<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>Hackers Enigma &#187; Hackers Enigma</title>
	<atom:link href="http://www.hackersenigma.com/tag/security/feed/" rel="self" type="application/rss+xml" />
	<link>http://www.hackersenigma.com</link>
	<description>An Ethical Hacking Blog - Network Security, Penetration testing, Vulnerabilities &#38; Mobile Hacks</description>
	<lastBuildDate>Tue, 10 Jan 2012 17:12:36 +0000</lastBuildDate>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
			<item>
		<title>The Importance Of Using A Vulnerability Scanner For Security</title>
		<link>http://www.hackersenigma.com/network-security/the-importance-of-using-a-vulnerability-scanner-for-security/</link>
		<comments>http://www.hackersenigma.com/network-security/the-importance-of-using-a-vulnerability-scanner-for-security/#comments</comments>
		<pubDate>Wed, 01 Jun 2011 17:45:55 +0000</pubDate>
		<dc:creator>Amol Wagh</dc:creator>
				<category><![CDATA[Network Security]]></category>
		<category><![CDATA[automated scan]]></category>
		<category><![CDATA[GFI]]></category>
		<category><![CDATA[manual scan]]></category>
		<category><![CDATA[security]]></category>
		<category><![CDATA[using vulnerability]]></category>
		<category><![CDATA[vulnerability]]></category>
		<category><![CDATA[vulnerability scanners]]></category>

		<guid isPermaLink="false">http://www.hackersenigma.com/?p=622</guid>
		<description><![CDATA[One aspect of network security that is often overlooked is checking a network for issues using a vulnerability scanner. Vulnerabilities are issues, weaknesses or misconfiguration in software that an attacker can exploit to gain unauthorized access to his victim’s system. Through the use of a vulnerability scanner, these issues are pinpointed and reported to the administrator. Perhaps [...]]]></description>
			<content:encoded><![CDATA[<!-- Start Shareaholic LikeButtonSetTop --><!-- End Shareaholic LikeButtonSetTop --><p><!--INFOLINKS_OFF--><br />
One aspect of network security that is often overlooked is checking a network for issues using a vulnerability scanner. Vulnerabilities are issues, weaknesses or misconfiguration in software that an attacker can exploit to gain unauthorized access to his victim’s system. Through the use of a vulnerability scanner, these issues are pinpointed and reported to the administrator.</p>
<p>Perhaps the primary reason why vulnerability scanning is taken for granted is because vulnerabilities are considered to be issues which are fixed through patch management. It is a common misconception that with a patch management strategy, the vulnerabilities found on the network are also being taken care of. This is partially true when considering how a chunk of vulnerabilities are in fact software issues that are fixed by patching, however it is not always the case. Vulnerabilities can be caused by mis-configurations, software that is inherently problematic or even software issues for which the vendor has not yet released a patch.</p>
<h3><strong>What can we do about vulnerabilities?</strong></h3>
<p>The first step is to see if your system does in fact have any vulnerability. For this you need to use a vulnerability scanner or, although not recommended if your budget is limited, you can run a vulnerability scan manually.</p>
<h3><strong>Running a vulnerability scan manually:</strong></h3>
<p>It is possible to do a vulnerability assessment without the use of any software, although this will have an intrinsic amount of inaccuracy and will be very time consuming. In order to determine if there are vulnerabilities on your network through a manual vulnerability scan, you should first get a list of applications / services installed on your network. Once the list is available, check each software’s official site to see if there are any issues / insecurities reported by the vendor. Some vendors will also offer guides on how their application should be configured securely. Generally, such guides will also contain information on what configuration options to avoid. This information is very useful and it is definitely a good idea to read them. The next step is to check vulnerability database sites for the latest lists. Sites like the National Vulnerability Database and Bugtraq are a central location for known vulnerabilities – checking these sites regularly in relation to what software is running on your network is highly important.</p>
<h3><strong>Running a vulnerability scan using a vulnerability scanner:</strong></h3>
<p>A more effective way to do vulnerability scanning is through the use of a vulnerability scanner. These scanners will have a database of vulnerabilities that is automatically updated by the vulnerability scanner vendor whenever a new vulnerability is discovered. An administrator can set up the scanner to automatically scan the network periodically and issue reports when a new vulnerability is detected. It might also offer remediation options or a detailed description of what is causing the vulnerability and what should be done to fix that vulnerability.</p>
