الثلاثاء، 1 مارس 2016

Damn Vulnerable Web Services: A Website Security Testing Environment

Damn Vulnerable Web Services: A Web Service Testing Environment

Damn Vulnerable Web Services: A Vulnerable Testing Environment


Definition: 

Damn Vulnerable Web Services is a vulnerable testing environment. Damn Vulnerable Web Services can be used to learn real world web service vulnerabilities. 

Aim of the Damn Vulnerable Web Services:
  • To aid security professionals in testing their skills.
  • To test their tools in a legal environment.

Following are the vulnerabilities which are exploited by this applications. 

  • REST API SQL Injection
  • WSDL Scanning
  • Server Side Request Forgery
  • Cross Site-Tracing
  • OS Command Injection
  • XML External Entity Injection
  • XPATH Injection
  • XML Bomb Denial-of-Service

Instructions:

XAMPP setup is used with the DVWS, which is afree and open source cross-platform web server solution. XAMPP is consists of MySQL database and Apache Web Server. To setup, download and install the XAMPP setup first. After that you have to download the dvws folder and copy the folder to your htdocs directory. Whatever the Lastly, Setup or reset the database by going to http://localhost/dvws/about/instructions.php

Note: Due to the compatibility issue may be some vulnerabilities such as Command Injection might not work.

Disclaimer:

The disclaimer is that this application should not be hosted on live or production environment.

Copyright:

Licensed is under GNU GENERAL PUBLIC LICENSE Version 3. 
To view a copy of this license, you can also visit through this link (http://www.gnu.org/licenses/gpl-3.0.txt)

To do list:
  • XML Injection
  • SOAP Injection
  • JSON Hijacking

Generate Your Own Amalgamated Host Files

Generate Your Own Amalgamated Host Files

StevenBlack/hosts: A amalgamated Hosts Files


Amalgamated hosts file was last updated on February 26 2016, which contains 27,149 unique entries. The several reputable hosts file can be merged into a single amalgamated hosts file, and no duplicity is allowed. Using the Python script you can also download the amalgamated hosts file and clone this repo.


The main goal of amalgamated hosts file are:
  • Provide easy extensions.
  • De-dupe the resultant combined list.
  • Automatically combine high-quality lists of hosts.
  • Keep the resultant file reasonably sized.

With both additions and removals, a hosts source should be frequently updated, by its maintainers. If the hosts file is larger, then a higher level of curation is expected. On various Operating System, this amalgamated hosts file, will expect to serve both the mobile devices and the desktop.

Host files of the following locations are amalgamated.
  • The Adaway hosts file, updated regularly.
  • MVPs.org Hosts file at http://winhelp2002.mvps.org/hosts.htm, updated monthly, or thereabouts.
  • Dan Pollock at http://someonewhocares.org/hosts/ updated regularly.
  • Malware Domain List at http://www.malwaredomainlist.com/, updated regularly.
  • Peter Lowe at http://pgl.yoyo.org/adservers/, updated regularly.
  • My own small list in raw form here.

For generating your own amalgamated hosts file:

Based on the sources in local data/ subfolder, the updateHostsFile.py script will generate amalgamated hosts. The updateHostsFile.py script is compatible on python 2.7 and Python 3. There will be a script which prompts you that it will use the already existing hosts file ar fetch updated versions.

How to use it?

If you are using Python 3 then:
python3 updateHostsFile.py [--auto] [--replace] [--ip nnn.nnn.nnn.nnn] [--extensions ext1 ext2 ext3]

If you are using Python 2.7 then:
python updateHostsFile.py [--auto] [--replace] [--ip nnn.nnn.nnn.nnn] [--extensions ext1 ext2 ext3]


The Command line options is:
On using the command --auto, or -a: it run the script without prompting. When --auto is invoked, Host data sources, including extensions, are updated.

How to find which sources are amalgamated?
Just add additional sources by placing each in a subfolder of the data. A new hosts file copy is provided of that and place its update URL in update.info.

What is hosts file?
A plain text file which is used by all the Operating System in order to map hostnames to IP addresses. The hosts file is preferential to DNS, in many OS.

