β β β Uππ»βΊπ«Δπ¬πβ β β β
π¦Communication line and network security
#FastTips
Such as:
- destroy or delete the message,
- read the message, watch the message and its transmission mode
- change, delay, reorder or copy, forge the message
π¦System security features
Different computer operating systems have different security requirements, but in general the system should have the following characteristics:
(1) Confidentiality (Security) is accessed by authorized persons
(2) Integrity is changed by authorized persons
(3) ) Availability (Availability) Available to authorized persons
(3) Reliability (Authenticity) Can verify the user's identity
π¦Security threats-threat source
The threats to the security of computer systems mainly come from the following three aspects:
(1) accidental
(2) natural disasters
(3) man-made attacks-active threats
@UndercodeTesting
@UndercodeHacking
@UndercodeSecurity
β β β Uππ»βΊπ«Δπ¬πβ β β β
π¦Communication line and network security
#FastTips
Such as:
- destroy or delete the message,
- read the message, watch the message and its transmission mode
- change, delay, reorder or copy, forge the message
π¦System security features
Different computer operating systems have different security requirements, but in general the system should have the following characteristics:
(1) Confidentiality (Security) is accessed by authorized persons
(2) Integrity is changed by authorized persons
(3) ) Availability (Availability) Available to authorized persons
(3) Reliability (Authenticity) Can verify the user's identity
π¦Security threats-threat source
The threats to the security of computer systems mainly come from the following three aspects:
(1) accidental
(2) natural disasters
(3) man-made attacks-active threats
@UndercodeTesting
@UndercodeHacking
@UndercodeSecurity
β β β Uππ»βΊπ«Δπ¬πβ β β β
β β β Uππ»βΊπ«Δπ¬πβ β β β
π¦Functions involved in operating system security
β User identification.
β‘ Memory protection.
β’ File and I/O device access control.
β£ Carry out distribution and access control to general entities, and implement certain control and protection on them.
β€ Sharing constraints.
β₯ While considering the security mechanism of the operating system, it is also necessary to ensure that system users enjoy fair services without permanent waiting services; it is also necessary to ensure that the operating system provides timely responses for process synchronization and asynchronous communication.
π¦Confidential and secure operating system design principles
The design principle of the safe OS, the
least privilege, the least privilege, the economy of the general security mechanism, the open design, the security strategy, the integrity of the
privilege separation
@UndercodeTesting
@UndercodeHacking
@UndercodeSecurity
β β β Uππ»βΊπ«Δπ¬πβ β β β
π¦Functions involved in operating system security
β User identification.
β‘ Memory protection.
β’ File and I/O device access control.
β£ Carry out distribution and access control to general entities, and implement certain control and protection on them.
β€ Sharing constraints.
β₯ While considering the security mechanism of the operating system, it is also necessary to ensure that system users enjoy fair services without permanent waiting services; it is also necessary to ensure that the operating system provides timely responses for process synchronization and asynchronous communication.
π¦Confidential and secure operating system design principles
The design principle of the safe OS, the
least privilege, the least privilege, the economy of the general security mechanism, the open design, the security strategy, the integrity of the
privilege separation
@UndercodeTesting
@UndercodeHacking
@UndercodeSecurity
β β β Uππ»βΊπ«Δπ¬πβ β β β
β β β Uππ»βΊπ«Δπ¬πβ β β β
π¦ Basic technology to realize system security
All ways for Login to your account = Authentication mechanism
1) Password
Confirm a user's identity symbol string of
security passwords: the brute-force attack is not feasible, the system restricts access to the plaintext password table, encrypted password file
2) Illegally obtaining passwords
exhaustive experience try search system password table, asking the user program interception, dictionary / A Probability search
< to select a password
character type, length, to avoid the conventional word, the secret password protection, one-time password
3) encryption password
for Password/password file encryption, traditional encryption method, one-way encryption method
4) Problems
with password authentication mechanism Trojan Horse (Trojan Horse)
Like malicious programs such as viruses and worms, Trojan Horses also delete or modify files, format hard drives, upload and download files, harass users, and expel other malicious programs. Program
Trojan horses also have their unique characteristics-stealing content, remote control-which makes them the most dangerous malware.
