Dec 18 2011

disable autoplay using gpedit.msc

Today, i will teach you guys how to disable the autoplay using the gpedit.msc way..

Dec 10 2011

How to make password strong

In this post, i will teach you how to make your password strong

 

For your password to be strong, you need to add a long password and a password which contain a symbol such as !@#, uppercase and lowercase such as AaSrPkJm, and number 12345

 

You should be avoid creating passwords that use:

  • Dictionary words in any language.
  • Words spelled backwards, common misspellings, and abbreviations.
  • Sequences or repeated characters. Examples: 12345678, 222222, abcdefg, or adjacent letters on your keyboard (qwerty).
  • Personal information. Your name, birthday, driver’s license, passport number, or similar information.
Nov 13 2011

Kill Process using Command Prompt

If some of the application is not responding, most of the people will go Task Manager and click End Process. However, in this post i will teach you guys how to check and end process using command prompt.

Firstly, you need to open the command prompt and then type the command line such as:

tasklist

The Output of the command line above is such as below:

For Example: If you want to End Process of Yahoo Messenger.exe, you can type the command line such as:

taskkill /PID 4780

After you have enter the command line above, the Yahoo Messenger process will terminated from running in your system.

Oct 26 2011

Global CyberLympics Event

What is Unifying Global Cyber Defence through the Games?

The Global CyberLympics aspires to create an opportunity for ethical hacking to be accepted, practiced and demonstrated without any discrimination, across all geographical boundaries – all for the purpose of understanding what it takes to protect and secure critical information and assets.

There’s three mission of this game which is such as below:

1. Capacity Building – The organiser is hoping that they can discover a fresh and new talents which they have new method and ideas about information security. They also want to discover some of the gifted attacker and also cyber-defender where this CYBERlYMPICS will also inspire the development of the Information Security Professionals in the future.

2. Raising Awareness – The Organiser also want to educate the global community about the Information Security.Besides that, they hope that with this Games might increase the Awareness among the Global Community toward the raised education and ethics in Information Security Industry.

3. Global Peace – The Organiser hope to create peace between the Information Security Professionals around the world.

This games Contain Attack and Defense

Attack – Web Application, OS compromise,Exploit Hunting,Lock picking

Defense – Service Uptime,Keeping attackers out

If Interested to enter, you can go here

The Venue of the Event is at Hacker Halted Apac where it’s located at Kuala Lumpur, Malaysia on Nov 15 until Nov 16,2011

The Sponsor list such as here

Source:
1. Main Page of CyberLympics

Oct 07 2011

Websense ThreatSeeker have found Exploit in Spam due on Steve Jobs’ Death

This spamming have been detected by Websense ThreatSeeker® Network where the messages claim that Steve Jobs is not Dead yet!,Steven Jobs Alive! and Steve Jobs Not Dead!

For other information, this is the Spam that been exploit due on Steve Jobs’ Death

 

Oct 05 2011

HITBSecConf2011

The Overview of HITBSecConf2011 below have been taken from the HITBSecConf2011 website

Tower of Hackf00 Madness, is an attack only competition bringing a variety of challenges requiring participants to have a myriad of skills. Participants joining this competition should be mentally and physically prepared as the organizing crew has prepared a grueling number of challenges which will push the participants to their limits. This year’s CTF will also introduce the new organizing Crew 3.0 and the retirement of Crew 2.0 (The Sexy Kambingz). Over a period of two (2) days, participants of the game will be tested on various subjects. Teams are expected to be well versed in subjects such as binary reversing, cryptography, digital forensics, network f00, web exploitation, and brain busting puzzle solving skills. There will be a total of 20 challenges to solve with increasing difficulty. Challenges will be released over a period of time during the 2 day event. The fastest team to obtain the most points will be crowned the winners. This game is not for the faint of heart. Do you have what it takes?

 

The HITBSecConf2011 organized Capture The Flag –Tower of Hackf00 Madness,Conference and HITB SIGINT.

