<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>gHacks technology news &#187; Hacking</title>
	<atom:link href="http://www.ghacks.net/tag/hacking/feed/" rel="self" type="application/rss+xml" />
	<link>http://www.ghacks.net</link>
	<description>A technology blog covering software, mobile phones, gadgets, security, the Internet and other relevant areas.</description>
	<lastBuildDate>Mon, 23 Nov 2009 09:33:31 +0000</lastBuildDate>
	<generator>http://wordpress.org/?v=2.8.6</generator>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
			<item>
		<title>Hacker Breaks into FEMA Phone System, Makes $12,000 Worth of Calls</title>
		<link>http://www.ghacks.net/2008/08/21/hacker-breaks-into-fema-phone-system-makes-12000-worth-of-calls/</link>
		<comments>http://www.ghacks.net/2008/08/21/hacker-breaks-into-fema-phone-system-makes-12000-worth-of-calls/#comments</comments>
		<pubDate>Thu, 21 Aug 2008 15:49:36 +0000</pubDate>
		<dc:creator>Cheryl</dc:creator>
				<category><![CDATA[Hacking]]></category>
		<category><![CDATA[Hardware]]></category>
		<category><![CDATA[Security]]></category>
		<category><![CDATA[FEMA]]></category>
		<category><![CDATA[Homeland security]]></category>
		<category><![CDATA[phone network]]></category>

		<guid isPermaLink="false">http://www.ghacks.net/?p=6346</guid>
		<description><![CDATA[I just came across an amusing news excerpt about the Federal Emergency Management Agency or FEMA, which is a part of Homeland Security. For those of you who don&#8217;t know, Homeland Security is a Cabinet department of the U.S. federal government with the responsibility of protecting the territory of the U.S. from terrorist attacks and [...]]]></description>
			<content:encoded><![CDATA[<p>I just came across an amusing news excerpt about the Federal Emergency Management Agency or FEMA, which is a part of Homeland Security. For those of you who don&#8217;t know, Homeland Security is a Cabinet department of the U.S. federal government with the responsibility of protecting the territory of the U.S. from terrorist attacks and responding to natural disasters. At least, that&#8217;s the Wikipedia definition.</p>
<p>FEMA recently installed a new voicemail system in their Maryland  Training Center, which uses the Private Branch Exchange or PBX phone network. This kind of system is used by thousands or maybe even millions of companies throughout the world.</p>
<p>Last weekend though, a hacker broke into the network and made over 400 international calls, totaling up to $12,000. Calls were made to various countries in the Middle East and Asia (ironic, huh) and lasted anywhere from 3 to 10 minutes per call.</p>
<p><span id="more-6346"></span></p>
<p>When the fraud was discovered, all outgoing long-distance calls from FEMA&#8217;s National Emergency  Training Center were halted. What&#8217;s even more embarrassing is that according to John Jackson, a security consultant, this type of attack is very old-school and used to take place around 15 years ago. Most telecommunications security administrators now know to configure security settings, such as having individual users create unique passwords and not continue to use the initial password assigned to users.</p>
<p>FEMA is busy investigating the situation, trying to determine who made the calls as well as the people who received them. As of now, it looks like a &#8220;hole&#8221; was left open by the contractor when the voicemail system was being upgraded. The agency refused to specify what the hole was or the name of the contractor believed to be responsible.</p>
<p>For something like this to happen to an organization like FEMA, it&#8217;s extremely embarrassing. It also underscores just how vulnerable a phone system is, which is why companies are shifting to Voice Over Internet Telephony services (VOIP).</p>
<p>In all likelihood, this is a practical joke that went a bit too far and the person responsible is just a fresh-faced kid who was fooling around. Then again, maybe not, considering the destinations of the calls. What do you think?</p>

	Tags: <a href="http://www.ghacks.net/tag/fema/" title="FEMA" rel="tag">FEMA</a>, <a href="http://www.ghacks.net/tag/hacking/" title="Hacking" rel="tag">Hacking</a>, <a href="http://www.ghacks.net/tag/homeland-security/" title="Homeland security" rel="tag">Homeland security</a>, <a href="http://www.ghacks.net/tag/phone-network/" title="phone network" rel="tag">phone network</a>, <a href="http://www.ghacks.net/tag/security/" title="Security" rel="tag">Security</a><br />

	<h4>Related posts</h4>
	<ul class="st-related-posts">
	<li><a href="http://www.ghacks.net/2006/04/17/top-15-security-and-hacking-tools-utilities/" title="Top 15 Security and Hacking Tools &#038; Utilities (April 17, 2006)">Top 15 Security and Hacking Tools &#038; Utilities</a> (0)</li>
	<li><a href="http://www.ghacks.net/2008/05/07/yahoo-marks-dangerous-search-results/" title="Yahoo marks dangerous search results (May 7, 2008)">Yahoo marks dangerous search results</a> (4)</li>
	<li><a href="http://www.ghacks.net/2009/08/11/wordpress-remote-admin-password-reset-vulnerability/" title="Wordpress Remote Admin Password Reset Vulnerability (August 11, 2009)">Wordpress Remote Admin Password Reset Vulnerability</a> (13)</li>
	<li><a href="http://www.ghacks.net/2006/07/22/wireless-hotspot-hacks/" title="Wireless Hotspot Hacks (July 22, 2006)">Wireless Hotspot Hacks</a> (1)</li>
	<li><a href="http://www.ghacks.net/2006/03/12/windows-worms-door-cleaner/" title="Windows Worms Door Cleaner (March 12, 2006)">Windows Worms Door Cleaner</a> (2)</li>
</ul>

]]></content:encoded>
			<wfw:commentRss>http://www.ghacks.net/2008/08/21/hacker-breaks-into-fema-phone-system-makes-12000-worth-of-calls/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Use Netflix Watch Now on more than 3 PCs</title>
		<link>http://www.ghacks.net/2008/05/27/use-netflix-watch-now-on-more-than-3-pcs/</link>
		<comments>http://www.ghacks.net/2008/05/27/use-netflix-watch-now-on-more-than-3-pcs/#comments</comments>
		<pubDate>Tue, 27 May 2008 20:44:07 +0000</pubDate>
		<dc:creator>Martin</dc:creator>
				<category><![CDATA[Hacking]]></category>
		<category><![CDATA[netflix]]></category>
		<category><![CDATA[netflix tips]]></category>

		<guid isPermaLink="false">http://www.ghacks.net/?p=4323</guid>
		<description><![CDATA[Each Netflix subscription gives the user access to a smaller movie library that can be accessed instantly from up to three PCs. All subscription plans except for the cheapest one include unlimited hours of watching movies on the computer. This service is limited to three computers though which might not be enough depending on the [...]]]></description>
			<content:encoded><![CDATA[<p>Each <a href="http://www.netflix.com/">Netflix</a> subscription gives the user access to a smaller movie library that can be accessed instantly from up to three PCs. All subscription plans except for the cheapest one include unlimited hours of watching movies on the computer. This service is limited to three computers though which might not be enough depending on the size of your household and your tech equipment.</p>
<p>Thankfully though it is fairly easy to authorize additional computers so that the Netflix Watch Now option is also available on them. The check if a computer may use the Watch Now option is done in the Windows Registry. The <a href="http://www.tech-recipes.com/rx/2889/netflix_how_to_enable_watch_now_on_more_than_three_computers">Tech Recipe</a> website found a simply way to copy the key of an authorized computer and import it to another computer to authorize that computer as well.</p>
<p>A user who wants to do that needs to start the Windows Registry on a computer that has the Watch Now option enabled. This is done by using the Windows R keyboard shortcut, entering regedit and hitting enter. Now navigate to the key HKEY_CURRENT_USER\ Software\ Netflix\ Movie Viewer\ and left-click the Movie Viewer key.</p>
<p><span id="more-4323"></span>Now access the export option under File > Export and save that key to the computer. Now copy that key to another computer running the same operating system. Open the Registry again and import the key using the File > Import menu. The key is specific to the operating system of the computer which means that you cannot import an XP key into Vista and vice versa.</p>

	Tags: <a href="http://www.ghacks.net/tag/hacking/" title="Hacking" rel="tag">Hacking</a>, <a href="http://www.ghacks.net/tag/netflix/" title="netflix" rel="tag">netflix</a>, <a href="http://www.ghacks.net/tag/netflix-tips/" title="netflix tips" rel="tag">netflix tips</a><br />

