Showing posts with label hacking news. Show all posts
Showing posts with label hacking news. Show all posts

Saturday, October 19, 2013

Qatar DNS hacked by Syrian Electronic Army -Facebook, Google Defaced

Sponsored Links
It appears almost all hackers like to do DNS hijack attack instead of targeting the main target.  DNS hijack attacks allows them to deface high profile websites such as Google, Yahoo and more.

Now, the famous Syrian hacker group " Syrian electronic army " has also chosen "DNS hijack attack".  The group compromised the Qatar Domain registrar "registry.qa".

qatar registery

The hackers successfully managed to change the DNS records of high profile websites and defaced them.  The list of affected websites includes Government and Military websites, Google Qatar, Facebook Qatar, Vodafone Qatar and more websites.


facebook.qa hacked


At the time of writing, most of the websites are still showing the defacement page while other websites displaying "CPU Limit Exceeded" error message.

It is still in question how hackers break into the Qatar Registry portal whether a usual social engineering attack used by SEA or any other vulnerabilities.  We will update once we get a word from the group.

Saturday, October 12, 2013

NASA Hacked By Team Madleets member BMPoC

NASA Hacked By Team Madleets




msg:
"          
          __   _     ______      __ ____  ___________. ____.
         / \  / |    |  __ \    / / | __/ | __/_. .__||  __/ 
        /   \/  |    | |  | |  / /  | __  | __  | |  |\ \
       / /\   / /"\  | |  | | / /   | --/ | --/ | |    \ \
      / /  \./ / = \ | |_/ . / -----| --  | --  | |  ---' '
     / /    / / / \ \|_____//______/| --/ | --/ | | '____/
     ---    ----   --'----- ------- ----  ----  --- -----

By: BMPoC

Greats: sniffer, Invectus, h4x0r HuSsY, 1337, madcodE,
phpBuGz, Pain006, Darksnipper, b0x, Shadow008, Dr.Z0mbie,
DeXter, c0rrupt, etc."




                               https://informal.jpl.nasa.gov/meetings/ownz.txt
                                   http://zone-h.org/mirror/id/20965100

Friday, October 11, 2013

iPhone Lock Screen Bypass Vulnerability in iOS 7.02


ios 7.0.2

iPhone Lock Screen Bypass Vulnerability in iOS 7.02

ok guys , here you can read the title that now you can easily bypass the lock screen of iPhone..
Earlier  , apple has just released iOS updated version with some bug fixes but again it got exploited by iDownloadBlog.
The bug is founded by Dany Lisiansky and he also uploaded POC of this Bug!
 A step by step guide released by iDownloadblog:

    Make a phone call (with Siri / Voice Control)
    Click the FaceTime button
    When the FaceTime App appears, click the Sleep button
    Unlock the iPhone
    Answer and End the FaceTime call at the other end
    Wait a few seconds
    Done. You are now in the phone app
:)

+ Here is the POC video below :)

Metasploit website hacked by plaestinian hacker

Metasploit website hacked




MSG:
Hello Metasploit
After whatsapp , avira , alexa , avg and other sites
We was thinking about quitting hacking and disappear again ..!
But we said : there is some sites must be hacked
You are one of our targets
Therefore we are here ..
And there is another thing .. do you know Palestine ?
There is a land called Palestine on the earth
This land has been stolen by Zionist
Do you know it ?
Palestinian people has the right to live in peace
Deserve to liberat

Thursday, October 10, 2013

Google Malaysia Stamped By 1337

One more google stamped by Team MADLEETS Awesome work (y)




Google Malaysia Stamped By 1337
www.google.com.my
www.google.my
http://www.zone-h.com/mirror/id/20957809
http://www.zone-h.com/mirror/id/20957806

Tuesday, October 8, 2013

The Palestinian hackers group hacked worlds most popular messaging app website whatsapp and also hacked two popular security firm, Avira and AVG.
palestine-hacker-anonymous

Hackers replace the homepage of whatsapp, avira and avg website with their two message and their national anthem, first message-
we want to tell you that there is a land called Palestine on the earth
this land has been stolen by Zionist
do you know it ?
Palestinian people has the right to live in peace
Deserve to liberate their land and release all prisoners from israeli jails
we want peace, long live palestine.
Second message-
There Is No Full Security
We Can Catch You !
WhatsApp and AVG has resolved the issue, but the palestine anonymous hacker group again hack WhatsApp website and posted a picture on twitter.
The same group, earlier claimed to have hacked LeaseWeb, they posted on twitter,
yesterday we owned #Alexa, #redtube, #leaseweb and #facebook deleted our page but today .. we get #avg and #WhatsApp what next ? w8 for us

Sunday, October 6, 2013

\


Adobe has been hacked. The company says it’s the victim of a sophisticated cyberattack as a result of which information relating to 2.9 million customers and source code have been stolen. Brad Arkin, Adobe’s chief security officer, explains that the cybercriminals have accessed customer IDs, encrypted passwords, names, encrypted payment card data, expiration dates, and information on orders. The company has started notifying customers whose credit or debit card information was compromised. Adobe has also contacted the financial institutions that process their payments in an effort to prevent any misuse. Law enforcement has been called in and an investigation has been launched. Finally, customer 
passwords are being reset to prevent unauthorized access to Adobe ID accounts. In addition to customer information, Adobe also says the attackers stole source code for products such as Acrobat, ColdFusion, ColdFusion Builder and others. 

