Wednesday, 24 July 2013
Tips for a secure password
The first step in protecting your online privacy is creating a safe password - i.e. one that a computer program or persistent individual won't easily be able to guess in a short period of time. To help you choose a secure password, we've created a feature that lets you know visually how safe your password is as soon as you create it.
Tips for creating a secure password:
Include punctuation marks and/or numbers.
Mix capital and lowercase letters.
Include similar looking substitutions, such as the number zero for the letter 'O' or '$' for the letter 'S'.
Create a unique acronym.
Include phonetic replacements, such as 'Luv 2 Laf' for 'Love to Laugh'.
Things to avoid:
Don't reuse passwords for multiple important accounts, such as Gmail and online banking.
Don't use a password that is listed as an example of how to pick a good password.
Don't use a password that contains personal information (name, birth date, etc.)
Don't use words or acronyms that can be found in a dictionary.
Don't use keyboard patterns (asdf) or sequential numbers (1234).
Don't make your password all numbers, uppercase letters or lowercase letters.
Don't use repeating characters (aa11).
Tips for keeping your password secure:
Never tell your password to anyone (this includes significant others, roommates, parrots, etc.).
Never write your password down.
Never send your password by email.
Periodically test your current password and change it to a new one.
Tips for creating a secure password:
Include punctuation marks and/or numbers.
Mix capital and lowercase letters.
Include similar looking substitutions, such as the number zero for the letter 'O' or '$' for the letter 'S'.
Create a unique acronym.
Include phonetic replacements, such as 'Luv 2 Laf' for 'Love to Laugh'.
Things to avoid:
Don't reuse passwords for multiple important accounts, such as Gmail and online banking.
Don't use a password that is listed as an example of how to pick a good password.
Don't use a password that contains personal information (name, birth date, etc.)
Don't use words or acronyms that can be found in a dictionary.
Don't use keyboard patterns (asdf) or sequential numbers (1234).
Don't make your password all numbers, uppercase letters or lowercase letters.
Don't use repeating characters (aa11).
Tips for keeping your password secure:
Never tell your password to anyone (this includes significant others, roommates, parrots, etc.).
Never write your password down.
Never send your password by email.
Periodically test your current password and change it to a new one.
Tuesday, 23 July 2013
Hack Any gmail account
Getting Straight to the tut
step 1: first signout of your gmail account .
step 2: go to "I Cannot Access My Account " tab which is below the password field
step 3: go to Yopmail and enter any random name eg:ron
and then click check inbox
and leave it open.
step 4: On "I Cannot Access My Account " page in Gmail just click forgot my username and go to username recovery page.
Step 5: Enter The Yopmail email you just opened eg :
Step 6: now click check for new emails tab in yopmail you will get all the gmail id's associated with it eg you'll get some gmail id's like xx@gmail.com copy that id
step 7: just go again to the "I Cannot Access My Account " in gmail and this time choose forgot my password and go to password recovery page
step 8:Now Enter The Gmail Id You Copied xx@gmail.com in username
fill the captcha and everything
step9: If The Gmail Password recovery ever asks a security question then no need to panic !
look below the security question there will be a tab link send the reset password link to my recovery email
step 10:just go to the yopmail inbox again and click on the link gmail posted and reset their gmail password
VOILA !! You Just hacked A Gmail Account
Posted by (HaXoR)
step 1: first signout of your gmail account .
step 2: go to "I Cannot Access My Account " tab which is below the password field
step 3: go to Yopmail and enter any random name eg:ron
and then click check inbox
and leave it open.
step 4: On "I Cannot Access My Account " page in Gmail just click forgot my username and go to username recovery page.
Step 5: Enter The Yopmail email you just opened eg :
Step 6: now click check for new emails tab in yopmail you will get all the gmail id's associated with it eg you'll get some gmail id's like xx@gmail.com copy that id
step 7: just go again to the "I Cannot Access My Account " in gmail and this time choose forgot my password and go to password recovery page
step 8:Now Enter The Gmail Id You Copied xx@gmail.com in username
fill the captcha and everything
step9: If The Gmail Password recovery ever asks a security question then no need to panic !
look below the security question there will be a tab link send the reset password link to my recovery email
step 10:just go to the yopmail inbox again and click on the link gmail posted and reset their gmail password
VOILA !! You Just hacked A Gmail Account
Posted by (HaXoR)
Saturday, 20 July 2013
How to change the password of any pc without knowing the current one
Changing computers User Password
Without Knowing the Current
Password
If you want to change the user
password on your Windows compute
but you don’t know what the current
password is, there is an easy way to
do this. First of all, the user that you
are on has to be an administrator
user. To determine what type of user
your are logged in with go to Start >
Control Panel > User Accounts. At the
bottom of the window you will see
the different users that are on your
computer. Find your user and under
the user name it will say what type of
user account you are. Your user
needs to be a computer adminstrator
to change the password without
knowing the current password.