	<h4>Related posts</h4>
	<ul class="st-related-posts">
	<li><a href="http://www.ghacks.net/2007/03/27/weak-passwords/" title="Weak Passwords (March 27, 2007)">Weak Passwords</a> (12)</li>
	<li><a href="http://www.ghacks.net/2007/05/11/user-data-stolen-from-the-pirate-bay/" title="User Data Stolen from The Pirate Bay (May 11, 2007)">User Data Stolen from The Pirate Bay</a> (0)</li>
	<li><a href="http://www.ghacks.net/2008/01/23/use-a-magnet-to-protect-your-pc/" title="Use a Magnet to protect your PC (January 23, 2008)">Use a Magnet to protect your PC</a> (10)</li>
	<li><a href="http://www.ghacks.net/2006/01/11/the-anatomy-of-a-hack-video/" title="The Anatomy of a Hack Video (January 11, 2006)">The Anatomy of a Hack Video</a> (0)</li>
	<li><a href="http://www.ghacks.net/2008/05/27/texterity-magazines-offering-free-iphone-magazines/" title="Texterity Magazines offering free iPhone magazines (May 27, 2008)">Texterity Magazines offering free iPhone magazines</a> (2)</li>
</ul>

]]></content:encoded>
			<wfw:commentRss>http://www.ghacks.net/2008/05/27/use-netflix-watch-now-on-more-than-3-pcs/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Texterity Magazines offering free iPhone magazines</title>
		<link>http://www.ghacks.net/2008/05/27/texterity-magazines-offering-free-iphone-magazines/</link>
		<comments>http://www.ghacks.net/2008/05/27/texterity-magazines-offering-free-iphone-magazines/#comments</comments>
		<pubDate>Tue, 27 May 2008 07:46:57 +0000</pubDate>
		<dc:creator>Martin</dc:creator>
				<category><![CDATA[Hacking]]></category>
		<category><![CDATA[Knowledge]]></category>
		<category><![CDATA[iPhone]]></category>
		<category><![CDATA[iphone hacks]]></category>
		<category><![CDATA[iphone tips]]></category>
		<category><![CDATA[user agent]]></category>

		<guid isPermaLink="false">http://www.ghacks.net/?p=4278</guid>
		<description><![CDATA[Just a few minutes ago I completed the article that explained how to read 20 digital magazines for free by changing the browser&#8217;s User Agent to the one of the Apple iPhone. I decided to look for additional free iPhone offers and discovered that Texterity Magazines are also providing 50 magazines to iPhone users free [...]]]></description>
			<content:encoded><![CDATA[<p>Just a few minutes ago I completed the article that explained how to read 20 digital magazines for free by changing the browser&#8217;s User Agent to the one of the Apple iPhone. I decided to look for additional free iPhone offers and discovered that Texterity Magazines are also providing 50 magazines to iPhone users free of charge.</p>
<p>Again the User Agent is used as the only mechanism to check if an iPhone connects to the service. If you have already installed the <a href="http://www.ghacks.net/tag/firefox/">Firefox</a> User Agent switcher add-on and added the iPhone user agent to it you are ready to visit the iPhone <a href="http://iphone.texterity.com/magazines/">start page</a> at Texterity Magazines to read any of the 50 magazines for free in your browser.</p>
<p>If you have not done this visit my first article that explains how you can change the User Agent in Firefox to be identified as an iPhone (<a href="http://www.ghacks.net/2008/05/27/read-20-digital-magazines-for-free/">Iphone  user agent</a>) when browsing the Internet.</p>
<p><span id="more-4278"></span>Magazines seem to be specialized way more at Texterity. Some titles are The American Lawyer, Electronic Products, Extreme How-To, Greenlight Magazine and Popular Science.</p>

	Tags: <a href="http://www.ghacks.net/tag/hacking/" title="Hacking" rel="tag">Hacking</a>, <a href="http://www.ghacks.net/tag/iphone/" title="iPhone" rel="tag">iPhone</a>, <a href="http://www.ghacks.net/tag/iphone-hacks/" title="iphone hacks" rel="tag">iphone hacks</a>, <a href="http://www.ghacks.net/tag/iphone-tips/" title="iphone tips" rel="tag">iphone tips</a>, <a href="http://www.ghacks.net/tag/user-agent/" title="user agent" rel="tag">user agent</a><br />

	<h4>Related posts</h4>
	<ul class="st-related-posts">
	<li><a href="http://www.ghacks.net/2008/05/27/read-20-digital-magazines-for-free/" title="Read 20 Digital Magazines for Free (May 27, 2008)">Read 20 Digital Magazines for Free</a> (24)</li>
	<li><a href="http://www.ghacks.net/2008/06/20/transfer-files-between-iphone-ipod-and-computer/" title="Transfer Files between iPhone, iPod and Computer (June 20, 2008)">Transfer Files between iPhone, iPod and Computer</a> (7)</li>
	<li><a href="http://www.ghacks.net/2008/07/16/send-free-sms-with-iphone-and-ipod-touch/" title="Send Free SMS with iPhone and iPod Touch (July 16, 2008)">Send Free SMS with iPhone and iPod Touch</a> (5)</li>
	<li><a href="http://www.ghacks.net/2008/07/22/wordpress-for-iphone-is-not-a-killer-app/" title="Wordpress For iPhone Is Not A Killer App (July 22, 2008)">Wordpress For iPhone Is Not A Killer App</a> (7)</li>
	<li><a href="http://www.ghacks.net/2009/07/22/why-you-should-not-be-an-early-adopter/" title="Why you should not be an early adopter (July 22, 2009)">Why you should not be an early adopter</a> (23)</li>
</ul>

]]></content:encoded>
			<wfw:commentRss>http://www.ghacks.net/2008/05/27/texterity-magazines-offering-free-iphone-magazines/feed/</wfw:commentRss>
		<slash:comments>2</slash:comments>
		</item>
		<item>
		<title>Read 20 Digital Magazines for Free</title>
		<link>http://www.ghacks.net/2008/05/27/read-20-digital-magazines-for-free/</link>
		<comments>http://www.ghacks.net/2008/05/27/read-20-digital-magazines-for-free/#comments</comments>
		<pubDate>Tue, 27 May 2008 07:23:32 +0000</pubDate>
		<dc:creator>Martin</dc:creator>
				<category><![CDATA[Hacking]]></category>
		<category><![CDATA[Knowledge]]></category>
		<category><![CDATA[Uncategorized]]></category>
		<category><![CDATA[iphone hacks]]></category>
		<category><![CDATA[iphone tricks]]></category>
		<category><![CDATA[user agent]]></category>

		<guid isPermaLink="false">http://www.ghacks.net/?p=4276</guid>
		<description><![CDATA[Apple Iphone owners get more. They get free Wireless access at AT&#038;T Hotspots, which no longer is that easy to defeat and now they also get to view free digital magazines of 20 or so popular magazines without costs, courtesy of Zinio. Guess how they are providing those free digital magazines and figuring out that [...]]]></description>
			<content:encoded><![CDATA[<p>Apple Iphone owners get more. They get <a href="http://www.ghacks.net/2008/05/02/apple-and-att-will-learn-that-user-agents-are-no-good-for-access-control/">free</a> Wireless access at AT&#038;T Hotspots, which no longer is that easy to defeat and now they also get to view free digital magazines of 20 or so popular magazines without costs, courtesy of Zinio. Guess how they are providing those free digital magazines and figuring out that an Apple iPhone user is actually requesting it and not someone else ?</p>
<p>Yes, the same insecure User Agent check that did not work on so many occasions before. All that needs to be done is change the User Agent in your browser to the one of the iPhone which will trick the website into thinking that you are accessing it with an iPhone. This in turn will give you access to those magazines, among them PC Magazine, Technology Review, Macworld, Lonely Planet and, um, Playboy and Penthouse.</p>
<p>The content is provided in full screen in your browser and you can flip through the pages with a click. It&#8217;s probably not the most comfortable way but it&#8217;s free and easy enough. Pages are actually shown as images which means they can be saved to the local hard drive.</p>
<p><span id="more-4276"></span>Firefox users can install the <a href="https://addons.mozilla.org/en-US/firefox/addon/59">User Agent Switcher</a> add-on and configure it with the following User Agent:</p>
<p><code>Mozilla/5.0 (iPhone; U; CPU like Mac OS X; en) AppleWebKit/420.1 (KHTML, like Gecko) Version/3.0 Mobile/4A102 Safari/419 (United States)</code></p>
<p><img src="http://www.ghacks.net/wp-content/uploads/2008/05/iphone_user_agent.jpg" alt="" title="iphone user agent" width="389" height="261" class="alignnone size-medium wp-image-4277" /></p>
<p>just add the line into the User Agent field in the options of the add-on and any name in the description. Then switch to that User Agent and visit the <a href="http://imgs.zinio.com/iphone/">Zinio</a> website that was created for iPhone users. Thanks <a href="http://boardingarea.com/blogs/traveltechtalk/2008/05/26/bored-at-the-airport-read-a-free-magazine/">Scott</a> for the tip.</p>

	Tags: <a href="http://www.ghacks.net/tag/hacking/" title="Hacking" rel="tag">Hacking</a>, <a href="http://www.ghacks.net/tag/iphone-hacks/" title="iphone hacks" rel="tag">iphone hacks</a>, <a href="http://www.ghacks.net/tag/iphone-tricks/" title="iphone tricks" rel="tag">iphone tricks</a>, <a href="http://www.ghacks.net/tag/user-agent/" title="user agent" rel="tag">user agent</a><br />

