Showing posts with label updatenews. Show all posts
Showing posts with label updatenews. Show all posts

Saturday, 27 June 2015

Android's SECRET Codes 2015 Latest Edition

These Android Secret codes are mostly universal, and should work on Android devices, no matter the manufacturer. There might still be carrier restrictions on certain codes though, so they're not all guaranteed to work.

Android Secret/Hidden codes 2015 :-

 *#06# - IMEI (International Mobile Station Equipment Identity) number - essential in case your device is stolen and you want to block the thief from accessing your network

 *#*#7594#*#* - Make Power button turn off your device without displaying menu

*#*#4636#*#* - Display information about phone, battery, usage and WiFi

*#*#7780#*#* - Factory reset (deletes app data and apps, not firmware)

*2767*3855# - Complete phone wipe, including firmware (not to be used lightly!)

*#*#273283*255*663282*#*#* - Back up all your photos and videos
*#*#1472365#*#* - Test your GPS
*#*#1234#*#* - Display phone firmware and PDA info

androidpit secret testing menu
You can access the above screen on most Android devices by entering *#*#4636#*#* on the dialpad

*#*#232338#*#* - Show WiFi Mac address
*#*#8255#*#* - Access GTalk Service Monitor
*#*#36245#*#* - Access Email debug info Email
*#*#225#*#* - Events calendar
*#*#426#*#* - Debug info for Google Play Service
*#*#759#*#* - Access Google Partner Setup

#Samsung SECRET Codes :-

*#*#34971539#*#* - Show all camera information
*#*#197328640#*#* - Enable test mode for services
*#*#232339#*#* - Wireless LAN test
*#*#1575#*#* - Test your GPS (alternative to generic Android GPS test)
*#*#0*#*#* - Test your LCD display
*#*#4986*2650468#*#* - Display crucial phone information (PDA, Hardware, firmware etc.)
##778 (followed by the Call button) - EPST menu

#HTC SECRET Codes New :-

*#*#3424#*#* - HTC function test Program
*#*# - HTC Info menu
*#*#8255#*#* - Launch GTalk Service Monitor
##3424# - Diagnostic mode
##3282# - EPST menu
##8626337# - VOCODER
##33284# - Field trial menu
##786# - Reverse Logistics Support
##7738# - Protocol Revision

androidpit htc epst

The function test menu on HTC phones can be accessed by typing ##3282# on the dialpad

These codes, but if you do then now you know where to find Them. So Above Is the Android SECRET Codes Latest Edition By Ethical Hacking TricksSubscribe Us For More Latest Tricks.


Read more...

Sandisks World�s First 200Gb microSD Card Arrives

There isn't any troll in the title. The "World's Largest microSD" card sized at 200GB is now officially available for purchasing from Amazon and number of retailers.

Order a Sandisk's new high-capacity microSD card from Amazon now. However, the only issue is that it is not exactly very cheap. You will have to pay Around $240 to Buy one.
200gb-microsd-card


Sandisk's World's First 200GB MicroSD Card :-


Back in March when Sandisk first announced the world's first 200GB microSD card, it was expected to be priced at around $400. However, $240 has been marked as the price for the highest-capacity microSD card available in the market.

Sandisk's 200GB microSD card, or Ultra microSDXC UHS-I card, offers a transfer speed of up to 90MB per second, which is double the speed provided by its 128GB counterpart.

Transfer Speed: 1200 Photos Per Minute

The company claims that the speed will allow you to transfer up to 1,200 photos in just a single minute. The card is something of great use for photographers and filmmakers who need more storage capacity to store high-resolution photographs and videos.

Moreover, Sandisk's 200GB MicroSD card comes packaged with an SD adapter and a 10-year limited warranty.

Furthermore, the 200GB MicroSD card is waterproof, shockproof, temperature proof, magnet proof and X-ray proof to deal with any possibility of destruction.

However, if you can not spent this much for 200GB of storage space, there always remains an option for you to buy a 128GB MicroSD card that still provides you plenty of space and costs as much as $80
Read more...