<p>Regardless of whether you run a vulnerability scan manually or using a vulnerability scanner, your network should be monitored for vulnerabilities.  Most vulnerabilities will lead to a system compromise of some degree which in turn can result in serious consequences for the business.  Vulnerability scanning is a preventive measure that can potentially save your business’s reputation and assets.</p>
<p>&nbsp;</p>
<p><em>This guest post was provided by <strong>Emmanuel Carabott </strong>on behalf of GFI Software Ltd. <strong>GFI</strong> is a leading software developer that provides a single source for network administrators to address their network security, content security and messaging needs. More information: GFI </em><a href="http://www.gfi.com/lannetscan/network-auditing-software.htm"><em>vulnerability scanner</em></a><em> </em></p>
<p><em>*All product and company names herein may be trademarks of their respective owners.</em></p>
<p>&nbsp;</p>
<p>&nbsp;</p>
<div class="shr-publisher-622"></div><!-- Start Shareaholic LikeButtonSetBottom --><!-- End Shareaholic LikeButtonSetBottom -->]]></content:encoded>
			<wfw:commentRss>http://www.hackersenigma.com/network-security/the-importance-of-using-a-vulnerability-scanner-for-security/feed/</wfw:commentRss>
		<slash:comments>11</slash:comments>
		</item>
		<item>
		<title>Information Security Training For Better Career</title>
		<link>http://www.hackersenigma.com/ethical-hacking/information-security-traning-for-better-career/</link>
		<comments>http://www.hackersenigma.com/ethical-hacking/information-security-traning-for-better-career/#comments</comments>
		<pubDate>Sat, 30 Apr 2011 16:51:04 +0000</pubDate>
		<dc:creator>Amol Wagh</dc:creator>
				<category><![CDATA[Ethical hacking]]></category>
		<category><![CDATA[Black Hat]]></category>
		<category><![CDATA[cyber crime]]></category>
		<category><![CDATA[data protection]]></category>
		<category><![CDATA[hacking courses]]></category>
		<category><![CDATA[information security]]></category>
		<category><![CDATA[information security courses]]></category>
		<category><![CDATA[Network Security]]></category>
		<category><![CDATA[security]]></category>
		<category><![CDATA[security courses]]></category>
		<category><![CDATA[security training]]></category>
		<category><![CDATA[westwood college]]></category>

		<guid isPermaLink="false">http://www.hackersenigma.com/?p=600</guid>
		<description><![CDATA[IT industry is going with very rapid pace but security issues related to it are keep striking it mostly harmed due to lack of knowledge regarding security. The way gadgets &#38; web sites taking every information in digital level &#8211; all employees of IT organization must be trained to secure all the data &#38; digital [...]]]></description>
			<content:encoded><![CDATA[<!-- Start Shareaholic LikeButtonSetTop --><!-- End Shareaholic LikeButtonSetTop --><p>IT industry is going with very rapid pace but security issues related to it are keep striking it mostly harmed due to lack of knowledge regarding security. The way gadgets &amp; web sites taking every information in digital level &#8211; all employees of IT organization must be trained to secure all the data &amp; digital documentation.</p>
<p>This is where the role of <a title="Information Security Tarining Major in System Security" href=" http://www.westwood.edu/programs/school-of-technology/information-technology-major-in-systems-security/" target="_blank">information security training</a> makes a lot of difference from safety perspective for any organizational data and network information. This security training is very essential to every employee that deals with data not only in IT industry but also in most of other fields.</p>
<h2>Earning a Degree in Information Security</h2>
<p>Choosing best program that fits you need is very essential before diving in to the information security trainings that various colleges offers. Having bachelor’s degree in computer science, information science or management information systems is a good starting point for a career in computer security. If you think it’s a good training for you to make dedicated career in then you can also take specialization courses in system security. If you already graduated in computers then having security certification will give you an edge while looking for job in market.</p>
<p>Technology changes rapidly, so information security specialists are often required to take ongoing education courses throughout their careers. Computer security specialists may have opportunities to advance into supervisory positions as their career develops.</p>
<p><a href="http://www.hackersenigma.com/wp-content/uploads/images/Information-Security.jpg"><img class="aligncenter size-full wp-image-609" title="Information Security" src="http://www.hackersenigma.com/wp-content/uploads/images/Information-Security.jpg" alt="" width="500" height="313" /></a></p>
<h2>Major Content You learn In Information Security Training</h2>
