analysis and Exploit Automation
 - Embedded Systems Security, including Smartphone Security
 - Hardware Vulnerabilities
 - Malware Creation, Analysis and Prevention
 - Web Application Security
 - Network Exfiltration
 - Intrusion Detection and Prevention
 - Security and Privacy in Cloud, P2P Networks
 - Penetration Testing
 - Disclosure and Ethics
 - Digital Forensics
 - Applied Cryptography and Cryptanalysis

We encourage original and groundbreaking submissions, demonstrations, release of a new open source/non-commercial tool, and interaction with the audience.

Each submission will be reviewed by at least three members of the Program Committee.

---------------------------
*Important Dates*
 - *SUBMISSION DEADLINE*:       JULY 16, 2013 11PM59  HONOLULU, HAWAII TIME *EXTENDED*
 - Reviews due:                 August 25, 2013 11pm59 Honolulu, Hawaii Time
 - Decision notification:       September 4, 2013
 - Final paper camera-ready:    September 30, 2013 11pm59 Honolulu, Hawaii Time
 - Symposium:                   November 15, 2013

---------------------------
*Submissions Types*
GreHack 2013 will consider following types of submissions:
    *Full research papers* presenting mature and novel research results. Their total length should range from 10 to 16 pages.
    *Short Papers/Extended Abstracts* describing novel ideas of potential interest to the security research community. Their total length should range from 4 to 8 pages. Papers accepted by the Program Committee will be presented at GreHack 2013. Each paper must include an abstract and a list of keywords, be formatted in a single-column format, use at least 11-point fonts, and have reasonable margins. Templates are available on the website (Latex and Word). Total length includes the bibliography and any appendices.

    GreHack does not require anonymized submissions, thus authors and affiliations must be mentioned. For accepted papers, at least one of the authors must attend the conference and present the paper. Papers must neither have been previously accepted for publication nor submitted in another conference or journal with formal proceedings. Industry conferences such as BlackHat do not have formal proceedings. Further questions on the submission process may be sent to the program
chairs at pc-chairs-2013 () grehack org

---------------------------
* Best Paper Award*
The Program Committee members will select the best paper to be announced and awarded at the last session of the symposium.

---------------------------

*Publishing: Springer JCVHT*
The best papers will be selected from submissions, carefully reviewed, and published in the prestigious Springer Journal in Computer Virology and Hacking Techniques (JCVHT).
JCVHT is an open journal: the access to the papers is free of charges for the reader.

 http://www.springer.com/computer/journal/11416
 http://academic.research.microsoft.com/Journal/890/journal-in-computer-virology

---------------------------

*Program Committee*
 - Dan Alloun (Intel, Israel)
 - Ruo Ando (NICT, Japan)
 - Jean-Philippe Aumasson (Kudelski Security, Switzerland)
 - Sofia Bekrar (VUPEN Security, France)
 - Elie Bursztein (Google, US)
 - Fabrice Desclaux aka Serpilliere (France)
 - Adam Doupe (UCSB, US)
 - Fabien Duchene (LIG, France)
 - Chris Eng (Veracode, US)
 - Peter Van Eeckhoutte aka corelanc0d3r (Corelan, Belgium)
 - Manuel Egele (CMU, US)
 - Philippe Elbaz-Vincent (UJF, France)
 - Eric Filiol (ESIEA, France)
 - The Grugq (Thailand)
 - Mario Heiderich (Ruhr University Bochum, Germany)
 - Pascal Lafourcade (VERIMAG, France)
 - Cedric Lauradoux (INRIA, France)
 - Pascal Malterre (CEA-DAM, France)
 - Laurent Mounier (VERIMAG, France)
 - Stefano Di Paola (Minded Security, Italia)
 - Marie-Laure Potet (VERIMAG, France)
 - Paul Rascagneres aka r00tBSD (Malware.Lu, Luxembourg)
 - Sanjay Rawat (India)
 - Raphael Rigo (ANSSI, France)
 - Nicolas Ruff (EADS Innovation Works, France)
 - Steven Seeley aka Mr_Me (Immunity, US)
 - Fermin J. Serna (Google, US)
 - Nikita Tarakanov (Russia)

---------------------------
*Accepted Author Benefits* (1 author per accepted paper)
 - One free entry to the conference
 - Limited financial participation to author expenses (accommodation and travel). Priority for travel grants will be given to students.

---------------------------
*Submission Guidelines*
Submissions will be handled via EasyChair at:

https://www.easychair.org/conferences/?conf=grehack2013

In the unlikely case that the submission website would be unavailable, you can email your submission to: pc-chairs-2013 () grehack org

---------------------------
*GreHack 2013* — Call For Papers - EXTENDED SUBMISSION DEADLINE: JULY 16 Event: November 15, Grenoble, France

http://grehack.org — Twitter: @grehack

------------------------------------------------------------------------
This list is sponsored by: Information Assurance Certification Review Board Prove to peers and potential employers without a doubt that you can actually do a proper penetration test. IACRB CPT  and CEPT certs require a full practical examination in order to become certified.

