Results for Linux

A Beginner's Guide to Android Rooting | Easy Reference

Saturday, October 22, 2011
Android in the one of the widely accepted OS in devices(phones,Tabs etc) these days because of its largely managed apps and control it give to its users.Where is honey so bears are there......
android root software
I mean because of its popularity it is one of the hotspot for attacker these days.So,I thought of sharing few security tips with my readers,for that the apps we need to work with will be functional on certain criteria that is we need to have root access on the device.Before going into the security part of it I would like to give my readers a basic idea about rooting.

What is Rooting in Android?

"Root" as you all may be knowing is related to Linux and it is analogous to administrator in Windows.So rooting an Android device means we get the full access and freedom on the functionality of the device,in windows language we can say we have the admininstrative previlage.So,the process by which we get the root access/previlage is called "Rooting".

Why we need Rooting?


1. Full access and control over the device.(Superuser access)

2. Make your device fast to your wish.

3. Add more apps of your choice.(Will be covered in the next Post)

4. Use the OS version of your choice.

Disclaimer: Root may cancel/void your warranty.Carry out the process at your own risk,the author will not be held responsible for any damage caused to your device.
How to root an Android device?

Instead of giving a detailed tutorial I will cover the basic overview of how this is exactly done and the tools and software associated with it.Here it is worth mentioning that all the android based devices do not have excatly the same rooting procedure.So,here I have listed out all the possible methods.

Note:Install Microsoft .Net Framework version 2.0 or greater.
         Enable USB debugging in device settings.
         Need USB drivers for your device and install it.
The first and foremost thing is to find the method which is compatible with your device(just Google it)

1.Rooting Android devices with SuperOneClick.

2.Rooting Android devices with Universal Androot

3.Rooting Android devices with Z4Root.

4.Rooting Android devices with flashRec

5.Rooting Android device using Easy Root.

6.Unrevoked Method:
If the above mentioned methods are not compatible with your device then you may try this method.This method is mostly used for HTC devices.You may download Unrevoker here.

 A Reference of how to "Root a HTC wildfire(Video Tutorial)".

You may need the below mentioned help before working with Unrevoker.

     * S-off tool  Revolutionary (Download)
    
     * You may need a Rom to get downgrade(Download)
   
     * Need to find the HBOOT version,as we may need it.


7.Rooting Android 2.3 Gingerbread devices with GingerBreak.

If the Android is 2.3 then no need to downgrade it to 2.2 and start rooting,you may see if your device is compatible with GingerBreak exploit.Follow the reference here as this may help you carry out the steps.

After you are done with rooting then you may install the desired OS version and add your custom ROM.

I hope this post will come to your help.If you feel that I need to add any thing else then feel free to drop a comment. :) 
A Beginner's Guide to Android Rooting | Easy Reference A  Beginner's Guide to Android Rooting | Easy Reference Reviewed by Satyajit (Admins,a.k.a Satosys) on Saturday, October 22, 2011 Rating: 5

Yersinia | Analyze and Test Deployed Networks

Sunday, October 16, 2011
"Yersinia" a type of bacteria but here in context to this site it is  a  Network tool designed to analyze,test and monitor  the weakness in different network protocols listed with it.

Attack on the following Network Protocol are possible as listed below.

yersinia
Recently Cisco VTP Dos exploit  included in the latest version:0.7.1
yersinia
Home Page : http://www.yersinia.net
Yersinia | Analyze and Test Deployed Networks Yersinia | Analyze and Test  Deployed  Networks Reviewed by Satyajit (Admins,a.k.a Satosys) on Sunday, October 16, 2011 Rating: 5

Katana | A portable multi-boot security suite

Wednesday, February 09, 2011
Katana a tool which holds over 100 applications under it which can be run a USB/flash drive.As the new v2 has come up with a major addition called "Forge",which helps in further addition of new applications to the booting list.
Katana security

>>>>>Learn how to use portable applicaions from your PC.

Portable Applications:

1.BackTrack
2.Computer Aided Investigative Environment(CAINE)
3.Ultimate Boot CD for Windows
4.Ophcrack Live

and many more......Find more portable applications here... :)

(Download)
Katana | A portable multi-boot security suite Katana | A portable multi-boot security suite Reviewed by Satyajit (Admins,a.k.a Satosys) on Wednesday, February 09, 2011 Rating: 5

How to boot Backtrack from USB?

Friday, December 31, 2010
I am sure that many of you must have heard of Backtrack and its functionality.So I will not go in detail into what is back track but here I will tell you how you can use it from your USB.
What is Backtrack?
It is a Linux distribution and unix like OS made for pentesting and forensic analysis.It contains all the tools that an elite or a noob security and hacking enthusiast may dream of.

You can burn the .iso file of it to a DVD and boot.But here we will see how we can boot it from an USB.

Requirements:

1.Backtrack .iso file(Download)

2.Unetbootin.(Download)

3.HP Usb Disk Storage Format Tool.(Download)

4.USB (at least 2GB)

Procedure:

Step 1.
First format the USB with the "HP Usb Disk Storage Format Tool" not with the default one.