@UndercodeTesting
@UndercodeHacking
@UndercodeSecurity
β β β Uππ»βΊπ«Δπ¬πβ β β β
π¦ Basic technology to realize system security
All ways for Login to your account = Authentication mechanism
1) Password
Confirm a user's identity symbol string of
security passwords: the brute-force attack is not feasible, the system restricts access to the plaintext password table, encrypted password file
2) Illegally obtaining passwords
exhaustive experience try search system password table, asking the user program interception, dictionary / A Probability search
< to select a password
character type, length, to avoid the conventional word, the secret password protection, one-time password
3) encryption password
for Password/password file encryption, traditional encryption method, one-way encryption method
4) Problems
with password authentication mechanism Trojan Horse (Trojan Horse)
Like malicious programs such as viruses and worms, Trojan Horses also delete or modify files, format hard drives, upload and download files, harass users, and expel other malicious programs. Program
Trojan horses also have their unique characteristics-stealing content, remote control-which makes them the most dangerous malware.
@UndercodeTesting
@UndercodeHacking
@UndercodeSecurity
β β β Uππ»βΊπ«Δπ¬πβ β β β
β β β Uππ»βΊπ«Δπ¬πβ β β β
π¦How to detect a hidden Trojan ?
the status of the Trojan in communication
1) When you browse a website, it is normal that some advertisement windows pop up Things, but if you didn't open the browser at all, and the browser suddenly opened by itself and entered a certain website, then you have to be careful.
2) You are operating a computer, and suddenly a warning box or a question box pops up, asking some questions you have never touched on the computer.
3) Your Windows system configuration is always automatically and inexplicably changed. For example, the text displayed on the screensaver, time and date, sound size, mouse sensitivity, and CD-ROM automatic operation configuration.
4) The hard disk always reads the disk for no reason, the floppy drive light often turns on by itself, and the network connection and mouse screen appear abnormal.
π¦Emergency measures after infection
1) All accounts and passwords must be changed immediately, such as dial-up connection, ICQ, mIRC, FTP, your personal site, free email, etc., wherever a password is required, you must change the password Change it as soon as possible.
2) Delete all the things that did not exist on your hard disk.
3) Antivirus, check whether there is a virus on the hard disk once.
Written by
@UndercodeTesting
@UndercodeHacking
@UndercodeSecurity
β β β Uππ»βΊπ«Δπ¬πβ β β β
π¦How to detect a hidden Trojan ?
the status of the Trojan in communication
1) When you browse a website, it is normal that some advertisement windows pop up Things, but if you didn't open the browser at all, and the browser suddenly opened by itself and entered a certain website, then you have to be careful.
2) You are operating a computer, and suddenly a warning box or a question box pops up, asking some questions you have never touched on the computer.
3) Your Windows system configuration is always automatically and inexplicably changed. For example, the text displayed on the screensaver, time and date, sound size, mouse sensitivity, and CD-ROM automatic operation configuration.
4) The hard disk always reads the disk for no reason, the floppy drive light often turns on by itself, and the network connection and mouse screen appear abnormal.
π¦Emergency measures after infection
1) All accounts and passwords must be changed immediately, such as dial-up connection, ICQ, mIRC, FTP, your personal site, free email, etc., wherever a password is required, you must change the password Change it as soon as possible.
2) Delete all the things that did not exist on your hard disk.
3) Antivirus, check whether there is a virus on the hard disk once.
Written by
@UndercodeTesting
@UndercodeHacking
@UndercodeSecurity
β β β Uππ»βΊπ«Δπ¬πβ β β β
β β β Uππ»βΊπ«Δπ¬πβ β β β
π¦IDEAs & NOTE FOR BEGINERS :
#forBeginers
1) Worms (Worms)
network worms spread from one system to another through a network connection
. The network mechanism used by the worm to complete its own replication.
E-mail mechanism.
Remote execution capability.
Remote login capability. The
process of worm reproduction.
Check the host table or similar place where the remote system address is stored. Search for the system to be infected,
establish a connection with the remote host,
copy yourself into the remote system and run the copy of the
2) computer virus (Viruses), the
biological concept of a virus,
small DNA or RNA gene segments
According to statistics, as of 2000.11, there are a total of more than 55,000
viruses with the characteristics of
viruses.
Antivirus methods
π§ββοΈComputer viruses (referred to as viruses) are programs that can infect other programs. The main characteristics of viruses are as follows:
β Dependence.
β‘ The virus is contagious.
β’ The virus is latent.
β£ Viruses are destructive.
β€ The virus is targeted.
π§ββοΈThe structural :
-boot module of the virus is responsible for guiding the virus to the memory, protecting the corresponding storage space to prevent it from being overwritten by other programs, and modifying some necessary system parameters to prepare for the activation of the virus.
-The infection module is responsible for infecting viruses to other computer programs. It is the core of the entire virus program and consists of two parts: one part judges whether the infection conditions are met, and the other part implements the infection.
-The performance module virus trigger condition determines
the specific performance part of some viruses.