	<h4>Related posts</h4>
	<ul class="st-related-posts">
	<li><a href="http://www.ghacks.net/2008/05/27/texterity-magazines-offering-free-iphone-magazines/" title="Texterity Magazines offering free iPhone magazines (May 27, 2008)">Texterity Magazines offering free iPhone magazines</a> (2)</li>
	<li><a href="http://www.ghacks.net/2007/03/27/weak-passwords/" title="Weak Passwords (March 27, 2007)">Weak Passwords</a> (12)</li>
	<li><a href="http://www.ghacks.net/2007/05/11/user-data-stolen-from-the-pirate-bay/" title="User Data Stolen from The Pirate Bay (May 11, 2007)">User Data Stolen from The Pirate Bay</a> (0)</li>
	<li><a href="http://www.ghacks.net/2008/05/27/use-netflix-watch-now-on-more-than-3-pcs/" title="Use Netflix Watch Now on more than 3 PCs (May 27, 2008)">Use Netflix Watch Now on more than 3 PCs</a> (0)</li>
	<li><a href="http://www.ghacks.net/2008/01/23/use-a-magnet-to-protect-your-pc/" title="Use a Magnet to protect your PC (January 23, 2008)">Use a Magnet to protect your PC</a> (10)</li>
</ul>

]]></content:encoded>
			<wfw:commentRss>http://www.ghacks.net/2008/05/27/read-20-digital-magazines-for-free/feed/</wfw:commentRss>
		<slash:comments>24</slash:comments>
		</item>
		<item>
		<title>Spy Tech: I see what you write</title>
		<link>http://www.ghacks.net/2008/05/19/spy-tech-i-see-what-you-write/</link>
		<comments>http://www.ghacks.net/2008/05/19/spy-tech-i-see-what-you-write/#comments</comments>
		<pubDate>Mon, 19 May 2008 20:49:31 +0000</pubDate>
		<dc:creator>Martin</dc:creator>
				<category><![CDATA[Hacking]]></category>
		<category><![CDATA[hack]]></category>
		<category><![CDATA[research]]></category>
		<category><![CDATA[Science]]></category>
		<category><![CDATA[spy]]></category>
		<category><![CDATA[technology]]></category>

		<guid isPermaLink="false">http://www.ghacks.net/?p=4194</guid>
		<description><![CDATA[Two new techniques to spy on computer users have been revealed these days by two independent scientific studies conducted at the University of California, Santa Barbara, and at Saarland University in Saarbrucken, Germany. The researchers in California developed an algorithm that can estimate what a computer is writing by watching the hands move. The algorithm [...]]]></description>
			<content:encoded><![CDATA[<p>Two <a href="http://www.networkworld.com/news/2008/051908-i-spy-your-pc-researchers.html?page=1">new</a> techniques to spy on computer users have been revealed these days by two independent scientific studies conducted at the University of California, Santa Barbara, and at Saarland University in Saarbrucken, Germany. The researchers in California developed an algorithm that can estimate what a computer is writing by watching the hands move. The algorithm is far from perfect and has a success rate of 40% which is enough to understand the meaning of the text that is written.</p>
<p>Words are chosen by probability and suggest alternatives which more often than not make more sense than the first word. This introduces a new technique to spy on users without having to actually access the computer at all, all that is needed is a good view of the hands and the measure of the keyboard.</p>
<p>The second spy tech could come right out of the latest James Bond movie. The researchers at Saarland University managed to write a computer algorithm that is capable of interpreting reflections of the computer screen on objects. The quality of the telescope plays an important role, a normal $500 telescope was able to read 12 point fonts of a reflection that was 5 meters away from the computer and 198 point fonts from a distance of ten meters.</p>
<p><span id="more-4194"></span>A more powerful Dobson telescope for $27500 was able to yield the same results from a maximum distance of 30 meters. Other tests allowed the researchers to view the monitor from a white wall that was 2 meters away from the computer screen.</p>
<p>The best way to defeat the techniques ? Don&#8217;t access a computer in public, always close the curtains when working with your computer and make sure no cameras are installed in the room with a computer.</p>

	Tags: <a href="http://www.ghacks.net/tag/hack/" title="hack" rel="tag">hack</a>, <a href="http://www.ghacks.net/tag/hacking/" title="Hacking" rel="tag">Hacking</a>, <a href="http://www.ghacks.net/tag/research/" title="research" rel="tag">research</a>, <a href="http://www.ghacks.net/tag/science/" title="Science" rel="tag">Science</a>, <a href="http://www.ghacks.net/tag/spy/" title="spy" rel="tag">spy</a>, <a href="http://www.ghacks.net/tag/technology/" title="technology" rel="tag">technology</a><br />

	<h4>Related posts</h4>
	<ul class="st-related-posts">
	<li><a href="http://www.ghacks.net/2007/05/11/user-data-stolen-from-the-pirate-bay/" title="User Data Stolen from The Pirate Bay (May 11, 2007)">User Data Stolen from The Pirate Bay</a> (0)</li>
	<li><a href="http://www.ghacks.net/2008/11/15/what-will-our-it-and-internet-future-be-like/" title="What will our IT and internet future be like? (November 15, 2008)">What will our IT and internet future be like?</a> (5)</li>
	<li><a href="http://www.ghacks.net/2007/03/27/weak-passwords/" title="Weak Passwords (March 27, 2007)">Weak Passwords</a> (12)</li>
	<li><a href="http://www.ghacks.net/2008/02/04/visible-body-visualise-your-body/" title="Visible Body &#8211; Visualise your body (February 4, 2008)">Visible Body &#8211; Visualise your body</a> (3)</li>
	<li><a href="http://www.ghacks.net/2008/05/16/virtual-girlfriend-bed/" title="Virtual Girlfriend Bed (May 16, 2008)">Virtual Girlfriend Bed</a> (3)</li>
</ul>

]]></content:encoded>
			<wfw:commentRss>http://www.ghacks.net/2008/05/19/spy-tech-i-see-what-you-write/feed/</wfw:commentRss>
		<slash:comments>6</slash:comments>
		</item>
		<item>
		<title>NTFS Alternate Data Streams</title>
		<link>http://www.ghacks.net/2008/01/24/ntfs-alternate-data-streams/</link>
		<comments>http://www.ghacks.net/2008/01/24/ntfs-alternate-data-streams/#comments</comments>
		<pubDate>Thu, 24 Jan 2008 16:51:55 +0000</pubDate>
		<dc:creator>Martin</dc:creator>
				<category><![CDATA[Operating Systems]]></category>
		<category><![CDATA[Security]]></category>
		<category><![CDATA[Windows]]></category>
		<category><![CDATA[software]]></category>
		<category><![CDATA[Alternate Data Streams]]></category>
		<category><![CDATA[hacker]]></category>
		<category><![CDATA[Hacking]]></category>
		<category><![CDATA[malicious]]></category>
		<category><![CDATA[ntfs]]></category>
		<category><![CDATA[virus]]></category>

		<guid isPermaLink="false">http://www.ghacks.net/2008/01/24/ntfs-alternate-data-streams/</guid>
		<description><![CDATA[This article is going to explain NTFS Alternate Data Streams: what they are, where they are, how you can detect them, create them and how they are used by hackers. In short, NTFS Alternate Data Streams can be used by hackers to fork file data into existing files without altering the existing file's function or size. You can guess where this is going, right ? They make it relatively easy to hide malicious code inside them which is much harder to detect.]]></description>
			<content:encoded><![CDATA[<p>This article is going to explain NTFS Alternate Data Streams: what they are, where they are, how you can detect them, create them and how they are used by hackers. In short, NTFS Alternate Data Streams can be used by hackers to fork file data into existing files without altering the existing file&#8217;s function or size. You can guess where this is going, right ? They make it relatively easy to hide malicious code inside them which is much harder to detect.</p>
<p>Creating NTFS Alternate Data Streams is not complicated at all. You can use the &#8220;type&#8221; command to do that. To fork the file virus.exe into calc.exe you would use the command <em>type virus.exe > calc.exe:virus:exe</em> if they are in the same directory. Add the path if they are not. The size of the calculator does not change, the only indicator is that the file changed stamp is altered.</p>
<p>But executing those files must be harder, right ? Wrong again. To execute virus.exe you use the command &#8220;start&#8221;, in our example it would be <em>start calc.exe:virus:exe</em>.</p>
<p><span id="more-2982"></span>A software like <a href="http://www.rekenwonder.com/streamexplorer.htm">Stream Explorer</a> can find those NTFS Alternate Data Streams on your hard drive. An alternative is List Alternate Data Streams</p>

	Tags: <a href="http://www.ghacks.net/tag/alternate-data-streams/" title="Alternate Data Streams" rel="tag">Alternate Data Streams</a>, <a href="http://www.ghacks.net/tag/hacker/" title="hacker" rel="tag">hacker</a>, <a href="http://www.ghacks.net/tag/hacking/" title="Hacking" rel="tag">Hacking</a>, <a href="http://www.ghacks.net/tag/malicious/" title="malicious" rel="tag">malicious</a>, <a href="http://www.ghacks.net/tag/ntfs/" title="ntfs" rel="tag">ntfs</a>, <a href="http://www.ghacks.net/tag/virus/" title="virus" rel="tag">virus</a><br />