Thursday, 11 June 2015

62.5 Million Zomato Users Hacked By Hackers 2015


The online restaurant and search service that provides food place near you, home delivery,dining outs and night life of many cities in India and in other 21 countries, hacked by hacker with a single simple API vulnerability in it and hacker also explaining the way they hack into Zomato database and have access to 62.5 millions users details.
This hack was because of the vulnerability that was there in zomato that leads to database hack and the security researcher Anand Prakash found vulnerability in zomato. And he done a simple API call in the browser_id and gain access to the database of Zomato. He had explain the whole step he done to hack zomato database and gaining access to millions details.
As creating account in zomato needs you phone number, addresses, date of birth, link Instagram account and some more. Now all these details got hacked by hackers and millions user�s details are now exposed.


Read more...

Tuesday, 9 June 2015

WhatsApp Accounts Can Be Easily Hijacked 2015


An important warning for those of you who use the popular mobile messaging app WhatsApp: Your account may not be as secure as you think it is. A recent article from The Hacker News explains that someone can easily hijack your WhatsApp account if they gain physical access to your phone, even if just for a few moments. Theoretically, the attack could be used against any of the 800 million current WhatsApp users.
The actual mechanism of the attack isn�t sophisticated, and it doesn�t require any hacking skill at all. To start, a thief sets up a WhatsApp account on a new phone using your account�s phone number. During this process, a confirmation code will be sent to your phone. If the thief can intercept your phone during this time, they can enter it on their version of WhatsApp, stealing your account. Simply locking your phone isn�t enough protection against the attack, since the thief can simply request the code be called in.
Because a thief needs to be in physical possession of your phone, your WhatsApp account is likely safe from Chinese hackers located halfway across the globe. It�s not safe, however, from a nosy snoop at work or a jealous boyfriend. That�s where the real danger here is � someone close to you may want to spy on you, monitoring your WhatsApp messages and browsing through your contacts.
WhatsApp will hopefully fix this particular issue with its authentication protocol, given how news of the hijacking vulnerability has spread. In the meantime, there�s no reason to be high alert, but you should aim to be more physically protective of your device in general. Don�t leave your phone out on your desk at work unattended, and keep it in your pocket or stashed away when you have guests visiting your home. And be careful of who you lend your device to if you think they may have an interest in spying on your messages.
Read more...

Wednesday, 3 June 2015

Microsoft Plans to Add Secure Shell (SSH) to Windows

Until now Unix and Linux system administrators have to download a third-party SSH client software like Putty on their Windows machines to securely manage their machines and servers remotely through Secure Shell protocol or Shell Session (better known as SSH).


This might have always been an awkward feature of Windows platform, as it lacks both � a native SSH client software for connecting to Linux machines, and an SSH server to support inbound connections from Linux machines. But�

Believe it or not:


You don't need to deal with any third-party SSH client now, as Microsoft is working on supporting OpenSSH.
Yes, Microsoft has finally decided to bring OpenSSH client and server to Windows.

The PowerShell team at Microsoft has announced that the company is going to support and contribute to OpenSSH community in an effort to deliver better SSH support in the PowerShell and Windows SSH software solutions.

So, the upcoming version of Windows PowerShell � the command-line shell and scripting language � will allow users to manage Windows and Linux computers through SSH.
"A popular request the PowerShell team has received is to use Secure Shell protocol and Shell session (aka SSH) to interoperate between Windows and Linux � both Linux connecting to and managing Windows via SSH and, vice versa, Windows connecting to and managing Linux via SSH," explained Angel Calvo, PowerShell Team Group Software Engineering Manager.
"Thus, the combination of PowerShell and SSH will deliver a robust and secure solution to automate and to remotely manage Linux and Windows systems."
For those who are unaware, SSH is basically designed to offer the best security when accessing another computer remotely. It not only encrypts the remote session, but also provides better authentication facilities, with features like secure file transferring and network port forwarding.

