Archiv za kategorijo ‘Security’

Windows XP SP3 Beta

7. november 2007 2007b 0:05

Mja našu pa naložu. Pa se nasral P Že ob ponovnem zagonu so se mi neke aplikacije (ki doslej sploh nisem vedel da laufajo) sesule, in je blo treba ene 5x kliknat prekliči. No najbol me pa boli, da mi je crknu wheelmouse. Celo sem ga lahko v nadzorni plošči namestil, vendar je potreben reboot. Ki seveda še ni izveden P Čist po resnici rahlo dvomim, da bo potem deloval. MSN Messenger pa začuda celo dela bolj smooth. Pri večih okencih ne šteka, prav tako ne pri tabbed pogovorih. Vsaj to. Sexy ) Vsekakor mašina je še vedno enako hitra, občutka večje varnosti pa zaradi oznake Beta nimam. Pozabu na pravilo, kar je Beta od Microsofta - keep it away. No zej je kar je. Itak sm mislu da bo sistem krešnu, pa bi ubuntujeka naložu.

chroot checker

18. februar 2007 2007b 22:34

Okej ker se mi neznansko približuje tudi matura iz math, sem se spravu spet mal c0dat. Zlo nelagodno bi blo, da ravno računalništva ne bi naredu - še posebi pa recimo programiranja k sm ga mel 5 ) Pa da ne bi programiral nekih bedarij, sem napisal “chroot checker”. Simpl programček, ki preveri, če si v chrootanem okolju ali ne. Zna bit zlo uporabn ) Pa komu mogoče kako minutko prihrani.
Zadeva je dodana seveda v mojo source zbirko, datoteko sem poimenoval chroot.cpp.

Vsa navodila pa so tudi v samem fajlu. Za tiste, ki ne veste kaj pomeni chroot, pa si preberite članek na wikipediji (v angleščini) in če vam še vedno ni jasno… Tega ne boste potrebovali )

Invitation :)

14. februar 2007 2007b 17:02

VAŽNO OBVESTILO -PROSIM VAS, DA TO OBVESTILO POŠLJETE VSEM SVOJIM PRIJATELJEM IZ VAŠEGA IMENIKA !!!

V naslednjih dneh morate paziti, da ne bi odprli email-a s priponko »Invitation«, ne glede na to, kdo vam ga pošilja, ker gre za virus, ki prižge olimpijsko baklo, katera »sežge« trdi disk na vašem računalniku.
Ta virus boste dobili od osebe, ki ima vaš naslov v svojem imeniku, zato morate to pošto poslati na naslove vseh, s katerimi izmenjujete emaile, saj je bolje dobiti ta email 25 krat, kot dobiti virus in ga odpreti.
Če dobite email s priponko »Invitation«, ga ne odpirajte temveč ga takoj zbrišite. Ta virus je Microsoft, kot so objavili na CNN, klasificiral kot najbolj uničevalnega doslej. Včeraj ga je odkril McAfee, proti njemu še ni obrambe. Uniči sektor 0 trdega diska. Potem je vaš disk neuporaben, podatki na njem nedostopni.
Pošlji to pošto vsem, za katere veš, da bi jim ta virus lahko naredil škodo!!!

Informacijo lahko preverite na internetu !

Tale mail sem danes dobil od karnekaj naslovnikov. Prvo kot prvo… Od kdaj lahko program “sežge” vaš trdi disk? Berem včerajšnje novičke po McAfee in pa CNN, pa vendar nikjer nisem zasledil novičke o novem uničevalnem virusu, ki bi se pošiljal kot Invitation (recimo CNN poroča samo o napadih Al Qaede, microsoft pa na veliko promovira Visto. Torej naj vas pomirim - ne bojte se. Teoretično je možno izbrisati 0 sektor trdega diska, vendar to ne predstavlja neke jake grožnje. Ponovno bi mogli namestit bootloader, to je pa to (Bootaš XP cd, odpreš recovery conzole pa bootmngr - 5 minutkj dela). Sicer pa če me spomin ne vara, je tale mail krožil naokrog že v časih moje osnovne šole. Torej zadeva glede tega virusa je stara in bi tak virus vsak antivirusni zaznal, ki ni ravno z Noetovih časov. Nekdo ima zgleda še vedno preveč preveč časa )

Za vse ki dobite mail z zadevo Invitation, se le nasmejte in naj vam polepša dan. To je pa vse kar lahko ta hudi hudi virus nardi ) Pa še ena neumesna… Kdo zaboga še uporablja McAfee? ) nod32! )