	<h4>Related posts</h4>
	<ul class="st-related-posts">
	<li><a href="http://www.ghacks.net/2008/07/26/stream-explorer/" title="Stream Explorer (July 26, 2008)">Stream Explorer</a> (0)</li>
	<li><a href="http://www.ghacks.net/2007/02/16/introduction-to-new-phishing-techniques/" title="Introduction to new phishing techniques (February 16, 2007)">Introduction to new phishing techniques</a> (0)</li>
	<li><a href="http://www.ghacks.net/2008/06/30/hide-information-in-files/" title="Hide Information in Files (June 30, 2008)">Hide Information in Files</a> (0)</li>
	<li><a href="http://www.ghacks.net/2009/01/29/windows-xp-exfat-file-system-driver/" title="Windows XP exFAT File System Driver (January 29, 2009)">Windows XP exFAT File System Driver</a> (21)</li>
	<li><a href="http://www.ghacks.net/2008/09/15/which-programs-should-i-run-to-scan-a-computer-for-malicious-software/" title="Which Programs Should I Run To Scan A Computer For Malicious Software? (September 15, 2008)">Which Programs Should I Run To Scan A Computer For Malicious Software?</a> (13)</li>
</ul>

]]></content:encoded>
			<wfw:commentRss>http://www.ghacks.net/2008/01/24/ntfs-alternate-data-streams/feed/</wfw:commentRss>
		<slash:comments>3</slash:comments>
		</item>
		<item>
		<title>Use a Magnet to protect your PC</title>
		<link>http://www.ghacks.net/2008/01/23/use-a-magnet-to-protect-your-pc/</link>
		<comments>http://www.ghacks.net/2008/01/23/use-a-magnet-to-protect-your-pc/#comments</comments>
		<pubDate>Wed, 23 Jan 2008 16:46:25 +0000</pubDate>
		<dc:creator>Martin</dc:creator>
				<category><![CDATA[Hacking]]></category>
		<category><![CDATA[Hardware]]></category>
		<category><![CDATA[magnet]]></category>
		<category><![CDATA[pc]]></category>
		<category><![CDATA[protection]]></category>

		<guid isPermaLink="false">http://www.ghacks.net/2008/01/23/use-a-magnet-to-protect-your-pc/</guid>
		<description><![CDATA[A wonderful tip about a hack was send to me yesterday by Joe. It describes how to change the way a PC, or most other devices that use a power source, can be protected by by a simple magnet and some stuff that does not cost more than $5. All you need is a reed switch, a magnet and some duct tape. It does secure your pc as well from someone that wants to turn it on without your permission.]]></description>
			<content:encoded><![CDATA[<p>A wonderful tip about a hack was send to me yesterday by <a href="http://www.hacknmod.com/displayMOD.php?hack=870">Joe</a>. It describes how to change the way a PC, or most other devices that use a power source, can be protected by by a simple magnet and some stuff that does not cost more than $5. All you need is a reed switch, a magnet and some duct tape. It does secure your pc as well from someone that wants to turn it on without your permission.</p>
<p>You basically cut the power button cable of the motherboard, install the reed switch (controlled by magnetic fields) in between and tape the reed switch to the front panel. Now, whenever someone presses the power button nothing happens. Only if you press the magnet against the case at the position where you placed the reed switch and the power button the PC will turn on.</p>
<p>This is of course a basic protection and someone who really wanted to access it could simply remove the switch again or replace the power unit in the PC. Take a look at the video below that walks you through the installation of the protection.</p>
<p><span id="more-2974"></span><embed src="http://www.metacafe.com/fplayer/1036261/pc_protection_with_hidden_switch.swf" width="400" height="345" wmode="transparent" pluginspage="http://www.macromedia.com/go/getflashplayer" type="application/x-shockwave-flash"> </embed><br /><font size = 1>Pc Protection With Hidden Switch &#8211; <a href="http://www.metacafe.com/">A funny movie is a click away</a></font></p>

	Tags: <a href="http://www.ghacks.net/tag/hacking/" title="Hacking" rel="tag">Hacking</a>, <a href="http://www.ghacks.net/tag/hardware/" title="Hardware" rel="tag">Hardware</a>, <a href="http://www.ghacks.net/tag/magnet/" title="magnet" rel="tag">magnet</a>, <a href="http://www.ghacks.net/tag/pc/" title="pc" rel="tag">pc</a>, <a href="http://www.ghacks.net/tag/protection/" title="protection" rel="tag">protection</a><br />

	<h4>Related posts</h4>
	<ul class="st-related-posts">
	<li><a href="http://www.ghacks.net/2008/05/05/testing-a-newly-build-pc/" title="Testing a newly build PC (May 5, 2008)">Testing a newly build PC</a> (4)</li>
	<li><a href="http://www.ghacks.net/2006/02/02/risks-of-selling-your-old-pc/" title="Risks of selling your old pc (February 2, 2006)">Risks of selling your old pc</a> (0)</li>
	<li><a href="http://www.ghacks.net/2008/04/08/pc-building-advice/" title="PC Building Advice (April 8, 2008)">PC Building Advice</a> (1)</li>
	<li><a href="http://www.ghacks.net/2008/04/29/im-on-a-shopping-spree/" title="I&#8217;m on a shopping spree (April 29, 2008)">I&#8217;m on a shopping spree</a> (9)</li>
	<li><a href="http://www.ghacks.net/2008/09/15/can-you-build-a-pc-for-less-than-100/" title="Can You Build a PC for Less Than $100? (September 15, 2008)">Can You Build a PC for Less Than $100?</a> (16)</li>
</ul>

]]></content:encoded>
			<wfw:commentRss>http://www.ghacks.net/2008/01/23/use-a-magnet-to-protect-your-pc/feed/</wfw:commentRss>
		<slash:comments>10</slash:comments>
		</item>
		<item>
		<title>Alter all websites in the world</title>
		<link>http://www.ghacks.net/2007/12/29/alter-all-websites-in-the-world/</link>
		<comments>http://www.ghacks.net/2007/12/29/alter-all-websites-in-the-world/#comments</comments>
		<pubDate>Fri, 28 Dec 2007 23:52:12 +0000</pubDate>
		<dc:creator>Martin</dc:creator>
				<category><![CDATA[Entertainment]]></category>
		<category><![CDATA[Funny]]></category>
		<category><![CDATA[Hacking]]></category>
		<category><![CDATA[fun]]></category>
		<category><![CDATA[webmasters]]></category>

		<guid isPermaLink="false">http://www.ghacks.net/2007/12/29/alter-all-websites-in-the-world/</guid>
		<description><![CDATA[The following is a nice trick that I learned in a webmaster forum. I thought it would be nice to describe it to my readers as well because you can have some fun with it. It allows you to manipulate all elements of a website. You could for instance create number one positions on Google, add your own products to Amazon or write a cover story at CNN.]]></description>
			<content:encoded><![CDATA[<p>The following is a nice trick that I learned in a webmaster forum. I thought it would be nice to describe it to my readers as well because you can have some fun with it. It allows you to manipulate all elements of a website. You could for instance create number one positions on Google, add your own products to Amazon or write a cover story at CNN.</p>
<p>The changes are only temporary but you could make a screenshot and send them to your friends to have some fun with them. This is also a reminder that everything that is shown on screenshots can be easily faked. This is especially true for website revenue screenshots for instance.</p>
<p>All you need to do is load a website and load the following code in the address bar:</p>
<p><code>javascript:document.body.contentEditable='true'; document.designMode='on'; void 0</code></p>
<p><span id="more-2669"></span>Make sure you paste everything in one line and hit enter afterwards. Once that is done you can easily edit elements on the website. I created a short video that shows how I edited the Microsoft homepage.</p>
<p><object width="425" height="355"><param name="movie" value="http://www.youtube.com/v/GWvxqW3pCxc&#038;rel=1"></param><param name="wmode" value="transparent"></param><embed src="http://www.youtube.com/v/GWvxqW3pCxc&#038;rel=1" type="application/x-shockwave-flash" wmode="transparent" width="425" height="355"></embed></object></p>

	Tags: <a href="http://www.ghacks.net/tag/fun/" title="fun" rel="tag">fun</a>, <a href="http://www.ghacks.net/tag/hacking/" title="Hacking" rel="tag">Hacking</a>, <a href="http://www.ghacks.net/tag/webmasters/" title="webmasters" rel="tag">webmasters</a><br />

