11 January 2012

Ankit Fadia Hacked by Teamgreyhat

Self called ethical hacker Ankit Fadia is under cyber attack. Hacktivist group Teamgreyhat has officially declared operation against Ankit Fadia. According to official press release TGH said #target Ankitfadia Engaged. In this attack they have successfully hacked into the Ankit Fadia's offcial site and exposed lots of credentials including sensitive data, student details, DB credentials (DB Name, User Name & Password) and many more. 

Click here to read more ......

 Solutions : www.xcyss.in

Muslim Cleric Says Facebook Un-Islamic, Membership Sin

A Muslim cleric from Iran has claimed that the social networking site Facebook is un-Islamic and being a member of it is a sin, the ISNA news agency reported.

"Basically, going to any website which propagates immoralities and could weaken the religious belief is un-Islamic and not allowed, and membership in it is therefore a sin," the unnamed cleric said, replying to the news agency's question regarding Facebook and Iranian citizens who are members of Facebook.

"Only the use of websites propagating religious criteria and not leading to any kind of ethical immoralities is of no problem," he added.

Being an Islamic nation, Iran's senior clerics have the right to pronounce opinions on matters pertaining to the society and citizens in the light of religion, which are regarded as decrees to be followed.

Facebook's official figures released last October stated that 17 million Iranians have a Facebook account, despite government restrictions on the Internet.

Iran uses a filtering system developed by Secure Computing Corporation, SmartFilter, to block high traffic Web sites including Facebook and New York Times.

The filter also blocks access to most pornographic sites, gay and lesbian sites, activist sites, news media, sites that provide tools to help users cloak their Internet identity and other sites defined as immoral on various grounds by the government.

Click here to read more ......

Solutions : www.xcyss.in

Terorrist groups using Facebook for recruitment

Terrorist groups, blacklisted by the US, are relying on Facebook to urge users to join and support Hezbollah, Hamas and other militant groups.

"Today, about 90 percent of organized terrorism on the Internet is being carried out through the social media. By using these tools, the organizations are able to be active in recruiting new friends without geographical limitations," says Gabriel Weimann, professor at the University of Haifa.

The most advanced of Western communication technology is, paradoxically, what the terror organizations are now using to fight the West.

The shift to social media, and especially Facebook and Twitter, has not bypassed terrorist groups, who are keenly interested in recruiting new support in the new media's various arenas, chat rooms, YouTube, Myspace, and more.

The social media is enabling the terror organizations to take initiatives by making 'Friend' requests, uploading video clips, and the like, and they no longer have to make do with the passive tools available on regular websites.

Facebook platform is being used as a resource for gathering intelligence.

Click here to read more ......

Solutions : www.xcyss.in

Hackers Targeting Non-government Organizations Using Backdoor Assaults

Researchers at Computer Security Company Trend Micro are reporting non-government organizations (NGOs) that are getting attacked with backdoor-assaults resulting from a website hijack that unleashed one destructive Java applet identified to be JAVA_DLOAD.ZZC and abusing a security flaw within Java.

The flaw, JAVA_DLOAD.ZZC exploits, is called CVE-2011-3544 and its exploitation results in the installation of TROJ_PPOINTER.SM that in turn plants BKDR_PPOINTER.SM. Linking up with one particular URL, BKDR_PPOINTER.SM exchanges instructions with its controller. Moreover, while on the infected PC, it collects information regarding that machine too.

Furthermore, investigation reveals that the first NGO struck is probably one target from the several within this assault, while the assault as such is particularly devised to hit the targets. Investigators during the probe discovered that cyber-criminals used the attack strain associated with the NGO on human rights for labeling both the newly created file and associated folder within the hijacked Brazilian site: "hxxp://{BLOCKED}.com.br/cgi-bin/ai/ai.jar" and "hxxp://{BLOCKED}.com.br/cgi-bin/ai/ai.html."

Nart Villenueve, Researcher at Trend Micro tested this and discovered more files and their folder that were supported on the same hijacked site although with separate strains, thus strongly indicating that other targets too existed.