This is not first time Microsoft has planned to adopt SSH for its Windows platform, the company had tried to allow the secure shell protocol to be used within Windows twice but was unable to implement it.

However, developers who are eager to use this new functionality in PowerShell still have to wait for some time, as the project is still in the early planning phase. So far, there isn�t any definite release date.!!
Read more...

Wednesday, 20 May 2015

13 years old INDIAN teen, Shubham Banerjee working on Braille Printer with Microsoft

Shubham Banerjee

This teen was having great curiosity to find how blind people read when he was just 12 years old. And this curiosity leds to build a low cost printer with its lego game blocks. And he also found his new partner that is working in mIcrosoft that helped him to make his dreams real.
Banerjee told a Windows blogger earlier this week that �I discovered that typical Braille printers cost about $2,000 (about Rs 126,000) or even more, and I felt that was unnecessarily expensive for someone already at a disadvantage. So, I put my brain to work, and the first thing that came to mind was to create an alternative using my favorite toy.�
Banerjee failed by seven times but finally at 8th time he was successful in making this printer which costs him about 350$.�I achieved an 82% reduction in cost and have been overwhelmed by the encouraging feedback from both the sighted and the blind,� he was quoted in a blog. This big thing is that he did no kept the idea bounded to him instead he posted the method for other to make it yourself online.
And this was a revolutionary step towards these printers as the printer that cost above 2000$ can now be build at home within 350$. Now benerjee started his own company named Braigo (combined Braille and Lego) Labs, and became the youngest entrepreneur to pick up venture capital funding when Intel Capital invested in his startup, Braigo Labs.

Also, think about the banks, the government institutions or even the libraries where Windows-based computers are widely used. They will all benefit from having a Braigo to provide accessibility services to their visually impaired customers,� added by him.
Read more...

Monday, 18 May 2015

FBI: Banned Security Researcher Admitted to Hacking Plane In-Flight !!

A security researcher who was pulled out from a United Airlines flight last month had previously admitted to Federal Bureau of Investigation (FBI) that he had taken control of an airplane and made it fly briefly sideways.


Chris Roberts, the founder of One World Labs, was recently detained, questioned and had his equipment taken by federal agents after he landed on a United flight from Chicago to Syracuse, New York following his tweet suggesting he might hack into the plane's in-flight entertainment system.
In that particular tweet, Roberts joked: "Find me on a 737/800, lets see Box-IFE-ICE-SATCOM, ? Shall we start playing with EICAS messages? 'PASS OXYGEN ON' Anyone? :)"
The federal agents addressed the tweet immediately and took it seriously following the Roberts� capabilities of such hacking tactics.

In the FBI affidavit first made public Friday - first obtained by APTN National News - Roberts told the FBI earlier this year about not once, but repeatedly hacking into aircrafts' in-flight entertainment (IFE) systems while on board.
"During these conversations, Mr. Roberts stated ... he had exploited [flaws] with IFE systems on aircraft while in flight. He compromised the IFE systems approximately 15 to 20 times during the period 2011 through 2014," FBI Special Agent Mark Hurley wrote in his application. "He last exploited an IFE system during the middle of 2014."

How the researcher made this possible?


The documents claim that Roberts connected his laptop to the plane�s IFE system via a modified Ethernet cable, allowing him to access other airplane systems.

During at least one instance, Roberts reportedly claimed to have overwritten the code on the airplane's Thrust Management Computer while aboard a flight and successfully controlled the system to issue the climb command.
By issuing the �CLB� or climb command, Roberts "caused one of the airplane engines to climb resulting in a lateral or sideways movement of the plane," according to the FBI warrant application.

No Systems were Harmed:


Roberts claimed via Twitter that no systems were harmed during the trip. Moreover, Roberts told Wired in an interview that the FBI has taken his remarks about hacking "out of context" of their discussions with the agency.

Roberts claimed that he had only watched data traffic on airplanes, and he has only attempted the hack in a simulated environment because he believed that such hack attacks were possible.