http://www.iacertification.org

------------------------------------------------------------------------
 

Blogging Tips: Things to know how to write inspiring write-ups


Blogging in recent times has emerged as a medium of information sharing, wherein bloggers from distinct streams share their knowledge on a particular topic. The blogging scenario has become extremely competitive as bloggers vie with each other to secure a place in the challenging online world.
To come up to the reader’s aspiration, one needs to write inspiring content, which is qualitatively written with efforts put in true earnest.
1.) Qualitative research
To come with inspirational content that motivates readers to take action, you need to do qualitative research. Understand the perspective of the topic and analyze it from various angles. This will help you come up with authentic information that will help your readers develop better understanding of the topic.
Qualitative research will help you establish as a niche blog writer and connect in a better way with your readers.
2.) Write niche specific content
In order to come up with inspirational text, one needs to be niche specific. Choose the area of your interest and stick to it. With time and experience by your side, you will be able to bring quality in the content and make the same inspirational.
3.) Read a lot
A good blog writer reads a lot. Reading helps you broaden your horizon and learn new facts. These will definitely help you to come up with good text. The reflection of the same will be evident in your writing and the readers will be inspired lot to connect and share your vision with others.
4.) Discuss with your friends and family
Share your ideas with others in the family. This will help you learn new facts and come up with interesting information for the readers. Amongst your friends and family, you will be having people who have interests similar to you.
Information sharing with such people will help you to work on new ideas and concepts. Incorporate the learning in your writing. This will make the presentation informative as real life ideas and concepts are much practical and relevant.
5.) Observe people
There is no better learning than a practical experience. In our daily life, we meet many people who have distinct ideas and visions. Observe them and you will have many inspirational ideas to share with your readers.
6.) Follow the rules
Do not let your efforts put in for qualitative research go waste. Content writing has some rules. Follow these, else all your efforts put in to catch the eye of the reader will go waste. Optimum keyword usage, incorporation of short sentences and real life examples are some of the key requirements, in case you wish to come up with inspiring content. Sticking to the rule book is the imperative criterion for success and you need to follow these in true earnest.
Blog writing is a creative means of sharing your ideas and though with the readers. Follow the above listed steps and you are sure to come up with inspiring text that will catch the eye of the reader and help you to establish your competence in the field.
Author Bio: Brianne is a writer blogger. She loves writing, travelling and reading books.  She contributes to Christopher Ryan Porter

Services Offered by Amarjit Singh as a Freelancer

Hi Friends...Freelancing is tough. It can be very difficult, in fact. It can wear people down, making them lose sight of what they used to love because they have to do everything else just to get by.

No matter how much experience I have, how many degrees I have, or how well known I have become — there is always something new to learn. According to me if you do nothing to improve your skills, you won’t stay where you are.

Finally I am proud to announce all below services/solution as a freelancer:
Contact Me for free quote

Technology Trade-in: A Boost for Your Wallet

Your old mobile phone or electronic gadget is someone else’s new phone or gadget. And now, thanks to the latest changes in legislation, you can now earn money from your old gadgets and phones. All you have to do is make the arrangements for collection, and, within a few days, money will be deposited in your bank account. Easy money, and if you have several old phones you can profit even more.

You can now trade in your old phone and get cash back regardless of its age, the condition it is in, or the make and model. It may be a few pounds to a three-digit figure, but one way of the other you can profit from your old gadgets. We are all used to recycling plastic bottles, cardboard packaging, and placing our old spent batteries in the tubes located in stores up and down the country.

Old mobile phones are valuable because they can be resold on the second-hand market or, if they have seen better days, harvested for the spare parts. How many people do you know who have cracked the screen, damaged the key pad, or the phone has stopped functioning altogether? If you know someone in that situation, then you're in the majority, for most of us have at some point damaged or broken a mobile phone beyond repair.

If you sell Nokia 5230 or other handsets for cash to a recycler, you are enabling another to benefit from your actions. If the phone is in good condition, it can, with a little servicing, be resold to someone who, for one reason or another, is unable to afford the cost of a brand-new handset. On the other hand, there are thousands of people who will not pay for a new handset again for many reasons.

Alternatively, if your old handset is in pieces or has seen better days and is not functioning, it is more than probable that spare parts can be harvested and re-used in other handsets, thereby giving them a new lease of life.

If you are selling to a legitimate dealer, they will wipe the phone of any sensitive data that may still be on it. All dealers and recyclers have to be registered with the Data Commissioner’s office and have the appropriate tools to comply with the provisions of the Data Protection Act. Furthermore, they also have to be licensed by the Environment Agency to be able to collect, handle, recycle, and dispose of electronic equipment.

The reason for this is that mobile phones and 99 percent of all electronic and electrical equipment are designated as hazardous waste as a result of the Waste and Electronic Equipment (WEEE) legislation. These changes, combined with the flood of new handsets entering the market every year, mean you can profit. It isn't often that consumers benefit from new legislation; usually, it entails some form of new tax or other. With this new legislation it is, for a pleasant change, the other way around. Now, off you go and get some of that lovely loot.

Graham Green is a freelance writer and gadget groupie and has recently been investigating how consumers can sell Nokia 5230 handsets and others to make a little money on redundant technology.

Solid State Drives: Great Solution Of Slow Computers


If you ever get invited to one of those prime time television shows, like “Who Wants to Be a Millionaire”, and they ask you a difficult question, this just might win you a top prize. What’s the slowest part of any computer? As they audience quiets down, and nary a noise can be heard, you confidentially answer, “The Hard Drive!”....cue applause!!

Magnetic Hard drives are yesterday's news
Regular magnetic hard drives have been with us since the beginning of the modern computing era. If you have a desktop or laptop computer with one of those drives, you'll notice that will make a whirring sound as it tries to access the correct spot on its drive to save or store information that you are saving. You'll also notice that sometimes, it takes several seconds for it to figure out where your data should go, access the right location, and put it in its place. We've all learned to put up with this, as sometimes the hard drive’s efforts are barely noticeable, and sometimes we almost have to go get a fresh cup of coffee while we wait for the darned device to sort things out. 