For example, to nullify requests to some doubleclick.net servers, adding these lines to your hosts file will do it:

# block doubleClick's servers
127.0.0.1 ad.ae.doubleclick.net
127.0.0.1 ad.ar.doubleclick.net
127.0.0.1 ad.at.doubleclick.net
127.0.0.1 ad.au.doubleclick.net
127.0.0.1 ad.be.doubleclick.net
# etc...

We recommend using 0.0.0.0 instead of 127.0.0.1

Location of your hosts file:
You can easily modify your current hosts file with a text editor. Mac OS X, iOS, Android, Linux: /etc/hosts folder.

Use the following command:
Windows: %SystemRoot%\system32\drivers\etc\hosts folder.

For reloading hosts file:
You can use the following commands to manually flush your DNS cache once the new hosts file is in place.

Open the terminal and run:
For Mac OS X
sudo dscacheutil -flushcache;sudo killall -HUP mDNSResponder

For Windows open the command prompt:

Windows XP: Start -> Run -> cmd
Windows Vista, 7: Start Button -> type cmd -> right-click Command Prompt -> "Run as Administrator"
Windows 8: Start -> Swipe Up -> All Apps -> Windows System -> right-click Command Prompt -> "Run as Administrator"
and run:
ipconfig /flushdns

Open a Terminal and run with root privileges in Linus OS:

Debian/Ubuntu sudo /etc/rc.d/init.d/nscd restart



Image Source: Shutterstock

الاثنين، 29 فبراير 2016

Shodan A Search Engine For Hackers



Shodan: A Search Engine For Hackers

It's true that we are increasingly connected day by day, this may be due to the Internet of Things (IoT).  Internet of Things (IoT) consists of a complex network of systems and physical devices that allow devices to communicate and exchange data. The applications could be anything among them some are like infrastructure management, domestic applications, transportation, healthcare, environmental monitoring etc.

Each and Every single device is interconnected to every other in future. Then the security will be the main issue. Along with the products development cycle, Security has become a bolt-on additions to products.


Result:

Anyone can easily access the network of interconnected & insecure devices publically from the internet. Shodan is a search engine like Google. Google index the web page content over ports 80(HTTP) or 443(HTTPS) and Shodan crawls the web searching for devices  and respond to the host of another ports like 25 (SMTP), 22 (SSH), 21 (FTP), 23 (Telnet), 443, 3389(RDP) etc. Once the responding host is discovered by the Shodan, it connects to the machine and the port banner is pulled down. 

A wide range of internet connected devices has been discovered by Shodan in 2009, that incudes traffic signalling equipment, domestic home appliances, webcams, firewalls, industrial control systems for nuclear power plants and electrical grids and even more than that. They all are connected to the internet without any security not even with authentication. 

Webcam included the images of marijuana plantations, garages, front gardens, cash register cameras, swimming pools, ski slopes, colleges and schools and many more. There is also a paid members features on Shodan search engine. 

Shodan provides the simple and powerful searching and it provides it with ease. If you have a basic account then it provides you only the limited number of results. So, if you want to access it more then you have to upgrade it. The premium features of Shodan includes plotting the host locations on maps, accessing the full search listings etc. It also gives you a feature to search using filters. It makes your search even more easier.


  • city: find devices in a particular city
  • country: find devices in a particular country
  • geo: you can pass it coordinates
  • hostname: find values that match the hostname
  • net: search based on an IP
  • os: search based on the operating system
  • port: find particular ports that are open
  • before/after: find results within a timeframe

Many of the devices that Shodan detects and indexes are not 100% safe from any unauthorised access. In this era or world nothing is static, who knowns when can any malicious exploits and vulnerabilities are being discovered and disclosed. The example is a well-known computer networking companies in the world – Juniper. Recently they disclose that some of their devices contained a hard-coded back-door password. By hard-coded back-door password, it allows anybody to supply the password against a valid user account. We can also search for Juniper firewalls by using Shodan. Around 1,800 vulnerable Juniper firewalls that are currently sitting targets right now on the internet.

