HACKERS UNDERGROUND © 2012 BY RISHABH SHARMA

Sunday, 13 January 2013

How to access blocked sites or country restricted sites

Hey Friends, yesterday i encountered a cool Firefox and chrome plugin(add on). This enables users to access the blocked websites or the sites that are blocked in few regions say torrents blocked in India or some websites which are accessible only for US or UK users etc. So today i am going to tell you how to use that Firefox and Chrome plugin to access blocked sites or regional website.

Some websites like Netflix or Hulu are only accessible to US residents, similarly, there are many other websites which may be blocked by your ISP, your school or college, etc. Stealthy is a handy add on(plugin), available for Google Chrome and Firefox, which can solve this problem.

Stealthy allow users to access blocked websites by setting up a working proxy on your browser with a click of a button. What Stealthy does is that it search for different proxies online and use the best one based on your location and setup a new IP so that you can access blocked websites.

As with all other extensions, Stealthy once installed, a small red airplane icon will appear right next to your address bar in Google Chrome, which means that Stealthy is disabled. Click on it to enable Stealthy and enter the URL of the website you want to access.

Access blocked or restricted sites using Stealthy
Access blocked or restricted sites using Stealthy






Stealthy provides users with four different options to choose from – Pro USA, Pro UK, Normal and Customized. Under USA, it allows you to use services such as Hulu, Netflix, etc. that are accessible only to USA residents. With UK option, you will be connected to internet as if you were in UK so that you can access UK restricted websites. With Normal, it gets a proxy from a random location to access websites that are blocked in your region but are available in the rest of the world. If you want to use a country specific proxy, use the customized option otherwise you can stick to normal. If you don’t want Stealthy to work on any specific website, you can add them to the Bypass list.

Note : Enabling Stealthy may slow down your internet so it’s better to keep it disabled if you are browsing regular websites.

DOWNLOAD:


post by rishabh sharma hackersunderground

Facebook Hidden Dangers Exposed by CBSNews

 CMSNews has recently interviewed Joan Goodchild regarding the security and privacy gaffes over the world famous social networking website and you all will be shocked when you will read what she has answered. He has exposed more than 10 loopholes in the Facebook security and its privacy policies. She even insisted to an extent that sharing personal things over Facebook can sometimes even put you into big troubles. So friends, always take care while sharing your personal information on Facebook as it can be dangerous.

Facebook claims that it has 400 million users. But are they well-protected from prying eyes, scams, and unwanted marketers?
According to Joan Goodchild, senior editor of CSO (Chief Security Officer) Online answer is simply "NO".
She says your privacy may be at far greater risk of being violated than you know, when you log onto the social-networking site, due to security gaffes or marketing efforts by the company.
Facebook came under fire this past week, when 15 privacy and consumer protection organizations filed a complaint with the Federal Trade Commission, charging that the site, among other things, manipulates privacy settings to make users' personal information available for commercial use. Also, some Facebook users found their private chats accessible to everyone on their contact list, a major security breach that's left a lot of people wondering just how secure the site is.
In two words, asserts Goodchild: not very.

Facebook privacy loopholes, facebook dangers exposed
Facebook Dangers Exposed by CBSNews

On "The Early Show on Saturday Morning," Goodchild spotlighted five dangers she says Facebook users expose themselves to, probably without being aware of them:

  • Your information is being shared with third parties
  • Privacy settings revert to a less safe default mode after each redesign
  • Facebook ads may contain malware
  • Your real friends unknowingly make you vulnerable
  • Scammers are creating fake profiles

Below is an edited transcript of the interview:

Question :Is Facebook a secure platform to communicate with your friends?

