<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>Hackers Enigma &#187; Hackers Enigma</title>
	<atom:link href="http://www.hackersenigma.com/tag/hackers/feed/" rel="self" type="application/rss+xml" />
	<link>http://www.hackersenigma.com</link>
	<description>An Ethical Hacking Blog - Network Security, Penetration testing, Vulnerabilities &#38; Mobile Hacks</description>
	<lastBuildDate>Tue, 10 Jan 2012 17:12:36 +0000</lastBuildDate>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
			<item>
		<title>HoneyPot : Intrusion Detection and Malware analysis</title>
		<link>http://www.hackersenigma.com/ethical-hacking/honeypots/honeypot-intrusion-detection-malware-analysis/</link>
		<comments>http://www.hackersenigma.com/ethical-hacking/honeypots/honeypot-intrusion-detection-malware-analysis/#comments</comments>
		<pubDate>Sun, 05 Sep 2010 09:59:20 +0000</pubDate>
		<dc:creator>Amol Wagh</dc:creator>
				<category><![CDATA[Honeypots]]></category>
		<category><![CDATA[Black Hat]]></category>
		<category><![CDATA[Ethical hacking]]></category>
		<category><![CDATA[hackers]]></category>
		<category><![CDATA[honeypot detection]]></category>
		<category><![CDATA[honeypots]]></category>
		<category><![CDATA[intrusion detection]]></category>
		<category><![CDATA[malware analysis]]></category>

		<guid isPermaLink="false">http://www.hackersenigma.com/?p=485</guid>
		<description><![CDATA[This is a Guest Post by &#8220;Satyajit Das&#8221; , who is an Ethical Hacking enthusiast &#38;  shares his tips about security at Security Hunk Intrusion detection or malware analysis is something which puts the ethical hacker/white hat  in the same frame of mind as that of a black hat because in order to catch a [...]]]></description>
			<content:encoded><![CDATA[<!-- Start Shareaholic LikeButtonSetTop --><!-- End Shareaholic LikeButtonSetTop --><p><strong> </strong></p>
<div id="_mcePaste"><span style="font-size: 13.3333px;"><em>This is a Guest Post by &#8220;<strong>Satyajit Das&#8221; </strong>, who is an Ethical Hacking enthusiast &amp;  shares his tips about security at </em><strong><em><a title="Security Hunk Ethical Hacking Blog" href="http://www.securityhunk.com/" target="_blank">Security Hunk</a></em></strong></span></div>
<div><span style="font-size: 13.3333px;"><strong><em><br />
</em></strong></span></div>
<div><strong>Intrusion detection </strong>or <strong>malware analysis</strong> is something which puts the ethical hacker/white hat  in the same frame of mind as that of a black hat because in order to catch a thief one has to think in the way he/she thinks then only we can trap him/her. <strong>HoneyPot</strong> a software package which comes very handy when intrusion detection or malware analysis comes into discussion .Lets see what it is all about.</div>
<div><strong>What is the HoneyPot ?</strong></div>
<div><strong><br />
</strong></div>
<div><span style="font-size: 13.3333px;">We can divide “HoneyPot” into two words “Honey” &amp; “Pot” lets see how honey and pot are related to intrusion detection and malware analysis….lol .You must have heard that bears are attracted towards honey and suppose that honey is kept in a pot .In the same way the honeypot here are to attract the blackhat people(attackers) and this Honeypot does not contain honey….lol but it consists of a single computer  or more computers that appears to be part of a network but is actually isolated and protected ,sometimes multiple number of honeypots can be used then it is called as <strong>Honeynet.</strong> They are configured in such a way that it can lure attackers .When the attackers enter this virtual network  and make mistakes  then they can be traced back .The ethical hacker should ensure that the attacker should not exploit the honeypot to enter the internal network  and glue or engage  him/her  in that virtual network only.</span></div>