If we consider the major threat to our safety and security then the attacks on networked industrial control systems will come first. It may include alist:

  • The signalling systems on transport networks
  • The traffic lights that allow us to drive safely
  • Regulate the treatment plants that deliver drinking water
  • Nuclear reactors that deliver our energy.

We have to take care of all the information related to security implications when we purchase any device. As same the proper risk management framework in case of businesses

Check here Shodan

New Phase of Crypto Wars Between FBI And Apple

New Phase of Crypto Wars Between FBI And Apple

New Phase of Crypto Wars Between FBI And Apple. 


Do you know what is known as Crypto wars? Okay I’ll tell you that In the 1990s the U.S. authorities tried to strictly stop any kind of effective encryption because that were calling the very defective as well as harmful to export the polished munitions and then finally they were misplaced. And after that this will become known as Crypto Wars for over 20 years. 


One more time again the war catching fire after the exposing of Snowden event in which the subject was that the technological companies again began spreading encryption by placing their common and popular consumer products. And you know what that time the war led by FBI Director James Comey who is an officer of Law Enforcement and they clamorously insisted that the U.S. technological companies created a backdoor only for disturbing them by encrypting process.

But as all of us know that this wouldn’t be possible because there were not only U.S. technical companies who know and could create the backdoor but also hackers can also do this work very effectively and this is widely and well known by everyone. That’s why the news was letting down and not spreading so much else it moving out faster. But the encryption for disturbing the officers still continues.

But the advocates of technical US companies alert towards the disturbing element that is encryption and they always alert for this and actively pointed out the insufficiency and impossibilities of the anti-encryption movement that was jumping on any sign of backsliding. And they have always focused on the process of defending the encryption, even the US authorities always tried to shift their focus to anything else. 

Whereas the public noticed all these fights between Apple & FBI and this could not be wrong if you want to say that the public also entered in the Post-Crypto Phase in this Crypto Wars.  

The Court Order:-

Apple is precluding the Court Orders because it would be required to found and provide a new way to hack an iPhone 5c that is belonging to San Bernardino killer Syed Rizwan Farook.

But there is a problem that the Apple could not break the encryption because they have no idea about how they scrambled the iPhone’s data. Whereas FBI has no tension about all this incident because there were no need to worry for FBI either the company tried to open phone with just a single right password or not. 

And the CEO of Apple, Tim Cook gave a disaffected response towards public regarding the court order, “The ‘key’ to an encrypted system is a piece of information that unlocks the data, and it is only as secure as the protections around it.”

And it’s those protections that are now under siege.

And if you think this was a sudden move through the government’s side but it’s not true this is not a sudden move for a government. As Bloomberg News recently reported, President Obama’s National Security Council last fall shaped a secret “decision memo” in which they are requesting to government agencies to revealed the both technical and legal ways to skirt encryption instead of breaking it.

They were also said that analyze the whole conditions and find out the cost of each and every option. Whether there was a need of changing any kind of laws then think about that and do the right thing according to the situation that’s why figure out all things and gave them a report related to that event.

According to a Washington Post story in September, an administration of Obama sent a working group who spent some months and worked with that technical companies then after that they were coming up with a list of technological methods for breaking the encryption. 

And finally, they obscene with a particular one idea of professionals of computer security that was to force companies for sending the  malware to users phones for using automatic software updates.

Whereas regardlessly Comey’s continue to complaining that the enforcement law is continuously “going dark” due to encryption and the FBI has been continuously not only creating but also purchasing viruses, Trojan horses, and many other types of malware to help break the digital devices and finally, they got success to find the unbreakable encryption after many years.

In September, an FBI spokesperson Christopher Allen wrote in an email to The Intercept that “The FBI routinely identifies, evaluates, and tests potential exploits in the interest of cyber security.”

According to the public records it is shown that the FBI had been used the physically hacking into the computers since at least 2001 when they placed a keystroke-logger on Scarfo’s computer that is known as “Little Nicky” after an investigation related to the American Mafia.

And those days FBI were also used its own created a self-malware which is known as Computer and IP Address Verifier (CIPAV). Even government agents tricked to find a high school kid in Washington into downloading it and exposing his identity when he was making bomb threats in 2007. 