Especially on laptops, there is one additional risk which must be taken into consideration. These magnetic hard drives are extremely sensitive, and subject to damage if the laptop is bumped, or in extreme cases, dropped. Because these hard drives are mechanical devices, made up of many different tiny magnetic plates, they can break or shatter inside the computer, and that spells disaster. It is virtually impossible to recover data from a traditional hard drive that has been damaged. Additionally, as they spin and whirr about, they tend to wear out. So over a period of time, which can actually be several years, they can literally fail one day, without notice, due to fatigue. This is one reason why most computer experts advise backing up a computer’s data to external hard drive, just in case. 

Technology to the rescue
Over the last several years, manufacturers have finally perfected this new way to store data on any computer, especially a laptop. Using technology that was initially pioneered over 50 years ago, but which was not economically feasible to produce in mass quantities, manufacturers now offer solid state drives with their computers. These modern electronic marvels offer several advantages over their older, magnetic cousins:

      As the name implies, they are solid-state, which means there are no moving parts to wear out
      They perform at a much higher speed than traditional magnetic drives. You will find that booting up your computer takes much less time, and accessing any file happens in the blink of an eye
      Being much smaller than regular magnetic hard drives, they allow the laptops they are installed in to also be reduced in size
      Nowhere near as power hungry as a magnetic drive, the batteries that power them and the laptop can be smaller, and last longer.
      Very little heat is generated, due to the lack of moving parts. This allows laptops to run cooler, last longer, and won’t give you that terrible feeling that your pants are about to catch fire!
      They come with a choice of interfaces and in various sizes, some as big as 1000 GB, or 1 TB, equal in storage capacity to traditional magnetic drives.

Thus, for the latest in reliability and ease-of-use, be sure to order one of these cutting-edge drives today, and have a far more satisfying experience using your computer.

UTM / Firewalls Feature Matrix: Detailed Comparisons

This UTM/Firewall Feature Matrix contains data that has been collected from the datasheets and web content online issued for the public information. This page is being updated as soon as the information is made available to the public. Though i tried my best to get the best and latest information, there could be lots of mistakes and i would be thankful to the people who can point out at something thats wrong or that has to be updated. Please leave your emails at unhappyghost@unhappyghost.com.

All the devices, softwares, appliances in any form are the sole proprietry of its registered trademarks and owners. Any given above mentioned info/data are subject to change/upgrade anytime. I do not take any responsibility if any information is used for any purpose intended other than educational or general reference.

CREDIT: Sandeep Sharma




Anti-Virus Feature Comparisons (Top 25)


This Anti-Virus Feature Comparisons contains data that has been collected from the datasheets and web content online issued for the public information. This page is being updated as soon as the information is made available to the public. Though i tried my best to get the best and latest information, there could be lots of mistakes and i would be thankful to the people who can point out at something thats wrong or that has to be updated. Please leave your emails at unhappyghost@unhappyghost.com.

All the devices, softwares, appliances in any form are the sole proprietry of its registered trademarks and owners. Any given above mentioned info/data are subject to change/upgrade anytime. I do not take any responsibility if any information is used for any purpose intended other than educational or general reference.

Source : en.wikipedia.org/wiki/List_of_antivirus_software
Source : anti-virus-software-review.toptenreviews.com

CREDIT: Sandeep Sharma




Take the Hackers Quiz


Many computer hackers have broken the law in their careers, but some actually go on to have productive roles in the computer industry. And while hacking is certainly a crime, these cases are always complex. Try our ultimate hacker quiz.

Pocket TV Is a Mini Android Computer in an HDMI Dongle

Pocket TV Is a Mini Android Computer in an HDMI Dongle

Introduction

Over a billion people have access to the internet and use it on a regular basis. In such a scenario, it is inconceivable that any new technology or gadget could go unnoticed and not receive much attention. While it hasn’t gone unnoticed, the Pocket TV has surely not picked up as much heat as is expected of a major technological development. Developed by a startup company using crowdsourcing, Pocket TV has the potential to be the next breakthrough in modern consumer gadgetry.

It is quite surprising that the people paid nearly $100,000 of their own money to fund the creation and development of the gadget, yet many people are still unaware. The device is still in the testing phase and it will be some time before it is launched in the market for the general public. Till then, consumers have the option to buy the test version which is available for around $100. All of the features are included but the version still lacks the finishing touches of a completed product.

What’s It All About?

Surely the information available about Pocket TV is enough to arouse interest in the consumers. Yet, until the date it is launched, there is anticipation about how the makers plan to promote it. So, what does Pocket TV do?

By the looks of it, it sounds like it is a gadget that enables you to watch TV on pocket sized gadgets. Well it is not. If you were thinking it was, you couldn’t be more wrong. In fact, it is quite the contrary. The device has the ability to transform your ordinary TV into a smart TV, while enabling you to operate it like an Android device. Sounds too good to be true, doesn’t it? It may sound fantastical but it has been made and soon you will be hearing all about it.

You might still be apprehensive about installing the device in your television. After all, the Dish Latino Dos channel is very popular and people love watching their favorite shows on the big screen. That being said, regardless of the fact that the Dish Latino Dos channel is very popular, it does not enable you to use Smart TV on your television set.

Basically, Pocket TV is a dongle that connects to the HDMI port of your television set. All of the modern television sets have an HDMI port so that shouldn’t be much of a problem for you. Some people are put off by the fact that a mere dongle is offering them such great entertainment options. That is the reason why everyone who has used Pocket TV is so enthusiastic about its prospects. It is a great offer for you in a small package.

The dongle connects to your television and the Android environment begins loading on the screen. You can then begin accessing all the features and functions that have made Android devices a raging success over the past few years. But how is that possible?