Step 2.
Now open Unetbootin and select Backtrack from the select distribution from the drop down menu and then select the version as shown in the image below.
Step 3.
Now select the disk image and follow as shown in the image below.Do check if the correct drive is being selected.
Step 4.
Now wait until all the files are being extracted and finish.
Step 5.
Now plugin the USB and reboot your box and press F12 or go to the boot menu and boot from the usb(primary) then follow the onscreen instructions.

If you find this post useful then do drop a comment it will be appreciated.... :)
How to boot Backtrack from USB? How to boot Backtrack from USB? Reviewed by Satyajit (Admins,a.k.a Satosys) on Friday, December 31, 2010 Rating: 5

Metasploit | A guide for beginners and newbies.

Saturday, November 06, 2010
If you have interest in hacking then I feel metasploit framework platfrom is very essential to know and implement.It is used by security reseachers,Pentesters,Hackers,script kiddes etc.So,in this tutorial I will discuss few basics of metasploit and its architecture.So lets start....
I recommend readers if they abide by the blog's Disclaimer then they can proceed reading this post otherwise leave this page immediately.
Metasploit

What is metasploit?

It is an exploitation framework written in ruby language used for devloping and executing exploits on a remote host after assessing the vulnerability.It has a wide range of pre developed exploits and few useful applications like "nmap" attached with it.It was primarily developed for penetration testing but now it has come out to be must needed tool for hackers.

Note:All the screen shots in this post are from Windows OS.

Architecture:
Image Credit:HD Moore

Basic Terms:

1.Exploits:
It is similar to a vehicle in real life that helps in entering or penetrating to a system because of any vulnerability or any flaw in the system.

2.Payload:
Its specifies the work of the exploit

3.Auxillary:
These are few other applications combined with the framework like sniffers,enumeration tool.

4.Meterpreter:
It is a payload that is injected into a process of an exploited system where no additional process is created in the memory and later it can be migrated to any desired process using PID(Process ID.)

5.Encoders:
Exploits are sometimes detected by anti-virus so these encoders can be used to make the exploits undetectable and manipulate the code.

6.Nops:
Known as no operation generators are helpful in letting the exploit remain undetected from IDS.


7.Plugins:
The extend the functionality of the cosole.

Basic Commands:

1.help:
As the name signifies it will show some commands for reference.

2.search:
If you want to search an exploit and donot know the excat name then.For example search windows as shown in the image below.

3.use:
After the desired exploit has been sorted out then use this command to select he particular exploit as shown in the image below.


4.set:
If you want to use a particular option once then this command is used as shown in the image below.

5.show options:
If this command is used then it will show the options of the exploit.What port to be used etc...

6.setg:
It is same as "set" but the "g" stands for global so if you want to use a particular option for the complete session then use this command.

7.show :
Only "show" command will display all the exploits,payload and auxillaries at a time on the screen but if used as "show payloads" etc will show only the payloads as shown in the image below.
 



8.info :
It displays the needed information about an exploit or payload.

9.exploit/run:
After every thing is set this command is used to run the exploit.

10.sessions:session -i,session -i <1,2,3...id>:
After the exploit is succesful then to see the sessions this command is used and then the ID is used to select a specific one.

11.ps:
Suppose a meterpreter session is running successfully then "Ps" will display the processes running in the exploited system.

12.migrate :
It somtimes happens that the process to which the meterpreter is being injected is a temporary process so here the migrate command can be used to tranfer the meterpreter to some other process by specifing the process id.

You can setup a "Pentesting Environment" at your home using Virtual environment,find out here.

For more information on Metasploit visit here.

"If you find this post useful and informative do post your comment and share it."
Metasploit | A guide for beginners and newbies. Metasploit | A guide for beginners and newbies. Reviewed by Satyajit (Admins,a.k.a Satosys) on Saturday, November 06, 2010 Rating: 5

HoneyPot : Intrusion detection and Malware analysis.

Monday, September 06, 2010
In few of my post we have discussed what is honeypot all about?.It is basically used for intrusion detection and malware analysis.It also comes with different software package for different types of platform like Windows,Linux etc.The different types of software available are....(click here).

How to install HoneyPot?

I have written a guest post on "how to install honeypot?" in Hackers Enigma.Read it here
If  you find this post useful then do comment there,it will be appreciated... :)
HoneyPot : Intrusion detection and Malware analysis. HoneyPot : Intrusion detection and Malware analysis. Reviewed by Satyajit (Admins,a.k.a Satosys) on Monday, September 06, 2010 Rating: 5

HoneyPot:Intrusion Detection System(Softwares)

Thursday, August 05, 2010
"Honeypot".....yeah its name may seem to be bizarre when thought of in context of intrusion detection but it is an intrusion detection system or you may say a trap to attract an attacker.It can also be used for the analysis of different types of malwares attacking your system.In one of my post i published an article on "What is a honeypot?" you may go through it for knowing the detail of the functionalities.
Here in this post we will see what are the softwares available.

