background preloader

Hacking

Facebook Twitter

Articles about security breaches & security

Red alert: HTTPS has been hacked | Security. September 26, 2011 Follow @rogeragrimes Only a handful of exploits per decade reveal a vulnerability that is truly significant. Thai Duong and Juliano Rizzo's BEAST (Browser Exploit Against SSL/TLS) attack will rank among them because it compromises the SSL and TLS browser connections hundreds of millions of people rely on every day. BEAST cannot break the latest version of TLS -- the current standard based on SSL -- but most browsers and nearly all websites that support secure connections rely on earlier versions of the SSL and TLS protocols, which are vulnerable to BEAST attack.

The BEAST tool, presented last Friday at the 2011 Ekoparty Security Conference in Argentina, made real a theoretical SSL/TLS vulnerability first documented 10 years ago. MitM attacks are fairly easy to do when the attacker and victim are located on the same local network (such as wireless networks, VPNs, or corporate LANs). -= EthicalHack.org =- top ten apps. Index of /content/downloads/pdf. Root in Under Five Article at HellBound Hackers. Hey everyone. This article is about hacking schools. Since any longer than five minutes, you risk getting caught, this is *hopefully* going to teach you how to get root in five minutes or less. So, lets get started. * Dedicated to H4xguy * To those of you that think by getting root, you own the school, sorry to disapoint you.

But, by getting root, you only own the comp your on. There is however, a way to get domain root, which I\'ll discuss later. Your first step is to try and get access to DOS. Code \"start>all programs>accessories>cmd\" or \"start>run> type in \'cmd\'\" If neither of those work, create a new text document.

If that didn\'t work, instead of typing \"cmd\", type @echo off echo hello pause Open it, if you see \"hello\", create a new text document and name it \"anything.reg\", right click and edit. This changes the registry value that blocks dos. If it didn\'t work because for whatever reason, you can\'t create a .bat, open up microsoft word, which I\'m sure all schools have. Top 10 Password Crackers. SecTools.Org: Top 125 Network Security Tools For more than a decade, the Nmap Project has been cataloguing the network security community's favorite tools. In 2011 this site became much more dynamic, offering ratings, reviews, searching, sorting, and a new tool suggestion form . This site allows open source and commercial tools on any platform, except those tools that we maintain (such as the Nmap Security Scanner , Ncat network connector , and Nping packet manipulator ).

We're very impressed by the collective smarts of the security community and we highly recommend reading the whole list and investigating any tools you are unfamiliar with. Click any tool name for more details on that particular application, including the chance to read (and write) reviews. 12 tools Aircrack is a suite of tools for 802.11a/b/g WEP and WPA cracking. Version 1.1 on April 24, 2010 (2 years, 5 months ago). crackers wireless version 4.9.43 on Dec. 3, 2011 (10 months ago). sniffers traffic-monitors fuzzers Categories. Hacking and Security Articles / Tutorials / White Papers at HellBound Hackers.