Thanks to the geniuses working at Infinitec, the company that has developed Pocket TV, you get to use the Android operating system 4.0 out of a dongle. It isn’t a mere dongle. It is a full-fledged computer with a 1 GHz processor inside it. Ever heard of such a dongle? Bet you didn’t!

All of this adds to the fact that you can enjoy all of the features that people normally associate with smartphones and computers. You can browse the web, download content, stream videos, use social media websites and listen to music all on your television set. If you thought your TV was outdated and you need an upgrade, think again. All you need to do is buy the Pocket TV dongle and your TV will be transformed into a smart TV within minutes.

Conclusion

Without a doubt, the Pocket TV is the most exciting development in the tech industry over the past couple of years which hasn’t come from an industry giant. The mere fact that it has been designed, developed and created by a startup speaks volumes of the industry’s growth since the turn of the millennium. So, just wait patiently for the launch of the gadget and buy it as soon as you possibly can.

Join Indian Cyber Army | Hackers VS Cyber Weapon

Can Internet be Used as Weapon

To know HOW TO JOIN INDIAN CYBER ARMY? Read Below

Yesterday I was thinking about terrorism. The most dangerous weapon currently we have is in the form of chemical weapons, nuclear weapons or biological weapons. If any terrorist group get access to any of such weapon, he can destroy the complete infrastructure of a city, state OR even a country. So many controls & security measures has been taken by government so that all such weapons will be out of the reach from terrorists.

But we all are living in new era now. We all are part of a new world, directly or indirectly, which we might not aware of & that is INTERNET. Yes..It’s a virtual world which becomes necessity for everybody these days.

Currently we have no control on the cyber space. Anyone with a little knowledge of computers can enter into this virtual world and do such thing which no one can even imagine. On this virtual world, age doesn’t matter, whether you are 10 years kid or 70 year old, Internet is providing equal level of power to all. Only matter is how perfectly you are using it. Let me take a small live example. Suppose if I just Google the term - how to make a bomb all methods and video will be available. So any one can put few more efforts and innovation to make own BOMB.
This Google search is the simplest example. Here the major concern is WEAPON WITH MIND. Just think, till date all the available weapons we have has no mind. Such weapons cannot upgrade themselves with technology. As technology changes weapon changes. One day every weapon is replaced by some other better weapon. This is only because such weapons have no mind to think and no mechanism to upgrade. But now days, we have weapons OR better to say underground weapons which can use their MIND to upgrade their skill set as per latest technologies. All such Cyber Weapons are known as HACKERS. YES HACKERS can be used as CYBER WEAPONS and all such cyber weapons will play the major role during the next world war.

Everyone including military leaders has realized that most of the next world war will be fought on the cyber space and only those will win, who have the best experts knows as HACEKSR or as I termed then as CYBER WEAPON. This Cyber War will be the most destructive war & can destroy the infrastructure of any country in less than a minute. The latest example is STUXNET. Stuxnet was the targeted cyber attack aimed at destroying an industrial process in the physical world & it was invented specifically to target part of the Iranian nuclear infrastructure.

In India, still we are lacking in this front and no have come forwarded to raise his voice against this issue. Is this lack of government attention OR lack of military leaders?

For a moment if I consider that government & military leaders have no more idea in this cyber field, but what about our ETHICAL HACKERS of India? Have they ever thought about this issue or not? Whether it’s a CEH institute or an individual one, almost everyone is doing the same thing that is WORKSHOPS, WORKSHOPS & MORE WORKSHOPS. Till date I have not seen any of the ETHICAL HACKER, who has raised his voice for country.

HACKING is an ART. HACKING MEANS INNOVATION. Somewhere this ART has been replaced by few outdated tips & tricks. Just think why the term HACK creates so much hype in young generation. It’s only because they have no proper and valid resource to learn this. HACKING is also a subject just like MATHS, ENGLISH, ELECTRONICS & MECHNICAL.

It’s my appeal to government authorities that include HACKING as a subject in the course of students.

If we make valid the subject HACKING in school & colleges in a well formatted course, it would be the revolutionary step in the field of cyber security in India. Here most of the guys can ask me that there are so many institutes running hacking classes. Well no doubt, I am saying that include CYBER ETHICS & CYBER Security as a subject in the school, so that from the grass root, students can learn about cyber respect and behave well online. Once they enter into college, we can make ETHICAL HACKING subject as an optional subject. Let me take an example of BTECH & engineering students. There are so many subjects which are optional, from which students have to choose according to their interest. In the similar way we can also offer ETHICAL HACKING as an optional subject so that interested students can choose this field as a career.

Few days back while surfing Internet, I found a similar term know as "Information Weapon". Professionals has started thinking about this Information Weapon OR Cyber Weapon & I doubt that In India any one from government higher authorities OR military leaders taking this issue seriously. No one is realizing this truth that misuse of cyber can turn into serious issue any time. The major part of any country’s Infrastructure will directly be affected due to cyber attack including financial systems & Telecommunication systems.

A simple hacking of Vijay Mallya becomes national news. Just think that how website defacement attracts everyone. Well let me clear one point here that such website defacements are not CYBER WAR. It’s only the EGO war between technical guys of two countries. Just imagine how such script kiddies attract everyone. Now just think that what would be the impact when actual cyber war starts. The truth is all those guys are not real hackers. They all are script kiddies. In hacking world they all are knows as N00Bs. I am saying only because website defacement is not required any specialized skill or new development. If you know little bit of SQL injection then you can bypass the authentication and get the access to ADMIN panel of the website. After that you have to upload the SHELL and boooom…. All done..just few clicks on you uploaded shell and website defaced. If you are little technical and have little more in depth knowledge, you can do server rooting in which you will get the root access to the server. Once the server get rooted, you have all the websites in your hands hosting on that particular server. So this is what exactly hackers are doing. In this the most important thing is SHELL. And the REAL hacker is the person who has developed that SHELL. Few freely available shells are C99 shell, C100 shell, ex0shell, GNY shell, rootshell, megabros, cpanel & R57 shell.