Answer: Here's the thing, Facebook is one of the most popular sites in the world. Security holes are being found on a regular basis. It is not as inherently secure as people think it is, when they log on every day.
Certainly, there are growing pains. Facebook is considered a young company, and it has been around a few years now. It is continuing to figure this out. They are so young, they are still trying to figure out how they are going to make money. It is hard to compare this to others; we have never had this phenomenon before in the way [so many] people are communicating with each other--only e-mail comes close.
The potential for crime is real. According to the Internet Crime Complaint Center, victims of Internet-related crimes lost $559 million in 2009. That was up 110 percent from the previous year. If you're not careful using Facebook, you are looking at the potential for identity theft, or possibly even something like assault, if you share information with a dangerous person you think is actually a "friend." One British police agency recently reported that the number of crimes it has responded to in the last year involving Facebook climbed 346 percent. These are real threats.
Lately, it seems a week doesn't go by without some news about a Facebook-related security problem. Earlier this week, TechCrunch discovered a security hole that made it possible for users to read their friends' private chats. Facebook has since patched it, but who knows how long that flaw existed? Some speculate it may have been that way for years.
Last month, researchers at VeriSign's iDefense group discovered that a hacker was selling Facebook usernames and passwords in an underground hacker forum. It was estimated that he had about 1.5 million accounts--and was selling them for between $25 and $45.
And the site is constantly under attack from hackers trying to spam these 400 million users, or harvest their data, or run other scams. Certainly, there is a lot of criticism in the security community of Facebook's handling of security. Perhaps the most frustrating thing is that the company rarely responds to inquiries.

Question: Do people really have privacy on Facebook?

Answer: No. There are all kinds of ways third parties can access information about you. For instance, you may not realize that, when you are playing the popular games on Facebook, such as FarmVille, or take those popular quizzes--every time you do that, you authorize an application to be downloaded to your profile that gives information to third parties about you that you have never signed off on.

Question: Does Facebook share info about users with third parties through things such as Open Graph?

Answer: Open Graph is a new concept for Facebook, which unveiled it last month at its F8 conference. It actually is basically a way to share the information in your profile with all kinds of third parties, such as advertisers, so they can have a better idea of your interests and what you are discussing, so Facebook can--as portrayed--"make it a more personal experience."

Question: The theory behind Open Graph--even if it has not implemented it--is its whole business model, isn't it?

Answer: That is the business model--Facebook is trying to get you to share as much information as possible so it can monetize it by sharing it with advertisers.

Question: Isn't it in Facebook's best interest to get you to share as much info as possible?

Answer: It absolutely is. Facebook's mission is to get you to share as much information as it can so it can share it with advertisers. As it looks now, the more info you share, the more money it is going to make with advertisers.

Question: Isn't there also a security problem every time it redesigns the site?

Answer: Every time Facebook redesigns the site, which [usually] happens a few times a year, it puts your privacy settings back to a default in which, essentially, all of your information is made public. It is up to you, the user, to check the privacy settings and decide what you want to share and what you don't want to share.
Facebook does not [necessarily] notify you of the changes, and your privacy settings are set back to a public default. Many times, you may find out through friends. Facebook is not alerting you to these changes; it is just letting you know the site has been redesigned.

Question: Can your real friends on Facebook also can make you vulnerable?
Answer: Absolutely, Your security is only as good as your friend's security. If someone in your network of friends has a weak password, and his or her profile is hacked, he or she can now send you malware, for example.
There is a common scam called a 419 scam, in which someone hacks your profile and sends messages to your friends asking for money - claiming to be you--saying, "Hey, I was in London, I was mugged, please wire me money." People fall for it. People think their good friend needs help--and end up wiring money to Nigeria.

Question: A lot of Web sites we use display banner ads, but do we have to be wary of them on Facebook?

Answer: Absolutely, Facebook has not been able to screen all of its ads. It hasn't done a great job of vetting which ads are safe and which are not. As a result, you may get an ad in your profile when you are browsing around one day that has malicious code in it. In fact, last month, there was an ad with malware that asked people to download antivirus software that was actually a virus.

Question: Is too big a network of friends dangerous?