	<h4>Related posts</h4>
	<ul class="st-related-posts">
	<li><a href="http://www.ghacks.net/2006/11/29/zombie-city-tactics/" title="Zombie City Tactics (November 29, 2006)">Zombie City Tactics</a> (0)</li>
	<li><a href="http://www.ghacks.net/2006/11/18/yahoo-bought-a-site-i-never-heard-about/" title="Yahoo bought a site I never heard about (November 18, 2006)">Yahoo bought a site I never heard about</a> (2)</li>
	<li><a href="http://www.ghacks.net/2007/05/11/why-stumbleupon-is-better-than-digg-for-webmasters/" title="Why Stumbleupon is better than Digg for Webmasters (May 11, 2007)">Why Stumbleupon is better than Digg for Webmasters</a> (11)</li>
	<li><a href="http://www.ghacks.net/2007/08/17/which-adsense-ads-and-locations-work-best-on-my-blog/" title="Which Adsense Ads and Locations work best on my blog ? (August 17, 2007)">Which Adsense Ads and Locations work best on my blog ?</a> (6)</li>
	<li><a href="http://www.ghacks.net/2007/06/22/weekend-fun-starshine/" title="Weekend fun Starshine (June 22, 2007)">Weekend fun Starshine</a> (2)</li>
</ul>

]]></content:encoded>
			<wfw:commentRss>http://www.ghacks.net/2007/12/29/alter-all-websites-in-the-world/feed/</wfw:commentRss>
		<slash:comments>5</slash:comments>
		</item>
		<item>
		<title>User Data Stolen from The Pirate Bay</title>
		<link>http://www.ghacks.net/2007/05/11/user-data-stolen-from-the-pirate-bay/</link>
		<comments>http://www.ghacks.net/2007/05/11/user-data-stolen-from-the-pirate-bay/#comments</comments>
		<pubDate>Fri, 11 May 2007 12:12:48 +0000</pubDate>
		<dc:creator>Martin</dc:creator>
				<category><![CDATA[Hacking]]></category>
		<category><![CDATA[P2p]]></category>
		<category><![CDATA[The Web]]></category>
		<category><![CDATA[exploit]]></category>
		<category><![CDATA[hack]]></category>
		<category><![CDATA[piratebay hacked]]></category>
		<category><![CDATA[the piratebay]]></category>
		<category><![CDATA[userbase]]></category>

		<guid isPermaLink="false">http://www.ghacks.net/2007/05/11/user-data-stolen-from-the-pirate-bay/</guid>
		<description><![CDATA[Two hours ago bkp made an announcement on the official The Pirate Bay blog confirming that some hackers have been able to use a security hole in the blog software to get access to the user database of The Pirate Bay. Information stored in there are the username, the password and the email address of the user who signed up. The password and the email address are encrypted which means that the hacker is most likely unable to receive any valuable information from the data.]]></description>
			<content:encoded><![CDATA[<p>Two hours ago <a href="http://thepiratebay.org/blog" target="_blank">bkp</a> made an announcement on the official The Pirate Bay blog confirming that some hackers have been able to use a security hole in the blog software to get access to the user database of The Pirate Bay. Information stored in there are the username, the password and the email address of the user who signed up. The password and the email address are encrypted which means that the hacker is most likely unable to receive any valuable information from the data.</p>
<p>Bkp also said that they know who did this but does not say how they know. He could be referring to IP addresses that they found, other traces or confidential information. They ask every user to change the password during their next login which is apparently happening automatically at the very moment. It remains to be seen if the encryption used to encrypt the email addresses is strong enough to withstand decryption. </p>
<p><span id="more-1537"></span></p>

	Tags: <a href="http://www.ghacks.net/tag/exploit/" title="exploit" rel="tag">exploit</a>, <a href="http://www.ghacks.net/tag/hack/" title="hack" rel="tag">hack</a>, <a href="http://www.ghacks.net/tag/hacking/" title="Hacking" rel="tag">Hacking</a>, <a href="http://www.ghacks.net/tag/piratebay-hacked/" title="piratebay hacked" rel="tag">piratebay hacked</a>, <a href="http://www.ghacks.net/tag/the-piratebay/" title="the piratebay" rel="tag">the piratebay</a>, <a href="http://www.ghacks.net/tag/userbase/" title="userbase" rel="tag">userbase</a><br />

	<h4>Related posts</h4>
	<ul class="st-related-posts">
	<li><a href="http://www.ghacks.net/2008/05/19/spy-tech-i-see-what-you-write/" title="Spy Tech: I see what you write (May 19, 2008)">Spy Tech: I see what you write</a> (6)</li>
	<li><a href="http://www.ghacks.net/2007/03/27/weak-passwords/" title="Weak Passwords (March 27, 2007)">Weak Passwords</a> (12)</li>
	<li><a href="http://www.ghacks.net/2008/05/27/use-netflix-watch-now-on-more-than-3-pcs/" title="Use Netflix Watch Now on more than 3 PCs (May 27, 2008)">Use Netflix Watch Now on more than 3 PCs</a> (0)</li>
	<li><a href="http://www.ghacks.net/2008/01/23/use-a-magnet-to-protect-your-pc/" title="Use a Magnet to protect your PC (January 23, 2008)">Use a Magnet to protect your PC</a> (10)</li>
	<li><a href="http://www.ghacks.net/2009/07/17/the-piratebay-to-introduce-paid-subscriptions/" title="The Piratebay To Introduce Paid Subscriptions (July 17, 2009)">The Piratebay To Introduce Paid Subscriptions</a> (14)</li>
</ul>

]]></content:encoded>
			<wfw:commentRss>http://www.ghacks.net/2007/05/11/user-data-stolen-from-the-pirate-bay/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Weak Passwords</title>
		<link>http://www.ghacks.net/2007/03/27/weak-passwords/</link>
		<comments>http://www.ghacks.net/2007/03/27/weak-passwords/#comments</comments>
		<pubDate>Tue, 27 Mar 2007 05:19:03 +0000</pubDate>
		<dc:creator>Martin</dc:creator>
				<category><![CDATA[Hacking]]></category>
		<category><![CDATA[The Web]]></category>
		<category><![CDATA[brute-force]]></category>
		<category><![CDATA[password-generation]]></category>
		<category><![CDATA[passwords]]></category>
		<category><![CDATA[strategy]]></category>
		<category><![CDATA[weak-passwords]]></category>

		<guid isPermaLink="false">http://www.ghacks.net/2007/03/27/weak-passwords/</guid>
		<description><![CDATA[I came upon the article "How I would hack your weak passwords" yesterday and pondered if I should write an article about it. I decided that it would be worth it. The author of the article details how he would try and find out your passwords and get access to all of your accounts in the end. His first approach would be to use the most common used passwords by users on the net. He needs information about your personal life for some passwords but those information can be obtained pretty fast through social engineering. Trying those "top 10" passwords would already cover a large percentage of online users, statistically speaking that is.]]></description>
			<content:encoded><![CDATA[<p>I came upon the article &#8220;<a href="http://onemansblog.com/2007/03/26/how-id-hack-your-weak-passwords/" target="_blank">How I would hack your weak passwords</a>&#8221; yesterday and pondered if I should write an article about it. I decided that it would be worth it. The author of the article details how he would try and find out your passwords and get access to all of your accounts in the end. His first approach would be to use the most common used passwords by users on the net. He needs information about your personal life for some passwords but those information can be obtained pretty fast through social engineering. Trying those &#8220;top 10&#8243; passwords would already cover a large percentage of online users, statistically speaking that is.</p>
<p>The common password approach is the one that could give him instant success if the user is really using one of those common passwords for his accounts. His next approach would be to brute force his way in by brute forcing the password on a website that has weak security. Those sites would not react if large amounts of password requests would come in in short time. Most sites however ban IPs at least temporary after several failed attempts, still no problem if you know how to use proxies to attack with different IPs.</p>
<p><span id="more-1349"></span></p>
<p>But the brute force programs that he suggests are way outdated. Brutus ? wwwHack ? That&#8217;s last millennium. Current state of the art bruteforcers for basic authorization and form protected sites are <a href="http://carpetboy.deny.de/" target="_blank">C-Force</a> or Sentry. The brute force approach has one disadvantage. If you do not know the username you have to try username and password combinations and there is no guarantee that you will discover the combination for the user that you want to hack. You could get login details for other users which are absolutely worthless to you. This means, bruteforcing is only an option if you know the username of the user.</p>
<p>There are actually two ways to bruteforce an account. The first would be to use pregenerated lists of usernames and passwords or try combinations to get into an account. The second to try every char combination possible. It should be noted that the second option could very well last several years or even centuries depending on the size of the selected password.</p>
<p>So, bruteforcing is not really an option and he is not explaining how he would get the username of the user in question except mentioning cookies. Cookies are stored on the targets machine which would mean that he needs either access to that machine or an exploit to get them while the user is online. Not very practicable.</p>
<p>So, what can users learn from his analysis ? </p>
<ul>
<li>Don&#8217;t overuse passwords, it&#8217;s more secure to use different passwords. If you only use one password someone who finds this one out gets access to everything else that is protected by that single password</li>
<li>Don&#8217;t use passwords that are easy to guess or common. No names, no sport teams, relatives, pets, work related, hobbies , and so on</li>
<li>Use numbers and special chars if possible to increase the security of the password. Remember that size matters.</li>
<li>Write them down locally and put them in a safe or use a software that encrypts them. You could for instance use a True Crypt partition to store a textfile with your passwords in them</li>
<li>Every password could be important to gain additional information about a user, never choose weak ones</li>
</ul>