In my personal opinion, the real hacker is one who can develop his own SHELL and can create his own exploits. Using existing exploits & others developer’s shells, any TOM, DICK & HARRY can use it and can claim himself as a HACKER, which is not true.

For cyber peace in India I am happy to be part of a revolution in Indian Cyber History. A new young army for Cyber security of our country INDIA.....INDIAN CYBER ARMY. This army will not hack or crack any country's server, but secure the Indian cyber Infrastructure & protect the Indian cyber space from any cyber attack. Will you join this Cyber Army & wanna be part of it ?? Come & Join Guys.

HOW TO JOIN INDIAN CYBER ARMY?

Well on internet you will see a lot of so called cyber armies claiming to be cyber army of India. Asking you for paid seminars & bah blah blah.....

Be-aware of any such group or army. The best is to enhance you knowledge in the field security. Try to learn security...not HACKING. You will be fooled by name of hacking. Hacking & security are different sides of same coin. Till date no hacking cert is well recognized in INDIA and there is no value in any organization. All such stuff is bullshit.

In my personal opinion, If you learn your self, share your knowledge & best if you are getting paid for it, CONGO..YOU ARE ONE OF FROM INDIAN CYBER ARMY. Here I am mentioning the certification which are very well recognized in world wide organization. All these certs are related to SECURITY and also help to get you placed in organizations.

  1. CCNA (Cisco Certified Network Associates)
  2. After CCNA, you can go for CCSP (Cisco Certifies Security Professional) - Help you to get into network security
  3. If you are interested in LINUX, go for Red Hat Certified Security Specialist (RHCSS)
  4. The best is ISO 27001 lead auditor at you initial level. If you do this, you will be certified s a auditor for all security related audits includes in ISO 27001. It is a professional certification for auditors specializing in information security management systems.
At your initial stage, this is enough to get start in a correct direction. Still any query, feel free to ask.

---Do you want to share you views?? Just leave a comment here. you can also drop an email on mail@amarjit.info

Exclusive Interview of Rahul Tyagi: Author of “Hacking Crux 2

Exclusive Interview of Rahul Tyagi: Author of “Hacking Crux 2 

Source: Softpedia 

Rahul Tyagi, a respected ethical hacker from India, is about to release his latest work, a book called “Hacking Crux 2.” This is meant as a guide to anyone who wants to learn about hacking and defending themselves and others against cybercriminal plots. 


Because the book looks very promising, we have decided to interview the author to find out more about his work and his new creation. Besides discussing his contributions to the IT security industry, Tyagi also shared his insight regarding the fact that many Indian ethical hackers are called fakes. 

Softpedia: Please introduce yourself for our readers.

Rahul Tyagi: My name is Rahul Tyagi and I am 24 years old. I am a person for whom work is more important than anything in the world. I was born in a middle class family in Gurdaspur, a small city in Punjab. My father is an accountant and my mother is a housewife. I love to interact with new people and share knowledge.

At the age of 17 my father brought the first PC to my home for his accounting work. I remember spending hours on my father's computer, getting in trouble for messing things up. It occurred to me that the only way you really learn about something is by breaking it, then fixing it. 

I am Lapi-Worm kinda person who works 24/7 on a laptop for many days without sleep. My mind always thinks of something, my mind never stays free. Because one thing I learnt in my life: a free mind is the house of Ghost. I admire Steve Jobs and I want to contribute to the cyber society just like him. 

Softpedia: What qualifies you as an ethical hacker? Tell us about your previous experience and studies.

Rahul Tyagi: Well, first I will try to explain the meaning and responsibility of an ethical hacker. According to me, an ethical hacker is a computer geek, who obviously thinks more out of the box than other computer lovers. The main responsibility of an ethical hacker is to protect people from the cyber space attacks. 

Protection can be at corporate level by securing their servers, by patching the web vulnerabilities or maybe securing a common man’s Gmail account by adding two-step verification on his/her account. 

I think I have trained more than 10,000 people from all around the world physically and online in the last 7 years, and today if they are using their computers and internet freely without any problems then I think my work is done. 

I did my pre schooling from my hometown. I have obtained a bachelor’s degree in Computer Applications at the Punjab Technical University. After my three year graduation I got admitted to India’s largest university, the Lovely Professional University (LPU) for my masters, i.e, Master in Computer Applications (MCA), and that was my life’s best decision. 

At LPU I learned a lot because there I found the best infrastructure required for penetration testing. I hacked into LPU’s University Management System twice and found much vulnerability in the network, but instead of doing harm I reported the vulnerability to the authorities there. 

In my 5th semester of masters I got placed in TCIL-IT Chandigarh as their brand ambassador and that was something big for me. Later I was selected as Vice-President of Cyber Security and Anti-Hacking Org India. Last, but not least, I am working as the Technical Head at the News Paper Association of India. 

For the past two years I have been associated with DEF CON India meets and I was one of the leading speakers in DEF CON Chennai, where I presented my paper named “Busting Windows in Backtrack 5” and DEF CON Rajasthan, where I presented my paper called “The Endless Fight with Global Cyber Crime”. 

This month you can see my article in one of the reputable security magazines named Pen Test. 

Softpedia: Tell us a little bit about your new book “Hacking Crux 2”. What IT security topics does it cover?