Posodobljen Wordpress

18. januar 2007 2007b 15:53

Tako, sedaj imam tudi jaz Wordpress 2.0.7. Hackers ph33r my skillZ D

Wordpress 2.0.7

18. januar 2007 2007b 11:45

Že cele 3 dni nazaj je izšla nova verzija Wordpressa, saj je le-ta imela hrošča v sami PHP kodi. Moj še ni posodobljen - takrat smo se mi smuuuučali ) Vsem priporočam update. Sam bom tudi posodobil, vendar šele ko pridem s šihta. Tukaj so začeli iz neznanega razloga blokirat port 21. Shame on them )

Sicer se pa tko ne bojim, da bi se ob obisku kakega zlobnega zlobnega hekerja kaj naredilo z blogom in serverjem. Vseeno se ne bom pustil presenetiti )

Posodobite blog!

5. januar 2007 2007b 15:58

Vsi uporabniki WordPress skripte, danes je izšla WordPress verzija 2.0.6. Popravljen je način komentiranja in nekaj varnostnih popravkov. Moj je že nadgrajen (a). Če kdo ne ve kako posodobit… Zdle nimam časa, mam pa namen napisat kako nadgradit obstoječo namestitev tvojega bloga. Sicer ni neka jaka muda, je pa vseeno narejeno bolj sigurno in samozavestno.

Tako, sedaj pa pospravit kasete, pa dost šihta za dans! D

Odstranimo VirusBurst

24. oktober 2006 2006b 21:29

Sem že mislil, da danes, pa ne bom imel ničesar za napisat ) Pa se je na koncu zadeva ponudila sama. Zraven programa Softcam sem dobil neke kodeke za video in seveda jaz čisto vesel zadevo pustim, da se inštalira. In že med inštalacijo sem videl da sem ga posral. Namestil sem si namreč Virusburst, ki velja za zelo nadležnega. Prva stvar, ki ti pove, da ste ga dobili je

Critical System Error
In potem neglede ali kliknemo na oblaček, se nam ponudi super rešitev - Virusburst vam najde stotine spy- in ad- awara, ki ga seveda lahko odstrani. Seveda, če kupiš program. Sam pride k meni, potem pa še teži naj ga kupim? Dam mu brco v glavo ) Torej zadeva je sledeča.

Stvar bomo odpravili v treh (3) korakih, za katere se bom potrudil, da bodo čimbolj enostavni.

1. Potrebujemo program HijackThis 1.99.1 (http://www.majorgeeks.com/download3155.html)

Program nam pokaže vse pognane procese, in zadeve ki bi lahko bile hijacked. Najprej zaznačimo vse tele zadeve:

O2 - BHO: (no name) - {202a961f-23ae-42b1-9505-ffe3c818d717} - C:\*\iCodecPack\isaddon.dll

O3 - Toolbar: Protection Bar - {479fd0cf-5be9-4c63-8cda-b6d371c67bd5} - C:\*\iCodecPack\iesplugin.dll

O3 - Toolbar: Protection Bar - {479fd0cf-5be9-4c63-8cda-b6d371c67bd5} - C:\*\Media-Codec\iesplugin.dll

O3 - Toolbar: Protection Bar - {479fd0cf-5be9-4c63-8cda-b6d371c67bd5} - C:\*\iCodecPack\iesplugin.dll (file missing)

O4 - HKLM \. \ Funcionar: [VirusBurst] C:\Program Files\VirusBurst\VirusBurst.exe /h

O21 - SSODL: campy - {168cf174-6dab-461c-a761-a7adfa5a5719} - C:\WINDOWS\system32\wuwbxp.dll

O21 - SSODL: considerateness - {4d993022-0899-4599-b4b6-0f887d0802e6} - D:\WINDOWS\system32\oqabf.dll

Če opazimo še kakšno nepoznano zadevo (ponavadi označena kot no name) tudi obklukaj. V bistvu ne bo nič narobe tudi če kakšno stvar preveč obklukaš ) Reboot sistema, poženemo Varni zagon (predno se začne nalagati XP boot loader pritisnemo F8).2. V varnem zagonu ponovimo isti korak kot 1. le da pač v Varnem zagonu ) Obnovitev sistema na prejšnjo točko ni potrebna. Reboot.

