الخميس، 8 أكتوبر 2015

To Be A Part of International Programmer Player Competition And Win upto $500,000


To Be A Part of International Programmer Player Competition (IPPC) And Win upto $500,000

Faced with time Programmers and Hackers:
Speed & Skill Battle for $500.000

We are already convinced that there are many gifted programmers and ingenious hackers.
Now we want to know who the fastest and most flexible are.
After all, we are in the century of speed: TIME = $

Next Hacker IPPC: International Programming Player Competition, February 26 & 27, 2016 in Berlin, Germany, the 2016 IPPC promises an exciting two days of intriguing events and programming competitions featuring 3,000 of the world’s best up and coming developers and programmers in an extreme and exciting skill competition.

IPPC’s main event is where the true competition really begins and everyone can be a winner in the Xtrem Programming Competition Speed & Skill Challenge. $500.000 cash prize they await the winners. This multi-stage challenge starts with each programmer having to successfully find and fix errors in three random Java programs. Once that phase is completed, the programmer needs to achieve a score of 150,000 points in a single Classic Pac-Man game.  Once both tasks are completed, the fastest programmers win a share of the cash pool.  In addition, contestants’ contest performance information will be made available for all Company's.

The 2016 International Programming Player Competition will also offer technical sessions on programming, an open panel discussion with renowned hackers and programmers, and the opportunity for the world’s top programmers to be exposed to and meet leading high tech companies from around the globe. The two day IPPC is open to programmers worldwide and space is filling up rapidly. All the money from our sponsors and advertisements that will be gathered will increase the winner’s number.

About Next Hacker IPPS
Next Hacker IPPS LDT is a worldwide group of like-minded computer programmers. Their mission is to organize and host international programming events that connect talented programmers with corporations. The team specializes in planning and producing high quality competitive programming events. We live and breathe inspiring events, we love them, and it’s all we do.

Contact Details
Email: team@nexthacker.com
Website: http://www.nexthacker.com

NEXTHACKER IPPC LTD
Miami - 201 South Biscayne Boulevard - USA / Athens - Prasinou Lofou- Theatre Square (Minoti)- Greece / Sofia - Business Center Evrotur 2 – Bulgaria
Lisa Novichenko

Contest Director
Tel. +30 211 2104995

Former Reuters Journalist Convicted of Helping Anonymous To Hack Los Angeles Times Website


Former Reuters Journalist Convicted of Helping Anonymous To Hack Los Angeles Times Website.

Matthew Keys, age 28 from California was found guilty of giving login credentials to the Tribune Co.'s computer system. 

Matthew will face up to 25 years in prison, and sentenced on 20 January 2016. He charged for computer hacking under the Computer Fraud & Abuse Act.

According to FoxNews,

He was fired by Tribune-owned FOX affiliate KTXL-TV in Sacramento two months before the Times' website was hacked, and federal prosecutors in Sacramento say he wanted payback. He was fired by the Reuters news agency after charges were filed in 2013.

A spokesman for Tribune Media Co, Gary Weitman, said: "We are pleased that the justice system worked. We will let today's verdict speak for itself."

Edward Snowden Tweeted


Matthew also gives his reaction with tweeted,
About the Tribune Company 
Tribune Company, is an American multimedia corporation that is headquartered in Chicago, Illinois, United States. Tribune Media is one of the largest television broadcasting companies, owning 39 television stations across the United States and operating three additional stations through local marketing agreements. Tribune Technology LLC, another subsidiary, manages the interactive operations of major daily newspapers such as the Chicago Tribune and Los Angeles Times and their associated websites

الأربعاء، 7 أكتوبر 2015

This Female Hacker SexyCyborg Can Break The Security With Her Shoe Heels


This Female Hacker SexyCyborg Can Break The Security With Her Shoe Heels

Her shoes hide the equipment's for hacking into Wi-Fi networks. She can secretly sniff your computers with hidden WiFi testing tools and steal the data remotely.

How She get the idea ? 

she said,

"My typical clothing does not leave room to hide anything- which is all the more reason they would not be suspicious of me."

