A modern Blog!

Articles by "Mobile"

Now you really don't need a well equipped computer system to hack WiFi. After a long working on WiFi hacking I found such an application that let's you to connect the router and even show the security key using your rooted android system. You just need to download the android application and try connecting using the calculated WPS pin. You can download the application HERE.

Note: It works only on default WPS enabled network.

This is a guide to help you root your phone, and hence explore the various dimensions to it. Mere tricks you need to know to proceed with rooting your phone. And here they are.
About Rooting :  But before that let us tell you what does rooting a device means. Since Android is an open source mobile platform, the creators dont allow complete access to the administrative function of the device. And so, rooting your phone and tablets helps you explore those forbidden functions of your device.
So now the question comes, why would you root your phone or tablet. Rooting has its own advantage. The prime one being that it will provide you an amazing experience. You can regularly update your android version. Not all of the higher versions are always available for update, so if the phone is rooted, you can have access to those system updates. Certain stiff are compatible only with the rooted devices, and hence nothing seems to be forbidden for your use. And the list continues.

How to root Android Phone Without Computer

So now that you know all about what rooting is, and its so many advantages, i am sure you’re curious to learn how exactly does it happen. Here we have come up with ways you could root your smartphones or tablets.
*Rooting can cause warranty issues on your device, and also may result in getting bricked, if not done properly. Its completely a risk taking factor, and we are not responsible for damage caused*
Root Android Device using Framaroot App :  This app is developed by the XDA forum members. It can root any possible android phone, with just a single click. To download the app, follow the stated steps :
First of all, download the app on your device. Make sure its the latest version if the app.
Save the downloaded file in a particular folder on your SD card.
And download the app from the .apk file.
Now, click on the ‘install’ button.
frama-root (1)
From the so many options provided, proceed with the “Install superuser” option. (Or chose any from the six options provided)
If your rooting is a success,  you’ll see a message displaying “Success:-)… Superuser and SU binary installed. You have to reboot your device“
Framaroot-status
In case of failure, you will have to go for another attempt, if its available for you.
Root android device using Universal AndRoot : To proceed rooting your phone with this method, you need to allow download from unknown sources.
Download and install the Universal andRoot application on tour device.
Procced with launching the app in your device, and then ‘root’ (chose the correct version of your android)
universal-androot-1
Wait, and see your phone getting rooted.
universal-androot-2
To check whether or not your device has been rooted,you could use the below stated apps and be sure of it :
Root-Checker-1
Root Checker (https://play.google.com/store/apps/details?id=com.joeykrim.rootcheck)
Simple root checker (https://play.google.com/store/apps/details?id=com.simonedev.simplerootchecker)
So now that you know all about rooting, go ahead, and make use of it in the best possible way. Boast your friends about how you can have access to the forbidden administrative functions, and watch them give you that look of envy!

If you’re looking for a way to customize your system with more than wallpapers and icons, another thing you can do is customize sounds for different Windows 7 events. Here we look at customizing sounds or completely turning them off.

Right-click on the speaker icon in your taskbar and select Sounds.
sshot-2010-07-19-[00-45-32]
This opens the window where you can go through and change sounds for different Windows events. Scroll to the event you want to change the sound for…
sshot-2010-07-19-[00-48-01]
Then select from a list of included WAV files you want to try out for the event.
sshot-2010-07-19-[00-47-42]
Then click on the Test button to preview how it will sound. If you’re happy with it click OK. You can Browse for other sounds as well that you might have downloaded or created. Keep in mind that for best results use a WAV file.
sshot-2010-07-19-[01-07-11]
Here we selected the Windows Logon event and selected Chimes.wav for it.
sshot-2010-07-19-[01-20-50]
Also, keep in mind that when you change Windows 7 Themes it will also change the sounds associated with it.
sshot-2010-07-19-[03-11-24]
If you want to create your own custom sounds, a cool program is iFX Seven Sound Creator (link below). It’s a free tool that will allow you to create you’re own custom sounds from your own music or sound file collection. It also lets you find free sound samples from sites like The Freesound Project and create your own with the Open Source program Audacity. 
sshot-2010-07-19-[02-53-38]
Disable Logon Sound
You might not be interested in customizing sounds, in fact  you want to turn them off. To turn off the Windows Startup Sound just uncheck the box Play Windows Startup sound…then click OK.
sshot-2010-07-19-[00-54-04]
If you don’t want an event to make a sound, just choose the event and select None from the Sounds menu. You can pick and choose what you do or don’t want to play a sound.
sshot-2010-07-19-[16-43-36]
For example here we turned off the sound when connecting a USB drive or other hardware devices.
sshot-2010-07-19-[16-44-23]
Or if you don’t want any sounds at all, select No Sounds from the Sound Scheme dropdown list.
sshot-2010-07-19-[17-20-20]
This process is essentially the same in XP and Vista too. The Vista and Windows 7 startup sounds aren’t so bad, but the XP startup noise can be very annoying especially if you’re in class or a meeting.
sshot-2010-07-19-[17-18-07]

