Tuesday 21 January 2014

Learn Ethical Hacking at BRISK Launching BISE V/2 Sunday, January 26, 2014 from 10:00 AM (IST) Chennai, India

Event Details

Dear Friends,

Brisk Info Sec proudly announce our next Brisk Information Security Expert Version 2 certification program.
Batch starts on 26/01/2014 (Sunday).
Who should attend this course:
  • Peoples interested in Hacking and Information Security
  • Software Engineers
  • Web application developers
  • Networking Persons
  • Information Security people
  • Auditors
  • Lawyers
  • Risk Assessment Managers
  • Testing Peoples
  • BE/B.Tech students
  • Bsc , Msc CS/IT
  • MCA
  • Diploma CSE / IT
  • Job Seekers
  • Business Peoples
Teaching Methods:
We know what people want. That is why we classified our course into two main categories and they are as follows,
  1. White Hat Hacking 
  2. Black Hat Hacking
This structured course is balanced at 750 slides with Numerous opportunities to watch instructor-led demos, whilst hacking our library of over 100 practical exercises, finishing with at the course is executed in the following style:
  • Brief theory delivered in lecture-style with examples.
  • Interactive demonstrations of key techniques.
  • Hands-on hacking.
  • Conducting International certificate online exam
  • Full hands on Windows OS and Kali Operating System. 

Course Details:
Duration         :     48 hours
Total Days      :    6 days (8hrs per day)
Tool kits         :    Text book + 5 DVD +Online Exam + Brisk Laptop Bag + Placement Assistance
Batches         :    Weekend batches (Saturday & Sunday)

Visit & register in our office on or before 25/01/2014 and get 25% of discount from our fees.
BISE V/2 Fees : Rs 20000/- only
Offer upto 25/01/2014 : 25%
BISE V/2 Fees after Discount : Rs 15000/- Only
Download Our Browcher

Venue:
Brisk Info Sec
No 150,Office No - 1,Ist Floor, Dharma Towers,
Nelsonmanikem road,Choolimedu, Chennai
PH - 9597978375
Email-contact@briskinfosec.com
Website-www.briskinfosec.com

'123456' giving tough competition to 'password' in Worst 25 Passwords of 2013


123456, password, 12345678, qwerty… or abc123, How many of you have your password one of these??? I think quite a many of you.

Even after countless warnings and advices given to the users by many security researchers, people are continuously using a weak strength of password chains.

After observing many cyber attacks in 2013, we have seen many incidents where an attacker can predict or brute-force your passwords very easily.

From 2012, the only change till now is that the string “password” has shifted to the second place in a list of the most commonly used passphrases and string “123456” has taken the first place recently, according to an annual "Worst Passwords" report released by SplashData, a password management software company.

They announced the annual list of 25 most common passwords i.e. Obviously the worst password that found on the Internet. The Most common lists of the passwords this year are "qwerty," "abc123," "111111," and "iloveyou", which are really easily guessable.

"Another interesting aspect of this year's list is that most short numerical passwords showed up even though websites are starting to enforce stronger password policies," says Morgan Slain, CEO of SplashData.  

Below are the worst passwords list of 2013 with Rank and showing the comparison of it from 2012:





If you are also using one of these passwords or other dictionary words, then you are advised to change it as soon as possible. We further advise you to use different passwords for different accounts, as if one of your account gets hacked, you’ll be totally ruined.

The above list of passwords was compiled from data dumps of stolen passwords posted online, and the firm says it was especially influenced by the millions of Adobe accounts that were compromised in the fall.

Fact & figure:
 Stricture Consulting Group attempted to decrypt the leaked Adobe passwords and released an estimate that almost 2 million of the more than 130 million users affected by the breach appeared to be using "123456" as a password.

Now when you talk about various security measures to protect your privacy and data, installing an Antivirus doesn’t mean that here your work gets over and you are safe enough. “God helps those who help themselves” likewise nobody can secure your privacy unless and until you yourself not willing to.
 
Here I have listed some useful tips to make your password strength secure and easier to remember:
  1. Use a combination of lowercase, uppercase, numbers, and special characters of 8 characters long or more like s9%w^8@t$i
  2. Use short passphrases with special characters separating to make it difficult for crackers and could be easily remembered like cry%like@me (cry like me)
  3. Avoid using the same combination of passwords for different websites
  4. If it is difficult for you to remember different passwords for different websites and accounts than try using Password manager applications like RoboForm, 1Password, LastPass.
STAY SECURE, STAY SAFE!

Friday 17 January 2014

How to Give a Professional Look to your Desktop ?

Hi Guys !