The technology policy program manager for the Mercatus Center at George Mason University, Andrea Castillo wrote in an email to The Intercept, “I think that for many within law enforcement, the priority is to access data, point blank. That could mean installing backdoors directly into encryption standards or finding some kind of workaround.”

She also added that “The first strategy failed in the court of public opinion, so it appears that they are now attempting more covert methods to get around encryption. Unfortunately, there are major security risks with both approaches.”

National Security Agency Director Adm. Mike Rogers said in January that “spending time arguing” is “a waste of time.” And also said that it would be a bigger issue for domestic local law enforcement after forcing the Yahoo News.

But it is also true and also show in the documents of Snowden that the NSA has passed many years for actively trying to hack Apple phones as well as devices and you know what this would be starting from date back to 2006 even that time it was not unveiled.

A Big Con?

The technology and civil liberties policy analyst for the Niskanen Center, Ryan Hagemann wrote in an email to The Intercept, “Over the past few months, I’ve been wondering why it is the FBI has been pushing so hard in the public forum to advocate for backdoors when almost everyone, from technologists to the tech industry to civil society to Congress, has been opposed to such an approach.”

And also added that  “I think what we’re seeing unfold here is part of a multi-pronged strategy by law enforcement, possibly with the tacit approval and support of the intelligence community.”

Hagemann said also about the way of trying to hack the digital devices,“I think we should be more fearful of the strategy the FBI is using in the courts to push their ill-advised and Constitutionally dubious agenda.”

Julian Sanchez who is a senior fellow at the Cato Institute, said that “The threat of a costly fight over legislation, even if unlikely to become law, may be largely geared toward getting Silicon Valley, or, at least, a critical mass of companies, to adopt a more cooperative posture.” That means “quietly finding ways to accommodate the government.”

According to Sanchez when finally the government accepts that the self-explanatory evident for this unbreakable encryption then there will be need of some kind of demanding with the “compromise” with the legislative process.

And also said that it will be imaginable “privacy groups celebrating a victory” when it happens, “while intel officials snicker into their sleeves at a ‘defeat’ due to the plan.

Wireshark New Version 2.0.2 Available With Resolved Major Security Issues

Wireshark New Version 2.0.2 Available With Resolved Major Security Issues

Wireshark New Version 2.0.2 Available With Resolved Major Security Issues


There is an official announcement from the Wireshark Company that here is another major version of Wireshark available now. The new version is known as Wireshark 2.0.2. 


As you all aware that the Wireshark is a great and most popular networking protocol analyzer which is used by security experts for a long time that is really important as well as useful for analyzing purposes, troubleshooting, educational purposes and also for development. 

You know what the new version also had a lot of many new security issues that were also introduced in the previous version of Wireshark.  And the defects were listed as: X.509AF, HTTP/2, LBMC, RSL, LLRP, ASN.1 BER, IEEE 802.11, HiQnet, GSM A-bis OML and so on were also had been introduced too.

But now the company officially introduced a new document of a new version that this version has featured with many security features because they have noticed almost 40 bugs and they had been working on it and now they become succeed to overcome all those problems with this new version. And now Wireshark have best results as well as good news for users also.

In this new version, Wireshark 2.0.2 have been also already updated many protocols such as – HTTP, HTTP/2, NS Trace, PPTP, IPv6, IPv4, SPICE, MAC LTEand also many more were updated apart from crashing of host protocols.  But overall there is also some more good news for users is that Wireshark 2.0.2 has also solved the problems related to some more security issues like – DLL hijacking vulnerability, SPICE dissector loop and DNP dissector loop. 

If you want then you can check the full list of all changes of software in the official website of Wireshark. And you can download this beneficial software from the official website of that company. 
At the last but not least the best thing is that this version is available for GNU/LINUX, Windows and also for MAC OS X.  You really have to check out this software at least one time go and visit the official website and then download it!

الأحد، 28 فبراير 2016

What Software Do Warehouses Use To Keep Track of Inventory


The inventory in your warehouse represents a lot of value, and it is essential to keep track of each and every component. Organizing data has always been a challenge, and new software tools are making it easier than ever to streamline costs and improve productive output.