What is BitTorrentSync ?
BitTorrent Sync is a simple tool that applies p2p protocol for direct live folder sync with maximum security, network speed and storage capacity. It has native versions for Mac, Windows and Linux, as well as native NAS integration.
Where we can download BitTorrentSync ?
Download Here For Pc            :- BTSync
Download Here For Android :- Sync
Download Here For iOS         :- BitTorrent Sync
Download Here For Windows Phone:- BitTorrentSync
If you are a Linux user then you need to Google it
What are the system requirements ?
System requirements
  • OSX Snow Leopard or newer
  • Windows XP SP3 7 or later
  • MacOS X 10.7 Lion or later
  • Linux with kernel 2.6.16 (glibs 2.4) or newer on ARM/PPC/i386/x86_64
*Windows XP 64-bit is not supported. BitTorrent Sync is not guaranteed to work on
unsupported platforms
A simple introduction to BitTorrent Sync



How does BitTorrentSync works ?
Install Sync on all devices you want to share with. You don’t need to create an account to get started.
Step 1 – Add a folder to Sync
1
Step 2 – Share the folder
When you add a folder to Sync, a set of read-only and read/write keys to the folder are created. These keys can then be shared with other devices.
Keys are shared with other people or device using one of three methods; a clickable HTTPS link representing the key can be sent over email or chat, a QR code can be presented for a mobile device to scan, or one of the keys can be entered directly on another device.2

Step 3 – Devices become peers
Once a folder is added to Sync, it immediately tries to discover other devices that have a folder with the same key. Sync easily finds other devices by using multiple methods. It also allows Sync to work on a private network that is not connected to the Internet.
These methods include contacting user-defined IP addresses, looking on the local network, using the distributed hash table (DHT), automatically registering with a Sync-specific BitTorrent tracker, and using a relay server. While devices becoming peers is an automated activity, all of these methods can be enabled/disabled by the user

Step 4- Choose your files to be synced
After two or more devices confirm they have the same folder to sync, folder contents are compared between all peers. To do this, peers informs each other of its folder contents.
Each device is then able to determine if it needs updates to its folder. Files that need to be transferred are placed in its queue. Sync is then ready to fetch files from its peers.
Image on android phone
1234
Step 5 – Files are transferred directly between peers
3
Step 6 – Folders are kept in sync
When contents in a folder changes, Sync immediately informs peers of the changes. The folder contents are continuously compared and files are placed in the queue to be transferred.

Preferences and Coniguration
General tab
general
  • Relay server is used when it is impossible to connect to other devices directly due to NAT issues.
  • Tracker server can be enabled to facilitate communication between peers.
  • ‘Delete Files to Sync trash’ saves all the Files deleted on other clients to the hidden ‘.SyncTrash’ within your folder (unless unchecked in preferences). The Files deleted on your computer are moved to system Trash (depending on OS preferences).
  • ‘Use predeHined hosts’ is an option to specify ip:port or host:port of known clients. So if one of your devices has a static and accessible IP, peers can connect to it directly.
Advanced tab
adv
  • Advanced folder preferences are used for
    managing secrets.
  • Secret is a 32-character master key for connecting folders. All the folders added with this secret will be granted a full set of permissions for two-way synchronization. Master secret can be changed at any time or replaced with a custom Base64 string more than 40 symbols long (new folder secret should be re-entered on all the
    devices in sync).
  • Read only secret is generated on the basis of the master secret and is used for onewaysynchronization. It means that any folder with a read-only secret will be fully synced, but changes made in it will not be reflected in the folders operated by a master secret. Also, it is not possible to change secret for read only folders.
  • One-time secret is a security option available for the folders operated by a master secret. You can generate either a full access or read only short key (16 characters) which can be used only once and should be activated within a limited period of 24 hours. When connected, folder added with a one-time secret will receive a full master or read-only secret from the device where the one-time secret was generated.