3. Sedaj bi moralo vse biti okej. Če je Virusburst še vedno prisoten, ste s HijackThis nekaj pozabili. Ponoviti vse korake.

ad 3. Če je zadeva še pognana, predlagam da v navadnem zagonu odprete c:\Windows\System32\ in daste pogled podrobnosti in uredite po datumu. Zbrišite vse *.dll datoteke ki so bile ustvarjene na dan, ko se je pojavil Virusburst. Itak če se sistem več ne zbudi, lahko v varnem zagonu obnovite )

Hm aja, pa poskrbite, da boste imeli ustrezno antivirusno zaščito, kakšen spybot - search & destroy in pa ad-aware ) Aja pa uporabljajte Firefox. Seveda je tudi pregled s prej omenjenimi programi OBVEZEN )

Hacker?

30. junij 2006 2006b 11:03

1. Has your son asked you to change ISPs?

Most American families use trusted and responsible Internet Service Providers, such as AOL. These providers have a strict “No Hacking” policy, and take careful measures to ensure that your internet experience is enjoyable, educational and above all legal. If your child is becoming a hacker, one of his first steps will be to request a change to a more hacker friendly provider.

I would advise all parents to refuse this request. One of the reasons your son is interested in switching providers is to get away from AOL’s child safety filter. This filter is vital to any parent who wants their son to enjoy the internet without the endangering him through exposure to “adult” content. It is best to stick with the protection AOL provides, rather than using a home-based solution. If your son is becoming a hacker, he will be able to circumvent any home-based measures with surprising ease, using information gleaned from various hacker sites.

2. Are you finding programs on your computer that you don’t remember installing?

Your son will probably try to install some hacker software. He may attempt to conceal the presence of the software in some way, but you can usually find any new programs by reading through the programs listed under “Install/Remove Programs” in your control panel. Popular hacker software includes “Comet Cursor”, “Bonzi Buddy” and “Flash”.

The best option is to confront your son with the evidence, and force him to remove the offending programs. He will probably try to install the software again, but you will be able to tell that this is happening, if your machine offers to “download” one of the hacker applications. If this happens, it is time to give your son a stern talking to, and possibly consider punishing him with a grounding.

3. Has your child asked for new hardware?

Computer hackers are often limited by conventional computer hardware. They may request “faster” video cards, and larger hard drives, or even more memory. If your son starts requesting these devices, it is possible that he has a legitimate need. You can best ensure that you are buying legal, trustworthy hardware by only buying replacement parts from your computer’s manufacturer.

If your son has requested a new “processor” from a company called “AMD”, this is genuine cause for alarm. AMD is a third-world based company who make inferior, “knock-off” copies of American processor chips. They use child labor extensively in their third world sweatshops, and they deliberately disable the security features that American processor makers, such as Intel, use to prevent hacking. AMD chips are never sold in stores, and you will most likely be told that you have to order them from internet sites. Do not buy this chip! This is one request that you must refuse your son, if you are to have any hope of raising him well.

4. Does your child read hacking manuals?

If you pay close attention to your son’s reading habits, as I do, you will be able to determine a great deal about his opinions and hobbies. Children are at their most impressionable in the teenage years. Any father who has had a seventeen year old daughter attempt to sneak out on a date wearing make up and perfume is well aware of the effect that improper influences can have on inexperienced minds.

There are, unfortunately, many hacking manuals available in bookshops today. A few titles to be on the lookout for are: “Snow Crash” and “Cryptonomicon” by Neal Stephenson; “Neuromancer” by William Gibson; “Programming with Perl” by Timothy O’Reilly; “Geeks” by Jon Katz; “The Hacker Crackdown” by Bruce Sterling; “Microserfs” by Douglas Coupland; “Hackers” by Steven Levy; and “The Cathedral and the Bazaar” by Eric S. Raymond.

If you find any of these hacking manuals in your child’s possession, confiscate them immediately. You should also petition local booksellers to remove these titles from their shelves. You may meet with some resistance at first, but even booksellers have to bow to community pressure.

5. How much time does your child spend using the computer each day?

If your son spends more than thirty minutes each day on the computer, he may be using it to DOS other peoples sites. DOSing involves gaining access to the “command prompt” on other people’s machines, and using it to tie up vital internet services. This can take up to eight hours. If your son is doing this, he is breaking the law, and you should stop him immediately. The safest policy is to limit your children’s access to the computer to a maximum of forty-five minutes each day.

6. Does your son use Quake?

Quake is an online virtual reality used by hackers. It is a popular meeting place and training ground, where they discuss hacking and train in the use of various firearms. Many hackers develop anti-social tendencies due to the use of this virtual world, and it may cause erratic behaviour at home and at school.

