Sunday, 20 October 2013

Download torrents Without Torrent Client!



A unique online service called Torrent2exe allows users to download torrents without having to install a torrent client by converting the torrent file into a standalone EXE file. Using Torrent2exe is very simple. Copy the URL of the torrent file or browse to the location of the torrent file in your hard disk to automatically upload it to their site. Once you they have got the URL of the torrent file, they will convert it into a self extracting EXE file.
Here you get the option to select the size of the EXE file to be downloaded. Suppose you want to see a movie. What will you require? A media player and the movie. Now you get two choices.
Firstly, you download the movie and the media player, which needs to be downloaded only once. Subsequent movie downloads do not require you to download the movie player since you have already downloaded it.
However, if you move to another computer you will need to download the movie player once again. This is the "small size".
In the second choice, you download the movie along with the media player every time you download a new movie. This is the "normal size"
After you have download the converted EXE file, just run it and it will automatically start downloading the torrent.
The standalone EXE file makes it easier for people to share files and applications on the Internet. You can publish the EXE files on your site or blog to make the downloads easy for visitors, send EXE files to your friends who don't want to be bothered with installing the client.
Torrent2exe is available both as an online service and as a desktop application.

by:- jay prajapati tirora

World's 3rd Largest Chinese Bitcoin exchange hit by 100Gbps DDoS attack


n March of this year, we saw the first ever 300 Gigabit DDoS attack, which was possible due to a DNS Reflection Amplification attack against Spamhaus.

On 24 September World's 3rd Largest Bitcoin exchange BTC China, a platform where both Bitcoin and Chinese yuan are traded faced massive DDoS attack for continued nine hours, where no amplification techniques were used.
Incapsula, Cloud-based security service provider helped the Chinese Bitcoin trader to protect them from such massive denial-of-service attack and successfully mitigated the threats.

Incapsula tweeted a graph of DDoS attack last month as shown, "Yesterday we prevented a ~100Gbps DDoS. The attack's load was distributed across our 350Gbps network."
Specialist at Incapsula shared the details of the attack with TheRegister, explained "The attack against BTC China took the form of a SYN flood rather than the DNS amplification-style attack", "The attacker balanced the assault between small, high frequency SYN packets, and large, low-frequency SYN packets."

The DNS Reflection Denial of Service (DrDoS) technique exploits security weaknesses in the Domain Name System (DNS) Internet protocol, which typically have high bandwidth connections to the Internet.

But to perform such huge 100Gbps DDoS attack without DNS Reflection, it must be a network of many compromised servers with ultra high speed bandwidth. "This amount of fire power isn't cheap, or readily available, signifying a big step up in resources pulled together to launch this type of attack," according to Incapsula.

But when Incapsula came into the scene to defend BTC China, the assault was minimized safe level, "The attackers either ran out of resources or money. It's also possible they gave up after they realised they were not making headway." Incapsula co-founder Marc Gaffan said.

Even from today, China’s largest search engine Baidu has become the first service of its kind to accept payments in the Bitcoin for one of their DDoS protection services.

First ever Malware for Firefox Mobile OS developed by Researcher

Firefox OS is a mobile operating system based on Linux and Mozilla’s Gecko technology, whose environment is dedicated to apps created with just HTML, CSS, and JavaScript.

After almost two years of development, a few months back Mozilla officially launched their Firefox OS devices in stores and now the first Malware for the brand new platform is available.

Shantanu Gawde, 17-years-old, an Independent Security Researcher is going to demonstrate the very first known malware for Firefox OS at the upcoming Information Security Summit - The Ground Zero (G0S) 2013, to be held on November 7th - 10th, 2013 at The Ashok, New Delhi.

Firefox OS is different - Every app in Firefox OS including the Camera and the Dialer is a web app, i.e. a website in the form of an app. Simple! Mozilla has developed Web APIs so that HTML5 apps can communicate with the device’s hardware and Shantanu has used the same APIs intentionally to exploit the device for malicious purpose.

Basically, there are two types of Firefox OS apps: packaged and hosted. Packed apps are essentially a zip file containing all of of an apps assets: HTML, CSS, JavaScript, images, manifest, etc.

Hosted apps are just a website is the application, means you can host the app on a publicly accessible Web server, just like any other website.

His demonstration will showcase the malware app developed by him using just HTML, CSS, and JavaScript, and capability to perform many malicious tasks remotely on the device i.e. Accessing SD Card Data, Stealing Contacts, downloading-uploading Files on device, Tracking Geological location of the user etc.


"The purpose of the PoC is of course to motivate developers to ensure better security on their platforms rather than providing inspiration to those with malicious intents." he told 'The Hacker News'.


DDoS Attacks : A Serious unstoppable menace for IT security communities

It should be the busiest day of the year for your business, but your website has just disappeared off the Internet and orders have dried up. If this happens to you, then you likely just become yet another victim of a distributed denial of service (DDoS) attack.

By now, everyone who uses the Internet has come across DDoS attacks. It is one of the oldest attack technologies on the web, and a popular way of paralyzing the huge data centers.

Just yesterday we have reported about a massive 100Gbps DDoS attack that hit World's 3rd Largest Chinese Bitcoin exchange for 9 hours.