What's more, the files recovered via the web addresses such as "hxxp://{BLOCKED}.com.br/cgi-bin/so/so.html," "hxxp://{BLOCKED}.com.br/cgi-bin/hk/hk.jar" and "hxxp://{BLOCKED}.com.br/cgi-bin/hk/hk.html" too contained the identical strain, with the files currently identified as BKDR_PPOINTER.SM and JAVA_DLOAD.ZZC.

Researchers from the Trend Micro Company said that the attack seemed as being related to one wicked plan for striking human rights activists.

Click here to read more ......

Solutions : www.xcyss.in

BEWARE: More Facebook Phishing Emails Circulate

Does Mark Zuckerberg have a special place in your heart? Do you like Apple? Scammers are using the popularity of the Facebook chief executive officer and Apple in yet another phishing scheme via email claiming you are the lucky winner of an iPhone and iPad.

Do yourself a favor and delete any message you receive that says:

My name is Mark Zuckerberg, Chief Executive Officer of Facebook. We have recently partnered up with Apple company for a one-time promotional event today, we are giving away free Apple iPhones and iPads to randomly selected individuals who have been fortunate to be picked as one of our newest winners for today. We randomly selected users from our systems database and you have matched with our latest drawing.

We have partnered up with Apple to advertise their most popular product yet, the Apple iPhone and iPad. Once again, we are running this campaign for one-day only. All you need to do is CLICK HERE to check out our web site made for this promotion and fill out this short survey to get yours for free. Simply make sure you enter your email so we may locate our records to guarantee that we have reserved one for you. That is it!

Clicking on the link within the email takes you to a survey which claims that you could win an iPhone 4S.

The incongruence between the promised iPhone and iPad, and the chance to win an iPhone 4S are beside the point. The probability of you actually receiving something from emails like this is zero. In this particular case, the survey takes you to a mobile phone service, which you can sign up for, from which the scammer earns a commission.

Click here to read more ......

Solutions : www.xcyss.in

10 January 2012

Infographic: Worldwide Information Security Products Spend


...
Once inside your house, a burglar needs to poke around to find your most valuable items – the silver in the dining room and the jewelry in the bedroom – before he can stuff them into a bag and make a run for it. Similarly, once an intruder’s inside your network, the attacker still needs to find and package your organization’s critical and sensitive information before the real damage is done. Most often, there is plenty of time, from the initial breach of the “front door” to the exfiltration of the data, to take proactive steps to stop or minimize the impact of the attack. Despite that, only 1.1 percent of all security budgets are spent “inside the house,” actively watching the attack as it is happening and responding to the intrusion to minimize the impact.




Click here to read more ......
 Solutions : www.xcyss.in

U.S. probes alleged hacking by India govt spy unit

U.S. authorities are investigating allegations that an Indian government spy unit hacked into emails of an official U.S. commission that monitors economic and security relations between the United States and China, including cyber-security issues.

The request for an investigation came after hackers posted on the Internet what purports to be an Indian military intelligence document on cyber-spying, which discusses plans to target the commission - apparently using technical know-how provided by Western mobile phone manufacturers.

Appended to the document are transcripts of what are said to be email exchanges among commission members.

The document's authenticity could not be independently verified. But the U.S.-China commission is not denying the authenticity of the emails.

Officials in India could not be reached for comment on the document's content or authenticity. One India-based website quoted an unnamed army representative as denying that India used mobile companies to spy on the commission and calling the documents forged.

The purported memo says that India cut a technological agreement - the details are not clear - with mobile phone manufacturers "in exchange for the Indian market presence." It cites three: Research in Motion (RIM.TO), maker of the BlackBerry; Nokia (NOK1V.HE); and Apple (AAPL.O).

Apple spokeswoman Trudy Muller said her company had not provided the Indian government with backdoor access to its products. A spokesman for Nokia declined comment; RIM officials could not be reached for comment.

The U.S. Congress created the commission in 2000 to investigate and report on the national security implications of the economic relationship between the United States and China. The bipartisan, 12-member panel holds periodic hearings each year on China-related topics such as cyber security, weapons proliferation, energy, international trade compliance, and information policy.