Rahul Tyagi: Hacking Crux 2 is a book which is like a mirror of me. Everything that I learned in the past I’ve put into this book. I had many issues with the content of the book, but after 8 months of “blood burn effort” from my part and my publisher, Mr. Dev, I am happy to present Hacking Crux 2. 

Initially I wanted to publish it in January, but after that I decided to make it more knowledgeable and I tried to cover every aspect related to computer security in it. We tried to make this a lively book, having 90% screenshots for the readers so that it will be easy for them to implement testing by just watching the pictures, rather than reading theory.

Here are the chapters of the book:

1. Introduction to Ethical Hacking
2. Information Gathering
3. Advance Google Hacking
4. Trojan and Backdoors
5. Binder and Crypters
6. Website Hacking Techniques 
7. Spamming Techniques
8. Email Hacking and Countermeasures 
9. Advance System Hacking 
10. Steganography Terrorist’s Way
11. Basics of Python for Coders
12. Virus and Worms
13. Proxy Servers ad VPN
14. Exploit Launching with Perl
15. Advance Mobile Hacking 
16. Wireless Attacks
17. Penetration Testing With Backtrack 5 R1 

We have a total of 17 chapters covering every possible ethical hacking module. The main highlighted topics of the book are Binder and Crypters, Advance System Hacking, Email Hacking and Countermeasures, Exploit Launching in Perl, Advance Mobile Hacking , Penetration Testing With Backtrack 5, and, last but not least, my favorite, Basics of Python. 

This is the first book on ethical hacking ever published in India having so many chapters at such a small price, i.e. INR150 , under 5 USD. 

I tried to make this book as informative as possible so that after reading this book no one will need to join any expensive ethical hacking courses. If you believe my words, then Hacking Crux 2 contains all you ever need and wish to know about the so-called “Ethical Hacking”. 

Softpedia: When will the book be released and where will it be available?

Rahul Tyagi: We are trying to publish it worldwide through eBay, Amazon, Flipkart, Snapdeal to our international readers before May 15. Indian readers can get this book from any nearby bookstore starting with the last week of May or the first week of June. Also, online purchasing options like Flipkart and Snapdeal will be available. 

And if someone is facing any problems then they can send an order to hackingcrux2@gmail.com. 

Softpedia: In the past period many Indian ethical hackers have been named fakes and mere marketing stunts. On the other hand, we have white hats, such as Himanshu Sharma, who try to wash away this stained reputation gained by many Indian security experts. What makes you different from the fakes? What do you hope to achieve with this book and with your work?

Rahul Tyagi: If you talk about Himanshu, then yes, he is like my younger brother. Even though he is younger than me, I still respect his talent from the bottom of my heart. 

Now, let’s talk about some fake hackers. According to me, there are some reasons why people call some Indian ethical hackers fake.

The first reason is that many ethical hackers claim to be great in their work, but if you talk about statistics, then they are ZERO. You can take a look at attrition.org. 

They exposed many ethical hackers who were just fooling people with ethical hacking courses, but in reality the things they teach are just internet filtering techniques and tricks, which, from my point of view, are not going to help any person get a reputed job in any company. 

That’s why those who have done the ethical hacking certification from these kinds of hackers later abuse them and say that they were fake hackers, who cheated them.

The second reason is that people from the cyber world these days are becoming smarter day by day. They are bored with traditional hacking tricks, hacking websites with SQL Injection, NETBUS, Proxy servers and other “noobish” things, which today anyone can do even at the age of 10. So if you are repeating the same and same thing from 2000 to 2012, then obviously you deserve the tag of fake hacker.

As far as I am concerned, it’s not that I don’t have critics, but today almost all white hat and black hat communities know me, respect me and motivate me. I have many friends from both black and white hat communities who from time to time help me upgrade myself. 

This is why I was the first white hat ethical hacking trainer who spoke at DEF CON meets in India. My paper is there in Exploit-DB and Packetstorm Security and if you compare this fact with the ethical hackers tagged as fakes, they don’t submit any papers and they never dare to enter into conferences like DEF CON and NULLCON.

The only thing that makes me different from other ethical hackers is that I do not forget my past, from where I rose. Even though I have 38k followers on Twitter and 5k friends on Facebook , I reply to every possible query they ask me. 

I also believe in contributing with new stuff to cyber space, hence a few months back, I released a full Python language-learning course on YouTube and it was the first ever basic Python video lectures series made by an Indian ethical hacker. 

With all this I don’t think anyone can say I am a fake hacker. If anyone wants to say that, I ask him/her to compare my contribution with the ones of other fake ethical hackers and, they will get their answer automatically.

Finally, I hope my new book Hacking Crux 2 will help you to learn all the hidden areas of ethical hacking, especially ones that are never revealed by any ethical hacker, ever. I promise that if you trust me and buy this book you will thank me for sure.

You can contact me on: FacebookTwitter or by e-mail. 

Best Hacking Tool List: Top 10 Hacking Tools and Software

Top 10 Hacking Tools and Software 

A Hacking tool is nothing but a device or a piece of software used by any unauthorized user to gain access or to attack any information available on your computer. Hacking tools try to bypass the security systems of any computer in order to gain copy or even to destroy information from its host. Here is a list of what is believed to be among the best of the hacking tools by most hackers. These tools are used only for ethical hacking purposes and are not illegal.

1. Nmap

The tool Network Mapper has gained immense popularity in recent times as it is an open source and a free tool which is used to explore networks and also in security auditing. It is designed to scan networks rapidly. It also copes very well against a single host. Nmap uses IP packets to determine what type of hosts are present in the network along with information on the applications being used by them and also the operating systems that they are running along with their respective versions. In additional to these it also identifies the firewalls being used and many more other characteristics of any given host.

