Monday, 7 July 2014

NSA can spy on 98 percent of the world

Despite President Obama’s January speech limiting the scope of National Security Agency surveillance, a new Washington Post article outlines a Foreign Intelligence Surveillance Court could turn that notion on its head. The ruling allows the NSA to conduct surveillance on 193 countries around the world. Only four countries in the world are excluded from the ruling: Canada, Australia, Great Britain and New Zealand. RT Correspondent Meghan Lopez walks us through the latest revelations.

Monday, 3 March 2014

Download torrents Without Torrent Client!


A unique online service called Torrent2exe allows users to download torrents without having to install a torrent client by converting the torrent file into a standalone EXE file. Using Torrent2exe is very simple. Copy the URL of the torrent file or browse to the location of the torrent file in your hard disk to automatically upload it to their site. Once you they have got the URL of the torrent file, they will convert it into a self extracting EXE file.
Here you get the option to select the size of the EXE file to be downloaded. Suppose you want to see a movie. What will you require? A media player and the movie. Now you get two choices.
Firstly, you download the movie and the media player, which needs to be downloaded only once. Subsequent movie downloads do not require you to download the movie player since you have already downloaded it.
However, if you move to another computer you will need to download the movie player once again. This is the "small size".
In the second choice, you download the movie along with the media player every time you download a new movie. This is the "normal size"
After you have download the converted EXE file, just run it and it will automatically start downloading the torrent.
The standalone EXE file makes it easier for people to share files and applications on the Internet. You can publish the EXE files on your site or blog to make the downloads easy for visitors, send EXE files to your friends who don't want to be bothered with installing the client.
Torrent2exe is available both as an online service and as a desktop application.

Saturday, 1 March 2014

British spies said to intercept Yahoo webcam images

San Francisco:  A British intelligence agency collected video webcam images - many of them sexually explicit - from millions of Yahoo users, regardless of whether they were suspected of illegal activity, according to accounts of documents leaked by Edward J. Snowden.

The surveillance effort operated by Britain's Government Communications Headquarters, or GCHQ, was code-named Optic Nerve. Images from Yahoo webcam chats were captured in bulk through the agency's fiber-optic cable taps and saved to a GCHQ database.

It is unclear how much of the data was shared with U.S. officials at the National Security Agency, although the British ran queries of the data using a search tool provided by the NSA called XKeyscore, according to a report Thursday by The Guardian.

The report did not indicate whether the agency also collected webcam images from similar services, such as Google Hangouts or Microsoft's Skype. The Guardian did say the British intelligence agency was studying the possibilities of using the cameras in Microsoft's Kinect devices, which are used with its Xbox game consoles, to spy on users.

Because the British agency lacked the technical means to filter out the content of British or U.S. citizens, and because it faces fewer legal restrictions than the NSA in the United States, documents show that the GCHQ was collecting vast numbers of webcam images. In one six-month period in 2008, the agency collected webcam images from more than 1.8 million Yahoo user accounts globally, including those of Americans, according to the Guardian report.

The British agency restricted its collection by saving one image every five minutes from users' feeds, partly to avoid overwhelming its servers. It also restricted its image searches to so-called metadata, information that tells analysts what content the files contain, such as the sender and receiver's usernames, file types, time, date and duration of their webcam chat.

But analysts were still able to view the contents of webcam chats between users whose usernames matched those of surveillance targets. One document instructs analysts that they are allowed to view "webcam images associated with similar Yahoo identifiers to your known target."

The agency also apparently experimented with facial-recognition technology, which searched webcam images for faces resembling those of GCHQ targets. One undated document shows that the agency shuttered this capability. It was unclear if or when it was resurrected. It is also unclear if the NSA also had access to the metadata and images.

Yahoo said in a statement Thursday that it was not aware of the program and expressed outrage at published reports.

"This report, if true, represents a whole new level of violation of our users' privacy that is completely unacceptable, and we strongly call on the world's governments to reform surveillance law consistent with the principles we outlined in December," the company said in a statement. "We are committed to preserving our users' trust and security and continue our efforts to expand encryption across all of our services."

Microsoft also said it had never heard of the surveillance program or the British government's interest in using the Kinect camera for spying. "However, we're concerned about any reports of governments surreptitiously collecting private customer data," the company said in a statement. "That's why in December we initiated a broad effort to expand encryption across our services and are advocating for legal reforms."

Companies like Yahoo, Google and Microsoft that operate Internet services send vast amounts of data - including video and webcam chats - through the fiber-optic lines between their data centers around the world. After recent disclosures about government tapping of some such lines, all three companies have said they are working to encrypt those links between their data centers to thwart spying.

Yahoo has said that encryption will be in place for all of its services by March 31. Google has encrypted its video chat services, including Hangouts, since at least 2010.