@UndercodeTesting
@UndercodeHacking
@UndercodeSecurity
β β β Uππ»βΊπ«Δπ¬πβ β β β
π¦IDEAs & NOTE FOR BEGINERS :
#forBeginers
1) Worms (Worms)
network worms spread from one system to another through a network connection
. The network mechanism used by the worm to complete its own replication.
E-mail mechanism.
Remote execution capability.
Remote login capability. The
process of worm reproduction.
Check the host table or similar place where the remote system address is stored. Search for the system to be infected,
establish a connection with the remote host,
copy yourself into the remote system and run the copy of the
2) computer virus (Viruses), the
biological concept of a virus,
small DNA or RNA gene segments
According to statistics, as of 2000.11, there are a total of more than 55,000
viruses with the characteristics of
viruses.
Antivirus methods
π§ββοΈComputer viruses (referred to as viruses) are programs that can infect other programs. The main characteristics of viruses are as follows:
β Dependence.
β‘ The virus is contagious.
β’ The virus is latent.
β£ Viruses are destructive.
β€ The virus is targeted.
π§ββοΈThe structural :
-boot module of the virus is responsible for guiding the virus to the memory, protecting the corresponding storage space to prevent it from being overwritten by other programs, and modifying some necessary system parameters to prepare for the activation of the virus.
-The infection module is responsible for infecting viruses to other computer programs. It is the core of the entire virus program and consists of two parts: one part judges whether the infection conditions are met, and the other part implements the infection.
-The performance module virus trigger condition determines
the specific performance part of some viruses.
@UndercodeTesting
@UndercodeHacking
@UndercodeSecurity
β β β Uππ»βΊπ«Δπ¬πβ β β β
β β β Uππ»βΊπ«Δπ¬πβ β β β
π¦SOME 2020 ANDROID/IOS HACKING APPS :
https://github.com/wszf/androrat
https://www.zimperium.com/zanti-mobile-penetration-testing
https://f-droid.org/en/packages/org.csploit.android/
https://www.cydiahacks.net/xsellize-repo-source.html
(ios cracked cydia repo)
https://github.com/BishopFox/iSpy
https://github.com/GeoSn0w/Myriam
https://github.com/S3Jensen/iRET
https://extigy.github.io/repo/
https://itunes.apple.com/us/app/iweppro-wifi-passwords-generator/id578135585?mt=8
https://github.com/GeoSn0w/Myriam
https://github.com/BishopFox/iSpy
https://github.com/BishopFox/firecat
https://www.highsterspyapp.com/
@UndercodeTesting
@UndercodeHacking
@UndercodeSecurity
β β β Uππ»βΊπ«Δπ¬πβ β β β
π¦SOME 2020 ANDROID/IOS HACKING APPS :
https://github.com/wszf/androrat
https://www.zimperium.com/zanti-mobile-penetration-testing
https://f-droid.org/en/packages/org.csploit.android/
https://www.cydiahacks.net/xsellize-repo-source.html
(ios cracked cydia repo)
https://github.com/BishopFox/iSpy
https://github.com/GeoSn0w/Myriam
https://github.com/S3Jensen/iRET
https://extigy.github.io/repo/
https://itunes.apple.com/us/app/iweppro-wifi-passwords-generator/id578135585?mt=8
https://github.com/GeoSn0w/Myriam
https://github.com/BishopFox/iSpy
https://github.com/BishopFox/firecat
https://www.highsterspyapp.com/
@UndercodeTesting
@UndercodeHacking
@UndercodeSecurity
β β β Uππ»βΊπ«Δπ¬πβ β β β
GitHub
GitHub - wszf/androrat: androrat
androrat. Contribute to wszf/androrat development by creating an account on GitHub.
#BugBounty_β_API_keys_leakage,Source_code_disclosure_in_Indiaβslargest.pdf
313.9 KB
Back with a long pending vulnerability that I found during my bug bounty hunt, though a late blog but I found it worth sharing. I have found this vulnerability in Indiaβs largest online health platform website.
By this vulnerability, I was able to read source code of the application , sensitive les like webcong where I got APIs key of mail server, sms, payment gateway etc and further I was also able to use these mail server key to send mail from thei..
By this vulnerability, I was able to read source code of the application , sensitive les like webcong where I got APIs key of mail server, sms, payment gateway etc and further I was also able to use these mail server key to send mail from thei..
β β β Uππ»βΊπ«Δπ¬πβ β β β
π¦anti-virus software development process :
A) Simple Scanners
1)Use virus signatures to identify viruses.
2) Use signature string scanning to detect
3) changes in file lengths of known viruses.
B) Second generation: Heuristic Scanners
1) Use heuristic rules to search for possible virus infections.