Answer: You know people with a lot of friends--500, 1,000 friends on Facebook? What is the likelihood they are all real? There was a study in 2008 that concluded that 40 percent of all Facebook profiles are fake. They have been set up by bots or impostors.
If you have 500 friends, it is likely there is a percentage of people you don't really know, and you are sharing a lot of information with them, such as when you are on vacation, your children's pictures, their names. Is this information you really want to put out there to people you don't even know?


So friends, be careful while sharing your information online specially of social networking websites like Facebook.

Note:-This interview, "Five Hidden Dangers of Facebook," was originally published on CBSNews

post by rishabh sharma hackersunderground

Hacking Facebook Chat box Video Tutorial


Facebook is one of the best social networking websites on the internet, and we all know Popularity drives developers crazy, so they try to develop new things regularly. Similarly the support of my HackingLoops users provokes me to explore new hacks for my friends and users. Friends good news for you, this time i found three few bugs in Facebook. I have also included video tutorial for the same, so you all can understand the things easily.. I love to find the hacks and tricks of Facebook and this is my another contribution to you Friends.

hack facebook chat, hacking chatbox
Hacking Facebook Chat box video tutorial
The Facebook chat findings are:
1. Use profile picture of anyone as Emoticon in chat.
2. Using any Facebook Picture as Emoticon in chat
3. Sending Invisible chat messages.
Using these hacks we can use anyone's profile picture or any Facebook image or photo as emoticon in our  chat along with that i have explored lot of hidden emoticons in Facebook. For explaining you in detail i have made a video for you Guys so that you can understand each scenarios perfectly. How i figured out these??
I was searching for Client side bugs in Facebook and suddenly i saw a script namely fO_oP6n8OAk in the Facebook scripts in firebug, there i have found lot of hidden emoticons but i was not satisfied with them, then i read the javascript code further and found something really interesting. We can use our profile ID either number or text as emoticon in Facebook chat by just putting that in below format in chat box:
[[profileID]]
My profile ID is www.facebook.com/lonerusher
Now if you type [[lonerusher]] you will be able to see my profile picture as emoticon. Similarly in cases when profile name is not present then there must be some number like profile ID as shown below:
profile.php?id=534757615
Now in this case you have to use [[534757615]] in the chat to get the emoticon of that profile image.
Similarly pick any picture in the Facebook, example i have picked this one:
photo.php?fbid=216057861810512&set=t.1057800144&type=1&theater
Now if you wish to use this picture as your image what you need to do is that you have to use the number in front of fbid in your Facebook chat which will be [[216057861810512]].
Now In some cases what happens is that image is generated through application, means user hasn't uploaded that. In that case if you use number in front of fbid then it will  result into a invisible message.
Also if you give wrong ID in the Facebook chat box then it will show a emoticon with ? . Isn't that cool.. yup it is.. So friends have fun with your friends, give surprise to them by your new set of emoticons and invisible messages..
Below i have added a complete video, which is demonstrating each and everything in detail, so enjoy your hack...I have also included how to use firebug to find emoticons scripts in Facebook which are hidden from general user.

post by rishabh sharma hackersunderground

2 New Facebook Text Tools

Hey friends, HackingLoops again presents you two more Facebook text tools to its users. These two tools are Hackify and Coolify.These tools will create awesome decorative texts which can be directly used in Facebook status updates and Facebook Chat to surprise your Friends. I am sure you all will enjoy the both Tools as they are absolutely unique.

