Affichage des articles dont le libellé est Cyber News. Afficher tous les articles
Affichage des articles dont le libellé est Cyber News. Afficher tous les articles

How To Hack ISIS? Anonymous Publishes Full Hacking Guide


How To Hack ISIS? Anonymous Publishes Full Hacking Guide

Anonymous Publishes Guides To Identify and attack websites and social media accounts of ISIS online.

Hactivist group Anonymous claim to have taken down more than 5,500 Islamic State-affiliated Twitter accounts in response to the terror attacks on Paris.

The Hacktivist group Anonymous can guide you that how to get involved in the cyber war against ISIS. After announced cyber war ISIS calls Anonymous 'IDIOTS', but after the day Anonymous post the new Video.

HackersOnlineClub reported earlier that Anonymous declared war Against terrorist group ISIS. and start the campaign #OpParis which aim to identify ISIS accounts.

Here are three guides:
1. 'Noobguide' How to hack and join CYber War
2. 'Reporter': How to set up twitter Bot to investigate ISIS-affiliated social media accounts.
3. 'Searcher': To Find ISIS Websites.




Meanwhile ISIS produced its own guide warning its supporters how to prevent being hacked by Anonymous. An ISIS-affiliated account of messaging app Telegram is alleged to have released a message instructing followers what to do to stop being hacked.

Webserver of Anonops was down today.

~ mercredi 18 novembre 2015 0 commentaires

UK Government And GCHQ Are Investing £6.5m For Cyber Security


UK Government And GCHQ Are Investing £6.5m For Cyber Security. 

Cyber Analytics , Cloud protection and  the internet of things (IoT) are the most investment areas.

CyberInvest is about bringing together academia, industry and government to address the critical shortage of high-end cyber research in a more focused way," said GCHQ director Robert Hannigan during the annual IA15 conference in London.

According to Professor Angela Sasse, head of IT at University College London (UCL), a key benefit of the scheme for academia will be access to data held by GCHQ.

"To do effective research we need access to data in order to study the impact of the new ideas and new technologies that we are developing," she said.

"Sometimes the impression is that all academics want is more money. But in the cyber security space it's very important to realise it's not just about money."

However, while Sasse acknowledged that it may take some time for government and academia to figure out how to work well together she maintained they are natural allies.

"Academia will always be a friend of the government and industry but sometimes it has to be a critical friend," Sasse said.

This Joint program will help to fight and monitor by Cyber Crime.

Source: V3

~ mardi 10 novembre 2015 0 commentaires

Police Arrested Second Teenager Over TalkTalk Hack


Second Teenager Arrested Over TalkTalk Hack.

Last week 4 Million Customers of UK based company TalkTalk Data have been breached.

According to Press Release from Metropolitan Police,

Police have arrested a second teenage boy in connection with the investigation into alleged data theft from TalkTalk.

On Thursday, 29 October, detectives from the Metropolitan Police Cyber Crime Unit (MPCCU) executed a search warrant at an address in Feltham. At the address, a 16-year-old boy was arrested on suspicion of Computer Misuse Act offences. He has now been bailed - we await confirmation of the bail date.

A search of the residential address in Feltham has been completed. Officers have also searched a residential address in Liverpool.

Enquiries by the MPCUU supported by officers from the National Crime Agency (NCA) continue.

A 15-year-old boy from County Antrim, Northern Ireland, was arrested on Monday, 26 October, by officers from the Police Service of Northern Ireland (PSNI), working with detectives from the Cyber Crime Unit on suspicion of Computer Misuse Act offences.

He was taken into custody at a County Antrim police station and has since been bailed to a date in November.

Detectives from the MPCCU continue to investigative and have launched a joint investigation with the PSNI's Cyber Crime Centre (CCC) and the NCA. "


The Hacker News reported the first arrest, 15 years Old boy from County Antrim was arrested.

Within a week, police arrested teenager over TalkTalk hack. Investigation is still ongoing.
Company shares dropped down after the cyber attack on the company.

~ vendredi 30 octobre 2015 0 commentaires

13 Million Users Data Breached Of Free Web Hosting Company 000Webhost


13 Million Users Data Leaked With Plain Text Password Of Free Web Hosting Company 000Webhost.

000webhost is providing a free web hosting service for PHP and MySQL. The leaked data includes users names and e-mail addresses.