<p>Internet security, wireless security, securing business applications, network 7 authentication security is basically included in your training. After completing this degree program you can work for operating system security, secure computer networks design, implement and execute counter-attack measures on security breaches &amp; most of security jobs.</p>
<p>You’ll develop strong problem solving &amp; logic skills that are essential to defend your organization data theft &amp; cyber attacks. You’ll learn to face such attacks in real time model, So you can learn by the way any hacker would.</p>
<p>Westwood College offers a hands-on bachelor’s degree program in information technology: major in systems security. Westwood also offers a bachelor’s degree program in <a title="Information Technology Major in System Security" href=" http://www.westwood.edu/programs/school-of-technology/information-technology-major-in-systems-security/" target="_blank">information technology: major in computer forensics. </a></p>
<div class="shr-publisher-600"></div><!-- Start Shareaholic LikeButtonSetBottom --><!-- End Shareaholic LikeButtonSetBottom -->]]></content:encoded>
			<wfw:commentRss>http://www.hackersenigma.com/ethical-hacking/information-security-traning-for-better-career/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Hacking &amp; Network Security: What Is It Exactly (For Noobs)</title>
		<link>http://www.hackersenigma.com/ethical-hacking-student-series/hacking-network-security-noobs/</link>
		<comments>http://www.hackersenigma.com/ethical-hacking-student-series/hacking-network-security-noobs/#comments</comments>
		<pubDate>Sat, 25 Sep 2010 04:44:42 +0000</pubDate>
		<dc:creator>Amol Wagh</dc:creator>
				<category><![CDATA[Student Series]]></category>
		<category><![CDATA[Black Hat]]></category>
		<category><![CDATA[Network Security]]></category>
		<category><![CDATA[networks]]></category>
		<category><![CDATA[noobs]]></category>
		<category><![CDATA[security]]></category>

		<guid isPermaLink="false">http://www.hackersenigma.com/?p=501</guid>
		<description><![CDATA[It is not strange to call this generation as “intelligent” generation, the era of computers &#38; internet. Humans are connected to each other through the world of computers spread over a network. Essentially, in technical language, Computers communicate with each other through network. So any data communication between 2 or more computers involves transfer, sharing [...]]]></description>
			<content:encoded><![CDATA[<!-- Start Shareaholic LikeButtonSetTop --><!-- End Shareaholic LikeButtonSetTop --><p>It is not strange to call this generation as “intelligent” generation, the era of computers &amp; internet. Humans are connected to each other through the world of computers spread over a network.<br />
Essentially, in technical language, Computers communicate with each other through network. So any data communication between 2 or more computers involves transfer, sharing of vital data. The basic idea of networks is allow people remote access to geographically distant resources without having to be physically present. It has also been designed to send data back and forth, to stay connected.</p>
<p>There are large networks and small networks, but size is irrelevant in terms of importance of network security. The purpose of network security, quite simply, is to protect the network and its component parts from unauthorized access and misuse. Networks are vulnerable because of their inherent characteristic of facilitating remote access. For example, if a hacker wanted to access a computer not on a network, physical access would be vital. However, with networks in the picture, it is possible to bypass that particular security aspect. Therefore, it is vital for any network administrator, regardless of the size and type of network, to implement stringent security policies to prevent potential<br />
losses.</p>
<p>The networks are computer networks, both public and private, that are used every day to conduct transactions and communications among businesses, government agencies and individuals. Today, most companies&#8217; host computers can be accessed by their employees whether in their offices over a private communications network, or from their homes or hotel rooms while on the road through normal telephone lines.</p>
<p>Network security involves all activities that organizations, enterprises, and institutions undertake to protect the value and ongoing usability of assets and the integrity and continuity of operations. An effective network security strategy requires identifying threats and then choosing the most effective set of tools to combat them. Often important data is transferred from one computer system to other over the network. Network security safeguards the data communication so that vital information data is secured.</p>