Smart and decorative text as Status updates adds flavors to your boring Social Networking and help you score over your friends by surprising them daily with new and cool status updates. Below are the two tools:
1. Coolify Facebook Text Generator Tool
This tool will generate the coolified text with the help of Unicode format and it works on all social networking sites like Facebook, twitter, Google Plus etc..
Щё Lоvё HacкїйgLооp$ Gяоцp
Try Coolify Tool now: COOLIFY TEXT
2. Hackify Facebook Text Tool
This tool will generate the text which hackers and geeks love to use in their names and status updates. This tool is an advanced version of Coolify where every letter changes when user enters any character or select or hover.
So update your status messages like Hackers.
Ш℮ ℒø√ℯ Ħ@¢кḯηℊℒø☺℘ṧ Ḡяøüρ
Try Hackify Tool now: HACKIFY TEXT
 
for more symbol http://fsymbols.com/


post by rishabh sharma hackersunderground

How to Hack Facebook account or password

hack facebook account password, hacking facebook accounts
 
Note: This is for Educational Purposes only. Don't misuse it.:P Please...
Requirements:
1. Facebook latest Phisher or Fake Pages.
Download Latest Facebook Phisher here: Download Now
2. Free Web hosting server to upload those Phish Pages.
3. Spoofing URL using Host name mapping technique.
Let me provide you little background what i will teach you today. I know most of you already know phishing but for first timers, let me explain a bit. Phish Pages means Fake Pages that looks absolutely similar to original pages and the technique of using those Fake pages to hack anyone's user name and password is called Phishing. And technique which we use to send these fake pages to victim and prompt him to believe that they are real is called Social Engineering. But i think this we already know, what's new we are going to discuss today.. Ahhh... Just wait and hold your pants tight because today i will be breaking all the policies and ethical norms because until and unless we don't know how hackers do things we will never able to stand in front of them.

What is New???
We all know that fake pages can only be detected using two techniques:
1. Verifying the URL in the address bar, if its a fake page then URL must be different from original one.
2. Using any web security toolbar that warns users for fake pages like AVG toolbar, Norton Online security toolbar etc..
But what if you open www.facebook.com manually in your web browser and fake page opens and URL in the web browser remains www.facebook.com only. That means first technique to detect fake page go in vain. Now for second technique, all online web security toolbar detect fake pages by comparing the input  by user in URL address bar and original page URL. If both matches then its not a fake page else its a malware page. 
So friends today i will teach you how to make your fake pages open whenever victim opens Facebook in his/her web browser. Ahhh... You will be now thinking its impossible. But as i have told you i have written a white paper on Advanced Phishing techniques. So its 110% possible to load fake web page whenever user opens www.facebook.com or any other website like Yahoo, Hotmail or anything... Below are the steps and video for the same.
I had made the video as well as written the steps in detail which will tell you everything step by step.
Steps to Hack Facebook account or Password:
1. Download the Latest Facebook Phisher.
2. Extract the files, you will get below 4 files:

  • index.php
  • facebook1.php
  • passwords.html
  • thanks.php
3. Now go to any free web hosting web server to upload these fake pages. 
Note all should be uploaded at root means not in any folder. Just at first level directory.
4. Now you need to find the correct IP address of the account you have created on web hosting server.
5. When you get you fake page's IP address, now what we need to do is that we have to add the entry of the IP address against the www.facebook.com in victim's host file located at below location.
C:\Windows\System32\drivers\etc
6. There are several ways of doing that, i have written my own php scripts for doing the same but i cannot share that with you guys because there are chances of misusing it. So i explain you the logic and rest you need to figure out how you will edit victims host file and append your Fake Page IP address against www.facebook.com.
7. Now after doing steps 5 and 6, whenever user open the www.facebook.com, your fake Facebook page will open and victim will never be able to visit the original Facebook, so he cannot even been able to change his password...:P
8. I have added an extra logic to my scripts, whenever victim enter the password and hit enter button, i am removing the entry of Fake IP address against www.facebook.com from the host file by making it spaces. So it will be for him for one time only which sounds more spoofed. Its just a single line code but i cannot tell you guys because it will make this article completely unethical. 
I will teach you techniques but i will not do spoon feeding because if you want to become good hacker then you need to use your brain too. I love to be called Destructive but i do constructive works..:P like this one...rofl...
9. Everything other than this is similar to normal phishing technique..
I hope you all like it... If not here is the video of the complete hack in detail with each and every step shown practically. 
Note: In video i am using my localhost as web server which in your case will be uraccountname.my3gb.com or other means where you uploaded your files.
Also you must know 127.0.0.1 is localhost IP address. For you case your webhosting will be the IP address that will be used to map against facebook.



post by rishabh sharma hackersunderground

WIRELESS HACKING...