If your son is using Quake, you should make hime understand that this is not acceptable to you. You should ensure all the firearms in your house are carefully locked away, and have trigger locks installed. You should also bring your concerns to the attention of his school.

7. Is your son becoming argumentative and surly in his social behaviour?

As a child enters the electronic world of hacking, he may become disaffected with the real world. He may lose the ability to control his actions, or judge the rightness or wrongness of a course of behaviour. This will manifest itself soonest in the way he treats others. Those whom he disagrees with will be met with scorn, bitterness, and even foul language. He may utter threats of violence of a real or electronic nature.

Even when confronted, your son will probably find it difficult to talk about this problem to you. He will probably claim that there is no problem, and that you are imagining things. He may tell you that it is you who has the problem, and you should “back off” and “stop smothering him.” Do not allow yourself to be deceived. You are the only chance your son has, even if he doesn’t understand the situation he is in. Keep trying to get through to him, no matter how much he retreats into himself.

8. Is your son obsessed with “Lunix”?

BSD, Lunix, Debian and Mandrake are all versions of an illegal hacker operation system, invented by a Soviet computer hacker named Linyos Torovoltos, before the Russians lost the Cold War. It is based on a program called “xenix“, which was written by Microsoft for the US government. These programs are used by hackers to break into other people’s computer systems to steal credit card numbers. They may also be used to break into people’s stereos to steal their music, using the “mp3″ program. Torovoltos is a notorious hacker, responsible for writing many hacker programs, such as “telnet”, which is used by hackers to connect to machines on the internet without using a telephone.

Your son may try to install “lunix” on your hard drive. If he is careful, you may not notice its presence, however, lunix is a capricious beast, and if handled incorrectly, your son may damage your computer, and even break it completely by deleting Windows, at which point you will have to have your computer repaired by a professional.

If you see the word “LILO” during your windows startup (just after you turn the machine on), your son has installed lunix. In order to get rid of it, you will have to send your computer back to the manufacturer, and have them fit a new hard drive. Lunix is extremely dangerous software, and cannot be removed without destroying part of your hard disk surface.

9. Has your son radically changed his appearance?

If your son has undergone a sudden change in his style of dress, you may have a hacker on your hands. Hackers tend to dress in bright, day-glo colors. They may wear baggy pants, bright colored shirts and spiky hair dyed in bright colors to match their clothes. They may take to carrying “glow-sticks” and some wear pacifiers around their necks. (I have no idea why they do this) There are many such hackers in schools today, and your son may have started to associate with them. If you notice that your son’s group of friends includes people dressed like this, it is time to think about a severe curfew, to protect him from dangerous influences.

10. Is your son struggling academically?

If your son is failing courses in school, or performing poorly on sports teams, he may be involved in a hacking group, such as the infamous “Otaku” hacker association. Excessive time spent on the computer, communicating with his fellow hackers may cause temporary damage to the eyes and brain, from the electromagnetic radiation. This will cause his marks to slip dramatically, particularly in difficult subjects such as Math, and Chemistry. In extreme cases, over-exposure to computer radiation can cause schizophrenia, meningitis and other psychological diseases. Also, the reduction in exercise may cause him to lose muscle mass, and even to start gaining weight. For the sake of your child’s mental and physical health, you must put a stop to his hacking, and limit his computer time drastically.

I encourage all parents to read through this guide carefully. Your child’s future may depend upon it. Hacking is an illegal and dangerous activity, that may land your child in prison, and tear your family apart. It cannot be taken too seriously.

This definitions was coppied from “a real hacker site P

spam, spam & spam

18. junij 2006 2006b 18:59

After I gaved MSNPLUS! link in publicity, I got a lot of spam on my blog. So i say thanks to everybody who tried to spam me - They gaved me some work to do, so for about 5 minutes i haven’t been bored. The best and popular against spam for blogs is Akismet. Akismet is very good becouse it doesent need any special configuration and you dont need to set any rules. Akismet is not self learning plugin but it will keep spam away.

After installing the Akismet plug-in for WordPress or one of the third party Akismet implementations, you will need an API key to activate and use Akismet.

Just register on wordpress.org and at “My profile” you can see your API key. Go in plugins, enable Akismet, enter API key and you are spam free.

I hope this will work good.

Brez spama na blogu

18. junij 2006 2006b 18:54

No od objave tiste novičke o MSN-ju sem tudi sam doživel velik napad spama. Zahvaljujem se vsem, ki ste poskušali spamati na mojem blogu, tako da ste mi dali nekaj za počet. Torej najboljša in dokaj popularna je Akismet. Zadeva je super ker ne potrebuje nobene posebne konfiguracije, poleg tega pa tudi ni potrebno ustvarjati nobenih pravil, ki bi prepričevale spam, saj za to skrbi miljone uporabnikov po svetu, ki uporablja že Akismet.

