Posts

Showing posts from September, 2017

Security and Hacking apps for Android devices

Image
Now days, smartphones and tablets are most the popular gadgets. If we see recent stats, global PC sale has also been decreasing for the past few months. The reason behind this is that people utilize tablets for most of their work. And there is no need to explain that Android is ruling global smartphone and tablet markets. Android is most popular mobile OS with more than 60% market share. So, companies are now focusing on bringing their software as a mobile app for Android. These apps include office apps, photo editing apps, instant messaging apps and penetration testing apps. If you have an Android smartphone, you can start your next penetration testing project from your Android phone. There are few android apps that can turn your Android device into a hacking device. Although, these apps have so many limitations and can only be used for few specific tasks. You can never get the same experience as you get with your PC. But smaller jobs can be performed. Apps for penetration tes

Database Penetration Testing using Sqlmap

Image
sqlmap is an open source penetration testing tool that automates the process of detecting and exploiting SQL injection flaws and taking over of database servers. It comes with a powerful detection engine, many niche features for the ultimate penetration tester and a broad range of switches lasting from database fingerprinting, over data fetching from the database, to accessing the underlying file system and executing commands on the operating system via out-of-band connections. Features Full support for MySQL, Oracle, PostgreSQL, Microsoft SQL Server, Microsoft Access, IBM DB2, SQLite, Firebird, Sybase, SAP MaxDB, HSQLDB and Informix database management systems. Full support for six SQL injection techniques: boolean-based blind, time-based blind, error-based, UNION query-based, stacked queries and out-of-band. Support to directly connect to the database without passing via a SQL injection, by providing DBMS credentials, IP address, port and database name. Support to enumerate

Chrome plugin exploited Tinder privacy bug to track your friends’ location

Image
Remember Tinder Social – the group meeting feature that got the popular dating app in trouble for outing its users to their Facebook friends? It turns out that, in addition to this, Social had another glaring privacy issue that made it possible for Tinder users to track their Facebook friends – and see their exact location. To demonstrate how intrusive the group meeting feature can be, researchers from cybersecurity firm Detectify developed a creepy Chrome plugin that enabled them to use their Tinder account to triangulate the precise location of their Facebook friends. As the security experts explain in a blog post, they exploited a well-known privacy vulnerability that allows to export your Facebook friends’ Tinder IDs. The next step was to mark this data onto one big map and automate it to continually update users’ location with data from the app. Here is how this looked: While Tinder has no official API, Detectify resorted to popular sniffing tool Burp Suite in ord

LG V30 will have a second year of warranty in the U.S.

Image
After leaks and pre-announcements, the LG V30 was made official at this year's IFA conference. However, availability and price were not announced at the event, leaving potential buyers curious as to when the phone would be available. We now know that it'll be arriving on October 5. AT&T, T-Mobile, and Verizon have already announced their availability for the V30, but in a press release LG said the V30 and V30+ will be available from all major carriers within the next two weeks. Still unknown at this time is any sort of unlocked offering. Availability, color, and price will vary from carrier to carrier. The only difference between the V30 and the V30+ is the former includes 64GB of internal storage, while the latter includes 128GB. It's not clear which carriers will get the V30+, but it's looking like either Verizon or Sprint, or both. LG is also stepping up its warranty game with the release of the V30. Instead of the standard one year of warranty coverage,

Guess who just switched to an Android phone

Image
Bill Gates. Yupp, the co-founder of Microsoft has reportedly put his Windows phone aside in favor of an Android device. According to the most recent statistics, Windows-powered phones managed to round up only 0.3 percent of the market, and among that minuscule number of people was, of course, Bill Gates, the co-founder of Microsoft. However, in an interview with Fox News, Bill Gates revealed that this is no longer the case: he has officially ditched his Windows phone in favor of an Android-powered smartphone. While he never specified which Android phone he was using as a personal device, he did add that it has “a lot of Microsoft software.” In some ways, Bill Gates’ decision to go with an Android phone makes a lot of sense. After all, Microsoft’s very own Windows Mobile OS never caught on, mostly due to its counterintuitive UI and lack of dev support, and after the Lumia 950, the company seemed to have given up altogether. That probably left Bill Gates with two options: iOS o