	Tags: <a href="http://www.ghacks.net/tag/brute-force/" title="brute-force" rel="tag">brute-force</a>, <a href="http://www.ghacks.net/tag/hacking/" title="Hacking" rel="tag">Hacking</a>, <a href="http://www.ghacks.net/tag/password-generation/" title="password-generation" rel="tag">password-generation</a>, <a href="http://www.ghacks.net/tag/passwords/" title="passwords" rel="tag">passwords</a>, <a href="http://www.ghacks.net/tag/strategy/" title="strategy" rel="tag">strategy</a>, <a href="http://www.ghacks.net/tag/weak-passwords/" title="weak-passwords" rel="tag">weak-passwords</a><br />

	<h4>Related posts</h4>
	<ul class="st-related-posts">
	<li><a href="http://www.ghacks.net/2008/11/11/brute-force-calculator/" title="Brute Force Calculator (November 11, 2008)">Brute Force Calculator</a> (13)</li>
	<li><a href="http://www.ghacks.net/2007/05/11/user-data-stolen-from-the-pirate-bay/" title="User Data Stolen from The Pirate Bay (May 11, 2007)">User Data Stolen from The Pirate Bay</a> (0)</li>
	<li><a href="http://www.ghacks.net/2008/05/27/use-netflix-watch-now-on-more-than-3-pcs/" title="Use Netflix Watch Now on more than 3 PCs (May 27, 2008)">Use Netflix Watch Now on more than 3 PCs</a> (0)</li>
	<li><a href="http://www.ghacks.net/2008/01/23/use-a-magnet-to-protect-your-pc/" title="Use a Magnet to protect your PC (January 23, 2008)">Use a Magnet to protect your PC</a> (10)</li>
	<li><a href="http://www.ghacks.net/2006/05/27/ultra-high-security-password-generator/" title="Ultra High Security Password Generator (May 27, 2006)">Ultra High Security Password Generator</a> (4)</li>
</ul>

]]></content:encoded>
			<wfw:commentRss>http://www.ghacks.net/2007/03/27/weak-passwords/feed/</wfw:commentRss>
		<slash:comments>12</slash:comments>
		</item>
		<item>
		<title>Introduction to new phishing techniques</title>
		<link>http://www.ghacks.net/2007/02/16/introduction-to-new-phishing-techniques/</link>
		<comments>http://www.ghacks.net/2007/02/16/introduction-to-new-phishing-techniques/#comments</comments>
		<pubDate>Fri, 16 Feb 2007 07:59:54 +0000</pubDate>
		<dc:creator>Martin</dc:creator>
				<category><![CDATA[Hacking]]></category>
		<category><![CDATA[The Web]]></category>
		<category><![CDATA[flash-phishing]]></category>
		<category><![CDATA[hacker]]></category>
		<category><![CDATA[phishing]]></category>
		<category><![CDATA[social-phishing]]></category>

		<guid isPermaLink="false">http://www.ghacks.net/2007/02/16/introduction-to-new-phishing-techniques/</guid>
		<description><![CDATA[Many users are still unaware of the dangers that phishing could mean for their life's. They might now that hackers try to lure unsuspecting users to fake websites hoping that their victims would try to supply login information, credit card details or social security numbers while trying to use the service. Those users already have difficulties identifying those first generation phishing websites that undoubtedly look and feel more professional with every passing day.]]></description>
			<content:encoded><![CDATA[<p>Many users are still unaware of the dangers that phishing could mean for their life&#8217;s. They might now that hackers try to lure unsuspecting users to fake websites hoping that their victims would try to supply login information, credit card details or social security numbers while trying to use the service. Those users already have difficulties identifying those first generation phishing websites that undoubtedly look and feel more professional with every passing day.</p>
<p>Anti-Phishing toolbars and implementations in the major browsers are useful but can, as you will see, give the user a false sense of security. This can be attributed to the fact that databases that contain the information are not updated in real time. Someone has to report a phishing website before it will be added to the database, it would be more than difficulty to create a automatic solution for this problem.</p>
<p><span id="more-1209"></span> A second difficulty are new techniques used by hackers that are not detected by ant-phishing toolbars and implementations.</p>
<p><strong>Flash Phishing</strong></p>
<p>Anti-Phishing toolbars do check the page content for signs of phishing but do not analyze flash objects at all. Hackers know this and tend to use this to their advantage by using flash to emulate the original website. Users tend to believe that the site is &#8220;clean&#8221; because their anti-phishing toolbar did not react to it.</p>
<p>It is however relatively easy to find out if the current website is fake.</p>
<ol>
<li>You need to take a look at the url in the address bar. If it is not the original address leave it immediately.</li>
<li>Check if it is using https instead of http. If it is using http leave the site immediately.</li>
<li>If it is using https check the certificate.</li>
<li>If the site is only using flash leave it.</li>
<li>Never follow links in emails (unless you know the person)</li>
<li>Never follow links in chats (unless you know the person)</li>
</ol>
<p>You should immediately contact the supposed owner of the website and ask for advice.</p>
<p><strong>Social Phishing</strong></p>
<p>Phishers use other means of getting sensitive data from users. We all know that we should contact the company if we have doubts about a website. What if you would receive a mail from your bank asking you to call them back because there was a security breach ? Would you call them back ?</p>
<p>What if the number was redirecting you to someone in China speaking fluent English ? Would you give him the information he would be asking for to verify´that you are the customer ? Sir, we need to make sure that you are indeed our customer. Could you please supply your credit card information so that I can verify your identity ?</p>
<p>This is not a huge market yet but it will grow over time.</p>

	Tags: <a href="http://www.ghacks.net/tag/flash-phishing/" title="flash-phishing" rel="tag">flash-phishing</a>, <a href="http://www.ghacks.net/tag/hacker/" title="hacker" rel="tag">hacker</a>, <a href="http://www.ghacks.net/tag/hacking/" title="Hacking" rel="tag">Hacking</a>, <a href="http://www.ghacks.net/tag/phishing/" title="phishing" rel="tag">phishing</a>, <a href="http://www.ghacks.net/tag/social-phishing/" title="social-phishing" rel="tag">social-phishing</a><br />

	<h4>Related posts</h4>
	<ul class="st-related-posts">
	<li><a href="http://www.ghacks.net/2008/01/24/ntfs-alternate-data-streams/" title="NTFS Alternate Data Streams (January 24, 2008)">NTFS Alternate Data Streams</a> (3)</li>
	<li><a href="http://www.ghacks.net/2009/08/24/help-the-fight-against-phishing-with-phishtank/" title="Help the fight against phishing with Phishtank (August 24, 2009)">Help the fight against phishing with Phishtank</a> (1)</li>
	<li><a href="http://www.ghacks.net/2008/12/02/web-of-trust-collaborative-online-security/" title="Web of Trust: collaborative online security (December 2, 2008)">Web of Trust: collaborative online security</a> (7)</li>
	<li><a href="http://www.ghacks.net/2007/03/27/weak-passwords/" title="Weak Passwords (March 27, 2007)">Weak Passwords</a> (12)</li>
	<li><a href="http://www.ghacks.net/2007/05/11/user-data-stolen-from-the-pirate-bay/" title="User Data Stolen from The Pirate Bay (May 11, 2007)">User Data Stolen from The Pirate Bay</a> (0)</li>
</ul>

]]></content:encoded>
			<wfw:commentRss>http://www.ghacks.net/2007/02/16/introduction-to-new-phishing-techniques/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>SQL Injection Walkthrough</title>
		<link>http://www.ghacks.net/2006/05/16/sql-injection-walkthrough/</link>
		<comments>http://www.ghacks.net/2006/05/16/sql-injection-walkthrough/#comments</comments>
		<pubDate>Tue, 16 May 2006 07:07:49 +0000</pubDate>
		<dc:creator>Martin</dc:creator>
				<category><![CDATA[Hacking]]></category>
		<category><![CDATA[hacking videos]]></category>
		<category><![CDATA[sql]]></category>
		<category><![CDATA[sql injection]]></category>

		<guid isPermaLink="false">http://www.ghacks.net/2006/05/16/sql-injection-walkthrough/</guid>
		<description><![CDATA[You might already know what sql injection means, in case you did not i post the definition of wikipedia:

SQL injection is a security vulnerability that occurs in the database layer of an application. Its source is the incorrect escaping of dynamically-generated string literals embedded in SQL statements. It is in fact an instance of a more general class of vulnerabilities that can occur whenever one programming or scripting language is embedded inside another.
]]></description>
			<content:encoded><![CDATA[<p>You might already know what sql injection means, in case you did not i post the definition of wikipedia:</p>
<blockquote><p><em>SQL injection is a security vulnerability that occurs in the database layer of an application. Its source is the incorrect escaping of dynamically-generated string literals embedded in SQL statements. It is in fact an instance of a more general class of vulnerabilities that can occur whenever one programming or scripting language is embedded inside another.</em></p></blockquote>
<p>What does it mean in plain english ? You try to utilise instances of a website that submits data to the webserver, this could be for example a login page, a form field or a comments form.</p>
<p>The article &#8220;<a href="http://www.securiteam.com/securityreviews/5DP0N1P76E.html" target="_blank">SQL Injection Walkthrough</a>&#8221; helps you identify vulnerable scripts and explains the methods to test, verify and exploit that vulnerability. After reading the article you will have a basic understanding of the technique, if you follow the links given at the end you will be able to read advanced topics on the subject.</p>
<p><span id="more-496"></span></p>

	Tags: <a href="http://www.ghacks.net/tag/hacking/" title="Hacking" rel="tag">Hacking</a>, <a href="http://www.ghacks.net/tag/hacking-videos/" title="hacking videos" rel="tag">hacking videos</a>, <a href="http://www.ghacks.net/tag/sql/" title="sql" rel="tag">sql</a>, <a href="http://www.ghacks.net/tag/sql-injection/" title="sql injection" rel="tag">sql injection</a><br />

	<h4>Related posts</h4>
	<ul class="st-related-posts">
	<li><a href="http://www.ghacks.net/2006/06/06/sql-injection-attacks-by-example/" title="SQL Injection Attacks by Example (June 6, 2006)">SQL Injection Attacks by Example</a> (0)</li>
	<li><a href="http://www.ghacks.net/2007/03/27/weak-passwords/" title="Weak Passwords (March 27, 2007)">Weak Passwords</a> (12)</li>
	<li><a href="http://www.ghacks.net/2007/05/11/user-data-stolen-from-the-pirate-bay/" title="User Data Stolen from The Pirate Bay (May 11, 2007)">User Data Stolen from The Pirate Bay</a> (0)</li>
	<li><a href="http://www.ghacks.net/2008/05/27/use-netflix-watch-now-on-more-than-3-pcs/" title="Use Netflix Watch Now on more than 3 PCs (May 27, 2008)">Use Netflix Watch Now on more than 3 PCs</a> (0)</li>
	<li><a href="http://www.ghacks.net/2008/01/23/use-a-magnet-to-protect-your-pc/" title="Use a Magnet to protect your PC (January 23, 2008)">Use a Magnet to protect your PC</a> (10)</li>
</ul>

]]></content:encoded>
			<wfw:commentRss>http://www.ghacks.net/2006/05/16/sql-injection-walkthrough/feed/</wfw:commentRss>
		<slash:comments>1</slash:comments>
		</item>
		<item>
		<title>Top 15 Security and Hacking Tools &amp; Utilities</title>
		<link>http://www.ghacks.net/2006/04/17/top-15-security-and-hacking-tools-utilities/</link>
		<comments>http://www.ghacks.net/2006/04/17/top-15-security-and-hacking-tools-utilities/#comments</comments>
		<pubDate>Mon, 17 Apr 2006 07:35:03 +0000</pubDate>
		<dc:creator>admin</dc:creator>
				<category><![CDATA[Security]]></category>
		<category><![CDATA[ethereal]]></category>
		<category><![CDATA[freeware]]></category>
		<category><![CDATA[Hacking]]></category>
		<category><![CDATA[jtr]]></category>
		<category><![CDATA[password]]></category>
		<category><![CDATA[ping]]></category>
		<category><![CDATA[port]]></category>
		<category><![CDATA[sniff]]></category>
		<category><![CDATA[ssh]]></category>
		<category><![CDATA[telnet]]></category>
		<category><![CDATA[Tools]]></category>
		<category><![CDATA[utilities]]></category>

		<guid isPermaLink="false">http://www.ghacks.net/2006/04/17/top-15-security-and-hacking-tools-utilities/</guid>
		<description><![CDATA[Finally a great darknet.org.uk that lists 15 Security and Hacking Tools &#038; Utilities. Users who are working in the security field will recognize many if not all of them and beginners will have a great list of tools with explanation that they can work with. You find for instance the telnet and ssh tool putty in the list next to the tool Eraser which overwrites files on your windows system more than once to make sure it can´t be restored that easily.]]></description>
			<content:encoded><![CDATA[<p>Finally a great darknet.org.uk article that lists <a target="_blank" href="http://www.darknet.org.uk/2006/04/top-15-securityhacking-tools-utilities/">15 Security and Hacking Tools &#038; Utilities</a>. Users who are working in the security field will recognize many if not all of them and beginners will have a great list of tools with explanation that they can work with. You find for instance the telnet and ssh tool putty in the list next to the tool Eraser which overwrites files on your windows system more than once to make sure it can´t be restored that easily.</p>
<p>Here is a short list of all the other tools mentioned: Nmap, Nessus Remote Security Scanner, John the Ripper, Nikto, Superscan, pof, Ethereal, Yersinia, LCP, Cain and Abel, Kismet, Netstumbler and hping. Make sure you check the tools that you do not know about yet, it might be worth it.</p>
<p><span id="more-414"></span></p>

	Tags: <a href="http://www.ghacks.net/tag/ethereal/" title="ethereal" rel="tag">ethereal</a>, <a href="http://www.ghacks.net/tag/freeware/" title="freeware" rel="tag">freeware</a>, <a href="http://www.ghacks.net/tag/hacking/" title="Hacking" rel="tag">Hacking</a>, <a href="http://www.ghacks.net/tag/jtr/" title="jtr" rel="tag">jtr</a>, <a href="http://www.ghacks.net/tag/password/" title="password" rel="tag">password</a>, <a href="http://www.ghacks.net/tag/ping/" title="ping" rel="tag">ping</a>, <a href="http://www.ghacks.net/tag/port/" title="port" rel="tag">port</a>, <a href="http://www.ghacks.net/tag/security/" title="Security" rel="tag">Security</a>, <a href="http://www.ghacks.net/tag/sniff/" title="sniff" rel="tag">sniff</a>, <a href="http://www.ghacks.net/tag/ssh/" title="ssh" rel="tag">ssh</a>, <a href="http://www.ghacks.net/tag/telnet/" title="telnet" rel="tag">telnet</a>, <a href="http://www.ghacks.net/tag/tools/" title="Tools" rel="tag">Tools</a>, <a href="http://www.ghacks.net/tag/utilities/" title="utilities" rel="tag">utilities</a><br />

	<h4>Related posts</h4>
	<ul class="st-related-posts">
	<li><a href="http://www.ghacks.net/2006/11/18/top-xp-freeware-that-every-user-needs-part-3/" title="Top Xp Freeware that every user needs part 3 (November 18, 2006)">Top Xp Freeware that every user needs part 3</a> (5)</li>
	<li><a href="http://www.ghacks.net/2005/12/10/astalavista-top-10-freeware-tools/" title="Astalavista Top 10 Freeware Tools (December 10, 2005)">Astalavista Top 10 Freeware Tools</a> (2)</li>
	<li><a href="http://www.ghacks.net/2006/05/27/ultra-high-security-password-generator/" title="Ultra High Security Password Generator (May 27, 2006)">Ultra High Security Password Generator</a> (4)</li>
	<li><a href="http://www.ghacks.net/2006/12/07/security-and-privacy-complete/" title="Security and Privacy Complete (December 7, 2006)">Security and Privacy Complete</a> (0)</li>
	<li><a href="http://www.ghacks.net/2009/03/29/remote-ssh-run-processes-anywhere-on-different-platforms/" title="Remote SSH: Run processes anywhere on different platforms (March 29, 2009)">Remote SSH: Run processes anywhere on different platforms</a> (1)</li>
</ul>

]]></content:encoded>
			<wfw:commentRss>http://www.ghacks.net/2006/04/17/top-15-security-and-hacking-tools-utilities/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>The Anatomy of a Hack Video</title>
		<link>http://www.ghacks.net/2006/01/11/the-anatomy-of-a-hack-video/</link>
		<comments>http://www.ghacks.net/2006/01/11/the-anatomy-of-a-hack-video/#comments</comments>
		<pubDate>Wed, 11 Jan 2006 07:44:34 +0000</pubDate>
		<dc:creator>Martin</dc:creator>
				<category><![CDATA[Hacking]]></category>
		<category><![CDATA[hacking demos]]></category>
		<category><![CDATA[videos]]></category>

		<guid isPermaLink="false">http://www.ghacks.net/?p=276</guid>
		<description><![CDATA[If you are more the visual type of learner this video might be something for you. <a href="http://www.demosondemand.com/clients/fiberlink/002/page/index_new.asp#" target="_blank">The anatomy of a ack</a> is  a record of a live demonstration how someone gets access to a laptop that does not have proper security. Procedures to fix those security holes are mentioned in the video as well.]]></description>
			<content:encoded><![CDATA[<p>If you are more the visual type of learner this video might be something for you. <a href="http://www.demosondemand.com/clients/fiberlink/002/page/index_new.asp#" target="_blank">The anatomy of a hack</a> is  a record of a live demonstration how someone gets access to a laptop that does not have proper security. Procedures to fix those security holes are mentioned in the video as well.</p>
<p><span id="more-276"></span></p>
<p>[tags]hack, hacking, break in, security, exploit[/tags]</p>