Troy Hunt explained in detail about this breach.
According to Forbes Report
Hunt discovered user accounts had their passwords reset, but without any direct notice to customers. When Hunt tried to login with his own email address, an auto-generated response told him his password had been reset by 000Webhost “for security reasons”, advising him to change his credentials before continuing. There was no public notification.

users started to complain on the site forum they could not access FTP servers used to host their website files.

Free WebHost said in Facebook Page

Hello,

We have witnessed a database breach on our main server.

What happened?
A hacker used an exploit in old PHP version to upload some files, gaining access to our systems. Although the whole database has been compromised, we are mostly concerned about the leaked client information.

What did we do about it?
First of all, we removed all illegally uploaded pages as soon as we became aware of the breach. Next, we changed all the passwords and increased their encryption to avoid such mishaps in the future. A thorough investigation to make sure the breach does not exist anymore is in progress.

What do you need to do?
As all the passwords have been changed to random values, you now need to reset them. DO NOT USE YOUR PREVIOUS PASSWORD. PLEASE ALSO CHANGE YOUR PASSWORDS IF YOU USED THE SAME PASSWORD ANYWHERE ELSE.

Client Area Password
Please visit Password Reminder tool at http://members.000webhost.com/forgot_password.php and enter your email address, the new password will be sent to your email. Afterwards, login to your account with the new password and manually set a new, secure password at http://members.000webhost.com/edit_your_details.php

Hosting Account Password
To reset the password for your hosting account (and FTP), visit "Change Account Password" section on control panel and enter a new password there.

Email Account Password
Email account passwords should be changed by visiting "Manage Email Accounts" section and clicking "Change password" for each email account.

MySQL User (Database) Password
MySQL user passwords are managed in "MySQL" section on control panel. In the "Action" field click the "Change Password" and set a new password there.

We apologize for this hassle but it has to be done to ensure your data is safe. We are going to upgrade our systems step by step and will be aiming to be super-careful in future.

Regards
000webhost Team "


~ mercredi 28 octobre 2015 0 commentaires

UnEncrypted 4 Million TalkTalk Customers Data Got Hacked


UnEncrypted 4 Million TalkTalk Customers Data Got Hacked

UK Based Company TalkTalk Got Hacked .. 4 Million Customers Data have been breached. Company said that data was not encrypted. Its easy to open all data including Email and Bank details.

TalkTalk Telecom Group plc is a company which provides pay television, telecommunications, internet access, and mobile network services to businesses and consumers in the United Kingdom.

These data been affected?

Company said, the investigation is still ongoing. The Metropolitan Police is investigating this case. But unfortunately there is a chance that some of the following data may have been compromised:

  1. Names
  2. Addresses
  3. Dates of birth
  4. Email addresses
  5. Telephone numbers
  6. TalkTalk account information
  7. Credit card details and/or bank details

Last night TalkTalk website was unavailable with message: 

"Sorry we are currently facing technical issues, [and] our engineers are working hard to fix it. We apologise for any inconvenience this may cause."

According to report, TalkTalk website was attack by DDOS.

Company also warn to the customers be alert of the Phishing emails attack, it might be the next step of Cyber criminals.

~ vendredi 23 octobre 2015 0 commentaires

Wikileaks Released CIA Head Email Accounts Details


Wikileaks Released CIA Head Email Accounts Details

Yesterday Wikileaks Tweeted about to publish the Email account details.


According to Wikileaks,

"Today, 21 October 2015 and over the coming days WikiLeaks is releasing documents from one of CIA chief John Brennan's non-government email accounts. Brennan used the account occasionally for several intelligence related projects.

John Brennan became the Director of the Central Intelligence Agency in March 2013, replacing General David Petraeus who was forced to step down after becoming embroiled in a classified information mishandling scandal. Brennan was made Assistant to the President for Homeland Security and Counterterrorism on the commencement of the Obama presidency in 2009--a position he held until taking up his role as CIA chief.

According to the CIA Brennan previously worked for the agency for a 25 year stretch, from 1980 to 2005.