Hello Friends, today i will explain you how to crack Wifi or wireless password in just 10 to 15 minutes.  So guys read on and watch ....

STEPS TO HACK WIFI OR WIRELESS PASSWORD

1. Get the Backtrack-Linux CD. Backtrack Linux Live CD(best Linux available for hackers with more than 2000 hacking tools inbuilt).
Download Backtrack Linux Live CD from here: CLICK HERE

2.  SCAN TO GET THE VICTIM

Get the victim to attack that is whose password you want to hack or crack.
Now Enter the Backtrack Linux CD into your CD drive and start it. Once its started click on the black box in the lower left corner to load up a "KONSOLE" . Now you should start your Wifi card. To do it so type 

airmon-ng

You will see the name of your wireless card. (mine is named "ath0") From here on out, replace "ath0" with the name of your card. Now type

airmon-ng stop ath0

then type:

ifconfig wifi0 down

then type:

macchanger --mac 00:11:22:33:44:55 wifi0

then type:

airmon-ng start wifi0

The above steps i have explained is to spoof yourself from being traced. In above step we are spoofing our MAC address, this will keep us undiscovered.

Now type:

airodump-ng ath0

All above steps in one screen shot:

hack wifi, hack wifi password, hack wifi network,hack wep key, hack wifi password software
Now you will see a list of wireless networks in the Konsole. Some will have a better signal than others and its always a good idea to pick one that has a best signal strength otherwise it will take huge time to crack or hack the password or you may not be able to crack it at all.
Once you see the networks list, now select the network you want to hack. To freeze the airodump screen HOLD the CNTRL key and Press C.
Now you will see something like this:

hack wifi, hack wifi password, hack wifi network,hack wep key, hack wifi password software


3.  SELECTING NETWORK FOR HACKING 

Now find the network that you want to crack and MAKE SURE that it says the encryption for that network is WEP. If it says WPA or any variation of WPA then move on...you can still crack WPA with backtrack and some other tools but it is a whole other ball game and you need to master WEP first.

hack wifi, hack wifi password, hack wifi network,hack wep key, hack wifi password software

Once you've decided on a network, take note of its channel number and bssid. The bssid will look something like this --

00:23:69:bb:2d:of

The Channel number will be under a heading that says "CH".
As shown in this figure:

hack wifi, hack wifi password, hack wifi network,hack wep key, hack wifi password software

Now in the same KONSOLE window type:

airodump-ng -c (channel) -w (file name) --bssid (bssid) ath0


The file name can be whatever you want. This file is the place where airodump is going to store the packets of info that you receive to later crack. You don't even put in an extension...just pick a random word that you will remember. I usually make mine "Ben" because I can always remember it. Its simply because i love ben10....hhahahahaha :D

Note: If you want to crack more than one network in the same session, you must have different file names for each one or it won't work. I usually name them as ben1, ben2 etc.

Once you typed in that last command, the screen of airodump will change and start to show your computer gathering packets. You will also see a heading marked "IV" with a number underneath it. This stands for "Initialization Vector" but in general terms all this means is "packets of info that contain characters of the password." Once you gain a minimum of 5,000 of these IV's, you can try to crack the password. I've cracked some right at 5,000 and others have taken over 60,000. It just depends on how long and difficult they made the password. More difficult is password more packets you will need to crack it.



4.  Cracking the WEP password

Now leave this Konsole window up and running and open up a 2nd Konsole window.
In this window type:

aireplay-ng -1 0 -a (bssid) -h 00:11:22:33:44:55 ath0

This will send some commands to the router that basically it is to associate your computer even though you are not officially connected with the password. If this command is successful, you should see about 4 lines of text print out with the last one saying something similar to "Association Successful :-)" 
If this happens, then good! You are almost there.

