Sunday, September 23, 2018

WORLDLINK FIBER ROUTER IS VULNERABLE

             Bad news for World-link Customer

If you are using worldlink internet than anytime yourc computer can be compromised or can be infected with RAT, Ransomware etc.All worldlink routers have DnsMasq heap buffer overflow vulnerability and main point is it can't be fixed.All this white color Router are from Huawei and it can't be updated to fix the exploit.Actually this issue was fixed in DnsMasq software version 2.78 released in October 2017 but i am surprised how tech team,Network administrator, or pentester of such a big company wouldn't notice.Funny thing is when i explained to tech team they didn't understand anything.If you have good full version anti-virus it would easily shows you the issue while scanning public and home network.I would suggest Avast Anti-Virus.  
If you like to check or find exploit yourself than you need tool call Nmap for Linux and Zenmap for Windows.You can download Zenmap here. Note down your IP address from client portal open zenmap and enter IP address on target box and in command field you will find default command loaded just add extra -Pn in-front of IP address and leave all as it is and click scan.You will find result as shown below just our IP address will be different.


  

did you notice 3rd line from last circle with red ( bind.version: dnsmasq-2.49 ) that's the exploit

With good Anti-virus you will find following result



Good luck guys your computer can be hijack anytime so be careful.

Tuesday, November 7, 2017

Creating a bootable USB drive with multiple Linux distributions

Choosing the right Linux distribution for a task is critical, and having numerous distributions on one USB drive makes this easy. Here's how you can achieve this, with Multiboot USB.

 MultiBootUSB is a software installer which allows the user to install multiple Live Linux Distros to a single USB drive/Pendrive/Flash drive and able to boot from it.
USBs can be tested without reboot using the inbuilt QEMU. 


Installation

In order to install Multiboot USB, you first must download the installer that matches your platform.
 Sometimes you might need Kali Linux? Puppy Linux? Ubuntu? Debian? The list goes on and on. What if I told you that you didn't have to choose just one, that you could create a single USB drive that would boot into your Linux distribution of choice? That's right, it's not only possible, it's quite easy. With the help of Multiboot USB, you can create a flash drive with whatever live Linux distributions you need. This tool is cross platform (you can install it on Linux or Windows) and can easily create your personal multi-distribution USB drive.
I'm going to walk you through that very process, demonstrating on windows platform

 Once the main window opens, click on the Select USB disk drop-down and choose the flash drive to be used.



 With the correct drive selected, click on the Browse button and navigate to the first ISO image you want to install. Once you've added the first distribution, click the Install distro button and Multiboot USB will do it's thing. When prompted, click Yes to proceed as soon below.

 Depending upon the distribution you are installing, the process can take anywhere from a couple of minutes to 10 minutes. One thing I've noticed is that sometimes the percentage timeline instantly jumps to 99% and then sits there for a long while—apparently, this is normal. Wait until the installation completes (you will be prompted to click OK when the installation finishes) and then go through the process again to install another live distribution as soon below.


 When you have all of your distributions installed , you can close out Multiboot USB, unmount your flash drive, and remove the device. You can now insert your Multiboot-empowered USB drive into your PC of choice and boot into one of your added live distributions.

        FOR LINUX FLATFORM

Or if your are downloding from linux platform.Once you have it downloaded, open up a terminal and issue the following command (from within the directory housing the downloaded file):
sudo dpkg -i python3-multibootusb_XXX_all.deb
Where XXX is the release number.
Chances are, that installation will error out. To fix it, issue the command:
sudo apt install -f
That's all there is to the installation. You're ready to create your first multiboot flash drive

Tuesday, October 24, 2017

New cyberattack BadRabbit hits Russia, Ukraine

A ransomware campaign called BadRabbit has hit Russia's Interfax news agency and caused flight delays at Odessa airport in Ukraine. It follows similar attacks in May and June that caused billions in damages.

Over half of the targets of the BadRabbit malware on Tuesday were in Russia, while others were in Ukraine, Bulgaria, Turkey and Japan, according to US-based cybersecurity firm ESET. There were some reports that computers in Germany had also been targeted.
ESET's Robert Lipovsky said the attacks were disturbing because they quickly infected critical infrastructure, which indicated they were part of a "well-coordinated" campaign.