Brennan went private in 2005-2008, founding an intelligence and analysis firm The Analysis Corp (TAC). In 2008 Brennan became a donor to Obama. The same year TAC, led by Brennan, became a security advisor to the Obama campaign and later that year to the Obama-Biden Transition Project. It is during this period many of the Obama administration's key strategic policies to China, Iran and "Af-Pak" were formulated. When Obama and Biden entered into power, Brennan was lifted up on high, resulting in his subsequent high-level national security appointments."


Wikileaks didn't released Full  documents yet, they said more to come in coming days

Here is the CNN Interview of Hacker who Hacked CIA Director Email Account,


~ jeudi 22 octobre 2015 0 commentaires

CIA Director Email Account Gets Hacked By 19 Year Old Student


CIA Director Email Account Gets Hacked By 19 Years Old Student.

Teen, who claimed that he hacked CIA Director "John Brennan" AOL Email account. 

“We are aware of the reports that have surfaced on social media and have referred the matter to the appropriate authorities,” a CIA spokesman said.

But this report is really shocking that how he easily hacked CIA director personal Email account.

How Teenager Breached into The Email?
According to Wired, he wasn’t working alone but that he and two other people worked on the breach. He says they first did a reverse lookup of Brennan’s mobile phone number to discover that he was a Verizon customer. Then one of them posed as a Verizon technician and called the company asking for details about Brennan’s account. This process called Social Engineering.

What he found into the Mail?

  • 47 page application for top Secret Security clearance.
  • Social Security Numbers and personal information of more than a dozen top US intelligence officials.
  • Hackers also claimes to have accessed a Comcas account associater with Johnson.

Teenage hackers was handling the Twitter account @_CWA_, where he leaked

  • Phone numbers
  • Social Security Numbers
  • E-mail addresses
  • A level of security clearance and employment status in some cases

After the report Twitter Suspended his account.

According to nypost,
He explained “CWA” stood for “Crackas With Attitude,” which he said referred to him and a classmate.

The hacker contacted The Post last week to brag about his exploits, which include posting some of the stolen documents and a portion of Brennan’s contact list on Twitter. The hacker’s Twitter page includes the Muslim Shahada creed, which translates as, “There is no god but Allah, Muhammad is the messenger of Allah.”

~ mardi 20 octobre 2015 0 commentaires

Facebook Will Tell You If Any Government Is Spying On Your Account


Facebook Will Tell You If Any Government Is Spying On Your Account.

Facebook CSO Alex Stamos said in statement

The security of people's accounts is paramount at Facebook, which is why we constantly monitor for potentially malicious activity and offer many options to proactively secure your account. Starting today, we will notify you if we believe your account has been targeted or compromised by an attacker suspected of working on behalf of a nation-state. This is what the notification looks like on the desktop version of the Facebook website:


While we have always taken steps to secure accounts that we believe to have been compromised, we decided to show this additional warning if we have a strong suspicion that an attack could be government-sponsored. We do this because these types of attacks tend to be more advanced and dangerous than others, and we strongly encourage affected people to take the actions necessary to secure all of their online accounts.

It's important to understand that this warning is not related to any compromise of Facebook's platform or systems, and that having an account compromised in this manner may indicate that your computer or mobile device has been infected with malware. Ideally, people who see this message should take care to rebuild or replace these systems if possible.

To protect the integrity of our methods and processes, we often won't be able to explain how we attribute certain attacks to suspected attackers. That said, we plan to use this warning only in situations where the evidence strongly supports our conclusion. We hope that these warnings will assist those people in need of protection, and we will continue to improve our ability to prevent and detect attacks of all kinds against people on Facebook.

Alex Stamos is the Chief Security Officer at Facebook.

~ lundi 19 octobre 2015 0 commentaires

Hackers Can Steal Your Information Through EarPhones


Hackers Can Steal Your Information Through EarPhones..

As we are aware about that Google Voice or Siri are tracking us via our mobile devices so that represents a security risks too.

French Information Security ANSSI research have figured out that how to utilize radio waves to silently trigger voice summons on iPhones or Android devices on the off chance that they utilize headphones and have Google Now or Siri empowered.

Security researchers unveiled that hackers can steal your information to make calls, send texts or browse a Malware website without notifying you. its over 16 feet they can use the attack on your smartphone.