Search for code segments that are often related to viruses, such as the beginning part of the encryption cycle used in deformed viruses.
Integrity checking: program checksum (checksum), the
2) third generation of Hash function οΌActivity Traps
3) TSR to identify the virus infection through behavioral rather than structural program
4) does not require the development of a large number of virus signatures and heuristic rules, so long as the behavior of the virus to identify a small set of
5) fourth generation: full protection (Full-featured Protection)
various anti Comprehensive application of virus technology
scanning
> behavior capture
> access control
@UndercodeTesting
@UndercodeHacking
@UndercodeSecurity
β β β Uππ»βΊπ«Δπ¬πβ β β β
π¦anti-virus software development process :
A) Simple Scanners
1)Use virus signatures to identify viruses.
2) Use signature string scanning to detect
3) changes in file lengths of known viruses.
B) Second generation: Heuristic Scanners
1) Use heuristic rules to search for possible virus infections.
Search for code segments that are often related to viruses, such as the beginning part of the encryption cycle used in deformed viruses.
Integrity checking: program checksum (checksum), the
2) third generation of Hash function οΌActivity Traps
3) TSR to identify the virus infection through behavioral rather than structural program
4) does not require the development of a large number of virus signatures and heuristic rules, so long as the behavior of the virus to identify a small set of
5) fourth generation: full protection (Full-featured Protection)
various anti Comprehensive application of virus technology
scanning
> behavior capture
> access control
@UndercodeTesting
@UndercodeHacking
@UndercodeSecurity
β β β Uππ»βΊπ«Δπ¬πβ β β β
β β β Uππ»βΊπ«Δπ¬πβ β β β
π¦Use Azure Functions to play serverless :
#Fasttips
Serverless&Azure Functions
1) With serverless computing, developers do not need to manage the infrastructure, so they can build applications faster. With serverless applications, the cloud service provider will automatically provision, scale, and manage the infrastructure required to run the code.
2) To understand the definition of serverless computing, it is important to note that the server is still running code.
3) The server name comes from the fact that the tasks associated with infrastructure provisioning and management are not visible to developers.
4) This approach allows developers to focus more on business logic and deliver more value to the core of the business. Serverless computing can help teams increase productivity, bring products to market faster, and allow organizations to better optimize resources and stay focused on innovation.
@UndercodeTesting
@UndercodeHacking
@UndercodeSecurity
β β β Uππ»βΊπ«Δπ¬πβ β β β
π¦Use Azure Functions to play serverless :
#Fasttips
Serverless&Azure Functions
1) With serverless computing, developers do not need to manage the infrastructure, so they can build applications faster. With serverless applications, the cloud service provider will automatically provision, scale, and manage the infrastructure required to run the code.
2) To understand the definition of serverless computing, it is important to note that the server is still running code.
3) The server name comes from the fact that the tasks associated with infrastructure provisioning and management are not visible to developers.
4) This approach allows developers to focus more on business logic and deliver more value to the core of the business. Serverless computing can help teams increase productivity, bring products to market faster, and allow organizations to better optimize resources and stay focused on innovation.
@UndercodeTesting
@UndercodeHacking
@UndercodeSecurity
β β β Uππ»βΊπ«Δπ¬πβ β β β
β β β Uππ»βΊπ«Δπ¬πβ β β β
π¦Access control
1) Each file in the directory has a unique file owner, which has most access permissions, and can also authorize and revoke files.
2) In order to prevent forged access to files, the system does not allow any user to write to the file directory. All file directories can only be maintained through the operating system controlled by the main file command. Users can perform reasonable directory operations through the system, but users are prohibited from directly accessing the directories.
3) Access Control List An access control list is a type of data structure used to record all subjects and access methods that can access the entity.
Each entity corresponds to an access control table, which lists all the subjects and access methods that can access the entity.
@UndercodeTesting
@UndercodeHacking
@UndercodeSecurity
β β β Uππ»βΊπ«Δπ¬πβ β β β
π¦Access control
1) Each file in the directory has a unique file owner, which has most access permissions, and can also authorize and revoke files.
2) In order to prevent forged access to files, the system does not allow any user to write to the file directory. All file directories can only be maintained through the operating system controlled by the main file command. Users can perform reasonable directory operations through the system, but users are prohibited from directly accessing the directories.
3) Access Control List An access control list is a type of data structure used to record all subjects and access methods that can access the entity.
Each entity corresponds to an access control table, which lists all the subjects and access methods that can access the entity.
@UndercodeTesting
@UndercodeHacking
@UndercodeSecurity
β β β Uππ»βΊπ«Δπ¬πβ β β β