The email breach, if confirmed, would be the latest in a series of cyber intrusions that have struck U.S. institutions ranging from the Pentagon and defense contractors to Google Inc (GOOG.O).

Many of the previous hacks have been blamed on China. In this case, it is unclear whether India might have been eavesdropping on the U.S.-China commission for itself or sought to pass any information collected to authorities in China.

Click here to read more ......

Solutions : www.xcyss.in

Doctor arrested for obscene uploads

The CID arrested a doctor on Monday for allegedly publishing obscene morphed images and abusive material about a software engineer on Orkut. According to the CID, the accused doctor used online social networking websites to defame the victim. A complaint was lodged by the victim’s parents with the cyber crime cell on November 2.

During the investigation, the IP addresses of the postings were collected from Orkut. Using the IP addresses, Dr Manohar was identified. He was arrested on Monday and the cops seized his laptop and data card. Manohar said he used to give missed calls to mobile phones randomly, and that he had accidentally come in contact with the daughter of the complainant who happened to be a software engineer.

He said he became friendly with the woman and asked her to marry him, but she refused. Manohar said that to avenge this, he had started harassing her over the phone and by sending abusive emails. The police said that the accused allegedly created a fake profile in the name of the victim on Orkut, and uploaded obscene morphed images and abusive content about her. He also sent “friend requests” to many friends and colleagues of the victim from the fake profile.

The girl didn’t know of her fake profile till a friend got a “friend request”. The cops booked a case against the doctor. Posting images of anybody without consent is an offense. Creating a profile using another person’s name without their consent is also an offense. Those who post material on the Net can be tracked using their IP numbers.

Click here to read more ......

Solutions : www.xcyss.in

09 January 2012

Malware can empty out your bank a/c

Doing online banking frequently? Beware, as cyber-criminals have launched a new malware that not just steals your money from your bank, but also offers false reassurance that it's still there, experts have warned.

The attack, a new version of trojan horse SpyEye software that targets computers using Windows, has been detected in the United States and the United Kingdom.

According to Trusteer, a security company which detected the attack, the software, which steals your bank passwords to give access to your account, waits for you to enter the same banking details before "adjusting" what you see.

The idea is to gives criminals more time to usedebit card details on fraudulent transactions without the person realizing it's happening.

The malware is designed in a way that when one visits his or her online bank, there will be no trace of the transactions that cyber-criminals are using to empty the bank account. Worse, the balance will also be adjusted on screen so it looks as if nothing is happening. The next time the victim visits their online banking site, the malware hides the fraudulent transactions, as well as artificially changing the total balance.

As a result, the deceived customer has no idea that their account has been 'taken over', nor that any fraudulent transactions have taken place. SpyEye is a tweak of the Zeus crimeware kit that grabs web form data within browsers," says the Naked Security blog at web security experts Sophos.

The new Trojan, instead of intercepting or diverting email messages, hides bogus transactions even after users have logged out and then logged back into their accounts. With hi-tech cyber attacks such as SpyEye, there are few visible signs that anything is wrong. There are defences, though - ensure your browser is up to date, manually updating it if necessary," experts said.

Thus, it is important that users should ensure that the "anti-phishing option is switched on" in their web browser that which will check for "blacklisted" websites and prevent the browser from being directed to the "fake" version that delivers your bank statement.

Click here to read more ......

Solutions : www.xcyss.in

Hackers break into heart of anti-virus giant Symantec

Symantec, the top maker of security software, said hackers had exposed a chunk of its source code, which is essentially the blueprint for its products, potentially giving rivals some insight into the company's technology.


The developer of the popular Norton antivirus software said the hackers stole the code from a third party and that the company's own network had not been breached, nor had any customer information been affected.


The software maker would not confirm the claim of a group called the Lords of Dharmaraja, who said that they had obtained Symantec's source code by hacking the Indian military.


Click here to read more ......

Solutions : www.xcyss.in

Gujarat IPS officer's email account hacked

The email account of IPS officerRajnish Rai has been hacked, police said.

The officer registered a complaint on Friday after he found that password of his Gmailaccount had been changed without his knowledge, police said.

According to the complaint, the account washacked before January 6 by some unknown person.