In response to earlier concerns about potential government surveillance of the Kinect camera, Microsoft said last year that it would allow users to turn it off. It also said it did not give any government broad access to Skype data or security technologies.

Documents dated between 2008 and 2010 show the GCHQ was collecting still images from Yahoo webcam chats and storing them in an agency database. The GCHQ's Optic Nerve program, which began as a prototype, was still active in 2012, according to an internal GCHQ document.

The program posed unique challenges. According to one GCHQ document, between 3 and 11 percent of collected Yahoo webcam images contained sexually explicit content. "Unfortunately, there are issues with undesirable images within the data," one GCHQ document reads. "It would appear that a surprising number of people use webcam conversations to show intimate parts of their body to the other person."

An internal agency survey of 323 Yahoo usernames found that 7.1 percent of those images contained "undesirable nudity."

The same document also notes that because Yahoo users can broadcast webcam streams to more than one user, without a reciprocal stream, the service "appears sometimes to be used for broadcasting pornography."

Collecting and storing content from video sources has long posed a dilemma for the NSA and its intelligence counterparts because files are often larger and more difficult to store. Also, the video files often contain pornography, family videos, commercials and content of questionable intelligence value.

In its article, The Guardian described one presentation in which GCHQ analysts discuss the possibility in spying on webcam traffic from Microsoft's Xbox 360's Kinect camera, claiming it generated "fairly normal webcam traffic" and was being considered for part of a wider surveillance program.

Previous disclosures from documents released by Snowden show that the NSA was actively exploring the video capabilities of game consoles for surveillance and that NSA analysts infiltrated virtual games like "World of Warcraft" and "Second Life" to snoop on targets.

A GCHQ spokesman cited "a longstanding policy that we do not comment on intelligence matters."

"Furthermore," the spokesman, who declined to be identified, said, "all of GCHQ's work is carried out in accordance with a strict legal and policy framework which ensures that our activities are authorized, necessary and proportionate, and that there is rigorous oversight, including from the secretary of state, the Interception and Intelligence Services commissioners and the Parliamentary Intelligence and Security Committee. All our operational processes rigorously support this position."

Vanee Vines, an NSA spokeswoman, said in a statement: "The National Security Agency does not ask its foreign partners to undertake any intelligence activity that the U.S. government would be legally prohibited from undertaking itself. NSA works with a number of partners in meeting its foreign intelligence mission goals, and those operations comply with U.S. law and with the applicable laws under which those partners operate.

"A key part of the protections that apply to both U.S. persons and citizens of other countries is the mandate that information be in support of a valid foreign intelligence requirement, and comply with U.S. attorney general-approved procedures to protect privacy rights. Those procedures govern the acquisition, use and retention of information about U.S. persons."

The Guardian article referred to an internal GCHQ document that considered the legalities of the Optic Nerve program as new capabilities, like automated facial matching, were developed. But the article said that the agency would wait to consider legalities until experimental capabilities were fully developed.

As The Guardian ran its story, global security experts and intelligence officials were in San Francisco this week at the RSA Conference on cybersecurity.

"We have to have some understanding about what we are going to collect and what we are not going to collect," Richard Clarke, former U.S. counterterrorism czar, said. "If there are things that we think are so embarrassing that they wouldn't pass the 'front page test,' then don't do it."

Thursday, 27 February 2014

Photo: The country has the potential to build a $100-billion software product industry by 2025, according to think tank Indian Software Product Industry Roundtable (iSPIRT).

According to IT industry body Nasscom, the current size of the software product industry is $2 billion. For the projected growth to be accomplished, “purposeful” action needs to be taken by the Government as well as the industry, iSPIRT said in a report.

Industry analysts, however, said the $1-billion target is “far fetched.”

Almost a year after breaking away from the software industry body Nasscom, iSPIRT has projected that the India has the potential to build a $100-billion industry by 2025, a target which is far fetched, according to industry watchers.

However, if this potential of rivalling the existing $100 billion IT industry has to happen, ‘purposeful’ action needs to be taken by the Government and the industry, the report added.
The country has the potential to build a $100-billion software product industry by 2025, according to think tank Indian Software Product Industry Roundtable (iSPIRT).

According to IT industry body Nasscom, the current size of the software product industry is $2 billion. For the projected growth to be accomplished, “purposeful” action needs to be taken by the Government as well as the industry, iSPIRT said in a report.

Industry analysts, however, said the $1-billion target is “far fetched.”

Almost a year after breaking away from the software industry body Nasscom, iSPIRT has projected that the India has the potential to build a $100-billion industry by 2025, a target which is far fetched, according to industry watchers.

However, if this potential of rivalling the existing $100 billion IT industry has to happen, ‘purposeful’ action needs to be taken by the Government and the industry, the report added.

