Thursday, 25 June 2015

SOCIAL ENGINEERING


Hi friends, here I am back with another article. This is just detailed introduction about Social Engineering. Here I will say how it takes place, and Prevention Method.

WHAT IS SOCIAL ENGINEERING?

                Social Engineering refers to psychological manipulation of the people into either performing action or giving out confidential information.

TECHNIQUES:

                Many attacker uses some common techniques to extract the information out. Some are..

1} Pretexting: is to create an invented scenario to engage a targeted victim wherein he would give out information or perform actions that would be unlikely in ordinary circumstances.

2} Diversion Theft: is exercised by Professionals thieves, or Black Hat Hackers, normally against a courier Company or Transport. The aim is to persuade the people responsible for a legitimate delivery that the consignment required elsewhere.

3} Phishing: a common method is used to get the information through fraud, or fake page and stores the confidential information.

4} IVR: also known as phone phishing uses a false interactive voice response (IVR) system to recreate a copy an IVR system.

5} Baiting: It is like a Trojan Horse which attacks the systems through Flash Drives or CD-ROM. When victim opens such affected malicious files, without knowing himself malware installs on his PC. They may be Key Loggers.

6} Quid pro quo: A advance method by which a social engineering occurs, in this attack, attacker pretends to be someone from the IT or different company and makes random calls asking if there is any issue, finally finding someone who needs help, attacker gets them to type commands giving access to the Hacker to launch his Malware.

SOCIAL NETWORKING:

                Many are been social engineered using Social Networks. Attackers normally create a Fake Account with name of celebrities, or a Girl or reputed Organization. Then they target the victim start chatting with the victim, thus extracting out the Information. Such questions Like: What is your Favorite Movie, or Food, Place? What is your Mother or Father or Childhood Name? Also Alternate Emails and Phone Numbers. These questions are very important in recovering your Emails or Social Networking Sites Password in case you forgot them. And attacker will use the same Answer to change the Password of victim.



PREVENTION METHODS:    

1} Don’t click on Links offering free or anything that you haven’t asked.

2} Don’t send sensitive information over the internet.

3} Delete the Emails that ask for Personal Information.

4} Don’t use real details when filling out surveys.

5} Identifying Phishing Emails: Requests for personal information, Fake Links, beware of the URLs that include the @ sign, Also some altered text or Links Like; www.microsoft.comcould appear instead as www.micosoft.com, Message body is an image.

6} Anti Phishing Toolbar: Anti Phishing software consists of programs that identifies the fake content on website or email attachments.

So, This is all about Social Engineering, Stay Tuned for Next articles. Any Doubt Contact me


Like My Page and Follow me on Facebook.  
Continue reading

Friday, 5 June 2015

GMAIL PHISHING


Hi Friends, I am back new Gmail Phishing Attack. Phishing is the illegal attempt to acquire sensitive information such as usernames, passwords, and credit card details (and sometimes, indirectly, money), often for malicious reasons, by masquerading as a trustworthy entity in an electronic communication

Phishing is a continual threat that keeps growing to this day. The risk grows even larger in social media such as Facebook, Twitter, Myspace, Gmail etc. Hackers commonly use these sites to attack persons using these media sites in their workplace, homes, or public in order to take personal and security information that can affect the user and the company (if in a workplace environment).


I already discussed about Facebook Phishing Attack. If u missed it CLICK HERE .

Lets Start The Tutorial of Gmail Attack::

I think you guys know how phishing attack is carried on. You have to create a fake Page which looks like Original one. Below you can download Gmail Phisher Files for Free.

1} Register on any Web-Hosting Site (www.my3gb.com)

2} Verify your Account.

3} Download and upload the Gmail Phisher files in your . Click Here To Download
Password For Rar is h@ckgod

4} Now your Fake Phishing Page is Ready, Send it via Fake email. You can find your Victim Details in Log text file.

So This All About Gmail Hacking. There are many other ways to Hack Gmail. I will discuss Later on, up till then Bye.

Any Doubt Regarding Tutorial. Please Contact me.

Follow Me On Facebook, Twitter, Google+. Also Please Like my Facebook Page to get Daily Updates on your News Feed.   


Continue reading

Thursday, 14 May 2015

FACEBOOK PHISHING

PHISHING



Phishing is the illegal attempt to acquire sensitive information such as usernames, passwords, and credit card details (and sometimes, indirectly, money), often for malicious reasons, by masquerading as a trustworthy entity in an electronic communication

Phishing is a continual threat that keeps growing to this day. The risk grows even larger in social media such as Facebook, Twitter, Myspace etc. Hackers commonly use these sites to attack persons using these media sites in their workplace, homes, or public in order to take personal and security information that can affect the user and the company (if in a workplace environment). Phishing is used to portray trust in the user since the user may not be able to tell that the site being visited or program being used is not real, and when this occurs is when the hacker has the chance to access the personal information such as passwords, usernames, security codes, and credit card numbers among other things.

You May Wonder How To Use This Trick: See Below

1} You Need Three Files in these Extension. txt, htm, & php. Name can be Anything
           txt  - Victims Details Will be Saved.
           htm  - It is a Fake Login Page of Facebook
           php  - It Controls the Whole Trick. Ex: It Redirects to Real Homepage, and Saves the                                     Details

2} Download That Files With Below Link. CLICK HERE to Download the Files

3} Upload them in a Free Hosting Site. I used www.my3gb.com you can use it too or Search other in Google

4} After That open Your Fake Page. Now you will think What is the Link of your Fake Page:

www.username.my3gb.com/index.htm (if you used My3gb as your Hosting Site).

5} Now Send it to Your Friend and Enjoy.

Thank You, Follow Me on FACEBOOK and TWITTER and GOOGLE+

Like My Page CLICK HERE


Continue reading