According to Wired,
The researcher utilized the earphones' cord as a radio wire and exploited is wire to change over electromagnetic waves into electrical signals that told the smartphone that orders to be sound are originating from the user microphone.

Earlier, IEEE report was published on the same topic,

Research exploit the principle of front-door coupling on smartphones headphone cables with specific electromagnetic waveforms. We present a smart use of intentional electromagnetic interference, resulting in finer impacts on an information system than a classical denial of service effect. As an outcome, we introduce a new silent remote voice command injection technique on modern smartphones.

How Radio Attack dangerous Silently?

  • It can make calls
  • To Send text messages
  • Browsing Phishing or Malware websites
  • Spam Messaging through Social Media Accounts


How this attack works ?
Watch Video:


~ vendredi 16 octobre 2015 0 commentaires

Another Zero Day Vulnerability Found In Adobe Flash


Another "Zero Day" Vulnerability Found In Adobe Flash

The researchers of TrendMicro found Zero day exploit in Adobe Flash Plugin. The Flash zero-day affects at latest version of Adobe Flash Player versions 19.0.0.185 and 19.0.0.207.

According to research Pawn Storm campaign are behind this attack said Trend Micro and they are targeting by sending Phishing Emails with attached exploit links. Suicide car bomb targets NATO troop convoy Kabul” said TrendMicro

“Syrian troops make gains as Putin defends air strikes”

“Israel launches airstrikes on targets in Gaza”

“Russia warns of response to reported US nuke buildup in Turkey, Europe”

“US military reports 75 US-trained rebels return Syria”

Adobe Affected Version by TrendMicro

How Can we Protect?

TrendMicro said that they sent report to Adobe. But still Adobe does not patched this vulnerability.

~ mercredi 14 octobre 2015 0 commentaires

To Be A Part of International Programmer Player Competition And Win upto $500,000


To Be A Part of International Programmer Player Competition (IPPC) And Win upto $500,000

Faced with time Programmers and Hackers:
Speed & Skill Battle for $500.000

We are already convinced that there are many gifted programmers and ingenious hackers.
Now we want to know who the fastest and most flexible are.
After all, we are in the century of speed: TIME = $

Next Hacker IPPC: International Programming Player Competition, February 26 & 27, 2016 in Berlin, Germany, the 2016 IPPC promises an exciting two days of intriguing events and programming competitions featuring 3,000 of the world’s best up and coming developers and programmers in an extreme and exciting skill competition.

IPPC’s main event is where the true competition really begins and everyone can be a winner in the Xtrem Programming Competition Speed & Skill Challenge. $500.000 cash prize they await the winners. This multi-stage challenge starts with each programmer having to successfully find and fix errors in three random Java programs. Once that phase is completed, the programmer needs to achieve a score of 150,000 points in a single Classic Pac-Man game.  Once both tasks are completed, the fastest programmers win a share of the cash pool.  In addition, contestants’ contest performance information will be made available for all Company's.

The 2016 International Programming Player Competition will also offer technical sessions on programming, an open panel discussion with renowned hackers and programmers, and the opportunity for the world’s top programmers to be exposed to and meet leading high tech companies from around the globe. The two day IPPC is open to programmers worldwide and space is filling up rapidly. All the money from our sponsors and advertisements that will be gathered will increase the winner’s number.

About Next Hacker IPPS
Next Hacker IPPS LDT is a worldwide group of like-minded computer programmers. Their mission is to organize and host international programming events that connect talented programmers with corporations. The team specializes in planning and producing high quality competitive programming events. We live and breathe inspiring events, we love them, and it’s all we do.

Contact Details
Email: team@nexthacker.com
Website: http://www.nexthacker.com

NEXTHACKER IPPC LTD
Miami - 201 South Biscayne Boulevard - USA / Athens - Prasinou Lofou- Theatre Square (Minoti)- Greece / Sofia - Business Center Evrotur 2 – Bulgaria
Lisa Novichenko

Contest Director
Tel. +30 211 2104995

~ jeudi 8 octobre 2015 0 commentaires

Former Reuters Journalist Convicted of Helping Anonymous To Hack Los Angeles Times Website


Former Reuters Journalist Convicted of Helping Anonymous To Hack Los Angeles Times Website.