With my shadowless shoes I distract the target with my…upper body and they don’t see the real danger on my feet, "

I’ve been watching the TV show "Mr. Robot" and while I know not all of it is accurate some of it is and it got me curious. I’m already pretty comfortable with command line and remote server administration from my web development work, and it turns out a lot of ‘hacking’ tools are just testing tools any sensible IT professional would use- just without a GUI.


So I spent the month hitting the books (well web pages) watching lots of videos and learning a bit about information security and penetration testing (I wonder how many idiot jokes that phrase is going to cause…). I still don’t know much, but I know a tiny bit more than I did. Enough to ask people who know more than me the right questions- and enough for a fun project.

So I devised the Wu Ying Shoes (无影鞋)! - Penetration Testing Platform Heels!  "Wu Ying" means “shadowless",



What she can bring inside the Sandal Heels

  • USB keylogger
  • Retractable Ethernet cable for OpenWRT router
  • Lock-picking set.


Watch the Video, How she break the Security? 

الثلاثاء، 6 أكتوبر 2015

YiSpector First iOS Malware That Attacks On Apple iOS Devices


YiSpector: First iOS Malware That Attacks On Apple iOS Devices

YiSpecter is different from previously seen iOS malware in that it attacks both jailbroken and non-jailbroken iOS devices through unique and harmful malicious behaviors. 

Cyber Security firm Palo Alto networks researcher Claud Xiao defines that, how this malware attack work on iOS devices which targets in China and Taiwan.

He said in the blog,

Specifically, it’s the first malware we’ve seen in the wild that abuses private APIs in the iOS system to implement malicious functionalities.

Yispector Infected iOS device

 YiSpecter is the first real world iOS malware that combines these two attack techniques and causes harm to a wider range of users. It pushes the line barrier of iOS security back another step.


  • Whether an iPhone is jailbroken or not, the malware can be successfully downloaded and installed.
  • Even if you manually delete the malware, it will automatically re-appear
  • Using third-party tools you can find some strange additional “system apps” on infected phones
  • On infected phones, in some cases when the user opens a normal app, a full screen advertisement will show.


Palo Alto Networks has released IPS and DNS signatures to block YiSpecter’s malicious traffic. This blog also contains suggestions for how other users can manually remove YiSpecter and avoid potential similar attacks in the future. Apple has also been notified.

According to analysis reports by Qihoo 360 and Cheetah Mobile, YiSpecter was also spread by the Lingdun worm.
A malicious webpage uploaded by Lingdun worm

Lingdun uses fake VeriSign and Symantec certificates to bypass malware detection systems. Its primary goal is to download and to install additional Windows software onto a PC. Most of this additional software is benign but at least one installation was malicious.

Apple said in Statement,

"This issue only impacts users on older versions of iOS who have also downloaded malware from untrusted sources. We addressed this specific issue in iOS 8.4 and we have also blocked the identified apps that distribute this malware. We encourage customers to stay current with the latest version of iOS for the latest security updates. We also encourage them to only download from trusted sources like the App Store and pay attention to any warnings as they download apps.”

How to Remove YiSpecter from Your iOS Devices?

  • Go  to Settings –> General –> Profiles and remove all unknown or untrusted profiles.
  • Delete any installed apps with names 情涩播放器, 快播私密版 or 快播0.
  • You can use any third-party iOS management tool such as iFunBox on Windows or Mac OS X to connect with your iPhone or iPad
  • Then check for installed iOS apps like Phone, Weather, Game Center, Passbook, Notes, or Cydia and delete them.



Last month, we reported XcodeGhost malware infected almost 40 popular apps in the Chinese App. Store.

الاثنين، 5 أكتوبر 2015

MEMSCAN A Memory Scanning Tool For A Specific Sequence of Bytes



MEMSCAN A Memory Scanning Tool.. 
For A Specific Sequence of Bytes!

A memory scanning tool which uses mach_vm* to either dump memory or look for a specific sequence of bytes.
To build MEMSCAN, you will need to have the OS installed. Well, you don't really need it but it makes life easier.

