Tuesday, 2 July 2013

REVENGE OF THE 'BANGLA-SIAS' : Malaysian websites hacked

Several local website domains registered under the "com.my" have been hacked by irresponsible parties, the Malaysian Communications and Multimedia Commission (MCMC) said today. MCMC chairman Datuk Mohamed Sharil Tarmizi said initial investigations revealed that the hacking had been confined to registered websites, which had the "com.my" prefix.

"MCMC was notified that the websites of several prominent companies in Malaysia had been compromised by the hackers," he said in a statement. "Quick action by the website operators prevented further damage by hackers but we are very concerned about the issue," Mohamed Sharil said.

He said most of the affected websites were up and operating again and a special team has been formed to investigate the intrusion. The team comprises personnel from MCMC and the police, Mohamed Sharil said, declining to elaborate further.

It is understood that one of the prominent websites, which had been hacked, was that of US computer manufacturer Dell. Unidentified parties hacked into the Dell website today, voicing their support for Bangladeshi workers working at its manufacturing plant in Penang.

Dell was not available for comment but reports of the hacking spread fast on social media. On the popular lowyat.net forum, users were abuzz when news of the 2pm hacking broke out and the provocative message left on the Dell website. The hacker identified himself as Tigerm@te who claimed to be a Bangladeshi.

The provocative message left was "Hello Malaysia, you think you are more advanced than us? Respect our workers, we will respect you! Running it since 2007". - July 1, 2013.

From:
Yahoo Malaysia news
TWCN Tech News

Friday, 19 April 2013

Tutorial 2: Installing Mutillidae on Backtrack 5

The next tutorial series is learning to pentes website. There are many ways we can do this, but in this series I will focus on attacking mutillidae. I found that mutillidae has comprehensive leaning curve of XSS and SQL attack with few level of difficulty.

My computer do not have much memory hence I decided to install mutillidae on Backtrack 5. So the first step into the journey is to setup our environment.

How do I setup my mutillidae on Backtrack 5 ?

Thursday, 18 April 2013

Cyber Criminals take advantage of Boston attack for spreading malware

Cyber criminals have exploited interest in the breaking news story of the explosions at the Boston Marathon by spreading malware. Messages spammed out by attackers claim to contain a link to video footage of Monday's terrorist activity in Boston, with subject lines such as "2 Explosions at Boston Marathon".

Tuesday, 16 April 2013

Anonymous launches attack on Israeli government websites

The global hacking group Anonymous launched a cyber attack against Israeli government websites in a web protest on the country's annual Holocaust memorial day. Anonymous threatened to disrupt and erase Israel from cyberspace in protest over its mistreatment of Palestinians.

In response to the eight day assault (Started on 7th April ) that killed 133 Palestinians, Anonymous defaced thousands of Israeli sites and provided information for Gazans facing Internet and communications blackouts.


There are 60 million hacking attempts were reportedly made. Most of the attacks have had little impact, and Israeli experts even say they welcome the attempts as ways of sharpening their defenses. Israel itself is accused of taking part in much more sophisticated cyber attacks against its enemies, particularly Iran.

Friday, 12 April 2013

Tutorial 1: BackTrack 5 Basic



The easiest method of installing Backtrack 5 is to download the latest Vmware Image, extract the files and double click the Vmware VMX files.

Please take note that You must install VMWare Player or Workstation in order to recognise and boot VMX files.

Step 1: Download Latest Backtrack 5


Step 2: Extract the downloaded file and just double click


Step 3: Login using username= root and password= toor


Step 4: Enter graphic mode by typing: startx 



Step 5: Assigning IP
If you use NAT option on VMWare Network Configuration, DHCP will be automatically assign to wired network interface, you just need to bring up the interface by issuing the command:
root@bt:~# ifconfig eth0 up

If you prefer network with "Bridge/Host Only" option, you need to manually assign the IP, Gateway and DNS by issuing the following command:

root@bt:~# ifconfig eth0 192.168.88.133 255.255.255.0
root@bt:~# route add default gw 192.168.88.254
root@bt:~# echo nameserver 192.168.88.1 > /etc/resolv.conf

Step 6: Get familiar with "Pentest" Directory
All pentesting tools is under "Pentest" directory. You can use following command to get familiar:
root@bt:~# cd /pentest/
root@bt:/pentest# ls
root@bt:/pentest# tree -L 1 -d


Step 7: Updating Backtrack by issuing the following command:
root@bt:~# apt-get update
root@bt:~# apt-get upgrade
root@bt:~# apt-get dist-upgrade

Now you are ready to try out linux command. Backtrack is based on Ubuntu hence most of the command is similar with Ubuntu. In fact you can install "Ubuntu Software Center" as well. Try out the following.

I hope you enjoy and stay tune for the next tutorial..


Tuesday, 2 April 2013

'Biggest cyber-attack in history' slows down internet worldwide after quarrel between web-hosting company and anti-spam group


Internet users worldwide are having to endure slow connections after the biggest cyber-attack in history. The attackers are throwing so much digital traffic at online networks that they have reportedly disrupted access to popular sites such as Netflix, the on-demand TV streaming service. Tonight there were fears that any worsening of the attack could affect web browsing and emails.

The onslaught has focused attention on the extent to which modern communications depend on the internet. Matthew Prince, chief executive of CloudFlare, one of the firms dealing with the assault, likened it to a series of digital “nuclear bombs”. “It’s so easy to cause so much damage,” he added.