The team that will fight in the Capture The Flag Madness

  1. sutegoma2 (JAPAN)
  2. Dutch Orange Glasses (NETHERLANDS)
  3. Securityfirst (REPUBLIC OF KOREA)
  4. Stealther (MALAYSIA)
  5. D3c3p71c0n (VIETNAM)
  6. ?  (SINGAPORE)
  7. Hondorioxz (IRAN)
  8. Lepak (SINGAPORE)
  9. Negative (REPUBLIC OF KOREA)
  10. Sentinel (MALAYSIA)

 

The location of the HITBSecConf2011 event is Intercontinental Kuala Lumpur. For those that didn’t know where InterContinental Kuala Lumpur is located, you can see the map to the Intercontinental Kuala Lumpur below:

 

Oct 04 2011

Rammit virus

Rammit virus is a way of detection for a virus which infects Windows executable files and HTML files, and spreads to removable drives. The other name for this Rammit virus which appear in a lot of antivirus is such as Type_Win32 (Kaspersky),Win32/Zbot.A (AVG),W32/Infector.Gen2 (Avira),Win32/Ramnit.A (CA),Win32.Rmnet (Dr.Web),W32.Infector (Ikarus),W32/Ramnit.a (McAfee),W32/Patched-I (Sophos),PE_RAMNIT.A (Trend Micro)

 

Prevention

1.Enable a firewall
The user need to use a third-party firewall on the user computer or the user can turn on the Microsoft Windows Internet Connection Firewall so that the user can protect from this Rammit Virus Spread.

If the user didn’t know how to Turn the Windows Firewall ON/OFF, the user can read the manual on
this website

2.Limit user privileges on the computer
If the user is using Windows Vista and Windows 7, Microsoft have been introduced the User Account Control or known as UAC which when it enabled,the UAC will allowed the users to run with least user privileges on the computer.

If the user didn’t know how to use UAC, the user can go to this website

Oct 03 2011

Facebook team up With Websense To Protect Users From Danger

Facebook have been team up with Websense to Protect all the user from Danger such as Malicious Sites And Malware. Everytime when the user click the link, the latest system will straight away direct to Websense System to make sure that the link is safe or not to visit.

The example of Security alert is such as below:

If the Websense system detect dangerous link, it will suggest the user to click button “Return to previous page”. If the user want to take the risk or believe that the link is safe, then the user can just click the “Ignore this warning”

Starting today, Facebook will start increased the protections to all 800 million user from dangerous malware

 

Source: Facebook Partners With Websense To Protect Users From Malicious Sites And Malware
 

 

Oct 03 2011

Microsoft kill Google Chrome with bad signature detection

Earlier today,Microsoft destroy  to re-check back all the antivirus definition file that have been deleted by Google’s Chrome browser from users’ PCs.

The statement below have been taken by Google Support Forum:

“This morning, after I started up the PC, a Windows Security box popped up and said I had a Security Problem that needed to be removed,” said someone identified as “chasd harris” in the first message of the thread. “I clicked the Details button and saw that it was ‘PWS:Win32/Zbot.’ I clicked the Remove button and restarted my PC. Now I do not have Chrome. It has been removed or uninstalled.”

 

Credit to :Gregg Keizer covers Microsoft, security issues, Apple, Web browsers and general technology breaking news for Computerworld.

Source:Microsoft kills Google Chrome with bad signature

Sep 18 2011

Spy Eye Tracker

From what i read in the internet, this SpyEye Tracker is similiar to the ZEUS Tracker with the comparison of both of those tools is tahat the SpyEye Tracker tracks and also monitors almost all malicious  SpyEye Command&Control Servers (and not ZeuS C&Cs). Additionally, SpyEye Tracker should help ISPs, CERTs and Law Enforcement to track malicious SpyEye C&C servers which are their responsibility.

Below is the quick stats that taken from the website here

  • SpyEye C&C servers tracked: 433
  • SpyEye C&C servers online: 191
  • SpyEye C&C server with files online: 26
  • Average SpyEye binary Antivirus detection: 25.47%

As you can see the table above, you can see the DateAdded,Host,Ip Address,Level,Status,Files Online,SBL,Country,AS number and Uptime of the certain hosting. This table is taken from  here

 

Source: SpyEye Tracker