<p><a href="http://www.hackersenigma.com/wp-content/uploads/images/Honeypot-Detection-.jpg"><img class="aligncenter size-full wp-image-486" title="Honeypot Intrusion &amp; Detection" src="http://www.hackersenigma.com/wp-content/uploads/images/Honeypot-Detection-.jpg" alt="Honeypot Intrusion &amp; Detection" width="506" height="217" /></a></p>
<p><span style="font-size: 13.3333px;"><strong>How to install a HoneyPot?</strong></span></p>
<p><span style="font-size: 13.3333px;">There are many software package available under this name but here we will discuss about<strong> Honeybot</strong> and <strong>Kfsensor</strong>.</span></p>
<p><strong>Step 1.</strong>First download <strong>Honeybot &#8211; <a title="Download Honeybot" href="http://http://www.atomicsoftwaresolutions.com/honeybot.php" target="_blank">Click Here </a></strong><strong> </strong> and install it in your box.</p>
<p><strong>Step 2.</strong>Now open up it  and click on the <strong>start button</strong> and wait for all the sockets to load(see at the bottom).</p>
<p><strong>Step 3.</strong>Having done that click on option and configured to your convenience or as show below.</p>
<p><a href="http://www.hackersenigma.com/wp-content/uploads/images/Honeybot.png"><img class="aligncenter size-full wp-image-487" title="Honeybot" src="http://www.hackersenigma.com/wp-content/uploads/images/Honeybot.png" alt="Honeybot" width="585" height="366" /></a></p>
<p><strong> </strong></p>
<p><strong>Step 4.<span style="font-weight: normal;">You can see the </span>View<span style="font-weight: normal;"> option to set few more settings. Now the honeybot is configured and just minimize to system tray.</span></strong></p>
<p><strong><span style="font-weight: normal; font-size: 13.3333px;"><strong> </strong></span></strong></p>
<p><strong><strong> </strong></strong></p>
<p><strong> </strong></p>
<p><strong> </strong></p>
<p><strong> </strong></p>
<p><strong> </strong></p>
<p><strong> </strong></p>
<p><strong> </strong></p>
<p><strong></p>
<p style="display: inline !important;">Step 5.<span style="font-weight: normal; font-size: 13.3333px;">Once few result start appearing then you can right click on a particular result to see the details or even do a reverse DNS as shown below.</span></p>
<p style="display: inline !important;"><span style="font-weight: normal; font-size: 13.3333px;"><br />
</span></p>
<p style="display: inline !important;"><span style="font-weight: normal; font-size: 13.3333px;"><br />
</span></p>
<p></strong></p>
<p><strong> </strong></p>
<p><strong> </strong><strong> </strong></p>
<p><a href="http://www.hackersenigma.com/wp-content/uploads/images/Honeypot.png"><img class="aligncenter size-full wp-image-488" title="Honeypot" src="http://www.hackersenigma.com/wp-content/uploads/images/Honeypot.png" alt="" width="585" height="334" /></a></p>
<p>There is another software-<strong><a href="http://www.keyfocus.net/kfsensor/" target="_blank">Kfsensor </a></strong>which is a shareware but the trail version is available. You need to install <strong>WinPcap latest version </strong>before you install this package.I would prefer using Kfsensor compared to Honeybot as it has got more details evaluation options.</p>
<p><a href="http://www.hackersenigma.com/wp-content/uploads/images/Honeypot-2.png"><img class="aligncenter size-full wp-image-489" title="Honeypot 2" src="http://www.hackersenigma.com/wp-content/uploads/images/Honeypot-2.png" alt="" width="683" height="315" /></a></p>
<p>One can also view the <strong>ports accessed by the attacker</strong> as shown below by selecting the view port option.</p>
<p><span style="font-size: 13.3333px;"><a href="http://www.hackersenigma.com/wp-content/uploads/images/honeypot-3.png"><img class="aligncenter size-full wp-image-490" title="honeypot 3" src="http://www.hackersenigma.com/wp-content/uploads/images/honeypot-3.png" alt="" width="683" height="290" /></a><br />
</span></p>
