Wednesday, June 16, 2010

Cracking WEP encryption using Backtrack!

WEP(Wired Equivalent Piracy) is one of the most commonly used wireless networks. This post is important for those who've wireless-enabled modems... U can see how easy it is to decrypt a WEP key... And after reading this post, the first thing you've to do is to disable Wireless mode whenever its not in use... This post s also helpful for ECE n IT guys of our coll... They're in the same building with us, CSE, but still, whenever they open their laptops, they see a password protected wireless network connection installed by our seniors, for us, to download torrents... :P
Am not goin to explain how to do it coz its so common... Just google the title of the post and u'll get all necessary info...(If you feel lazy to google, check this video or this site...) By following the steps, we can exploit any wireless network secured by WEP. Even WPA is cracked... But mostly, for BSNL connections, its WEP...
One more highlight with backtrack is, "macchanger" tool... MAC address, which is supposed to be unique and unchangeable, can also be altered by this tool. Similarly, IPchangers are also available to alter ur IP address...

Sunday, June 13, 2010

A Glimpse on Fifa'10!

I take a look at the Germ vs Aus match goin on right now, for every 5 words i type... All eyes on the man with a Golden boot, Klose... My average typing skills allow me to type with eyes on TV... If u guys like to better ur typing, try this site and TypeMaster 2010... Am not a fifa freak like ajit or parthasarathy, but still follow the game closely...
Its really sleepy when u see a zero scoring game and that too when the current france team is playing... I don think they deserve to be in the WC... England's die hard fan like Partha will definitely feel like banging his head on the wall when the GK plays so sloppy like the Indian cricket team... So far all superstars flopped out... Messi, henry, rooney... But the captains played responsible... like Jung from Korea, Gerrard...Wow.. Germany plays awesome.. no offside called... Goal by Podolski...
The Africans too play very good, except Nigeria, who had no chance.. Loads of fan support too.. U shud see the Ghana fans jumping up n down after their last min goal... But as Maradona says, even the best teams n best players of the world should be afraid of playing against these africans... God.. are they humans?? They look like mini-minotaurs and bully everyone comin thro.. The refree was busy with his cards but the bullying never ends... Also, these football players are trained actors... They cry holding neck for getting injured in the leg.. and that too till the referee says "Thats enough... I gave an yellow for ur opponent..."
Funny things goin on here with the aussies... I guess the referees are quite strict this year... An Aussie s given yellow card for saying %&#* off... lol... And the funniest thing is that, its being showed in slow motion replays... Wow.. Superb goal by Klose... Well, that means, I've been typing this post for 20 mins... Watta do.. The game s fast paced... I guess Germans ll manage to get half a dozen goals before I finish typing this post... I'll better end it here... Cya...

UNetBootIn!


I wonder how the new technology products kick the old ones out so quickly... My CD n DVD drives were working fine until I bought a pen drive... Now these drives and so the discs such big time... There are situations where my windows die fighting with my linux partition and I end up with an UBUNTU disc in my hand, without knowin wher to boot it from... UNetBootIn came to my rescue...
With this software u can easily create live-pendrive... something like a live-disc.. especially when u want to use it as a rescue-disc... First of all select the distribution and version of ur linux and then follow the steps indicated in the image...
The purpose of introducing UNetBootIn in this post is, to create a live-disc of Backtrack linux... For using the tools available in Backtrack, you needn't install it... U can very well use the tools from the live disk itself... It makes no difference... And its better to go for a pen drive coz it'll be lot faster than a CD or DVD... Download the Backtrack, latest version 4 (1.5GB), from here... Or get it from me... More about Backtrack, later...
Now, here's a small trick regarding hacking websites... If you ever build a website in ASP(Active Server Pages), make sure that its not vulnerable to the following trick...

1) Search for the login page from google... type "inurl:login.asp" (mostly login pages are named "login.asp"... convention, right?) Anyway the idea s to search for the login page... If login.asp doesn't work, try admin-login.asp, etc. Hope u get it...

2) In the login page, sign in as ADMIN.... give username as "admin".. (These admins are lazy enough not to change the default usernames... And that too, most of them have their admin password as "admin")

3) In password... type.... /1'or'1'='1/ (Everything inside / /.. If that doesn't work, try /'or''='/ )

This technique is a type of "SQL Injection"... These days it has become mandatory for every website creator to test the website which he creates so that it becomes hack-proof... Try to google the keyword to know more about it... There are easier ways to hack PHP and HTML pages... And by the way, it wasn't me who hacked our college website :D... But definitely it must be one of my classmates... Anyway, whoever did it, must be careful... Last heard, he has left a lot of tracks in the logs....
Sorry for the delayed post... was down with "Fifa fever"... More to come.. Enjoy..