<p>Whenever the word network security appears, it appears in conjunction with another popular buzzword “Ethical hacking”. The word “ethical” has special meaning as ethical hacking is very closely related to network security &amp; is simply the use of programming skills to determine vulnerabilities in computer systems. Performed by special computer programming experts or hackers, it is very vital for the computers connected over network. With increasing use of the Internet and concerns about its security, especially when it comes to things like consumer information or private medical details, there is considerable need for computer experts to work in ethical hacking.</p>
<p><em><strong>This is the guest post &amp; Following is the Author Bio :</strong> <a href="http://www.nospysoftware.com/spyware-articles/internet-hacking.php" target="_blank">Internet hacking</a> is accessing a secure computer system by disabling or bypassing the security through internet. There are many <a href="http://www.hackingalert.com/hacking-articles/hotmail-hacking-guide.php" target="_blank">ethical hacking tutorials</a> available with which one can learn the ways of detecting the loopholes in cyber security.</em></p>
<div class="shr-publisher-501"></div><!-- Start Shareaholic LikeButtonSetBottom --><!-- End Shareaholic LikeButtonSetBottom -->]]></content:encoded>
			<wfw:commentRss>http://www.hackersenigma.com/ethical-hacking-student-series/hacking-network-security-noobs/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Penetration Testing In Ethical Hacking</title>
		<link>http://www.hackersenigma.com/ethical-hacking-student-series/penetration-testing-in-ethical-hacking/</link>
		<comments>http://www.hackersenigma.com/ethical-hacking-student-series/penetration-testing-in-ethical-hacking/#comments</comments>
		<pubDate>Tue, 30 Jun 2009 05:17:36 +0000</pubDate>
		<dc:creator>Amol Wagh</dc:creator>
				<category><![CDATA[Student Series]]></category>
		<category><![CDATA[Black-box testing]]></category>
		<category><![CDATA[Consultants]]></category>
		<category><![CDATA[Ethical hacking series]]></category>
		<category><![CDATA[Hacker]]></category>
		<category><![CDATA[Network Security]]></category>
		<category><![CDATA[penetration test]]></category>
		<category><![CDATA[security]]></category>
		<category><![CDATA[White hat]]></category>
		<category><![CDATA[White-box testing]]></category>

		<guid isPermaLink="false">http://www.hackersenigma.com/?p=298</guid>
		<description><![CDATA[This article is posted under the “Ethical Hacking Student Guide Series”. So don’t forget to subscribe our blog to stay updated. Penetration testing in simple words can be defined as the test on the live networks or servers directly by attacking by the trained ethical hacking professional person or network security administrator. If you still [...]]]></description>
			<content:encoded><![CDATA[<!-- Start Shareaholic LikeButtonSetTop --><!-- End Shareaholic LikeButtonSetTop --><p><em>This article is posted under the <strong>“<a href="http://www.hackersenigma.com/category/ethical-hacking-student-series/" target="_blank">Ethical Hacking Student Guide Series</a>”.</strong> So don’t forget to <a title="Subscribe To Feeds" href="http://www.hackersenigma.com/feed/" target="_blank">subscribe our blog </a>to stay updated.</em></p>
<p>Penetration testing in simple words can be defined as the test on the live networks or servers directly by attacking by the trained ethical hacking professional person or network security administrator.</p>
<p>If you still cant get, let me make it simpler for you. Consider an organization having its employee working on certain software. It stores all database into some kind of “database server”. What will we do is just hire some ethical hacking trained person &amp; he will directly conduct the test on the possible vulnerable areas of the system or network or the software.</p>
<h2>Why Penetration Testing if we can do Vulnerability Assessments?</h2>
<p>Well in vulnerability assessment we basically use the automated software which can be handled by unskilled employee. It scans for general vulnerabilities which are well known. But you have to consider those criminal hackers which are always looking for the newest security breaches or flaws on subjected systems. They always wish to do things in smarter way. And to detect such unique security holes we can better perform a penetration testing on network. Its worth, trust me.</p>
<p>Every ethical hacking student has to learn penetration testing as it is the most exciting &amp; hardest thing to do in ethical hacking. If you want to learn hacking then you cant miss this part as it is one of the core exercises that ethical hacking professional have to perform.</p>
<p>We can simply find something which is known to all in vulnerability assessment, but something where you have to test your patience &amp; knowledge is termed as penetration testing in your ethical hacking syllabus.</p>
<h2>Classification of Penetration Testing</h2>
<p>Penetration testing is basically classified according to the things that are known to ethical hackers. It is classified as follows</p>
<p>- <a href="http://www.hackersenigma.com/ethical-hacking-student-series/white-box-testing-in-ethical-hacking/" target="_blank">White Box Testing</a><br />
