Thursday, 4 December 2014

VMWare Fusion 3.1 Beta On Grounds

Check out the VMWare Fusion 3.1 Beta which have been out just now. Its includes some of the significant features which many of the users have been waiting for. Some of them are really good which mostly includes graphic issues.

VMWare have been the major choice for the users to run Windows on Mac and pentesting for most of us on windows. The Beat 3.1 is out which have some major improvements in 3D application like games and windows Aero stuff…

OpenGL 2.1 is now also supported in this version for Windows 7 and Windows Vista. They claim better DirectX 9.0 SM3 performance as well (and hopefully that means more DirectX 9.0C app compatibility).

You can configure larger virtual machines as well, with the maximum virtual disk expanded from 950 GB to 2 TB. They now support up to 8-way symmetric multiprocessing as well. These are some of the features you will see in this Beat version.

VMware_fusion_windows_7_aero
You can download the beta here, test it, and have some of the nice features early for your use. If you want you can also give some tips to them and help them get doing the thing done fast for the final version.


So there you go - Download

Is Google Public DNS Safe ?

Is Google's new Public DNS server safe?

Google opened their new DNS service to the public. Google's strategy appears to be an attempt to compete with the popular free service called OpenDNS.

In light of the ongoing slaught of DDOS attacks on sites such as Facebook and under 48 hours ago, Twitter, the infosec industry is (and they should be) concerned aboutGoogle's DNS vulnerability.

Is Google Public DNS Safe ?  
So far, as this like below documents, the relatively small amount of research that has been done suggests that Google's port usage is sufficiently randomized so as to reduce the risk of an attack….

My opinion on this though? It most definitely will be some hacker's gold star target due to the fact that Google is getting a lot of press right now. However, you would have to be totally and completely brain dead/flatlining to attempt to crack this honeypot right now. But, hey, that's why we all love dumb criminals - they have high entertainment value and are a great source of humor.

How To Create A Invisible Account In Windows XP

Ok, A really Quick tutorial on for windows XP on How To Create A Invisible Account In Windows Xp. What we have do in this hack is really simple just create a DWORD valuein the windows registry and hack the windows user accounts .


Ok so are you sure you want to learn this hack then read ahead,

Steps :-


1. Open Start menu then click on RUN.
2. Type in the Run Window Regedit 
3. Windows Registry editor will open then navigate from the left panel :

HKLM\Software\Microsoft\WindowsNT\CurrentVersion\Winlogon\SpecialAccounts\UserList
4. Create a new DWORD, setting its name to the name of the account you wish to hide.
5. Then set its value to to hide it.
6. Enjoy its Hidden !!

NOTE : This account isn't completely hidden because it is visible to administrators inLocal User and Groups and also the profile is visible in the Documents and Settings.
 
Now How To Login In it after you have hidden the account :


1. At Welcome screen, and you want to login to this account.
2. Press Ctrl+Alt+Delete twice and it will display the log-on promt.
3. Type the username, and the password and hit enter.

Windows 7 GodMode Hack [Turtorial]

Windows 7 The New shiny product of Microsoft is just revealed and some windows guys have uncovered a new Hack in Windows 7 which the team at windows call is "GodMode"

The Hack is some kind of Glitch as we have also seen the Glitch in YouTube yesterday, What this does is bring you to an new settings page which got some good options in it to play with the windows.

Windows 7 GodMode Hack [Turtorial]

Obviously not the control panel settings, they contain some of the good one's in them like"Back up Your computer" and "Login Credentials" and stuff like that.

The "GodMode" Contains a List of Over 50 sections consisting of setting for you which can be enabled by a simple rename.  But it might be a new promotion by the windows guys to promote their New windows 7...

Whatever, lets focus on the Trick that we are going to apply to enable the, so called "GodMode" in windows 7.

Steps

The Hack is very easy one, with a simple rename you can access it. So don't blame me if this is Lame.
  1. Create a new folder.
  2. Rename the folder to
    234-windows-godmode-iconGodMode.{ED7BA470-8E54-465E-825C-99712043E01C}
    (note that you can change the “GodMode” text, but the following period and code number are essential).
  3. The folder icon will change — double click it to show the GodModewindow:

ScreenShot


Windows_7_godmode_610x404

234-windows-godmode-window

Conclusion

This might be good for you as you can now apply various setting to your Windows 7 at a single place. btw i don't use Windows 7 that much, i just Love the Window Xp. It might a new promotional way by the Microsoft guys. well who cares.


- Enjoy

How To Create Autorun.inf For Your Pendrive – Autoplay Your Tools

When you plug-in your pen drive then its really useful to run an Autorun software it canist1_9116667-usb-flash-memoryconsist of anything from hacking software to any music player.

Its really useful as you can do your work in seconds and in hacking stuff it its really important to boot up fast so that you can do yourwork in seconds and no body catches you rather then first loading the pen drive then navigating to the folders and then doing it. isn't it
So its really worthwhile to take a look at the way the windows Xp looks at the pen drive auto run program rather then making a program that’s loading automatically written C.
pendrive

Ok that's the image to notify you that you a need a pen drive and a windows Xp based computer with you so as you can perform this hack :D
So lets start…

How to create a Autorun.inf file ?