The Old Ways 

Before computers became common place in the business world, complicated ledgers were kept by hand in log books. Very precise notes of inventory had to be maintained and inventory specialists relied on physical counts of parts. This method was error prone as a human being can only keep track of so much information at a time. While obsolete, upgrading with a personal computer and digital ledgers presents many of the same problems to small businesses.

The Spread Sheet

For small companies or startups, an inventory ledger can be approximated with a well-organized spreadsheet. Spreadsheet software is robust and can perform a number of automated calculations that reduce errors in counts, but as a business grows, this method must be abandoned as well. Spreadsheets do not store history or track process moves. The files must be constantly updated, and there is the risk that important data can be lost. Reports must be generated from scratch, and redundant information between different departments can overwhelm your company’s decision makers.

Dedicated Database

Eventually a large enough company needs to implement a database system to track inventory. With a barcode reader and digital locations, placing parts into a system and tracking their moves through a process is easy. Reports can be generated that help the warehouse staff streamline redundancies. It is even possible to create multiple locations for your components, and the information remains current.
Databases are great tools, but they are still limited in many ways. They require hardware to support the data, and information can only be accessed by those in the warehouse. Reports are much easier to create, but new information must be manually transferred back and forth between business units.

ERP Warehouse Solutions

Most companies now depend on enterprise resource planning software. These are the most advanced and powerful tools that companies have for managing their entire operations. Like the database, the information in your warehouse is easy to organize and keep current, but an ERP system integrates all of the data your company uses into one solution. Each department has easy access to information that impacts its operations.

With current information shared across business units, employees are free to make decisions and respond to changes in the market. It is important for sales staff to know what is available. Customer service reps should be able to see if a delivery has been made on time when responding to a complaint. Accounting departments need to be able to estimate the value of the inventory to balance accounts.

ERP solutions are also readily available to small companies through software service programs. Instead of purchasing and maintaining the computing hardware and software themselves, high speed internet access gives companies the options to contract with a solutions provider. Storing data on a network server operated by an outside company lowers the initial cost and provides quick access to these tools.

The better organized your inventory is, the greater the efficiency you have in your operations. Upgrading with an ERP solution gives your company the opportunity to streamline processes and increase its competitive edge. These tools are more readily available and essential than ever before.

Around 2.3 Million Android Malware Samples Detected In 2015

Around 2.3 Million Android Malware Samples Detected In 2015


Around 2.3 Million Android Malware Samples Detected in 2015


The German cyber-security firm G DATA said that "during 2015, a sample of the Android malware has appeared every 11 seconds, and in total 2,333,777 malware samples for the whole year, it was raised 50% as compared to the previous year 2014 when it was only 1,548,129 samples."


According to the G DATA's Q4 2015 Mobile Malware Report, revealed that during the last quarter of 2015, researchers also came across 758,133 new Android malware files, which was only the increase of 32% from previous quarter.

When they put the past year criminals they found that around 2.5 different malicious Android apps spread their malware families.

The reason behind the assault on Android devices may be the increased fame of Android and their market shares too, which continue to be high as it ever was. User uses their mobile phones, tablets for financial and banking operations too.

Since most crooks are motivated by financial gains, they tend to follow the money, and so, have expanded their malware arsenal to include more tools that target the Android ecosystem.

Malware grew in sophistication is not just your run-of-the-mill viruses. In past month, it was discovered by the security companies researchers that most of the target to the Android device is to steal and gain access to the financial information.

"The most dangerous Android malware are Mazar BOT, Acecard, Asacub and Xbot, which is categorized as a ransomware, information stealers, and even banking trojans."

Internet of Things(IoT) is also the reason for the increase in mobile malware said by G DATA researchers. Many of the sensitive information are held by the Internet-connected devices and are managed by the mobile apps.

Whatever the targeting flaws contain by these mobile apps, hackers get to the IoT devices by the help of these mobile apps. When the device's firmware can't be modified with a bootkit component, then the mobile app is used as a persistent infection point.