- <a href="http://www.hackersenigma.com/ethical-hacking-student-series/black-box-testing-in-penetration-testing/">Black Box Testing</a></p>
<p>In <strong>white box</strong> tests the ethical hacker physically sees all network &amp; its previous data &amp; updates. Means he knows everything then he performs testing.</p>
<p>In <strong>black box</strong> testing ethical hackers do complete attack without knowing even the operating stem on the networks. So black box test is real hard thing to do in ethical hacking.</p>
<p>You will get to know this more in upcoming posts here on Hackers Enigma, so just come back or <a title="Subscribe To Feeds" href="http://www.hackersenigma.com/feed/" target="_blank">click here to subscribe</a> our ethical hacking blog.</p>
<p>Please don’t hesitate to ask any question here in comments; even you think it will be stupid to ask &amp; even if you are a beginner &amp; don’t know anything about this. I will answer all your doubts regarding it.<br />
 </p>
<div class="zemanta-pixie" style="margin-top: 10px; height: 15px;"><a class="zemanta-pixie-a" title="Reblog this post [with Zemanta]" href="http://reblog.zemanta.com/zemified/674a3771-b2c6-47ec-b459-68eaca3275f9/"></a><span class="zem-script more-related pretty-attribution"><script src="http://static.zemanta.com/readside/loader.js" type="text/javascript"></script></span></div>
<div class="shr-publisher-298"></div><!-- Start Shareaholic LikeButtonSetBottom --><!-- End Shareaholic LikeButtonSetBottom -->]]></content:encoded>
			<wfw:commentRss>http://www.hackersenigma.com/ethical-hacking-student-series/penetration-testing-in-ethical-hacking/feed/</wfw:commentRss>
		<slash:comments>3</slash:comments>
		</item>
		<item>
		<title>Steganography: Hiding Files In Images</title>
		<link>http://www.hackersenigma.com/ethical-hacking/steganography-hiding-files-in-images/</link>
		<comments>http://www.hackersenigma.com/ethical-hacking/steganography-hiding-files-in-images/#comments</comments>
		<pubDate>Fri, 07 Nov 2008 06:18:59 +0000</pubDate>
		<dc:creator>Amol Wagh</dc:creator>
				<category><![CDATA[Ethical hacking]]></category>
		<category><![CDATA[Exclusive]]></category>
		<category><![CDATA[blank spaces]]></category>
		<category><![CDATA[dictionary attack]]></category>
		<category><![CDATA[file format]]></category>
		<category><![CDATA[image files]]></category>
		<category><![CDATA[images]]></category>
		<category><![CDATA[prevention measures]]></category>
		<category><![CDATA[security]]></category>
		<category><![CDATA[simple software]]></category>
		<category><![CDATA[source codes]]></category>
		<category><![CDATA[steganography]]></category>
		<category><![CDATA[Steganography prevention]]></category>
		<category><![CDATA[system weaknesses]]></category>
		<category><![CDATA[Viruses]]></category>

		<guid isPermaLink="false">http://www.hackersenigma.com/?p=106</guid>
		<description><![CDATA[Steganography is method of hiding files in image files. This is used mostly on a network so that files can be stored secretly. This method is very harmful for those where source codes of viruses and and programs can be stored. Also some secret file can also be stored and it can be any information [...]]]></description>
			<content:encoded><![CDATA[<!-- Start Shareaholic LikeButtonSetTop --><!-- End Shareaholic LikeButtonSetTop --><p>Steganography is method of hiding files in image files.</p>
<p>This is used mostly on a network so that files can be stored secretly. This method is very harmful for those where source codes of viruses and and programs can be stored. Also some secret file can also be stored and it can be any information about sytem and system weaknesses.</p>
<p>Following are the softwares used for setganography:</p>
<div class="wp-caption alignright" style="width: 360px"><img class=" " title="Steganography" src="http://www.thehinduimages.com/hindu/ImageLoader?IMAGE_TYPE=HOMEPAGE" alt="Steganography" width="350" height="269" /><p class="wp-caption-text">Steganography</p></div>
<p><strong>1. Image Hide</strong></p>
<p><strong>2. Snow: </strong> Fioles are sored in white or blank spaces of any text files.</p>
<p><strong>3. MP3stegno:</strong> Used for storing files in MP3 file format which is almost undetectable.</p>
<p><strong>Prevention Measures Against Steganography:</strong></p>
<p>We can use softwares for setecting such files and we can also tranck the stored content for the security of the system.</p>
<p><strong>Stegdetect: </strong>This simple software detects such files stored on system or network.</p>
<p><strong>Stegbreak: </strong>Used to crack the password of such files by Dictionary attack.</p>
<div class="shr-publisher-106"></div><!-- Start Shareaholic LikeButtonSetBottom --><!-- End Shareaholic LikeButtonSetBottom -->]]></content:encoded>
			<wfw:commentRss>http://www.hackersenigma.com/ethical-hacking/steganography-hiding-files-in-images/feed/</wfw:commentRss>
		<slash:comments>1</slash:comments>
		</item>
	</channel>
</rss>