Matthew Keys, age 28 from California was found guilty of giving login credentials to the Tribune Co.'s computer system. 

Matthew will face up to 25 years in prison, and sentenced on 20 January 2016. He charged for computer hacking under the Computer Fraud & Abuse Act.

According to FoxNews,

He was fired by Tribune-owned FOX affiliate KTXL-TV in Sacramento two months before the Times' website was hacked, and federal prosecutors in Sacramento say he wanted payback. He was fired by the Reuters news agency after charges were filed in 2013.

A spokesman for Tribune Media Co, Gary Weitman, said: "We are pleased that the justice system worked. We will let today's verdict speak for itself."

Edward Snowden Tweeted


Matthew also gives his reaction with tweeted,
About the Tribune Company 
Tribune Company, is an American multimedia corporation that is headquartered in Chicago, Illinois, United States. Tribune Media is one of the largest television broadcasting companies, owning 39 television stations across the United States and operating three additional stations through local marketing agreements. Tribune Technology LLC, another subsidiary, manages the interactive operations of major daily newspapers such as the Chicago Tribune and Los Angeles Times and their associated websites

~ 0 commentaires

This Female Hacker SexyCyborg Can Break The Security With Her Shoe Heels


This Female Hacker SexyCyborg Can Break The Security With Her Shoe Heels

Her shoes hide the equipment's for hacking into Wi-Fi networks. She can secretly sniff your computers with hidden WiFi testing tools and steal the data remotely.

How She get the idea ? 

she said,

"My typical clothing does not leave room to hide anything- which is all the more reason they would not be suspicious of me."

With my shadowless shoes I distract the target with my…upper body and they don’t see the real danger on my feet, "

I’ve been watching the TV show "Mr. Robot" and while I know not all of it is accurate some of it is and it got me curious. I’m already pretty comfortable with command line and remote server administration from my web development work, and it turns out a lot of ‘hacking’ tools are just testing tools any sensible IT professional would use- just without a GUI.


So I spent the month hitting the books (well web pages) watching lots of videos and learning a bit about information security and penetration testing (I wonder how many idiot jokes that phrase is going to cause…). I still don’t know much, but I know a tiny bit more than I did. Enough to ask people who know more than me the right questions- and enough for a fun project.

So I devised the Wu Ying Shoes (无影鞋)! - Penetration Testing Platform Heels!  "Wu Ying" means “shadowless",



What she can bring inside the Sandal Heels

  • USB keylogger
  • Retractable Ethernet cable for OpenWRT router
  • Lock-picking set.


Watch the Video, How she break the Security? 


~ mercredi 7 octobre 2015 0 commentaires

YiSpector First iOS Malware That Attacks On Apple iOS Devices


YiSpector: First iOS Malware That Attacks On Apple iOS Devices

YiSpecter is different from previously seen iOS malware in that it attacks both jailbroken and non-jailbroken iOS devices through unique and harmful malicious behaviors. 

Cyber Security firm Palo Alto networks researcher Claud Xiao defines that, how this malware attack work on iOS devices which targets in China and Taiwan.

He said in the blog,

Specifically, it’s the first malware we’ve seen in the wild that abuses private APIs in the iOS system to implement malicious functionalities.

Yispector Infected iOS device

 YiSpecter is the first real world iOS malware that combines these two attack techniques and causes harm to a wider range of users. It pushes the line barrier of iOS security back another step.


  • Whether an iPhone is jailbroken or not, the malware can be successfully downloaded and installed.
  • Even if you manually delete the malware, it will automatically re-appear
  • Using third-party tools you can find some strange additional “system apps” on infected phones
  • On infected phones, in some cases when the user opens a normal app, a full screen advertisement will show.


Palo Alto Networks has released IPS and DNS signatures to block YiSpecter’s malicious traffic. This blog also contains suggestions for how other users can manually remove YiSpecter and avoid potential similar attacks in the future. Apple has also been notified.

According to analysis reports by Qihoo 360 and Cheetah Mobile, YiSpecter was also spread by the Lingdun worm.
A malicious webpage uploaded by Lingdun worm

Lingdun uses fake VeriSign and Symantec certificates to bypass malware detection systems. Its primary goal is to download and to install additional Windows software onto a PC. Most of this additional software is benign but at least one installation was malicious.