"It would appear from what I�ve seen that the federal guys took one paragraph out of a lot of discussions and a lot of meetings and notes and just chose that one as opposed to plenty of others," he said, declining to elaborate further.

Since this incident, United Airlines has launched a bug bounty program inviting security researchers and bug hunters to report vulnerabilities in its websites, apps and web portals.

Roberts has neither been arrested by the FBI nor charged with any crime.

Source :- TheHackerNews
Read more...

Friday, 15 May 2015

Venom Vulnerability Exposes Most Data Centers to Cyber Attacks 2015 !

After a new security vulnerability surfaced Wednesday, many tech outlets started comparing it with HeartBleed, the serious security glitch uncovered last year that rendered communications with many well-known web services insecure, potentially exposing Millions of plain-text passwords.

But don�t panic. Though the recent vulnerability has a more terrific name than HeartBleed, it is not going to cause as much danger as HeartBleed did.

Dubbed VENOM, stands for Virtualized Environment Neglected Operations Manipulation, is a virtual machine security flaw uncovered by security firm CrowdStrike that could expose most of the data centers to malware attacks, but in theory.
Yes, the risk of Venom vulnerability is theoretical as there is no real-time exploitation seen yet, while, on the other hand, last year�s HeartBleed bug was practically exploited by hackers unknown number of times, leading to the theft of critical personal information.

Now let�s know more about Venom:


Venom (CVE-2015-3456) resides in the virtual floppy drive code used by a several number of computer virtualization platforms that if exploited�

...could allow an attacker to escape from a guest 'virtual machine' (VM) and gain full control of the operating system hosting them, as well as any other guest VMs running on the same host machine.

According to CrowdStrike, this roughly decade-old bug was discovered in the open-source virtualization package QEMU, affecting its Virtual Floppy Disk Controller (FDC) that is being used in many modern virtualization platforms and appliances, including Xen, KVM, Oracle's VirtualBox, and the native QEMU client.

Jason Geffner, a senior security researcher at CrowdStrike who discovered the flaw, warned that the vulnerability affects all the versions of QEMU dated back to 2004, when the virtual floppy controller was introduced at the very first.

However, Geffner also added that so far, there is no known exploit that could successfully exploit the vulnerability. Venom is critical and disturbing enough to be considered a high-priority bug.

Successful exploitation of Venom required:


For successful exploitation, an attacker sitting on the guest virtual machine would need sufficient permissions to get access to the floppy disk controller I/O ports.

When considering on Linux guest machine, an attacker would need to have either root access or elevated privilege. However on Windows guest, practically anyone would have sufficient permissions to access the FDC.

However, comparing Venom with Heartbleed is something of no comparison. Where HeartBleed allowed hackers to probe Millions of systems, Venom bug simply would not be exploitable at the same scale.

Flaws like Venom are typically used in a highly targeted attack such as corporate espionage, cyber warfare or other targeted attacks of these kinds.

Did venom poison Clouds Services?


Potentially more concerning are most of the large cloud providers, including Amazon, Oracle, Citrix, and Rackspace, which rely heavily on QEMU-based virtualization are vulnerable to Venom.

However, the good news is that most of them have resolved the issue, assuring that their customers needn't worry.
"There is no risk to AWS customer data or instances," Amazon Web Services said in a statement.
Rackspace also said the flaw does affect a portion of its Cloud Servers, but assured its customers that it has "applied the appropriate patch to our infrastructure and are working with customers to remediate fully this vulnerability."

Azure cloud service by Microsoft, on the other hand, uses its homemade virtualization hypervisor technology, and, therefore, its customers are not affected by Venom bug.

Meanwhile, Google also assured that its Cloud Service Platform does not use the vulnerable software, thus was never vulnerable to Venom.

Patch Now! Prevent yourself


Both Xen and QEMU have rolled out patches for Venom. If you're running an earlier version of Xen or QEMU, upgrade and apply the patch.

Note: All versions of Red Hat Enterprise Linux, which includes QEMU, are vulnerable to Venom. Red Hat recommend its users to update their system using the commands, "yum update" or "yum update qemu-kvm."