1.KFsensor:It is a windows based intrusion detection tool.It has many features like signature attack identification,Remote administration,detects windows networking attack,advanced server simulation etc.For it WINPCAP installation is necessary.The trail version is available for download here.

2.HoneyBot:Atomic software solutions provide a windows based honeypot which is very user friendly.It works on almost all the listening ports of the PC and is designed to mimic vulnearable services.It can be downloaded from here along with the user guide.

3.PatriotBox:It also a windows based tool.It is one of the simplest honeypot solution available.It has features like invisible monitoring,Comprehensive attack detection etc.It is also available in trail version here.

4.Specter:It is a very effective honeypot solution.It makes the PC a vulnerable target for the hackers infact which is not,the hackers are attracted bu it and leaves there traces.It also provides FTP,SMTP,POP3 etc.
Website:http://www.specter.com

5.LaBrea:I have not tested this but it is a multi-platform tool.It has been tested on Linux,Win,solaris etc.For more information on this tool visit here.

6.HoneyD:It can be used in Linux,Win,Solaris.It has features like subsystem virtualisation,stimulates OS at TCP/IP stack level,includes proxy connect etc.For more information about this tool visit here.

If you find this post worth reading then do drop a comment ,it will be appreciated... :)

IF YOU LIKED THE CONTENT OF THIS BLOG THEN DO "VOTE" FOR IT........Click here to Vote!
HoneyPot:Intrusion Detection System(Softwares) HoneyPot:Intrusion Detection System(Softwares) Reviewed by Satyajit (Admins,a.k.a Satosys) on Thursday, August 05, 2010 Rating: 5

How to hack Windows Xp Administrator Password?-(Part -I)

Tuesday, July 06, 2010
The title of this post may appear a noob but today we will try to do it in a different way.One can find many command prompt usage for it in web and many softwares for cracking it.The software i would recommend for doing it are....

1.Ophcrack:It is a windows password cracker implemented on rainbow tables.It is available as a freeware.(DOWNLOAD HERE)

2.Backtrack:It is one of my fav,it is a multi-functionality tool that is used for software cracking,wireless hacking,penetration testing,password cracking..etc.When it boots in one can see a linux based interface and it is typically a GNU/Linux based.It is also a freeware(DOWNLOAD HERE).

Quoting Kevin Mitnik-"I wish i had Backtrack-3 many years ago.It would have saved me lot of time."
 Well,after reading the above quote by the great Kevin you must  have imagined the functionality of backtrack.So,before going into the article  i want you all to go through the Disclaimer.
WE CAN USE THIS METHOD FOR WIN VISTA ALSO
Finally we should start......i should mention that we will hack using Backtrack3......though version 4 is  available and you can use it.

1.I hope you all have downloaded the .iso  file of  Backtrack from the above link(Always use official link).

2.You can  burn it to a  DVD/CD(make bootable) or boot it from USB,i would prefer using USB.

3.For booting it from USB you need to make your USB a booting one,for that you will need  UseNetbootin(DOWNLOAD).....and use the instructions given here.

4.Now i hope you have come up with a bootable  USB with Backtrack loaded in it,now restart your system with USB plugged and then go to the boot menu and select boot from USB....and leave it....you will be guided to the backtrack desktop screen as shown below.

5.Some times you may need Root ...Username:root & Password:toor.

6.Now open up chntpw by clicking on the start button as shown in the image below.

7.Then you all can see a command window will open up....now inorder to proceed you need to know the different partitions in your  harddisk,so for that type "df"(with out quotes)hit enter and it will show different partitions as shown in the image below.

8.Select the partition where the system files are loaded....here in my system it is in "sda1" so i will be using it in my further steps.

9.Now type in  this  chntpw -i /mnt/sda1/WINDOWS/system32/config/SAM  and hit enter.
Note:All the characters in the above command are case sensitive.
 Why we used this command?
Because all the passwords in Windows Xp are stored in SAM file which is located in the above specified location and the SAM file is encrypted  with LM hashes and sometimes a key is provided.

10.In the above image  you can see a question is asked "what to do?"by default it will take "1" if you hit enter...as it denotes "edit user data and password" as you can see in the above list (in image) so,hit enter and the below screen comes up.....

As it has taken "Administrator " as default value as you can see in the above image so again hit enter.

11.Here you can see there are many  options you can choose any one from the list by  typing that and hitting enter.I have chosen  option "1" which says "clear (blank) user password".
Now as you can see the "password cleared !" message has come up so,lets check again.

12.Hit enter again to get  the confirmation message as shown below.
So,the hack is successful!!! as you must have felt that hack using backtrack is purely command based....so remember few commands  and it can work wonders for you.
If  you liked this hack then do drop your comments and  give your suggestions on it they will be appreciated!!!
How to hack Windows Xp Administrator Password?-(Part -I) How to hack Windows Xp Administrator Password?-(Part -I) Reviewed by Satyajit (Admins,a.k.a Satosys) on Tuesday, July 06, 2010 Rating: 5
Powered by Blogger.