Apple said in Statement,

"This issue only impacts users on older versions of iOS who have also downloaded malware from untrusted sources. We addressed this specific issue in iOS 8.4 and we have also blocked the identified apps that distribute this malware. We encourage customers to stay current with the latest version of iOS for the latest security updates. We also encourage them to only download from trusted sources like the App Store and pay attention to any warnings as they download apps.”

How to Remove YiSpecter from Your iOS Devices?

  • Go  to Settings –> General –> Profiles and remove all unknown or untrusted profiles.
  • Delete any installed apps with names 情涩播放器, 快播私密版 or 快播0.
  • You can use any third-party iOS management tool such as iFunBox on Windows or Mac OS X to connect with your iPhone or iPad
  • Then check for installed iOS apps like Phone, Weather, Game Center, Passbook, Notes, or Cydia and delete them.



Last month, we reported XcodeGhost malware infected almost 40 popular apps in the Chinese App. Store.

~ mardi 6 octobre 2015 0 commentaires

US Stock Market Company Scottrade Hacked 4.6 million Customers Are On Risk


US Stock Market Company Scottrade Hacked.
4.6 million Customers Are on Risk!

Hackers hacked the name and physical address of customers data.
Scottrade is a privately owned American discount retail brokerage firm headquartered in Town and Country, Missouri.

"We take the security of the information entrusted to us very seriously and are fully cooperating with law enforcement in its investigation and efforts to bring the perpetrators to justice," the company said.

Was I Affected?
Current information indicates that the cybercriminals had unauthorized access to our network for a period of several months between late 2013 and early 2014.

If you had an account previous to February 2014, your information may have been accessed through this incident. We are directly notifying everyone whose information was contained in the affected database so they are aware of what happened.

For Clients
If your information was contained in the affected database, you will receive a letter or email from Scottrade with additional information and resources.

We have secured the known intrusion point and conducted an internal data forensics investigation on this incident with assistance from a leading computer security firm. We have taken appropriate steps to further strengthen our network defenses.

What they Hacked

  • Names
  • Physical Address
  • Email Id's 
  • Social Security numbers

Mostly hackers wants to steal customer names and address. According to Krebon Security Scottrade spokesperson was not immediately available by email, but said in a statement to journalist Brian Krebs, who first reported the breach, that the focus of the attack was "a list of client names and street addresses" that was taken from its systems.

Yesterday, we reported about T-Mobile 15 million customers data got Hacked

~ samedi 3 octobre 2015 0 commentaires

T- Mobiles 15 Million Users Data Gets Hacked


T- Mobiles 15 Million Users Data Gets Hacked!

Hackers breached an Experian network it is the World's biggest consumer credit monitoring firm and vendor of the T-mobile company who process the credit card applications.

T Mobile CEO John Legere said in the statement,

"Obviously I am incredibly angry about this data breach and we will institute a thorough review of our relationship with Experian, but right now my top concern and first focus is assisting any and all consumers affected. I take our customer and prospective customer privacy VERY seriously. This is no small issue for us. I do want to assure our customers that neither T-Mobile’s systems nor network were part of this intrusion and this did not involve any payment card numbers or bank account information."

Investigation is on ?
The investigation is ongoing, but what we know right now is that the hacker acquired the records of approximately 15 million people, including new applicants requiring a credit check for service or device financing from September 1, 2013 through September 16, 2015.

These records include information such as name, address and birth date as well as encrypted fields with Social Security number and ID number (such as driver’s license or passport number), and additional information used in T-Mobile’s own credit assessment. Experian has determined that this encryption may have been compromised. We are working with Experian to take protective steps for all of these consumers as quickly as possible.

"We take privacy very seriously and we understand that this news is both stressful and frustrating.  We sincerely apologize for the concern and stress that this event may cause," said Craig Boundy, Chief Executive Officer, Experian North America. "That is why we're taking steps to provide protection and support to those affected by this incident and will continue to coordinate with law enforcement during its investigation."

If you have been affected ?
Anyone concerned that they may have been impacted by Experian’s data breach can sign up for two years of FREE credit monitoring and identity resolution services at www.protectmyID.com/securityincident.