Today we'll learn How to make your desktop attaractive and how to convert your dull windows xp & 7 into a professional Look ! Look at this picture its looking like super computer or US Army server ! and its Just normal windows 7 OS, Which is Modified desktop using RainMeter :)


Wokay, Lets Start !
1st of all you need to install Rainmeter on your desktop you can download rainmeter here
After downloading Rainmeter you need to download Skin of rainmeter.

Some Good RainMeter skins :
1-  Omnimo 5.0



Download here:

2- Jarvis (iRon Man Skin)

Jarvis is a Iron main inspired rainmeter skin, you can convert into hackers theme using new widgets and changing background image,Jarvis skin's centrel interface is damn cool.


Download here:

3- Electric Space:

 
Download here:

And many more:  Download here:

How to Install it ?

Go to your downloaded Skin right click on file and click on "install RainMeter skin"

 


 You Can add or remove widgets by right click on Desktop for example see the picture Given below!


Hope you enjoy this Post ! Please comment and share posts if you like :)

Friday 10 January 2014

Hack or attempt to Hack, you may face 20 years in prison :-p


The Senate Judiciary Committee Chairman 'Patrick Leahy' reintroduced a revamped version of the "Personal Data Privacy and Security Act" for tough criminal penalties for hackers, that he originally authored in 2005.

During last Christmas Holidays, a massive data breach had occurred at the shopping giant Target, involving hack of 40 million credit & debit cards, used to pay for purchases at its 1500 stores nationwide in the U.S.

Reason: "Target Data Breach? Seriously"? In a statement, as published below, the Senator wrote: 

"The recent data breach at Target involving the debit and credit card data of as many as 40 million customers during the Christmas holidays is a reminder that developing a comprehensive national strategy to protect data privacy and cybersecurity remains one of the most challenging and important issues facing our Nation"
 




It seems that the TARGET Breach was scheduled, as the best opportunity to ramp up the cyber security laws against all kinds of Hackers.


Finally, on Wednesday he has re-introduced a stricter version of the "Personal Data Privacy and Security Act" bill that aims to protect Americans’ data from cyber criminals. He wrote in a statement,

"The Personal Data Privacy and Security Act will help to meet this challenge, by better protecting Americans from the growing threats of data breaches and identity theft."

In his proposal, the companies with databases containing sensitive customer information will have to adopt a 'nationwide standard' of internal policies to defend against cyber attacks. It will also provide an alert notice to all Americans users, when they have been victims of such data breach.  

No Doubt, I am also in favor to give strict sentences to the Cyber criminals who are involved in Malware related crimes, financial hacks, cyber bullying, espionage or spying, but this Bill now also covers strict sentencing for hactivists and hackers who have nothing to do with financial data. I have explained these facts about the bill as follow:


                                                  Obviously, I smell a Rat here!

New Penalty - 20 Years, rather than 10: Another most important modification is proposed to increase the maximum sentence for a first-time offender from 10 years to 20.

Cyber Criminal = Hacktivist = Anonymous = Cyber Fraud ≠ NSA: Unfortunately, this Bill will also apply to all types of hackers, who is involved in Data Breaches, Cyber Fraud activities, Identity theft, Malware developers as well as on the other hackers including Anonymous, Hacktivist etc. who is not hacking for financial benefits.

 “The bill also includes the Obama administration’s proposal to update the Computer Fraud and Abuse Act, so that attempted computer hacking and conspiracy to commit computer hacking offenses are subject to the same criminal penalties, as the underlying offenses."

 


If you haven’t forgotten the news of the Hactivist Jeremy Hammond, who was sentenced 10 years in prison under the same Computer Fraud and Abuse Act (CFAA) for hacking into private intelligence contractor Stratfor and attempting to highlight Stratfor’s work as a private intelligence firm.

He exposed Surveillance operation done by Stratfor on the political protesters at the behest of both private companies and the government. His attack was for political purpose, rather than financial.

Attempt to Hack = Successfully Hacked: If you are even planning to hack someone, then, according to this updated Bill, you are also considered as a Criminal. The Senator also proposed that the hackers who are unsuccessful in their actions are punished as severely as more accomplished ones regardless.

Considering the NSA's unethical Hacking operation? Now that’s interesting! Whistle-blowing comes under a massive crime, but spying on the whole world by the their own NSA comes under nothing from any above??






Recently, The Security researcher Jacob Appelbaum accused the NSA of illegally hacking the massive amounts of private data of users under the guise of counterterrorism. “NSA gets to do something like intercepting 7 billion people all day long with no problems. And the rest of us are not even allowed to experiment with improving the security of our own lives without being put in prison or under threat of serious indictment.” he said.

Making Laws more strict for hackers with criminal or Fraud activities is OKAY, but what about the team of hackers who are unethically hacking into world's telecommunication companies, devices or the database of Big Internet companies?

Now, this is something on what U.S Government won't give a damn look!