Java 9 Released — 9 Biggest Features and Download Links Are Here

Image
JDK 9 is the first major upgrade to standard Java edition since March 2014. It comes loaded with tons of new features, which makes it a pretty exciting release for developers. Java 9 features: Brief overview Project Jigsaw — Module System The major change in Java 9 comes in the form of Project Jigsaw, which is an all-new module system. It’s the most important feature of Java, that has also received tons of criticism. This feature will bring modularity to JDK, run-time images, Java source code, etc. The developers can also create their own modules and simplify the code. JShell With JDK 9, now you can fire the JShell from the console and go crazy with your Java code. JShell allows you to test different Java constructs without any hassle. Stream API enhancements With Stream API enhancements, Java 9 comes with the added methods to conditionally take or drop items from the Stream, create a Stream from nullable value while expanding Java SE APIs, etc. Process API Cha

Apple has shed $50 billion — bigger than the entire value of eBay, Target or Ford — since it unveiled the new iPhone

Image
Apple shed more than $50 billion from its market value in the days since it unveiled its latest line of products, according to CNBC analysis of FactSet data. The company released a new line of products on Sept. 12: The iPhone X, iPhone 8, iPhone 8 Plus, Apple TV 4K, and Apple Watch Series 3. Some of those products hit stores on Friday. Apple was sitting pretty at a market value of $834.9 billion on Sept. 11, the day before its big launch event. But by the closing bell on Friday, Sept. 22, Apple's market value had fallen to about $782.5 billion, according to FactSet. Apple market value 1-month performance Source: FactSet To put that in perspective, Apple has lost more than the entire market value of Target, eBay, TJX, Northrop Grumman, or Ford Motor, which all have market values of less than $50 billion. To be sure, $780 billion is still a massively large valuation for investors to put on a company — Apple is about $100 billion larger than Google-parent Alphabet

Google set to release new Pixel 2 and Pixel 2 XL smartphones, insiders say

Image
Google is set to release two new smartphones, the Pixel 2 and Pixel 2 XL, as well as a smaller Google Home Mini smart speaker on 4 October, the Guardian has learned. The devices will be released at the Made by Google event scheduled to take place in San Francisco and will lead the company’s renewed hardware efforts as it attempts to take on Apple and Samsung in the premium smartphone and accessory market. Two variants of the Pixel smartphone will be released mirroring last year’s devices, several well-placed sources told to the Guardian. The smaller Pixel 2, which is expected to have a screen about 5 inches in size, will be made by smartphone manufacturer HTC – part of which was acquired by Google on Thursday – according to two sources. It will come in blue, black or white and have a metal and glass back, similar to last year’s Pixel. The larger Pixel 2 XL will be made by LG and resembles an LG G6 on the front with an almost bezel-free screen, according to two sources, who ad

Sublime Text 3.0 is out!

Image
Compared to the last beta, 3.0 brings a refreshed UI theme, new color schemes, and a new icon. Some of the other highlights are big syntax highlighting improvements, touch input support on Windows, Touch Bar support on macOS, and apt/yum/pacman repositories for Linux. I wanted to highlight some of the changes from Sublime Text 2 here, however it's surprisingly hard: virtually every aspect of the editor has been improved in some way, and even a list of the major changes would be too long. If you'd like to see the full list of changes, the team has made a  dedicated page  for them. Certainly there are big features that 3.0 has: Goto Definition, a new syntax highlighting engine, a new UI, and an expanded API. However the difference is frequently felt in the hundreds of improvements that don't warrant being featured on their own: spell checking works better, automatic indentation does the right thing more often, word wrapping handles source code better, high DPI scree