A case has been registered under Section 66 of the Information Technology Act.

Police said that they have written to the email service provider Google about the alleged hacking and awaiting a response from them.

Rai had come into prominence when he arrested three IPS officers D G Vanzara, Rajkumar Pandiyan and Dinesh M N, and other.

Click here to read more ......

Solutions : www.xcyss.in

06 January 2012

Ramnit Goes Social

Much has been written about the Ramnit worm and its transformation into a financial malware. And now, Seculert's research lab has discovered that Ramnit recently started targeting Facebook accounts with considerable success, stealing over 45,000 Facebook login credentials worldwide, mostly from people in the UK and France.


Figure 1: Number of Ramnit Infected Machines Between September 2011 and December 2011

It seems, however, that this is not the last twist. Recently, our research lab identified a completely new 'financial' Ramnit variant aimed at stealing Facebook login credentials. Since the Ramnit Facebook C&C URL is visible and accessible it was fairly straightforward to detect that over 45,000 Facebook login credentials have been stolen worldwide, mostly from users in the United Kingdom and France.


Figure 2: Ramnit.C Facebook Infection Distribution By Country


Figure 3: Ramnit Command & Control Server with Visible Facebook Accounts files

We suspect that the attackers behind Ramnit are using the stolen credentials to log-in to victims' Facebook accounts and to transmit malicious links to their friends, thereby magnifying the malware's spread even further. In addition, cybercriminals are taking advantage of the fact that users tend to use the same password in various web-based services (Facebook, Gmail, Corporate SSL VPN, Outlook Web Access, etc.) to gain remote access to corporate networks.

With the recent ZeuS Facebook worm and this latest Ramnit variant, it appears that sophisticated hackers are now experimenting with replacing the old-school email worms with more up-to-date social network worms.

Click here to read more ......

Solutions : www.xcyss.in

Etrade suffers DDOS festive treat

ANZ Bank-owned online broker ETrade, has been the target of a sustained malicious offshore generated cyber attack.

The denial-of-service attack resulted in thousands of emails flooding the broking site, prompting a cessation of services from Christmas Eve to the New Year period.

According to a Fairfax report, offshore Etrade clients were the worst affected with some countries unable to access accounts for almost two weeks. An ETrade spokesperson confirmed that while overseas clients were , more profoundly affected, Australian clients had intermittent access to their accounts.

Neither ANZ nor ETrade have supplied any detail on the nature of the attack or who the culprit was.

Customers only received an explanation of the outage yesterday stating, "immediate action was taken to restrict access from some overseas locations, but given the nature of the incident we were restricted in what we could communicate with you at the time. Importantly, at no stage was the security of the Etrade website breached."

Click here to read more ......

Solutions : www.xcyss.in

05 January 2012

Social media engages the globe

Despite significant differences in government, infrastructure, availability of access and cultural practices around the world, social networking is growing in every single market. The penetration of social networking sites ranges from 53% in China to 98% in the US, with 41 of the 43 markets individually reported by comScore seeing a market penetration of 85% or more.

“Regardless of how open or closed a society may be, it is safe to assume that more than half of local online populations are engaging in online social networking, making the practice comparatively ubiquitous around the world,” the metrics outfit says.

And for each region, the total time spent by users on social networking grew by at least 35% over the past year, reflecting its growing pervasiveness across the board. In Latin America, Europe, and the Middle East-Africa – three very culturally different regions – social networking accounted for at least 24% all time spent online.

comscore-social-networks

Click here to read more ......

Solutions : www.xcyss.in

04 January 2012

Phishing scam

The Sun-Times has been alerted of a phishing scam hitting e-mail inboxes nationwide. The e-mail is disguised as an electronic copy of a purchased airline ticket. It is advised that if anyone does receive this e-mail, they should report it as spam or junk without opening it. The copy of the email text is as follows:

Dear Customer,

FLIGHT NUMBER AA753
ELECTRONIC 778679819
DATE & TIME / JANUARY 15, 2012, 10:53 PM
ARRIVING / Cleveland
TOTAL PRICE / 223.73 USD

Your bought ticket is attached to the letter as a scan document.
You can print your ticket.