	Tags: <a href="http://www.ghacks.net/tag/hacking/" title="Hacking" rel="tag">Hacking</a>, <a href="http://www.ghacks.net/tag/hacking-demos/" title="hacking demos" rel="tag">hacking demos</a>, <a href="http://www.ghacks.net/tag/videos/" title="videos" rel="tag">videos</a><br />

	<h4>Related posts</h4>
	<ul class="st-related-posts">
	<li><a href="http://www.ghacks.net/2005/11/05/hacking-demos-on-film/" title="Hacking Demos on Film (November 5, 2005)">Hacking Demos on Film</a> (1)</li>
	<li><a href="http://www.ghacks.net/2009/04/24/youtube-enhance-youtube-experience/" title="Youtube: Enhance Youtube Experience (April 24, 2009)">Youtube: Enhance Youtube Experience</a> (11)</li>
	<li><a href="http://www.ghacks.net/2009/11/20/youtube-videos-get-automatic-captions-1080p-videos-roll-out/" title="Youtube Videos Get Automatic Captions. 1080p Videos Roll-Out (November 20, 2009)">Youtube Videos Get Automatic Captions. 1080p Videos Roll-Out</a> (1)</li>
	<li><a href="http://www.ghacks.net/2009/11/13/youtube-to-add-1080p-hd-videos/" title="Youtube To Add 1080p HD Videos (November 13, 2009)">Youtube To Add 1080p HD Videos</a> (6)</li>
	<li><a href="http://www.ghacks.net/2007/03/10/youtube-removed-videos-and-turkey-lifts-ban/" title="Youtube removed videos and Turkey lifts ban (March 10, 2007)">Youtube removed videos and Turkey lifts ban</a> (4)</li>
</ul>

]]></content:encoded>
			<wfw:commentRss>http://www.ghacks.net/2006/01/11/the-anatomy-of-a-hack-video/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Essential Wireless Hacking Tools</title>
		<link>http://www.ghacks.net/2005/12/13/essential-wireless-hacking-tools/</link>
		<comments>http://www.ghacks.net/2005/12/13/essential-wireless-hacking-tools/#comments</comments>
		<pubDate>Tue, 13 Dec 2005 20:34:19 +0000</pubDate>
		<dc:creator>Martin</dc:creator>
				<category><![CDATA[Hacking]]></category>
		<category><![CDATA[wireless]]></category>

		<guid isPermaLink="false">http://www.ghacks.net/?p=222</guid>
		<description><![CDATA[Wireless hacking becomes more widespread these days. Many people drive / walk through town with their laptops trying to find unprotected wireless networks to do all sorts of things. Most harmless one would be to use your connection to surf and download, but it could also include downloading your files, spamming using your computer, installing malicous programs on your computer aso.]]></description>
			<content:encoded><![CDATA[<p>Wireless hacking becomes more widespread these days. Many people drive / walk through town with their laptops trying to find unprotected wireless networks to do all sorts of things. Most harmless one would be to use your connection to surf and download, but it could also include downloading your files, spamming using your computer, installing malicous programs on your computer aso.</p>
<p>But this is no article on how to protect yourself, I probably write one soon. <a href="http://www.ethicalhacker.net/content/view/16/24/" target="_Blank">The Ethical Hacker Network</a> published an interesting article by Daniel V. Hoffman about essential wireless hacking tools. The article has four chapters: Finding Wireless Networks, Attaching to the Found Wireless Network, Sniffing Wireless Data and Protecting Against These Tools.</p>
<p><span id="more-222"></span></p>
<p>Daniel reviews some tools in each chapter always giving you more than one choice to try out and finally use the tool that suits you best.</p>
<p>[tags]wireless, hacking, wireless hacking, hacking tools, ethereal, sniffing, network[/tags]</p>

	Tags: <a href="http://www.ghacks.net/tag/hacking/" title="Hacking" rel="tag">Hacking</a>, <a href="http://www.ghacks.net/tag/wireless/" title="wireless" rel="tag">wireless</a><br />

	<h4>Related posts</h4>
	<ul class="st-related-posts">
	<li><a href="http://www.ghacks.net/2008/07/06/xirrus-wi-fi-monitor/" title="Xirrus Wi-Fi Monitor (July 6, 2008)">Xirrus Wi-Fi Monitor</a> (2)</li>
	<li><a href="http://www.ghacks.net/2006/05/17/wireless-security-attacks-and-defenses/" title="Wireless Security: Attacks and Defenses (May 17, 2006)">Wireless Security: Attacks and Defenses</a> (0)</li>
	<li><a href="http://www.ghacks.net/2006/07/22/wireless-hotspot-hacks/" title="Wireless Hotspot Hacks (July 22, 2006)">Wireless Hotspot Hacks</a> (1)</li>
	<li><a href="http://www.ghacks.net/2008/06/30/wifi-for-symbian-s60-mobile-phones/" title="WiFi for Symbian S60 Mobile Phones (June 30, 2008)">WiFi for Symbian S60 Mobile Phones</a> (6)</li>
	<li><a href="http://www.ghacks.net/2008/07/09/wi-fi-signal-strength/" title="Wi-Fi Signal Strength (July 9, 2008)">Wi-Fi Signal Strength</a> (8)</li>
</ul>

]]></content:encoded>
			<wfw:commentRss>http://www.ghacks.net/2005/12/13/essential-wireless-hacking-tools/feed/</wfw:commentRss>
		<slash:comments>1</slash:comments>
		</item>
		<item>
		<title>Hacking Demos on Film</title>
		<link>http://www.ghacks.net/2005/11/05/hacking-demos-on-film/</link>
		<comments>http://www.ghacks.net/2005/11/05/hacking-demos-on-film/#comments</comments>
		<pubDate>Sat, 05 Nov 2005 13:57:35 +0000</pubDate>
		<dc:creator>Martin</dc:creator>
				<category><![CDATA[Hacking]]></category>
		<category><![CDATA[hacking demos]]></category>
		<category><![CDATA[videos]]></category>

		<guid isPermaLink="false">http://www.ghacks.net/?p=103</guid>
		<description><![CDATA[Have you every wondered how hackers actually do their hacking ? What tools they use, how they handle the tools and stuff like that ? I found a site that has some recorded demonstrations of hacking attempts. ]]></description>
			<content:encoded><![CDATA[<p>Have you every wondered how hackers actually do their hacking ? What tools they use, how they handle the tools and stuff like that ? I found a site that has some recorded demonstrations of hacking attempts. </p>
<p>All movies are about 20 megs in size and can be downloaded from their website. Topics include Penetration Test Reconstruction, Cracking WEP in 10 Minutes and Tunneling Exploits via SSH.</p>
<p><span id="more-103"></span>Use the following link to go to their website:  hackingdefined.com</p>

	Tags: <a href="http://www.ghacks.net/tag/hacking/" title="Hacking" rel="tag">Hacking</a>, <a href="http://www.ghacks.net/tag/hacking-demos/" title="hacking demos" rel="tag">hacking demos</a>, <a href="http://www.ghacks.net/tag/videos/" title="videos" rel="tag">videos</a><br />

	<h4>Related posts</h4>
	<ul class="st-related-posts">
	<li><a href="http://www.ghacks.net/2006/01/11/the-anatomy-of-a-hack-video/" title="The Anatomy of a Hack Video (January 11, 2006)">The Anatomy of a Hack Video</a> (0)</li>
	<li><a href="http://www.ghacks.net/2009/04/24/youtube-enhance-youtube-experience/" title="Youtube: Enhance Youtube Experience (April 24, 2009)">Youtube: Enhance Youtube Experience</a> (11)</li>
	<li><a href="http://www.ghacks.net/2009/11/20/youtube-videos-get-automatic-captions-1080p-videos-roll-out/" title="Youtube Videos Get Automatic Captions. 1080p Videos Roll-Out (November 20, 2009)">Youtube Videos Get Automatic Captions. 1080p Videos Roll-Out</a> (1)</li>
	<li><a href="http://www.ghacks.net/2009/11/13/youtube-to-add-1080p-hd-videos/" title="Youtube To Add 1080p HD Videos (November 13, 2009)">Youtube To Add 1080p HD Videos</a> (6)</li>
	<li><a href="http://www.ghacks.net/2007/03/10/youtube-removed-videos-and-turkey-lifts-ban/" title="Youtube removed videos and Turkey lifts ban (March 10, 2007)">Youtube removed videos and Turkey lifts ban</a> (4)</li>
</ul>

]]></content:encoded>
			<wfw:commentRss>http://www.ghacks.net/2005/11/05/hacking-demos-on-film/feed/</wfw:commentRss>
		<slash:comments>1</slash:comments>
		</item>
	</channel>
</rss>