Now type:
aireplay-ng -3 -b (bssid) -h 00:11:22:33:44:55 ath0

This will generate a bunch of text and then you will see a line where your computer is gathering a bunch of packets and waiting on ARP and ACK. Don't worry about what these mean...just know that these are your meal tickets. Now you just sit and wait. Once your computer finally gathers an ARP request, it will send it back to the router and begin to generate hundreds of ARP and ACK per second. Sometimes this starts to happen within seconds...sometimes you have to wait up to a few minutes. Just be patient. When it finally does happen, switch back to your first Konsole window and you should see the number underneath the IV starting to rise rapidly. This is great! It means you are almost finished! When this number reaches AT LEAST 5,000 then you can start your password crack. It will probably take more than this but I always start my password cracking at 5,000 just in case they have a really weak password.

Now you need to open up a 3rd and final Konsole window. This will be where we actually crack the password. 
Now type:
aircrack-ng -b (bssid) (filename)-01.cap

Remember the file name you made up earlier? Mine was "Ben". Don't put a space in between it and -01.cap here. Type it as you see it. So for me, I would type wepkey-01.cap
Once you have done this you will see aircrack fire up and begin to crack the password. typically you have to wait for more like 10,000 to 20,000 IV's before it will crack. If this is the case, aircrack will test what you've got so far and then it will say something like "not enough IV's. Retry at 10,000." 
DON'T DO ANYTHING! It will stay running...it is just letting you know that it is on pause until more IV's are gathered. Once you pass the 10,000 mark it will automatically fire up again and try to crack it. If this fails it will say "not enough IV's. Retry at 15,000." and so on until it finally gets it.

If you do everything correctly up to this point, before too long you will have the password! now if the password looks goofy, dont worry, it will still work. some passwords are saved in ASCII format, in which case, aircrack will show you exactly what characters they typed in for their password. Sometimes, though, the password is saved in HEX format in which case the computer will show you the HEX encryption of the password. It doesn't matter either way, because you can type in either one and it will connect you to the network.

Take note, though, that the password will always be displayed in aircrack with a colon after every 2 characters. So for instance if the password was "secret", it would be displayed as:
se:cr:et

This would obviously be the ASCII format. If it was a HEX encrypted password that was something like "0FKW9427VF" then it would still display as:
0F:KW:94:27:VF
hack wifi, hack wifi password, hack wifi network,hack wep key, hack wifi password software

Just omit the colons from the password, boot back into whatever operating system you use, try to connect to the network and type in the password without the colons and presto! You are in!

It may seem like a lot to deal with if you have never done it, but after a few successful attempts, you will get very quick with it. If I am near a WEP encrypted router with a good signal, I can often crack the password in just a couple of minutes.

I am not responsible for what you do with this information. Any malicious/illegal activity that you do, falls completely on you because...technically...this is just for you to test the security of your own network.


post by rishabh sharma hackersunderground

Thursday, 10 January 2013

AIRTEL FREE 3G INTERNET HACK | JANUARY 2013

We are glad to inform that, this time we have come up with brand new airtel 3G internet trick for both Mobile and PC. We knew that all the tricks got blocked and found this new trick. Enjoy this new trick and download unlimited. There is no speed capping in this trick.

?Features:
  • No speed capping
  • Unlimited Download
  • No VPN servers
  • No disconnection problem
  • working at zero balance
  • No need to activate any 2G or 3G packs
  • No sim blocking
  • Working in North and south states
  • Supported both PC and Mobile

Screenshot:


DOWNLOAD 

post by rishabh sharma hackersunderground

 
Design by HACKERS UNDERGROUND
HACKERS UNDERGROUND © 2012 BY RISHABH SHARMA