Thank you for using our airline company services.
American Airlines.

Click here to read more ......

Solutions : www.xcyss.in

CM tells police to monitor FB

Jaipur: The state government would be closely monitoring hate crimes spreading through the social networking sites. While reviewing law and order situation in the districts, chief minster Ashok Gehlot, made it amply clear that networking sites cannot be allowed to trigger communal tension. Gehlot asked senior police officials to probe how Facebook was misused to turn people anger into mob fight in some districts and warned such instance should not occur in future.

"Why was the misuse of the social networking sites, like Facebook, reported from four-five districts of the state recently," Gehlot asked officials. He directed officials to evaluate the fact and check attempts to break communal harmony through uploading objectionable matter on social networking sites.

He directed the police to take strong measures against ‘external forces’ trying to disturb the communal harmony in state. "In case of a communal violence, the district collector and the superintendent of police would be solely responsible for the fallout of such an event," he said during the meeting.

Click here to read more ......

Solutions : www.xcyss.in

Schools say Get off FB

With Board exams a month away, are you worried that your child spends too much time online surfing social networking sites? You are not alone. Many schools are sending out advisories to parents asking them to wean their children away from these sites, especially Facebook, during this exam season.

The Class X and Class XII exams of CBSE, ICSE and state boards are scheduled from February to April and since December, de-activating students’ FB accounts has been widely discussed in parents’ meetings and open houses conducted by schools.

While principals and teachers are urging parents to ask their wards to de-activate their FB accounts immediately, some schools have even engaged technical experts for the purpose. While most parents agree wholeheartedly that this could show positive results as far as their wards’ results are concerned, surprisingly the students too are agreeing to comply, albeit after some initial resistance.

THE ADVISORY
* Children below 16 should be discouraged from social networking
* Ensure that the computer is installed in a common area and not in the bedrooms
* Keep a tab on the content of their children’s networking accounts till the age of 18
* Make sure that a child doesn’t misuse the Internet under the guise of school projects
* Keep a tab on websites being visited and install a firewall to bar social networking sites
* Avoid buying mobiles for a student below Class XII
* Children should not be allowed to carry cellphones to school under no circumstance

Click here to read more ......

Solutions : www.xcyss.in

03 January 2012

That 'UK lottery you just won' originated in Aarey Colony

If you wondered where you are receiving fradulent emails about winning millions of dollars and property in the United Kingdom from, the city’s crime branch has the answers.

These SMSes and emails were not generated from foreign soil, but by a group of Nigerians holed up in rented flats in Goregaon (E).

The city crime branch sleuths on Saturday arrested six Nigerian nationals for their alleged involvement in phishing scams and suspects that they would have cheated several people to the tune of lakhs of rupees.

Explaining their modus-operandi, Joint commissioner of police, crime Himanshu Roy said, they were using two different ways to con their victims. They would either send SMSes and emails informing victims about being selected in some lucky draw or the name the victims as beneficiaries of inherited property worth crores, mostly of a rich person in the UK or Libya. They would ask the victims for their email address for further communication.

Once in possession of the email address, they would email the victims and try to convince the victims. They had also prepared bogus certificates of the firms who had allegedly carried out lucky draws and announced the bogus prize money cheques. They would then email these bogus documents to the victim to gain their trust.

The accused would then started demanding money from the victims, saying they would need to appoint a local lawyer to act on their behalf in the UK and release the prize money from the government there.

They would then demand money on various pretexts like clearance from the revenue department in UK, RBI and Customs, take money from the victims and disappear.

The accused also had bank accounts in the city and some local contacts too.

Click here to read more ......

Solutions : www.xcyss.in

Nehru Place: A beehive for software piracy

Nearly half the world's personal computers use software that is pirated. In India, it's worse. Only about one-third of the software sold is genuine, according to Business Software Alliance (BSA), a trade group representing some of the largest software makers, includingMicrosoft and Adobe.

If the numbers remain alarmist, you only need to visit the country's largest technology market,Nehru Place in New Delhi. Its notoriety as a haven of software piracy was articulated by the US last month and it's easy to see why. At first glance, a first-time visitor to Nehru Place might feel misguided. There's nothing technology about it.