A legacy Android Same Origin Policy (SOP) bug discovered by a Pakistani researcher Rafay Balochis being used far more widely as per new research published by TrendMicro Labs. Trend micro researcher, Simon Huang says that they have discovered many cases of Facebook users being targeted by attacks that exploit this flaw in the web browser of the Android OS lower than 4.4 because the Metasploit code is publicly available and many Android manufacturers are yet to patch this bug.

The Bug

The bug, discovered by Rafay Baloch, allows a universal Cross-scripting vulnerability in older versions of Android smartphones.  This  vulnerability, which affects the WebView component, occurs when replacing the ‘data’ attribute of a given HTML object with a JavaScript URL scheme.  An attacker can leverage the UXSS flaw to scrape cookie data and page contents from a vulnerable browser window.  The security hole can be exploited on all versions of the Android Open Source Platform (AOSP) browser, including those using WebView.
Rapid7 has published the Metasploit code(link given above) for this flaw and the same is being publicly used by attackers to serve the victims a malicious JavaScript file stored in a cloud storage account. This is done by pointing the target to a certain Facebook page that leads to a malicious location. Trend researcher, Huang says that the page contains obfuscated JavaScript code which attempts to load a Facebook URL in an inner frame.
Android's Same Origin Policy (SOP) Exploit allows hackers to hijack your Facebook Accounts
The victim however sees only a blank page being loaded as per the div tags set by the attacker in HTML, while the inner frame will be shown in one pixel.
Android's Same Origin Policy (SOP) Exploit allows hackers to hijack your Facebook Accounts
Android's Same Origin Policy (SOP) Exploit allows hackers to hijack your Facebook Accounts
Huang says that with the malware in place, the attacker can do almost anything with the victim’s Facebook account.   The JavaScript code can carry out following activities with the victims Facebook account :
  • Add friends
  • Like and follow Facebook pages
  • Modify subscriptions
  • Authorize a Facebook app to access the user’s public profile, friends list, birthday information, likes and friends’ likes
  • Steal the victim’s access tokens and upload them to their server at http://{BLOCKED}martforchristmas.website/walmart/j/index.php?cid=544fba6ac6988&access_token= $token;
  • Collect analytics data (such as victims’ location, HTTP referrer, etc.) using the legitimate service at https://whos.{BLOCKED}ung.us/pingjs/
  • In addition to the code at the above site, Trend found a similar attack at http://www.{BLOCKED}php.com/x/toplu.php. Trend researchers believe that both of them are created by the same author because they share several function names, as well as the client_id of the Facebook app.
Trend Micro researchers found that the client_id involved in this malware was “2254487659”.  This is an official BlackBerry App maintained by BlackBerry.
Trend Micro then contacted BlackBerry about their findings. They informed BlackBerry that the attackers wanted to use the trust of BlackBerry name and the malware was trying to steal user’s access-tokens, which could be used to make requests to Facebook APIs and read user’s information or to publish content to Facebook on behalf of the victim. Blackberry released this statement after Trend contacted them :
“The mobile malware using the Android SOP Exploit (Android Same Origin Policy Bypass Exploit) is designed to target Facebook users regardless of their mobile device platform. However, it attempts to take advantage of the trusted BlackBerry brand name by using our Facebook web app. BlackBerry is continuously working with Trend Micro and Facebook to detect and mitigate this attack. Note that the issue is not a result of an exploit to Blackberry’s hardware, software, or network.”
At the moment, Trend Micro, Facebook and BlackBerry are working together to detect the attack and prevent it from being carried out against new users.
The Android SOP bug has been around since September 2014, and all Android devices upto Android 4.4 KitKat are vulnerable to this flaw. There are millions of Android smartphones running on older versions of Android OS which can be used to exploit this bug and carry out illicit activities by cyber criminals.  Most cheap smartphones run on older versions of Android making the job of cyber criminals that much easier. If you are a Android smartphone owner, upgrade your smartphone to the latest Android 5.1 lollipop as soon as possible. If you are still using a smartphone running on the antiquated version of Android, now is the time to junk it.

MKRdezign

Contact Form

Name

Email *

Message *

Powered by Blogger.
Javascript DisablePlease Enable Javascript To See All Widget