<p>HoneyPot surely can be used for intrusion detection and malware analysis in secure the system from future attacks but still then I would repeat the line which is one of the fav among the hackers community is “<strong>still then it can be hacked</strong>”….yeah there are methods by which the presence of a honeypot can be detected and by that one can avoid the trap set for him/her.Research is still on in this field and hope some advanced features would come up.</p>
<p><em><br />
</em></p>
<div class="shr-publisher-485"></div><!-- Start Shareaholic LikeButtonSetBottom --><!-- End Shareaholic LikeButtonSetBottom -->]]></content:encoded>
			<wfw:commentRss>http://www.hackersenigma.com/ethical-hacking/honeypots/honeypot-intrusion-detection-malware-analysis/feed/</wfw:commentRss>
		<slash:comments>2</slash:comments>
		</item>
		<item>
		<title>Learn How To Hack Wih Hackers Underground Book</title>
		<link>http://www.hackersenigma.com/ethical-hacking-student-series/learn-how-to-hack-wih-hackers-underground-book/</link>
		<comments>http://www.hackersenigma.com/ethical-hacking-student-series/learn-how-to-hack-wih-hackers-underground-book/#comments</comments>
		<pubDate>Sat, 20 Mar 2010 02:53:06 +0000</pubDate>
		<dc:creator>Amol Wagh</dc:creator>
				<category><![CDATA[Student Series]]></category>
		<category><![CDATA[Black Hat]]></category>
		<category><![CDATA[hackers]]></category>
		<category><![CDATA[hackers underground]]></category>
		<category><![CDATA[how to hack]]></category>
		<category><![CDATA[how to hack ebook]]></category>
		<category><![CDATA[learn hacks]]></category>
		<category><![CDATA[learn to hack]]></category>

		<guid isPermaLink="false">http://www.hackersenigma.com/?p=448</guid>
		<description><![CDATA[A couple of days ago I find great hacking (e)book called The Hacker’s Underground Handbook, (e)book that comes as an aid for all those that are starting journey to learn how to hack It was made specifically for the beginners who really want to get into hacking and for those of us who began and [...]]]></description>
			<content:encoded><![CDATA[<!-- Start Shareaholic LikeButtonSetTop --><!-- End Shareaholic LikeButtonSetTop --><p>A couple of days ago I find great hacking (e)book called The Hacker’s Underground Handbook, (e)book that comes as an aid for all those that are starting journey to learn how to hack It was made specifically for the beginners who really want to get into hacking and for those of us who began and got lost.</p>
<h4>The Hacker’s Underground Handbook</h4>
<p><a href="http://learn-how-to-hack.net/?vip=15"><img class="alignnone size-full wp-image-3443" title="hackers__hackbook31" src="http://hackspc.com/wp-content/uploads/2009/10/hackers__hackbook-242x300.jpg" alt="" width="300" height="371" /></a></p>
<h4><a href="http://learn-how-to-hack.net/?vip=15">Download</a></h4>
<p>This book will guide you in the right direction helping you understand password cracking, phishing, network hacking, wireless hacking, malware, Windows hacking and etc.</p>
<p>I was really surprised how this book laid out the information, presenting it in an easy to read and understandable fashion. In each chapter the author first introduces you to the topic and then shows you a real-world example with step-by-step instructions with images. It makes hacking look so easy!</p>
<p>Once you complete reading this book, the author explains where to go from there and how to keep learning. You will never again be lost and overwhelmed by all the hacking information out there.<br />
If you think this book is something you would be interested in, you can get it here. <a href="http://learn-how-to-hack.net/?vip=15">Hacker&#8217;s Underground Handbook</a></p>
<div class="shr-publisher-448"></div><!-- Start Shareaholic LikeButtonSetBottom --><!-- End Shareaholic LikeButtonSetBottom -->]]></content:encoded>
			<wfw:commentRss>http://www.hackersenigma.com/ethical-hacking-student-series/learn-how-to-hack-wih-hackers-underground-book/feed/</wfw:commentRss>
		<slash:comments>3</slash:comments>
		</item>
		<item>
		<title>Malware Can Spread Through Software Updates</title>