T-Mobile International AG is a German holding company for Deutsche Telekom AG's various mobile communications subsidiaries outside Germany. Based in Bonn, Germany.

T-Mobile is the third biggest mobile firm in the US.

~ vendredi 2 octobre 2015 0 commentaires

GitHub Announces To Support Universal 2nd Factor Authentication



GitHub Announces To Support Universal 2nd Factor Authentication (U2F) 
A rapidly growing open authentication standard!

When you insert them, these physical USB keys automatically generates a second-factor code. And you don't even enter a Six-digit code from Google Authentication and similar Apps. GitHub announced that its partnership with Yubico.

Two-factor authentication is a security process in which the user provides two means of identification from separate categories of credentials; one is typically a physical token, such as a card, and the other is typically something memorized, such as a security code.

The FIDO U2F Security Key by Yubico is a specially designed YubiKey, relying on high-security, public-key cryptography. U2F is built to protect against phishing and man-in-the-middle attacks, allowing one U2F authenticator to access any number of services without any shared secrets.

What is U2F — FIDO UNIVERSAL 2ND FACTOR

U2F is an open authentication standard that enables internet users  to securely access any number of online services, with one single device, instantly and with no drivers or client software needed.

U2F was created by Google and Yubico, with contribution from NXP, and is today hosted by the open-authentication industry consortium FIDO Alliance.



U2F is used with USB devices, including YubiKeys, as one of many authentication methods

In order to take advantage of the security improvements provided by U2F, you'll need to purchase a hardware key. You can purchase the U2F key of your choice from a range of vendors. GitHub are partnering with Yubico, inventor of the YubiKey, co-creator of the U2F protocol, and a leading provider of U2F authenticators.

Together with Yubico we are offering discounts to GitHub users for a limited time through a special offer page where you will verify your GitHub account and place your order:

  • While supplies last, GitHub users can purchase special edition U2F Security Keys for $5 plus shipping and handling (regular price $18; 5,000 special edition keys available).
  • After the special keys are gone, all GitHub users are eligible for a 20% discount on U2F-certified YubiKeys, for a limited time.
  • In addition, all students who are eligible for the Student Developer Pack will receive a 20% discount on any U2F-certified YubiKey.

~ 0 commentaires

How To Test Security in IPv4 and IPv6 Data Networks?


How To Test Security in IPv4 and IPv6 Data Networks ?

Evil Foca is a tool for security pentesters and auditors whose purpose it is to test security in IPv4 and IPv6 data networks. 

Compared to IPv4 address space is 32 bits which resulting 4 billion addresses.IPv6 offers larger address space. Its addresses are 128 bits long, resulting in an address space of 340 undecillion addresses.


In addition, IPv6 provides other technical benefits, particularly, it permits hierarchical address allocation methods that facilitate route aggregation across the Internet, and thus limit the expansion of routing tables. The use of multicast addressing is expanded and simplified, and provides additional optimization for the delivery of services. Device mobility, security, and configuration aspects have been considered in the design of the protocol.

The tool is capable of carrying out various attacks such as:


  • MITM over IPv4 networks with ARP Spoofing and DHCP ACK Injection.
  • MITM on IPv6 networks with Neighbor Advertisement Spoofing, SLAAC attack, fake DHCPv6.
  • DoS (Denial of Service) on IPv4 networks with ARP Spoofing.
  • DoS (Denial of Service) on IPv6 networks with SLAAC DoS.
  • DNS Hijacking.


The software automatically scans the networks and identifies all devices and their respective network interfaces, specifying their IPv4 and IPv6 addresses as well as the physical addresses through a convenient and intuitive interface.

Man In The Middle (MITM) attack

The well-known “Man In The Middle” is an attack in which the wrongdoer creates the possibility of reading, adding, or modifying information that is located in a channel between two terminals with neither of these noticing. Within the MITM attacks in IPv4 and IPv6 Evil Foca considers the following techniques:

ARP Spoofing: Consists in sending ARP messages to the Ethernet network. Normally the objective is to associate the MAC address of the attacker with the IP of another device. Any traffic directed to the IP address of the predetermined link gate will be erroneously sent to the attacker instead of its real destination.