Warning: Hacking is extremely "injurious to ur health"... Do NOT try this at "home"... :P


Saturday, June 12, 2010

Key-loggers!

When someone types his password, we are so tempted to look at it... but still we turn our heads towards the wall or look at the watch though we could always see the time in front of us in the computer, just to show that we are saints to control all temptations... But therez always a second category of people who keep their eyes just above the keyboard and challenge us to type fast enough for them not to re-construct the password... There is a better way of doing this password sniffing and it is thro' the use of key-loggers...
If you guys call me porups or padips, I would definitely recommend you to have a look at my brother... He's the one who highlighted me the importance of knowing about key-loggers in corporate world... He never "types" passwords unless someone is around... Key-loggers are so common in organizations that people are forced to use "Virtual Keyboard Assistant" or "on-screen keyboard" in windows... Recently, the internet banking started giving a built-in on-screen keyboard interface for entering passwords... Even I saw paypal havin one such virtual keyboard when I changed my password...
The picture shows an hardware key-logger. Even I've one such thing but its jus a DIN to mini-DIN converter... These days, hardware key-loggers come even in USB flavors... Anyway, a software key-logger is way too easy and of course, free... Even I've written one but my avast starts its loud siren whenever I take my mouse pointer near the icon... Though so many key-loggers are available in the net, very few of them goes undetected by the anti-virus...
A key-logger daemon is easy to create in Visual Basic by jus writing 10 lines of code under the keypress(keyup or keydown) event inside an infinite looping while.. It can save everything you type at a particular location... A software key-logger by itself is useless unless its connected with the automatic mailing system which when scheduled, can mail us the saved log file from the system in which the key-logger is running... Now, start searching ur system for my key-logger.. :P

Friday, June 11, 2010

Know Hacking but No Hacking!


Yeah, the man who came to our college to preach ethical hacking copied the Tagline from me... I always had a great passion on hacking... Being a "white-hat", I hesitate to get into unethical ways of working upon vulnerabilities (:P)... I guess almost everyone s interested in hacking... if not, 200 people wouldn't be rushing to give 1k bucks just on hearing the word "hacking" and without even knowing wat the preaching s all about... Even I wouldn't ve organized it if it was not hacking, leaving behind all my project works to abhi n roshi (;-))...Even some of the mechanical n non-IT guys asked me if they're "eligible(?)" to attend the workshop as they were so interested in hacking... I turned them down by saying that its all about hacking into a computer in network environment and not related to hacking some machinery or a lathe...
What to do guys?? The world s like that... We always love to sneak into others mobiles, computers to see what he/she s doin... Or scared if someone might get a SUDDEN knowledge by attending all those preaching sessions and try to attack us... Usually, "humans" tend to develop a strong liking for "hacking" coz of the first case... Anyway I guess, the preaching was helpful for most of them, though I had no chance of listening to it...
My life of hacking started in the era when the FCP n AFCP guys ruled our class... (I guess they wont take this "confession" quite seriously).. Actually, some of the mails sent by the FCP and the AFCP, to everyone in our class, were not sent actually by them... I sent them... I did it jus for fun.. to check if the software which i developed for a Freelancer project is working... It was an 'Automatic mailer n re-mailer'... Both mine and their mails will look exactly similar... U cant find the difference so easily... Like all hackers do, I too made a mistake, which the AFCP guys found out... Later I rectified the mistake but stopped testing it further coz I felt that I've done enough damage already... I used to send mails to ppl (incl. FCP) from their own mail ids...
The image shown above is a variant of Linux, "Backtrack"... It contains *ALL* the tools required for hacking and hacking-detection... I'll tell you more about Backtrack in the following posts along with some simple but unfamiliar techniques... The next few posts will be about hacking unless I get something to write...

Wednesday, June 9, 2010

FREELANCER!