Arbor Networks, a leading provider of DDoS and advanced threat protection solutions, today released data on global distributed denial of service (DDoS) attack trends for the first three quarters of 2013, revealed that this kind of attack still represents a serious menace for IT security communities. 


The document provides an interesting overview into Internet traffic patterns and threat evolution. The data show a constant growth in the number or attacks and related efficiency, the experts observed a meaningful increase (32%) for malicious traffic, the IPv4 traffic reached 69Tbps of peak, up from 47Tbps in registered in Q2.

DDoS attacks have been around since the inception of the web, but have evolved over time to become more sophisticated and powerful. The data show that the DDoS continues to be a global threat, with alarming increases in attack size this year and the last quarter was included in the 3-3.5 Gbps range.

The graph below shows the average monthly Mbps of attacks and peak Gbps of the attacks, both picture confirm the significant growth of the cyber threat


Qatar is Down ! Syrian Electronic Army hijacks major Qatar websites

The Syrian Electronic Army (SEA) is at it again. The hacktivist group, who are known to back Syrian President Bashar al-Assad, has hacked many high profile Qatar based websites, including the Google, Facebook, Aljazeera and Government - Military websites.

Starting at about 4:25 am (GMT 5:30+), the Syrian Electronic Army shared this message on Twitter: Qatar is #down and  following that, they went about switching off government and private websites using the .qa extension.

The domains are managed by Qatar’s Ministry of Information and Communication (ictQatar). Apparently, the Syrian Electronic Army gained access to Qatar Domain Registrar (portal.registry.qa) and modifies the DNS entires to redirects the targeted websites to servers controlled by hackers serving defacement page, that include a picture of Assad and the groups logo, as shown.

The List of the targeted websites is posted on Twitter by hackers - these include:
  • moi.gov.qa
  • facebook.qa
  • gov.qa
  • vodafone.qa
  • aljazeera.net.qa
  • google.com.qa
  • ooredoo.com.qa
  • diwan.gov.qa
  • qaf.mil.qa
  • mofa.gov.qa

Wednesday, 16 October 2013

USING GOOGLE.COM TO FIND USERNAMES + PASSWORDS

Prerequisites:
1. A modern webbrowser and a internet.
2. Time

Method 1: Facebook
We will be using a google dork to find usernames and passwords of many accounts including Facebook!

The Dork: intext:charset_ test= email= default_persist ent=

Enter that into Google, and you will be presented with several sites that have username and passwords lists!

Method 2: WordPress!
This will look for WordPress backup files Which do contain the passwords, and all data for the site!

The Dork: filetype:sql inurl:wp-conten t/backup-*

Method 3: WWWBoard!
This will look for the user and passwords of WWWBoard users

The Dork: inurl:/ wwwboard/ passwd.txt

Method 4: FrontPage!
This will find all users and passwords, similar to above.

The Dork: ext:pwd inurl:(service | authors | administrators | users)"# -FrontPage-"

Method 5: Symfony
This finds database information and logins

The Dork: inurl:config/ databases.yml -trac -trunk -"Google Code"-source -repository

Method 6: TeamSpeak
This will search for the server.dbs file 
(A Sqlite database file With the SuperAdmin username and password)

The Dork: server-dbs"intitle:index of"

Method 7: TeamSpeak 2
This will find the log file which has the Super Admin user and pass in the Top 100 lines. Look for"superadmin account info:"

The Dork: "inurl:Teamspea k2_RC2/ server.log"

Method 8: Get Admin pass
Simple dork which looks for all types of admin info

The Dork: "admin account info"filetype:log

Method 9: Private keys
This will find any .pem files which contain private keys.

The Dork: filetype:pem pem intext:private

And the Ultimate one, the regular directory full of passwords.

Method 10: The Dir of Passwords!
Simple one!

The Dork: intitle:"Index of..etc"passwd

Tuesday, 15 October 2013

Antivirus firm ESET and BitDefender website Hijacked by Pro-Palestinian Hackers

A pro-Palestinian hacktivist group 'KDMS Team', who recently managed to briefly hijack the Metasploit website of security firm Rapid7 and become popular after Hacking World's largest Web Hosting Network Leaseweb website and antivirus vendors AVG, Avira as well as mobile messaging service WhatsApp's websites.
Now even I have to say that - Security is just an Illusion, because just now the group aligned with Anonymous has successfully hijacked another two Antivirus firm website - ESET and Bitdefender.
The KDMS Team successfully changed the DNS records of both sites to redirect people to a website playing the Palestinian national anthem and displaying a political message under the title "You Got Pwned".

Message posted on Bitdefender and Eset website says:
Hello bitdefender
Touched By KDMS team
We was thinking about quitting hacking and disappear again ..!
But we said : there is some sites must be hacked
You are one of our targets Therefore we are here ..
And there is another thing .. do you know Palestine ?
There is a land called Palestine on the earth This land has been stolen by Zionist Do you know it ?
Palestinian people has the right to live in peace Deserve to liberate their land and release all prisoners from israeli jails We want peace Long Live Palestine
Both affected domains are registered from REGISTER.COM, INC. by companies, which is also a domain registrar for Metasploit website -- was hijacked yesterday via a spoofed change request faxed to Register.com. But the technical details on how hackers managed to hijack the ESET and Bitdefender website is not yet available, we are in contact with hackers.. Will update the article in a few hours. Stay Tuned !