		<link>http://www.hackersenigma.com/ethical-hacking/malware-can-spread-through-software-updates/</link>
		<comments>http://www.hackersenigma.com/ethical-hacking/malware-can-spread-through-software-updates/#comments</comments>
		<pubDate>Sun, 02 Aug 2009 07:25:00 +0000</pubDate>
		<dc:creator>Amol Wagh</dc:creator>
				<category><![CDATA[Ethical hacking]]></category>
		<category><![CDATA[Network Security]]></category>
		<category><![CDATA[Packet Sniffing]]></category>
		<category><![CDATA[apps]]></category>
		<category><![CDATA[checks]]></category>
		<category><![CDATA[digital signature]]></category>
		<category><![CDATA[exploits]]></category>
		<category><![CDATA[geeks]]></category>
		<category><![CDATA[hackers]]></category>
		<category><![CDATA[hacking by updates]]></category>
		<category><![CDATA[internet users]]></category>
		<category><![CDATA[malware updates]]></category>
		<category><![CDATA[microsoft browser]]></category>
		<category><![CDATA[plug ins]]></category>
		<category><![CDATA[security companies]]></category>
		<category><![CDATA[security firm]]></category>
		<category><![CDATA[software updates]]></category>
		<category><![CDATA[tomer]]></category>
		<category><![CDATA[wi fi]]></category>

		<guid isPermaLink="false">http://www.hackersenigma.com/?p=343</guid>
		<description><![CDATA[We have seen exploits in plug ins &#038; apps are helping hackers to find vulnerabilities &#038; intrude inside a secured system or a network, I came across the news from cnet.com which says that two researchers from Israeli security firm Radware have found out a way which gives access to a computer by updating any software mostly affects the Skype &#038;  other applications.]]></description>
			<content:encoded><![CDATA[<!-- Start Shareaholic LikeButtonSetTop --><!-- End Shareaholic LikeButtonSetTop --><p>We have seen exploits in plug ins &amp; apps are helping hackers to find vulnerabilities &amp; intrude inside a secured system or a network, I came across the news from <a href="http://news.cnet.com/8301-27080_3-10301485-245.html?tag=newsEditorsPicksArea.0" target="_blank">cnet.com</a> which says that two researchers from Israeli security firm Radware have found out a way which gives access to a computer by updating any software mostly affects the Skype &amp;  other applications.</p>
<p>This is terrible, It raises a question that we should download an update or not ? according to these two geeks named Itzik Kotler and Tomer Bitton more than hundred applications can be targeted from <a title="Download.com" href="http://download.cnet.com" target="_blank">cnet.com downloads</a>, which is one of the most trusted downloading site for all  Internet users.</p>
<p>The tool is named as ippon (Means &#8216;Game Over&#8217; in the game of Judo), It gives 3d View pf user who is trying to connect to the update server.</p>
<p>It scans the local Wi-Fi Network &amp; checks whether any victim is trying to check updates through HTTP requests, it detects the victim &amp; try to reply before the update server &amp; gains command over the updates.</p>
<p>According to the makers the Microsoft browser is not vulnerable to this Malware attack as it uses digital signature to check for update. And they are yet to test Firefox &amp; other major browsers which could possibly go under this Malware threat. What is more important that they have shown a security companies another hole to secure for.</p>
<p>Software basically sends message that &#8216;Updates are available&#8217;, when user accepts request they send infected piece of code to that Vitim, which gives them command over  any PC.</p>
<p>So folks, think twice before using a public wi-fi (specially the unsecured one)</p>
<div class="shr-publisher-343"></div><!-- Start Shareaholic LikeButtonSetBottom --><!-- End Shareaholic LikeButtonSetBottom -->]]></content:encoded>
			<wfw:commentRss>http://www.hackersenigma.com/ethical-hacking/malware-can-spread-through-software-updates/feed/</wfw:commentRss>