Once Theos is installed, simply navigate to the MEMSCAN folder in terminal and run:

make package install

Usage

Dumping the memory of a process


  1. Obtain the target process PID, using ps.
  2. Provide the PID to memscan:

./memscan -p <PID> -d

Finding objects in memory

Open your target app or process in a disassembler, grab first ~16 bytes (customise this number as you will) of the method you want to hook and these bytes will be your "signature".

Write the signature to a file, make sure to encode the bytes like so:

echo -n -e '\x55\x48\x89\xE5\xB8\x15\x00\x00\x00\x5D' > needle

Run the scanner against the target process. It will locate the signature in memory and print it's address. The signature has to be passed in as bytes, not a literal string so use the scanner as shown:

./memscan -p <pid> -s <Path to file containing needle> 

e.g:

./memscan -p 1234 -s ./needle

MEMSCAN should then print the address where the needle is located in memory.


Download

السبت، 3 أكتوبر 2015

US Stock Market Company Scottrade Hacked 4.6 million Customers Are On Risk


US Stock Market Company Scottrade Hacked.
4.6 million Customers Are on Risk!

Hackers hacked the name and physical address of customers data.
Scottrade is a privately owned American discount retail brokerage firm headquartered in Town and Country, Missouri.

"We take the security of the information entrusted to us very seriously and are fully cooperating with law enforcement in its investigation and efforts to bring the perpetrators to justice," the company said.

Was I Affected?
Current information indicates that the cybercriminals had unauthorized access to our network for a period of several months between late 2013 and early 2014.

If you had an account previous to February 2014, your information may have been accessed through this incident. We are directly notifying everyone whose information was contained in the affected database so they are aware of what happened.

For Clients
If your information was contained in the affected database, you will receive a letter or email from Scottrade with additional information and resources.

We have secured the known intrusion point and conducted an internal data forensics investigation on this incident with assistance from a leading computer security firm. We have taken appropriate steps to further strengthen our network defenses.

What they Hacked

  • Names
  • Physical Address
  • Email Id's 
  • Social Security numbers

Mostly hackers wants to steal customer names and address. According to Krebon Security Scottrade spokesperson was not immediately available by email, but said in a statement to journalist Brian Krebs, who first reported the breach, that the focus of the attack was "a list of client names and street addresses" that was taken from its systems.

Yesterday, we reported about T-Mobile 15 million customers data got Hacked

الجمعة، 2 أكتوبر 2015

T- Mobiles 15 Million Users Data Gets Hacked


T- Mobiles 15 Million Users Data Gets Hacked!

Hackers breached an Experian network it is the World's biggest consumer credit monitoring firm and vendor of the T-mobile company who process the credit card applications.

T Mobile CEO John Legere said in the statement,

"Obviously I am incredibly angry about this data breach and we will institute a thorough review of our relationship with Experian, but right now my top concern and first focus is assisting any and all consumers affected. I take our customer and prospective customer privacy VERY seriously. This is no small issue for us. I do want to assure our customers that neither T-Mobile’s systems nor network were part of this intrusion and this did not involve any payment card numbers or bank account information."

Investigation is on ?
The investigation is ongoing, but what we know right now is that the hacker acquired the records of approximately 15 million people, including new applicants requiring a credit check for service or device financing from September 1, 2013 through September 16, 2015.

These records include information such as name, address and birth date as well as encrypted fields with Social Security number and ID number (such as driver’s license or passport number), and additional information used in T-Mobile’s own credit assessment. Experian has determined that this encryption may have been compromised. We are working with Experian to take protective steps for all of these consumers as quickly as possible.

"We take privacy very seriously and we understand that this news is both stressful and frustrating.  We sincerely apologize for the concern and stress that this event may cause," said Craig Boundy, Chief Executive Officer, Experian North America. "That is why we're taking steps to provide protection and support to those affected by this incident and will continue to coordinate with law enforcement during its investigation."

If you have been affected ?
Anyone concerned that they may have been impacted by Experian’s data breach can sign up for two years of FREE credit monitoring and identity resolution services at www.protectmyID.com/securityincident.

T-Mobile International AG is a German holding company for Deutsche Telekom AG's various mobile communications subsidiaries outside Germany. Based in Bonn, Germany.

T-Mobile is the third biggest mobile firm in the US.