“Based on our findings to date, we are not aware of any specific increased risk to customers as a result of this incident,” Atkin noted. “We are not aware of any zero-day exploits targeting any Adobe products. However, as always, we recommend customers run only supported versions of the software, apply all available security updates, and follow the advice in the Acrobat Enterprise Toolkit and the ColdFusion Lockdown Guide,” he added. The source code stolen by the hackers was discovered by Brian Krebs and Alex Holden of Hold Security LLC. They stumbled upon 40 Gb of source code on a server used by the cybercrooks who stole data from major US data brokers. Adobe has told Krebs that the hackers accessed one of the company’s source code repositories sometime in mid-August 2013. Adobe has published a FAQ page, along with instructions on how to reset passwords. As always, users who have been utilizing the same username and password combination for other accounts are advised to change the password for those accounts as well.

Harvard University Security Breached
















Harvard University Security Breached By MindCracker AKA Kalemat Khan From PCA :D

http://d4d.seas.harvard.edu/wp-content/uploads/
http://www.hack-mirror.com/383304.html

LeaseWeb hosting site hacked and defaced by KDMS Team



LeaseWeb, one of the leading hosting providing company, has been breached and defaced by a hacker group named "KDMS Team".

"Who Are you? Who is but the form following the function of what and what are you is a hosting company with no security" The hackers wrote in the defaced page. ""KDMS Team: Well, we can see that :P ".

"Do You know what that means? We owned All of your hosted sites.  Index on your site is the prove ;)" The hackers added.

The company has responded to the security breach saying " Website should be back to normal in a few hours. No customer data compromised. We continue to investigate."

However, hacker posted in facebook saying " No customer data compromised ! sure?! :| investigate ? will you find any thing ?"
.

Saturday, October 5, 2013

Best 5 hacking apps for android

Best 5 hacking apps for android




Today I am gonna tell you about the top 5 android app for hacking. As we all know hacking and pen testing is only can be done on computers. But now the world is changing now your mobile is small hacking toolkit using these apps. Must try all these apps....

The Android Network Toolkit


In the last Defcon conference a new tool has been released by a security researcher and the tool is called “The Android network toolkit”. The has been developed for penetration tester and ethical hackers to test any network and vulnerabilities by using their mobile phones. This toolkit contain different apps that will help any hacker to find vulnerabilities and possibly exploit it. The company behind the app is an Israeli security firm called Zimperium.




---------------------------------------------------------------------------------------

Nmap for Android




Nmap (network mapper) is one the best among different network scanner (port finder) tool, Nmap mainly developed for Unix OS but now it is available on Windows and Android as well. Nmap for android is a Nmap apps for your phone! Once your scan finishes you can e-mail the results. This application is not a official apps but it looks good


-----------------------------------------------------------------------------------------FaceNiff 2.4 final- Session Hijacker for Android


Your Facebook account is at risk, just like a Firesheep (for firefox hacking) there is a FaceNiff for hijacking the session of famous social networking websites includes facebook and twitterFaceNiff is developed by Bartosz Ponurkiewicz who created Firesheep before but faceniff is for android OS.

-------------------------------------------------------------------------------------------

AnDOSid- DOS Tool for Android

AnDOSid- DOS Tool for Android

DOS or denial of service attack is very dangerous attack because it takes down the server 
(computer).AnDOSid allows security professionals to simulate a DOS attack (A http post flood attack to be exact) and of course a dDOS on a web server, from mobile phones.AnDOSid is designed for security professionals only!
------------------------------------------------------------------------------------------

SSHDroid- Android Secure Shell 



SSHDroid
- Android Secure Shell 

Secure shell or SSH is the best protocol that provides an extra layer of security while you are connecting with your remote machine.SSHDroid is a SSH server implementation for Android.
This application will let you to connect to your device from a PC and execute commands (like "terminal" and "adb shell").


Click here to download

Thursday, October 3, 2013

Syrian Electronic Army , the group known for hacking top media websites, brought down the New York Times, HuffingtonPost, Twitter websites. The list of affected websites includes twitter.com,twimg.com,nytimes.com huffingtonpost.co.uk, twitter.co.uk and few more domains belong to twitter. #Exclusive: How the hack happened  In an exclusive interview to E Hacking News, hackers confirmed us that they have hacked into Melbourne IT Servers and decrypted their passwords, also had access to their emails.
Exclusive Screenshot

Melbourne IT is an organization that provides domain name for high profile websites.  The security breach allowed the hacker to take control of the above mentioned domains and changed the DNS and other details. At the time of writing, the New York Time is still down but other websites have been recovered and back to normal. *Update: MatthewKeysLive, the internet's journalist, tweeted that Melbourne IT confirms it was compromised today "The Credentials of a Melbourne IT reseller (username and password) were used to access a reseller account on Melborune IT's systems. "

Tuesday, October 1, 2013

Reported by Sabari Selvan on Monday, September 30, 2013 



Anonymous hacktivists have hacked into official website of Jordan's Prime ministry in a protest against raising taxes and prices.  The website was defaced with a message in Arabic to Prime Minister Abdullah Nsur. "Hi uncle, how are you? We are sorry, we hacked your website. Are you upset? We feel much worse when you raise prices. The people know this feeling but you do not," the defacement message reads. According to Voice of Russia report , the website has been restored after it was hacked for several hours.  The official claimed to have identified the attackers. At the time of writing, the website(pmo.gov.jo) is offline.  You can still view the defacement in Google cache: http://webcache.googleusercontent.com/search?q=cache:http://pmo.gov.jo/PMO_Images/635159460595068250.htm - See more at: http://www.ehackingnews.com/2013/09/jordans-pms-website-hacked-by-anonymous.html#sthash.XrVpJlxH.dpuf