Thank you guys... for writing down your names in the Alumni list... After reading the previous posts, people asked me what tech stuffs I do... This is one of them... "Freelance Jobs"... I'll mention the others in next few posts... For those who've not heard the word "Freelancer", it refers to a person who is not committed to a company or an organization(employer) for a long term... Its like doing one or two jobs for someone and then move to the next employer... Visit www.freelancer.com and you'll get a better picture of wat i mean... Myself and Arch used to do such freelance jobs for the past 1 n half years... We've done a few jobs, one of which is, English to Tamil translation :D... for a few dollars... We used to do programming, project and white paper proposals... There s a wide variety of Freelance jobs in that website... U can jus do a job in 2 or 3 days and can get up to $100... There are jobs like article writing, managing a blog, etc. If I were writing these lines for a Freelance job provider, I would be getting like.. $1 to $3 for every 500 words in an average... :-)
Anyway, I stopped my Freelance jobs and I assure you that am not maintaining this blog for money (:-D)... I jus felt that if I could share a few things which I know, it would definitely be helpful at least for some people... Already few of my friends started working in Freelancer and I feel happy to hear them doing good... getting a few dollars every day...
If you take a look at the above picture, u can find that the website has 1.5 million users... Out of which 1 million would be freelancers and the rest, employers... You can imagine how competitive it would be to bid and win a job... Anyway wish u all luck, if you're going to try it...

http://www.pondiuni.edu.in/examination.php

Its Alumni Time...

Hmmm..... Its time to shift our names from the attendance registers to Alumni registers... I think entering our names in the list is the first (and last for some people) big mission as an Alumni of the college... Visit the link and register... http://www.pec.edu/pecaa1/Ainput.php
We cannot claim ourself as a part of alumni by just carving our names in the walls and benches in our college... Anyway registering or not registering, makes no difference for most of us... We've all the contacts of those who we need... right in our hands... So why do we go to that page n look for someone, right?? Will there be any use of this alumni list??? Well, I don know the answer.. But it feels good whenever I see my name in that list... that am still a part of PEC...
BTW, I've decided to write at least 2 posts a day... I'll get into some serious useful stuffs very soon and no more blah-blah blabbering posts... As of now am jus waitin for some audience... And guys.. Feedback???

Tuesday, June 8, 2010

Happy B'day Hema & Goodbye Arav.B!

Bara @ Aravind.B left to Hyderabad today... A big blow for us coz hez the one who used to organize the cricket matches n the every night hang out... Anyway I wish I go with him just to see how the 3 Cordys guyz spend time together... would be real fun seeing Srinath Alla and B fighting... B was my first friend in my class when we all entered the first years as strangers...(apart from my school friends). We both went together to collect PECOFES'06 sponsors which brought us really together in life...
Happy B'day Hemachandran, The Baddest of all Back Bench Baddies... Guys.. u should see him playing cricket... There are times when i wondered how he whacks the ball outta the ground everytime... Even a couple of days earlier, B was speaking of some Bet match or smthg where this guy saved the day...
Hope we're in touch forever...
P.S. Sorry Neeraj... for unncessarily "bringing you in the Picture" :D.. I couldn't get a better pic of these two guys... Maybe I'll ve a page for u some time later...

How it all started???


Could u recognize this photo??? Yes, its our college OAT. Nice pic by Goutam Mohan. With our college getting over and trying to dump all the memories in some corner of my little brain, I was thinking how to spend the holidays till my MBA classes start... During the sem exams, I downloaded loads of movies and games hoping that they'll keep me busy for 2 months. But all my hopes were shattered when I completed almost all of them in 15 days... Anyway, the new Facebook fever among friends, the regular cricket and daily-beach-hang-out kept me alive... Sometimes I even slept off nearly 16 hours a day, especially when power went down.
But, like Aravind.B used to say, I dint want to waste my "productive" hours... :D So did some tech stuffs for a couple of days... But with Archana gone, these tech stuffs disappeared... And with Aravind and Abhinav leaving today, no more cricket and beach hang outs too... So was planning how to kill time...
A couple of days back, when I was chatting with Manoj MSR, I said that I couldn't beat boredom, he asked, "You got Internet right? What else do you need? I don even have Internet here". I told him that it makes no difference for which he replied, "Why don you write a blog?". I said that I'll write but no one will read it. He replied, " Why man? I'll definitely read...". Maybe this reply is the real starter of this blog. I just thought... if a guy in Andhra who could at least tell that he'll go to net center, spend 10 bucks to read some blog (which, am sure he s not goin to do anyway), then it is definitely worth to spend a few hours each day and recall the memories...

My First Post!



Hello guys... First of all I welcome u all to my Blog... Jus' created a new account at 3 am, June 8, 2010... I've commented on various posts in various blogs from different accounts (CSE guys might be aware of it :D), but this is my very first post as a blogger... This blog will be logging some of my memories as of now and the purpose might change in the future... Phew.. It's so difficult to end up with a blog name... Whatever name I give, some empty blog in that name already exist... That explains me why FCP blogs come with weird names everytime... And there is a small story behind the starting of this blog, which is explained in the next post...