2. Nessus Remote Security Scanner


The Nessus Security Scanner was started by Renaud Deraison in the year 1988 to provide a free remote scanner to the internet community. But since the year 2005 the Nessus Remote Security Scanner has become closed source software although the engine that runs the software is still free of cost.

The Nessus Security Scanner has been the world's most popular scanner being used by well over 75000 organizations world-wide. Many have befitted from this software and it is being used extensively in auditing critical enterprise devices.

3. John the Ripper

John the Ripper commonly known as JTR is a password cracker available for DOS, WIN32, UNIX, OpenVMS and BeOS. Its primary purpose is to detect weak passwords, but at the same time can be very handy to crack passwords also.

4. Nikto

Nikto web scanner as the name suggests is an Open Source web scanner which is capable of performing comprehensive tests on any web server for multiple items, including some of the most potentially dangerous files or CGIs, versions in about 625 servers and version specific problems in about 230 servers.

5. SuperScan

SuperScan is a powerful TCP port scanner, resolver and also pinger. It is a very highly popular port scanning tools made especially for windows users. If you are looking for a substitute to Nmap with a good user interface, then SuperScan is your best bet.

6. p0f

p0f is an extremely versatile passive OS fingerprinting tool. It can identify the operating systems on SYN mode, SYN+ACK mode and also RST+ mode. The p0f software is so versatile that it can fingerprint anything without even making a single active connection to the target system.

7. Wireshark

Wireshark which was formerly known as ethereal is network protocol analyzer or in common terms a sniffer. Wireshark lets you browse and capture the contents of network frames. It is compatible with both windows and linux and is very user-friendly.

8. Yersinia

Yersinia is a hacking tool which is designed to manipulate the weaknesses in different Layer 2 protocols. It pretends like a solid framework for testing and analyzing the systems and networks it is deployed into. Spanning Tree Protocol (STP), Dynamic Trunking Protocol (DTP), Cisco Discovery Protocol (CDP), Hot Standby Router Protocol (HSRP), Dynamic Host Configuration Protocol (DHCP), VLAN Trunking Protocol (VTP), IEEE 802.1q and Inter-Switch Link Protocol (ISL), are some of the protocols which can be implemented.

9. Eraser

Eraser is an advanced security tool for windows used to completely remove any trace whatsoever of any bit of information permanently from the hard drive. This is achieved by continuously overwriting the memory locations where the targeted information was previously available. It works well on all the windows versions till windows xp. Eraser is a free tool which is available under the GNU General Public license.

10. PuTTY

PuTTY is a free software used for implementation of Telnet and SSH for UNIX and WIN32. It is an absolute necessity for any h4x0r to Telnet or SSH without using MS command line clients.

These are the most popular of the hacking tools that are being used widely there are also several other alternatives to these tools so feel free to experiment with other varieties of tools out there. Along with the above a few other software, which are almost similar to the ones mentioned above like LCP, Cain and Abel, Kismet and NetStumbler are also good and handy.

A collection of all the above would give any user enough power to be a good hacker. It is also important to note that the information furnished here is not meant to be used for illegal purposes and also that hacking is a punishable offence in most countries. Use these powerful tools wisely.

About the author: Brianne Walter is a blogger by profession. She loves writing on technology and luxury. Beside this she is fond of gadgets. Recently an article on HTC EVO 3D review attracted her attention. These days she is busy in writing an article on  Aventador.

How LSA Works with/without OSPF AREA 0 | Running OSPF without AREA 0 By Anuj Tyagi: Case Study

Hi Friends, I have received a complete case study done by Mr.Anuj Tyagi on OSPF routing protocol. After reading our article Configure OSPF without AREA 0: CCNP OSPF Case Study, he also tested the similar scenario in his testing LAB. I am publishing his case study as it is without any editing so that guys who are learning networking & OSPF, will get some benefit from this.

Running OSPF without AREA 0

Topology 1: Connecting OSPF Area 2 and area 3 without using ABR.

clip_image002

Interface configurations are mentioned above in the topology.

Remember,

· ABR: ABR is a area border router that contain interfaces in atleast two separate area out of which one should always be in AREA 0.

So, surely above topology don’t have any ABR and we will be going to test how routers behavior in absence of backbone area.

After configuring OSPF routes on R1, R2, R3 as in above topology, we analysis all Routers neighbor table .

clip_image004

clip_image006

clip_image008

That shows Full Neighborship Status for neighbors . Take a look again at the neighbor table,

Neighborship is being maintained with it’s directly connected interfaces.

Now, if we will try to PING

· R2 S0/1 , surely we will get successful reply .

· R2 S0/0, we will get successful reply (as it is directly connected)

· R3 S0/0, obviously we R1 can’t reach 2.2.2.1 of R2 we will be unable to get reply from R3 s0/0.

clip_image009

Why? Just take a look at the neighborship table of R1 again .

So, what is happening behind the scenes when R1 trying to communicate with 2.2.2.0/24 network .

R1 can’t even find the path or from which interface R1 should send the packets .

clip_image011

Now lets take a look at the Router OSPF LSA’s,

· R1 having LSA1 (router-id) updates of only those routers in same area.

Reason : There is no ABR to send LSA3 (summary LSA) updates . ( remember ABR? )

clip_image013

clip_image015

clip_image017

After looking at LSA and neighbor-table, you can guess about the routes will be there in Routing Table.

clip_image019

clip_image021

clip_image023

Again, they are also from directly connected interfaces with Routers.