Street hawkers swamp the two main lanes alongside rows of shops, selling fake branded clothes, watches, shoes, utility items, and what have you. Cut through them to reach the stores selling computers, tablets, smart phones and just about any kind of software. But even before you can enter any of them, 19-year-old Inder Kumar, boyish and street-smart, accosts with a seven-page catalogue.

It's literally an A to Z of software, from Adobe to Z-Brush (a digital art software ). And he promises to sell them, at prices cheaper than a pair of boxers . He is all mouth even as his eyes dart around for cops and flying squads from Microsoft.

Click here to read more ......

Solutions : www.xcyss.in

Indian cyberspace hit by Kim Jong-II malware mails: IT sleuths

Indian computer security analysts have detected and alerted internet users against "malicious spam mails" in the name of the dead North Korean leader Kim Jong-II leading to hacking and crashing of vulnerable e-mails.

The Indian Computer Emergency Response Team (CERT-In), country's national agency to respond to computer security incidents, has found the malware virus streaming into the Indian cyberspace.

"It has been observed that a spam campaign in the pretext of death of North Korean leader "Kim Jong II" is making rounds for malware propagation. The malicious spam mails carry a fake name - "brief_introduction_of_kim_jong_Ill_pdf.pdf".

"The said pdf file is exploiting vulnerabilities in Adobe reader and Acrobat, that once successfully exploited leads to remote code execution in the victim system," the CERT-In said in its latest advisory to computer and internet users in the country.

"The malware has been detected more than ten days after the death of the North Korean leader and it lures the internet user to fall into trap of reading his life and style of living. The spam generators are being detected," a senior internet investigator told PTI.

The CERT-In has asked all government and other Internet Protocol (IP) addresses to avoid clicking on the link as it may lead to loss of valuable secret data including threat to personal financial details.

Click here to read more ......

Solutions : www.xcyss.in

Miscreants hack into Wardha ZP website

Alarm bells started ringing after the official website of Wardha Zilla Parishad washacked and slogans like 'Pakistan zindabad' were posted in Urdu on Friday. The website was ordered to be shut down soon after the hacking came to light.

District collector Jayashree Bhoj confirmed the hacking and said that ZP chief executive officer has been directed to conduct investigations and take suitable action against the unknown hacker.

According to Deputy CEO Vivek Bondre , the website was designed four years ago by Micological System, a Nagpur-based company. Information about government schemes was posted on it.

Click here to read more ......

Solutions : www.xcyss.in

02 January 2012

Social networking sites vulnerable to attacks in 2012

Social networking sites will be most vulnerable to cybercriminal attacks across the world in the next year, says a report from Trend Micro, an anti-virus, anti-spam and Internet security vendor.

Social networking sites are ideal targets for online criminal activity because of the large number of users, and an apparent high-level of trust among them.

The report has come up with predictions covering four main categories — big IT trends; mobile landscape; threat landscape; and data leaks and breaches.

In the mobile landscape, smartphones and tablet platforms, especially Android, will suffer from more cybercriminal attacks.

Among big IT trends, the Bring-Your-Own-Device era is here to stay. As more and more corporate data is stored or accessed by devices that are not fully controlled by IT administrators, the likelihood of data loss directly attributable to the use of improperly secured personal devices will rise. Information Technology will definitely see such incidents in 2012.

Click here to read more ......

Solutions : www.xcyss.in

Kashmir cops launch new teams to fight ‘Facebook jihad’

Troubled by inflammatory and obscene postings on social networking sites, the Jammu and Kashmir police is establishing three special police stations to fight cyber crime in the state.

During the 2010 unrest, several pages sprung up on Facebook calling for protests. Hundreds of netizens were posting anti-India thoughts which triggered stone-pelting at a number of places. Even separatists were encouraging the “Facebook Jihad” — the term used to spread anti India propaganda last year.

The special cyber police stations will now be entrusted with the job of cracking down on hi-tech crimes relating to cyber frauds and inflammatory postings on social networking sites.

Click here to read more ......

Solutions : www.xcyss.in