		<slash:comments>1</slash:comments>
		</item>
		<item>
		<title>Heap Spraying Exploit Discovered in Mozilla Firefox 3.5</title>
		<link>http://www.hackersenigma.com/ethical-hacking/vulnerabilities/heap-spraying-exploit-discovered-mozilla-firefox-35/</link>
		<comments>http://www.hackersenigma.com/ethical-hacking/vulnerabilities/heap-spraying-exploit-discovered-mozilla-firefox-35/#comments</comments>
		<pubDate>Tue, 21 Jul 2009 17:33:53 +0000</pubDate>
		<dc:creator>Amol Wagh</dc:creator>
				<category><![CDATA[Vulnerabilities]]></category>
		<category><![CDATA[arbitrary code execution]]></category>
		<category><![CDATA[bowers]]></category>
		<category><![CDATA[closer look]]></category>
		<category><![CDATA[computer security]]></category>
		<category><![CDATA[cyber criminals]]></category>
		<category><![CDATA[firefox]]></category>
		<category><![CDATA[great expectations]]></category>
		<category><![CDATA[great time]]></category>
		<category><![CDATA[hackers]]></category>
		<category><![CDATA[heap]]></category>
		<category><![CDATA[intruders]]></category>
		<category><![CDATA[launch]]></category>
		<category><![CDATA[loyal user]]></category>
		<category><![CDATA[milw0rm]]></category>
		<category><![CDATA[open doors]]></category>
		<category><![CDATA[security updates]]></category>
		<category><![CDATA[security world]]></category>
		<category><![CDATA[target]]></category>
		<category><![CDATA[vulnerability]]></category>

		<guid isPermaLink="false">http://www.hackersenigma.com/?p=328</guid>
		<description><![CDATA[Mozilla Firefox, which is one of the most downloaded browser, has been a great platform for hacker to test it against various vulnerabilities. And before some days Mozilla Firefox 3.5 was released with great expectations from the company. And guess what the Firefox 3.5 is vulnerable for Heap spray exploit.Let us take a closer look [...]]]></description>
			<content:encoded><![CDATA[<!-- Start Shareaholic LikeButtonSetTop --><!-- End Shareaholic LikeButtonSetTop --><p><strong>Mozilla Firefox</strong>, which is one of the most downloaded browser, has been a great platform for hacker to test it against various vulnerabilities. And before some days Mozilla Firefox 3.5 was released with great expectations from the company. And guess what the Firefox 3.5 is vulnerable for Heap spray exploit.Let us take a closer look at what exactly heap spraying attack means.</p>
<p>Heap spraying basically termed as the substitute to &#8216;Arbitrary Code Execution&#8217;. In plain English, intruders try to enter in the system by executing some sort of code from your browser. (If you want me to explain everything in plain English, STOP READING)</p>
<p>Heap spraying was introduced back   2001, &amp; started spreading its wings with the help of browsers in year year 2005. This exploit have done major damages in similar year, as it was first tried in bowers that time. This term is generally used in cyber criminals &amp; computer security world to define arbitrary code execution.</p>
<p>This Code which sprays the heap attempts to put a certain sequence of bytes at a predetermined location in the memory of a target process by having it allocate (large) blocks on the process&#8217; heap and fill the bytes in these blocks with the right values.</p>
<p>These heap blocks will approximately be in the same location every time the heap spray is run, &amp; it is well known fact for hackers for today. This gives them advantage over testing <strong>Firefox 3.5</strong> against the heap spray exploit.</p>
<p>Mozilla might have forget to close all its open doors for such a <strong>common vulnerability</strong>, may be they are more excited about its new version launch of Firefox 3.5</p>
<p>But I trust , Mozilla will introduce patches in next update. (This article is published for the same.) Because I am its loyal user too.</p>
<p>Have great time, but <a title="Hackers Enigma Feeds" href="http://hackersenigma.com/feed" target="_self">keep reading all security updates from hackers enigma.</a></p>