The BadRabbit ransomware is a virus which locks up infected computers and sends messages to victims to pay a ransom to restore access.
One of the targets, Russia's major news agency Interfax, said some of its services had been hit by the attack but expected them to be back online by the end of the day. However, by 11 p.m. local time (1900 UTC) it had not yet resumed service, and its internet site remained inaccessible. Two other news sites, one of which is based in St. Petersburg, were also reported to have gone offline.
"Based on our investigation, this has been a targeted attack against corporate networks, using methods similar to those used during the [NotPetya] attack," the Moscow cybersecurity and anti-virus provider Kaspersky Lab said in a statement.
BadRabbit and NotPetya
BadRabbit appeared to spread in a similar manner to the malware NotPetya virus, which infected Ukrainian government agencies and businesses in June.
NotPetya spread across the corporate networks of multinationals with operations or suppliers in Eastern Europe. The motives of that virus became unclear after researchers found there was no way for victims to recover their files, even if they paid a ransom. It appeared to be designed to cause maximum disruption to the operators of the targeted computer systems.
Odessa airport, Kyiv metro hit
Data was processed manually at Odessa airport in Ukraine throughout Tuesday, causing flight delays. The airport said via its Facebook page that its "information system" stopped working in the afternoon.
"We report that the IT system of Odessa international airport has been hit by a hacker attack. All services of the airport are working in a stricter mode," the airport said in a statement

Tuesday, September 26, 2017

Free mobile tracking application

This is the only free mobile spy application.Others are only for certain trial period.Just you need 1 min to install it to the target phone or to monitor your child. After installation just you need to put email add and password. After that you can remotely view everything facebook chat, call log, call record, even you can turn it as remote listening device, just imagine that you are holding victims mobile in your hand.

Here's the Website link you just need to register with email address and download it
Free Mobile Tracker
 or
You can directly download it from following link
Free Mobile Tracker

Sunday, September 17, 2017

Hacking Wi-Fi Password 100% garaunte with Wifislax64-1.1



Whenever newbie’s wants to learn Hacking most of them wants to learn is how to hack WiFi . I just want to say that just by hacking someone’s wifi password doesn’t make you good hacker. To hack wifi password is not so difficult it depends upon security setting, old or new router, whether WPS is enable or not..etc Most important thing is u need to have patient, but good news is if you just want to hack someone’s Wi-Fi password than its your luckyday.
        

I hope you guys have tried kali linux to hack wifi by putting wifi adapter to monitor mode, capturing handshake, and man-in-the-middle attack which is quite tricky but with Wifislax1.1 which is specially made for Wi-Fi hacking and password cracking, you can easily perform man-in-the-middle attack and 100% guarantee you can easily get Wi-Fi password. Just like kali Linux you need external Wi-Fi adapter and you need to make bootable pen drive like kali Linux procedure is same. Download wifislax1.1 from given link





Best part in Wifislax you will find lot of cracking tools including world fastest cracking tools Hashcat
There are lot of tutorial on wifislax on youtube you can go through it though you have any problem understanding it or while installing you can ask me I will be glad to help you.



Sunday, April 16, 2017

Ethical Hacking Tutorial


I hope by now you guys have installed virtual machine in your system.we will start our tutorial part by part as follows:
 
part 1:-Gathering Network and Host Information:
Scanning and Enumeration

a) Ping Sweep Techniques
           nmap Command Switches
           TCP Communication Flag Types
           Banner Grabbing and OS Fingerprinting Techniques
           Scanning Anonymously

b) Enumeration
           Null Sessions
           SNMP Enumeration
           Windows 2000 DNS Zone Transfer
part 2:System Hacking: Password Cracking, Escalating
Privileges, and Hiding Files

           The Simplest Way to Get a Password
           Types of Passwords
           Passive Online Attacks
           Active Online Attacks
          Offline Attacks
           Nonelectronic Attacks
Remaining part will be mention as we move on part by part..........