DHCP ACK Injection: Consists in an attacker monitoring the DHCP exchanges and, at some point during the communication, sending a packet to modify its behavior. Evil Foca converts the machine in a fake DHCP server on the network.

Neighbor Advertisement Spoofing: The principle of this attack is identical to that of ARP Spoofing, with the difference being in that IPv6 doesn’t work with the ARP protocol, but that all information is sent through ICMPv6 packets. There are five types of ICMPv6 packets used in the discovery protocol and Evil Foca generates this type of packets, placing itself between the gateway and victim.

SLAAC attack: The objective of this type of attack is to be able to execute an MITM when a user connects to Internet and to a server that does not include support for IPv6 and to which it is therefore necessary to connect using IPv4. This attack is possible due to the fact that Evil Foca undertakes domain name resolution once it is in the communication media, and is capable of transforming IPv4 addresses in IPv6.

Fake DHCPv6 server: This attack involves the attacker posing as the DCHPv6 server, responding to all network requests, distributing IPv6 addresses and a false DNS to manipulate the user destination or deny the service.

Denial of Service (DoS) attack: The DoS attack is an attack to a system of machines or network that results in a service or resource being inaccessible for its users. Normally it provokes the loss of network connectivity due to consumption of the bandwidth of the victim’s network, or overloads the computing resources of the victim’s system.

DoS attack in IPv4 with ARP Spoofing: This type of DoS attack consists in associating a nonexistent MAC address in a victim’s ARP table. This results in rendering the machine whose ARP table has been modified incapable of connecting to the IP address associated to the nonexistent MAC.
DoS attack in IPv6 with SLAAC attack: In this type of attack a large quantity of “router advertisement” packets are generated, destined to one or several machines, announcing false routers and assigning a different IPv6 address and link gate for each router, collapsing the system and making machines unresponsive.

DNS Hijacking: The DNS Hijacking attack or DNS kidnapping consists in altering the resolution of the domain names system (DNS). This can be achieved using malware that invalidates the configuration of a TCP/IP machine so that it points to a pirate DNS server under the attacker’s control, or by way of an MITM attack, with the attacker being the party who receives the DNS requests, and responding himself or herself to a specific DNS request to direct the victim toward a specific destination selected by the attacker.

Download

~ mardi 29 septembre 2015 0 commentaires

#Breaking: Facebook Server is Down


#Breaking: Facebook Server is Down

As we checked in the http://www.isitdownrightnow.com/facebook.com.html 
site also commit its down for everyone

Site status server Down Check the screenshot

#Update:
Facebook Server is up now

~ lundi 28 septembre 2015 0 commentaires

How To Hack iPhone To See Photos and Contacts Just in 30 Seconds


How To Hack iPhone ?
To See Photos and Contacts Just in 30 Seconds!

A new method to unlock a iPhone, iPad or iPod touch running on latest iOS 9 and iOS 9.1. The vulnerability has been discovered to access the device contacts and photos within 30 sec.

How to do unlock for iOS 9?

  • Type incorrect password 4 times 
  • For the fifth time Type the password 3 times and in 4th time hold the HOME button to invoke SIRI by the 4th digit.
  • Now ask the siri about the Time.
  • Tap the Clock icon to open the Clock app and add a new Clock, then write anything in the Choose a City field.
  • Now double tap on the word to select, you wrote to invoke the copy & paste menu, Select All and then click on "Share".
  • Tap the 'Message' icon in the Share Sheet, and again type something random, hit Return and double tap on the contact name on the top.
  • Select "Create New Contact," and Tap on "Add Photo" and then on "Choose Photo".
  • You'll now be able to see the entire photo library on the iOS device, which is still locked with a passcode. Now browse and view any photo from the Photo album individually.


Watch Video for bypass iOS 9 Lockscreen



After this bypass attack Apple have been updated new version iOS 9.0.1 but its still we can bypass its lockscreen.

Look below Video demonstrate:

Video for bypass iOS 9.0.1 Lockscreen



How To prevent by this attack?

Until Apple fixes this issue, iOS users can protect themselves by disabling Siri on the lock screen

  • Go to Settings > Touch ID & Passcode > Siri
  • Turn off Siri

Just few days back Biggest Security Breach In Apple App Store Gets Malware Infected.

~ 0 commentaires