Now make it a bit interesting, we will going to add interfaces on R2 in Area 0 .

clip_image025

Now, compare neighborship table of Router R1,R2,R2 with and without AREA 0 (backbone area) .

R1 topology table with AREA 0

clip_image027

We can now clearly see LSA3 in the table, apart from networks of Area 0 R1 got one more network advertisement in LSA for 192.168.2.0/24 and 2.2.2.0/24 in summary LSA updates from R2(ABR router).

While in

R2 topology table without AREA 0

clip_image013[1]

In the same way, AREA 0 will also make Router R2 as ABR now and that will add a lot to topology table of Router R2 .

Now, it is behaving like ABR as it is acting as both in AREA-2 and AREA-3 completely.

clip_image029

Router R3 also getting LSA1 and LSA3 updates from R2(ABR).

clip_image031

Note: LSA2 updates (network LSA) are only advertised in Non-broadcast where DR & BDR exist.

Now , also PING will be successful from any Router to any network in topology.

Conclusion:

OSPF will not form neighborship with inter-area(IA) routes if there is no backbone area exist or we do not use ABR . In other words, Each area share it’s link state database only through AREA0 to any other AREA. It will make neighborship only with directly connected networks

LSA 1,2 do not need Area0 to share it’s Acknowledgement but LSA2 will form only in non-broacast network (like frame-relay) where DR will be having responsibility to send updates but we must need to have AREA0 to send LSA 3, 4, 5 & 7 updates.

----------------------------------------------------------------------------

R1 Config

Using 1024 out of 57336 bytes
!
version 12.4
service timestamps debug datetime msec
service timestamps log datetime msec
no service password-encryption
!
hostname R1
!
boot-start-marker
boot-end-marker
!
!
no aaa new-model
memory-size iomem 5
ip cef
!
!
ip auth-proxy max-nodata-conns 3
ip admission max-nodata-conns 3
!
multilink bundle-name authenticated
!
!
archive
log config
hidekeys
!
!
!
interface FastEthernet0/0
ip address 192.168.1.1 255.255.255.0
duplex auto
speed auto
!
interface Serial0/0
ip address 1.1.1.1 255.255.255.0
clock rate 2000000
!
interface FastEthernet0/1
no ip address
shutdown
duplex auto
speed auto
!
interface Serial0/1
no ip address
shutdown
clock rate 2000000
!
router ospf 100
router-id 1.1.1.1
log-adjacency-changes
network 1.1.1.0 0.0.0.255 area 2
network 192.168.1.0 0.0.0.255 area 2
!
ip forward-protocol nd
!
!
ip http server
no ip http secure-server
!
!
line con 0
line aux 0
line vty 0 4
!
!
end

-------------------------------------------------------------

R2-ABR Config

R2-ABR#show configuration
Using 1114 out of 57336 bytes
!
version 12.4
service timestamps debug datetime msec
service timestamps log datetime msec
no service password-encryption
!
hostname R2
!
boot-start-marker
boot-end-marker
!
!
no aaa new-model
memory-size iomem 5
ip cef
!
ip auth-proxy max-nodata-conns 3
ip admission max-nodata-conns 3
!
multilink bundle-name authenticated
!
!
archive
log config
hidekeys
!
!
interface FastEthernet0/0
ip address 172.16.1.1 255.255.0.0
duplex auto
speed auto
!
interface Serial0/0
ip address 1.1.1.2 255.255.255.0
clock rate 2000000
!
interface FastEthernet0/1
ip address 172.17.1.1 255.255.0.0
duplex auto
speed auto
!
interface Serial0/1
ip address 2.2.2.1 255.255.255.0
clock rate 2000000
!
router ospf 100
router-id 2.2.2.2
log-adjacency-changes
network 1.1.1.0 0.0.0.255 area 2
network 2.2.2.0 0.0.0.255 area 3
network 172.16.0.0 0.0.255.255 area 0
network 172.17.0.0 0.0.255.255 area 0
!
ip forward-protocol nd
!
!
ip http server
no ip http secure-server
!
!
control-plane
!
!
line con 0
line aux 0
line vty 0 4
!
!
end

-------------------------------------------------------------------------

R3 Config

Using 1024 out of 57336 bytes
!
version 12.4
service timestamps debug datetime msec
service timestamps log datetime msec
no service password-encryption
!
hostname R3
!
boot-start-marker
boot-end-marker
!
!
no aaa new-model
memory-size iomem 5
ip cef
!
!
ip auth-proxy max-nodata-conns 3
ip admission max-nodata-conns 3
!
multilink bundle-name authenticated
!
!
!
!
archive
log config
hidekeys
!
!
!
interface FastEthernet0/0
ip address 192.168.2.1 255.255.255.0
duplex auto
speed auto
!
interface Serial0/0
ip address 2.2.2.2 255.255.255.0
clock rate 2000000
!
interface FastEthernet0/1
no ip address
shutdown
duplex auto
speed auto
!
interface Serial0/1
no ip address
shutdown
clock rate 2000000
!
router ospf 100
router-id 3.3.3.3
log-adjacency-changes
network 2.2.2.0 0.0.0.255 area 3
network 192.168.2.0 0.0.0.255 area 3
!
ip forward-protocol nd
!
!
ip http server
no ip http secure-server
!
control-plane
!
!
!
line con 0
line aux 0
line vty 0 4
!
!
end

Contact Us

24x7 online , we happy to answer you
tamilcypc@gmail.com

Disclaimer

This Blog and its TUT's are intended for educational purposes only, no-one involved in the creation of this TuT may be held responsible for any illegal acts brought about by this Blog or TuT.



Featured Post

Custom Domains And HTTPS Redirection Code