Let’s get started!
1. Click on the Start button and
select “Run”
The Run window will appear. Type
into it the text, “cmd” (without the
quotes). Click OK
2. The CMD window nd will appear.
Type “net user”
A list of all the users that are on the
computer will appear.
3. Type the following: net user
<enter user name here without these
brackets> *
For example, if the user I want to
change passwords for is Mike, I would
type in:
net user Mike *
4. Press enter and you will be asked
to type in a new password.
Type in your new password. The
cursor will not move nore will it seem
like anything is happening but your
new password will be entered.
5. You will be asked to confirm your
new password. Enter it again and
press enter.
Congratulations, you have just
changed the password of your
Windows user without knowing the
current password!Posted by (HaXoR)
Without Knowing the Current
Password
If you want to change the user
password on your Windows compute
but you don’t know what the current
password is, there is an easy way to
do this. First of all, the user that you
are on has to be an administrator
user. To determine what type of user
your are logged in with go to Start >
Control Panel > User Accounts. At the
bottom of the window you will see
the different users that are on your
computer. Find your user and under
the user name it will say what type of
user account you are. Your user
needs to be a computer adminstrator
to change the password without
knowing the current password.
Let’s get started!
1. Click on the Start button and
select “Run”
The Run window will appear. Type
into it the text, “cmd” (without the
quotes). Click OK
2. The CMD window nd will appear.
Type “net user”
A list of all the users that are on the
computer will appear.
3. Type the following: net user
<enter user name here without these
brackets> *
For example, if the user I want to
change passwords for is Mike, I would
type in:
net user Mike *
4. Press enter and you will be asked
to type in a new password.
Type in your new password. The
cursor will not move nore will it seem
like anything is happening but your
new password will be entered.
5. You will be asked to confirm your
new password. Enter it again and
press enter.
Congratulations, you have just
changed the password of your
Windows user without knowing the
current password!
Tuesday, 16 July 2013
How to know someone's ip adress
In many cases, it's desired to know the IP address of someone in the reconnaissance phase. The first question to ask is what information do I have about this person. In most cases it's possible that you have the email or IM of the target. First let's discuss the methods:
Method 1
if you have a web server hosted someplace where you can see its logs then it's very easy to send someone a URL of an image or any webpage hosted on your web server (http://123.123.123.123/veryfunnyimage.jpg) whenever this page is visited the web server keeps a log of who visited that page (IP address, time, browser, OS ... and lots of more info) where you can check later to collect IP addresses. if
Method 2
sometimes people get freaked out from addresses that have ip addresses in the URL so having your webserver with a domain name would really help the person you sent the URL to press on the link (www.mywebsite.com/veryfunnyimage.jpg)
Method 3
Some paranoid people don't open links to unknown sites. so here comes the cool trick. you can embed the image in a post of yours in a known site that allows HTML tags with image sources like < img src = (your image URL). in this case the URL you are going to send to the person is a link to a known website but the website contains another link to your web server. And whenever someone views this page on the known website, the "img src" link is invoked and voila!, you have a log entry on your webserver.
Method 4
Some Ultra paranoid people don't open links at all!! for these people I use my old trick. I send an email to the target that looks important to him (depending on the target actually and what's important to him). This email is in HTML format and contains a tag that links to an image on my webserver (probably a white image not to attract attention). Now upon merely opening the email, my webserver is invoked and a log entry is saved about the persons current IP address.
Note that this method only works if the email client allows images to be displayed (gmail disable that by default)
Method 5
A more faster approach is IM. If you have the IM of the target, then it's possible that you try to send him a file (not malicious, a picture or smthng). upon sending the file, a direct connection is established between you and the target. with a simple connection monitoring application (e.g.netstat on windows), you can know the Ip address.
Method 6
Some paranoid people don't accept files! so another trick in case of MSN is background sharing. the default for MSN is to accept backgrounds shared by others. Actually background sharing performs file sending if the background is not one of the default backgrounds. So the trick is to set your background for the IM to a cool pic from your computer and share it. if the default setting was not altered on your target's IM, then he will automatically accept it right away and a connection is opened. here comes again the connection monitoring app where you can identify the new connection and extract the IP add of the target.
Well those are one's that I used .. do you have any other methods ?? sometimes I only have the username on a forum or website. Any clues?
UPDATE:
Method 7
In MSN messenger, if u don't have the display picture of the person you're talking to, the messenger will try to download it by default. this cause the the MSN to open a direct connection. Using a sniffing tool like wireshark will allow you to know the IP of the remote person.So basically if you don't have his display picture and you opened the chat window you'll get your log entry. You can either convince the target to change his/her display picture or you can remove the your local directory that caches the display pictures for all contacts (located in application data folder for the msn) to force the messenger to redownload the picture.
Posted By (HaXoR)
Subscribe to:
Posts
(
Atom
)