Vse kar potrebujete je račun na wordpress. Ko se registrirate lahko pod Moj profil (My profile) vidite vaš API ključ. Potem odpotujete na Vtičnike (plugins) na vašem blogu aktivirate Akismet in vpišete API ključ. To je vsa lepota zaščite proti spamu. Upam, da se bo dobro obnesla )

phpBB 2.0.21 released

8. junij 2006 2006b 13:22

So called “Bertie’s Summer Vacation” version of phpBB just released today. phpBB users go and update your forums ASAP.

The changelog is very very long so update is really important.

So what’s changed/added

  • Changes to random number generator code to explicitly truncate the length of the string
  • Quoting on boards with HTML enabled
  • Special characters on boards with HTML enabled
  • Redirect to list if cancelling deletion of ranks, smilies or word censors
  • Missing error message if an inactive user tried to login (Bug #1598)
  • Do not alter post counts when just removing a poll (Bug #1602)
  • Correct error in removal of old session keys
  • Changed filtering of short search terms
  • Improved filtering on language selection (also addresses a number of bug reports related to missing languages)
  • Backported more efficient highlighting code from Olympus
  • Backported zlib emulation code so that there is only a single confirmation image even if zlib is not available

  • Honey

    19. maj 2006 2006b 23:09

    Geeki, hekerji, vsi ki mislite da ste leet - sedaj je prišel vaš čas, da se izkažete…

    V nagradnem tekmovanju lahko sodelujejo samo študenti, ki se morajo v primeru, da zmagajo v nagradnem tekmovanju Prireditelja, jasno dokazati s statusom. Sodelujejo lahko tako redni kot izredni študenti ter pavzerji.

    Ali bo podlegla prav tvojim čarom?

    RealVNC Authentication Bypass

    17. maj 2006 2006b 7:46

    real_vnc_9468 RealVNC Authentication Bypass

    “VNC (Virtual Network Computing) software makes it possible to view and
    fully-interact with one computer from any other computer or mobile device
    anywhere on the Internet.”

    Improper security measures allow attackers to bypass RealVNC authentication.

    Vulnerable version is RealVNC version 4.1.1.

    As documented in rfbproto.pdf by Tristan Richardson, the RFB (remote frame buffer) protocol performs an initial handshake which allows clients and servers to negotiate appropriate authentication measures. There are several methods of authentication, including the standard DES Challenge-Response, as well as an option to disable authentication completely. Due to an incorrect implementation, clients are able to force the server to disable authentication, and allow login without a password.

    Proof of Concept:

    1. Server sends its version, “RFB 003.008\n”
    2. Client replies with its version, “RFB 003.008\n”
    3. Server sends 1 byte which is equal to the number of security types
    offered
    3a. Server sends an array of bytes which indicate security types offered
    4. Client replies with 1 byte, chosen from the array in 3a, to select the
    security type
    5. The handshake, if requested, is performed, followed by “0000″ from the
    server

    Here is a typical packet dump:

    Server -> Client: 52 46 42 20 30 30 33 2e 30 30 38 0a <- Server version
    Client -> Server: 52 46 42 20 30 30 33 2e 30 30 38 0a <- Client version
    Server -> Client: 01 02 <- One field follows... and that field is 02 (DES
    Challenge)
    Client -> Server: 01 <- Ahh, the lovely 1 byte exploit! Beautiful, isn't
    it?
    Server -> Client: 00 00 00 00 <-- Authenticated!

    Update all RealVNC’s ASAP if you dont want troubles or Run VNC servers behind firewall, and use SSH tunnels for communication.

    Zaseženi strežniki PirateBay

    3. maj 2006 2006b 10:58

    “Ko smo v zadnjih dneh videli mrk Elitetorrents najboljšega trackerja, se je danes poslovil še edini največji javni tracker Thepiratebay.org! Švedska je zaradi neprestanega “teženja” MPAA in RIAA pred enim tednom uveljavila zakon proti piratstvu na Švedskem. Tako je padel še en velik tracker.”

    Osebno mislim, da ne bo nič iz tega in bo PB nazaj.

    Po moje so se samo admini skregali… Še posebaj če pogledam TOLE ali pa tole.

    Nihče ne bi resnično igral takega heroja