Saturday, 8 February 2014

Hackers are three types:-
 

1.    White hat hacker
2.    Gray hat hacker 
3.    Black hat hacker

White Hat and Grey Hat Hacker & What is the Real Difference?
 
What is worse, the public is not able to understand terms like grey hat, white hat, Linux OS, or cracker.
However, the truth is that the subculture of the hacker world is more complex than we think. Especially if we consider that, these are very intelligent people.


So, what is ethical hacking white hat and how does it differentiate from grey hackers? The only way to find out is to submerge ourselves in the world of hackers and understand, at least, the most basic concepts. 

  


What Is A White Hat Hacker?
 
A hacker can be a wiz kid who spends too much time with computers and suddenly finds himself submerged in the world of  cyber-security or criminal conspirators. On the other hand, he can be a master criminal who wants to obtain huge amounts of money for him, or even worse, dominate the world.
In the movie Matrix, the concept of hackers changed a bit. Although the agents of the Matrix considered them terrorists, the truth is that they were rebels fighting for the liberty of humanity. Things do not need to reach that extreme, though. We are not at war with intelligent ma chines so that kind of scenario is a bit dramatic.

Therefore, a hacker is an individual who is capable of modifying computer hardware, or software. They made their appearance before the advent of computers, when determined individuals were fascinated with the possibility of modifying machines. For example, entering a determine code in a telephone in order to make free international calls.

 
 When computers appeared, this people found a new realm where they could exploit their skills. Now they were not limited to the constraints of the physical world, instead, they could travel through the virtual world of computers. Before the internet, they used Bulletin Board Systems (BBS) to communicate and exchange information. However, the real explosion occurred when the Internet appeared.

Today, anyone can become a hacker. Within that denomination, there are three types of hackers. The first one is the black hacker, also known as a cracker, someone who uses his computer knowledge in criminal activities in order to obtain personal benefits. A typical example is a person who exploits the weaknesses of the systems of a financial institution for making some money.

On the other side is the white hat hacker. Although white hat hacking can be considered similar to a black hacker, there is an important difference. A white hacker does it with no criminal intention in mind. Companies around the world, who want to test their systems, contract white hackers. They will test how secure are their systems, and point any faults that they may found. If you want to become a hacker with a white hat, Linux, a PC and an internet connection is all you need.



Grey Hat Hackers
A grey hat hacker is someone who is in between these two concepts. He may use his skills for legal or illegal acts, but not for personal gains. Grey hackers use their skills in
order to prove themselves that they can accomplish a determined feat, but never do it in order to make money out of it. The moment they cross that boundary, they become black hackers.
For example, they may hack the computer network of a public agency, let us say, NOAA. That is a federal crime.

If the authorities capture them, they will feel the long arm of justice. However, if they only get inside, and post, let us say, their handle, and get out without causing any kind of damage, then they can be considered grey hackers.

If you want to know more about hackers, then you can attend one of their annual conventions. Every year, hackers from all over the US, and from different parts of the world, reunite and meet at DEF CON. These conventions are much concurred. In the last one, 6,600 people attended it.

Every year, DEF CON is celebrated at Las Vegas, Nevada. However, hackers are not the only ones who go to this event. There are also computer journalists, computer security professionals, lawyers, and employees of the federal government. The event is composed by tracks of different kind, all of them related, in some way, to the world of hackers (computer security, worms, viruses, new technologies, coding, etc). Besides the tracks, there are contests that involve hacking computers, l ock picking and even robot related events. Ethical hacking, white hat hacking or whatever names you wish to use, at the end, it has a purpose: to protect the systems of organizations, public or private, around the world. After all, hackers can now be located anywhere, and they can be counted by the millions. Soon, concepts like white hat, linux operating system or grey hat will become common knowledge. A real proof of how much has our society been influenced by technology.



Black Hat Hackers

Black hat hackers have become the iconic image of all hackers around the world. For the majority of computer users, the word hacker has become a synonym for social misfits and criminals.
Of course, that is an injustice created by our own interpretation of the mass media, so it is important for us to learn what a hacker is and what a black hacker (or cracker) does. So, let's learn about black hat techniques and how they make our lives a little more difficult.
Black hat is used to describe a hacker (or, if you prefer, cracker) who breaks into a computer system or network with malicious intent. Unlike a white hat hacker, the black hat hacker takes advantage of the break-in, perhaps destroying files or stealing data for some future purpose. The black hat hacker may also make the exploit known to other hackers and/or the public without notifying the victim. This gives others the opportunity to exploit the vulnerability before the organization is able to secure it.

 
What Is Black Hat Hacking?
 