Its the most simple part of it.
1. To create an autorun file
2. Open Notepad and save ‘autorun.inf’’ (with quotes)
3. Save it to the root of the drive.
All it needs to have is in the first line
[autorun]
It was easy right :D

How To Changing Icon of Pendrive

PNG-usb-pendrive.png-256x256
1. To create an autorun file
2. Open Notepad and save ‘autorun.inf’’ (with quotes)
3. Save it to the root of the drive.
4. Then Type -

[autorun]
icon=myicon.ico
label=MyLabel 

Save it and remember in the root directory

How To New Option Appear in the Autorun Menu


1. To create an autorun file
2. Open Notepad and save ‘autorun.inf’’ (with quotes)
3. Save it to the root of the drive.
4. Then Type -

[autorun]
icon=default
label=[yourlabelhere]
action=programname.exe 
Save it and exit. Once again, the program has to be in the root. Now, when you plug it in, the option should appear in the menu.

How To Run Programs Automatically When USB is Plugged In


1. To Create an autorun file
2. Open Notepad and save ‘autorun.inf’’ (with quotes)
3. Save it to the root of the drive.
4. Then Type -

[autorun]
Icon=default
label=YourLabelHere
open=programname.exe 


Well That's it, it was easy right, now take a look at this
USB-Flash-Drive-with-Hacked-Shape-UF208-Hell i need that pen drive that's awesome. just take a look at this anybody would think that its a useless damaged usb kit or something but its a pendrive :D search on google you would find it .

New Html 5 XSS Vector’s By Gareth Heyes

Gareth Heyes is a great security guy, as you can also visit his blog The Spanner. The newly released HTML 5 is now under the eyes of hackers and it wasn't late that the New Xss vectors have been released by Gareth Heyes .

New Html 5 XSS Vector’s By Gareth Heyes

These New Xss vectors according to Gareth are automatic in major Web Browsers fromSafari, Chrome to Opera all support them. And its a matter of fact that Gareth also featured them on twitter too.

The injection looks something like:-
<input type="text" USER_INPUT>

The new HTML 5 works on some other vectors and uses, but the great thing in there is that you don't need to bind your Xss into a css style in here. HTML5 however lets us execute like expressions but without css styles….

For example:-

<input type="text" AUTOFOCUS onfocus=alert(1)>

We use the “autofocus” feature to focus our element and then the onfocus event to execute our XSS. This works with a plethora (I like that word) of tags. Any form based element it seems you can use this method:-

<input autofocus onfocus=alert(1)>
<select autofocus onfocus=alert(1)>
<textarea autofocus onfocus=alert(1)>
<keygen autofocus onfocus=alert(1)>
 html5

Conclusion


This New Xss vectors majorly uses the onfocus HTML 5 expression to make the use of Xss on the major browsers using HTML 5 right now like Safari, Chrome, Opera, Might be Firefox too.

How To Create Your Own Phisher

Phisher page is the login page same as of the service your victim is using for example -->gmail,orkut,yahoomail,paypal,facebook,twitter etc.
It will Look Just as same as you are asked to login to your Email acount,Thats where the victim gets tricked aka HACKED.

So,Lets start.
To create Your Own Phisher you have to follow these simple steps ----

1. You have to go to the website for which you want to make your phisher for ex.gmail,yahoomail,orkut,paypal etc


2. When you are there at the login page just click on File>Save As
[ remember to rename it as index.html while saving the web page ]


3. When you have saved the web page,open theindex.html in notepad. 

4. Search for .gif and replace the text written before the image name with


You Have To Do that for all the images named there, Or you can use replace all option. 

5.There will be another file needed also named as login.php .Which will give the condition to save the username and password typed by the user. 

[NOTE:- I will not be providing the login.php to you,You have to get the login.php by yourself.
if you have some knowledge about the php language you can make your own login.php
For those who dont have knowledge about php language i recommend you search for login.php on Google,you will surely get that file.] 

6. After you have done this,click on Edit>Search and type action in the search box,and then click on search. 

7. It will take you to the First action String, after the equals two mark type login.php in replace of the the text written after it. 

8. Click on Seach again,this time it will take you to another action string,after the equal to mark type
in replace of the text written in front of
the equals to mark.
NOTE: You have to type you your sites name in replace of your-site,and your free webhosting service against yourservice in 
http://www.your-site.yourservice.com/login.php. 

9. Now you are all done. 

NOTE: You have to upload all the files on your free webhosting service directory,including in index_files Folder in the directory.Or it wount work.
The Directory Will be ---
i. index.html
ii. index_files [Folder which you saved]
iii. login.php
iv. login.txt 

10. You can Make any websites phisher by these steps for example -- gmail,orkut,yahoomail,paypal,facebook,twitter etc. 

Happy Hacking