<p><a title="Firefox 3.5 exploit" href="http://www.milw0rm.com/exploits/9181">Read More : Technical stuff about Heap Spray Exploit in Firefox 3.5</a></p>
<p><strong>Source : <a href="http://www.milw0rm.com/exploits/9181">Milw0rm Exploits &amp; Vulnerabilities</a></strong></p>
<div class="shr-publisher-328"></div><!-- Start Shareaholic LikeButtonSetBottom --><!-- End Shareaholic LikeButtonSetBottom -->]]></content:encoded>
			<wfw:commentRss>http://www.hackersenigma.com/ethical-hacking/vulnerabilities/heap-spraying-exploit-discovered-mozilla-firefox-35/feed/</wfw:commentRss>
		<slash:comments>1</slash:comments>
		</item>
		<item>
		<title>Vulnerabilities &#8211; Know More</title>
		<link>http://www.hackersenigma.com/ethical-hacking/vulnerabilities/vulnerabilities-know-more/</link>
		<comments>http://www.hackersenigma.com/ethical-hacking/vulnerabilities/vulnerabilities-know-more/#comments</comments>
		<pubDate>Sat, 27 Jun 2009 09:28:22 +0000</pubDate>
		<dc:creator>Amol Wagh</dc:creator>
				<category><![CDATA[Student Series]]></category>
		<category><![CDATA[Vulnerabilities]]></category>
		<category><![CDATA[ethical hackers]]></category>
		<category><![CDATA[hackers]]></category>
		<category><![CDATA[vulnerability assessment]]></category>

		<guid isPermaLink="false">http://www.hackersenigma.com/?p=276</guid>
		<description><![CDATA[Vulnerabilities are the tricks-of-the-trade for hackers, giving an intruder the ability to heighten one’s access by exploiting a flawed piece of logic inside the code of a computer. Like the hackers that seek them out, vulnerabilities are usually quite mysterious and hard to prove they even exist. They are confusing or undocumented source code, usually [...]]]></description>
			<content:encoded><![CDATA[<!-- Start Shareaholic LikeButtonSetTop --><!-- End Shareaholic LikeButtonSetTop --><p><strong>Vulnerabilities</strong> are the tricks-of-the-trade for hackers, giving an intruder the ability to heighten one’s access by exploiting a flawed piece of logic inside the code of a computer. Like the <strong>hackers </strong>that seek them out, vulnerabilities are usually quite mysterious and hard to prove they even exist. They are confusing or undocumented source code, usually performing a series of tasks which don’t make a considerable amount of sense to the uninformed. In unfamiliar environments or using unfamiliar techniques many vulnerabilities may exists.</p>
<p>Getting acquainted with vulnerabilities and how they are exploited, the methods of exploitation seems random and chaotic – each and every one with seemingly unpredictable results. It has been theorized that this comes from the fact that bugs are mistakes, and does not follow the course of intelligent reason. However, vulnerabilities can be categorized in ways that make more sense to the person investigating the problems at hand.</p>
<p>Both categorization and the exploitation logic, stemming from a centralized <strong>“gray area” approach</strong> is explained here.  Also, how one could take any form of vulnerability at any level and use it to control computer systems, the users, and administrators.</p>
<p> Following general vulnerabilities definition and nature, investigators can mirror the tracks of a hacker’s logic as they intrude upon a computer network and understand the reasoning that goes on behind the attack.</p>
<p>Ethical Hackers and <strong>Network Security Administrator’s</strong> conducts vulnerability assessment for finding out the general forms of vulnerabilities and for hardcore inspection they perform black box penetration tests.</p>
<div class="shr-publisher-276"></div><!-- Start Shareaholic LikeButtonSetBottom --><!-- End Shareaholic LikeButtonSetBottom -->]]></content:encoded>
			<wfw:commentRss>http://www.hackersenigma.com/ethical-hacking/vulnerabilities/vulnerabilities-know-more/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
	</channel>
</rss>