A black hat hacker, also known as a cracker or a dark side hacker (this last definition is a direct reference to the Star Wars movies and the dark side of the force), is someone who uses his skills with a criminal intent. Some examples are: cracking bank accounts in order to make transfernces to their own accounts, stealing information to be sold in the black market, or attacking the computer network of an organization for money.

Some famous cases of black hat hacking include Kevin Mitnick, who used his black hat hackers skills to enter the computers of organizations such as Nokia, Fujitsu, Motorola and Sun Microsystems (it must be mentioned that he is now a white hat hacker); Kevin Poulsen, who took control of all the phone lines in Los Angeles in order to win a radio contest (the prize was a Porsche 944 S2); and Vladimir Levin, which is the handle of the mastermind behind the stealing of $10'000,000 to Citigrou. 

Wednesday, 11 December 2013

Create your own FUD trojan Stub

Create your own FUD trojan Stub

So, some crypters and viruses are now detected as hacktools by antiviruses and are of no use now. Bunn has created Fly Crypter which has unique stub generator. So, you can create your own stub and so your crypter becomes your own private version crypter because you can assign and use new stubs to viruses and thus helping your virus program to remain FUD.

How to make Virus undetectable:

Usually, Viruses are detected because their stubs are detected as viruses by AVs. So, if you change stub of viruses, most of times, they become undetectable to antiviruses. So, I am explaining you how to create your own stub and how to use this your self-created stub to make your virus FUD (Fully UnDetecatable) to antiviruses. This Crypter is tested by me and found working well on Windows XP and Windows Vista.

1. Free Download Fly Crypter + Unique Stub Generator software.Here
Password: techotips.blogspot.com

2. Run AUSG.exe file on your computer to see:
Make virus trojan FUD
Make virus trojan FUD

3. Select "Str. Encr." and "Stub Encryption" options as I have selected above. Now, hit on "Generate my Stub". Allow some time for AUSG.exe to generate stub for you. After sometime, you'll get a confirmation message.

4. Now, hit on "Compile my stub" and you'll again get message like this:
Compile stub
Compile stub

How to make your own stub

Now, browse to your newly created stub "XlbAtKQ.exe" and hit OK. Select any password level and hit OK.

8. Again Right Click -> Crypt files and enter the name and path where you wanna save the newly created crypted virus file.

9. Now, you have your crypted file ready to hack passwords and access pc remotely for you. Go to novirsthanks.org and scan your stub and crypted file. You will find the detection rate decreased significantly.

Note 1: For AUSG.exe to compile your stub, you should haveMicrosoft Visual basic 6 installed on your computer.

Note 2: If you aren't getting FUD stub, just select the antiviruses you wanna bypass. Now, create stubs and start scanning them at novirusthanks.org. This method is used to collect and group stubs undetectable by specific antiviruses. Here is one stub which is not detected by most famous AVs as today's scanner results indicate:
- Avira
- AVG
- Avast
- Bit Defender
- Kaspersky
- Quick Heal
- Panda

Free Download this Stub over 
Password: techotips.blogspot.com

Update: This method is not working 100%. As some of the readers have reported this to be not working with many keyloggers like Ardamax keylogger, General keylogger and so. (Thanks George, Riya and Central2000 for your valuable feedback). So friends, try this out with your server whether if this works and please mention your feedback. If this is not working for you, try out crypter softwares.

Develop your own stubs. Now, all resides on you to make your trojans and viruses undetectable, since you are now able to develop your own stubs.

So friends, I hope this tutorial on how to make your own stubs to make your virus trojan undetectable by antiviruses will be helpful to you. If you have any problem in using Fly Crypter and AUSG.exe files to make your own stubs, please mention it in comments.

Saturday, 7 December 2013

White South Africans' uneasy love affair with Nelson Mandela

KALK BAY, South Africa: The sidewalk blackboard outside the pizza parlour in South Africa's quaint seaside village Kalk Bay, inhabited mainly by whites, changed for the first time in months on Friday.

"RIP Tata Madiba", it read the day after the aged liberation leader's death, using Nelson Mandela's clan name and the affectionate "tata" (daddy).

The other side carried a quote from Mandela encouraging people of different racial groups to love one another.

The thoughtful homily was a variation on the usual trite inspirational offering: "A day without wine is a day without sunshine."

This portrays the respect "new" South Africa's whites harbour for the revered statesman.

But it also glosses over historical distrust of the "terrorist" imprisoned for 27 years, then suddenly lauded for a lifetime of peaceful struggle.

It didn't fit with the image white authorities had sketched of Mandela during apartheid.

Outside the nearby Holy Trinity Anglican Church, which dates back to early colonial days, the beautiful lychgate was adorned with posters with images of Mandela and some of his famous sayings.

On the main street women in short shorts jogged past antique shops and fashion boutiques, while in the background could be heard the whump of cannon fire from the nearby Simon's Town naval base.