Once done, you must "power off" all your guests Virtual Machines for the update to take place, and then restart it to be on the safer side. But remember, only restarting without power off the guest operating system is not enough for the administrators because it would still use the old QEMU binary.
Read more...

Wednesday, 13 May 2015

CHIP � The World's First $9 Computer !!

Wait! What? A $9 computer? This is something magical.

A Californian startup lead by Dave Rauchwerk is currently seeking crowdfunding on Kickstarter to create a computer that will cost as much as $9 (or �6).


The new microcomputer, dubbed CHIP, is a tiny, Linux-based, super-cheap computer that's described as being "built for work, play, and everything in between!"

Project 'Chip' that hit Kickstarter on Thursday has already blown its target goal of $50,000 to raise over $1 Million from almost 19,638 people at the time of writing with 26 days left in its campaign.

Let�s have a look on what does this $9 buy you?


And the answer is a lot � more than what you could expect for just $9.

CHIP packs a 1GHz R8 ARM processor, 4GB of internal flash storage, 512MB of DDR3 RAM, Bluetooth, and Wi-Fi � something you do not find in even the modern microcomputer, Raspberry Pi.

If look at the output front of the CHIP, it features a single full-sized USB port, headphones output, microphone input, a composite video output (with options for VGA and HDMI via an adapter) that even supports older televisions, and a micro USB that supports OTG.

You just have to attach this Raspberry Pi-based motherboard to a mouse, keyboard, or game controller for more functionality or connect to a monitor via an adapter for VGA or HDMI cables.

A whole lots of applications


chip-smallest-computer
The CHIP can access thousands of open source applications such as Chromium for browsing the Web, LibreOffice for editing documents and spreadsheets, VLC Media Player for playing audios and videos, and other programs for coding, torrenting, and photo editing, among others.

You can even download additional applications and programs as long as you do not run out of memory.

The CHIP is the second project Next Thing Co. has crowdfunded via Kickstarter. The company�s first project funded was a digital camera known as Otto powered by the Raspberry Pi.

The idea behind the CHIP is to put this super-cheap computer into the hands of as many people as possible including students, teachers, makers, hackers, grandparents, children, and inventors to surf the Internet, play games, save documents and do other computer things � all for $9.

Book your CHIP Now


The CHIP is scheduled to ship out to backers in December of this year, with worldwide availability expected to ship in May 2016 if everything goes according to plan.

If you are interested to have one, you can pre-order the basic CHIP at $9 over at Kickstarter. Moreover, interested backers are left with 26 days to join the $9 computer movement.

Like Us On Facebook

Read more...

Sunday, 10 May 2015

Android M - Latest Google Android OS to be Unveiled This Month !!

While majority of smartphone users are waiting for Android 5.0 Lollipop update for their devices, Google is soon going to launch the next version of Android at its official Google I/O 2015 developer event May 28 in San Francisco.


Android M � The name of the latest version of Android mobile operating system was spotted at the Google I/O 2015 schedule under the "Android for Work Update" Session, which says�
"Android M is bringing the power of Android to all kinds of workplaces."
According to the company, this will open up "huge new markets for hundreds of Millions of devices to workers at small businesses, logistics, deskless workers, and warehousing jobs."
However, Google appears to have since removed any mention of Android M from Google's I/O website, most probably the company wants to keep it as a surprise for Android users.

Considering the full Android releases with starting letters in alphabetical order, � Android M � strongly believes to be the next version of the Android operating system.

When the Google launched Android 5.0 at its developer conference last year, it was known by the name "Android L" before the company revealed its final name "Lollipop" months later.

Some More highlights:


The schedule also includes another session "Voice Access" known as "Your app, now available hands-free," which suggests that Google wants its users to control every feature of Android apps by their own Voice Command.
As the Voice Access session says, "In this talk, we introduce Voice Access, a service that gives anyone access to their Android device through voice alone."
The main highlights of the Google I/O schedule are yet Android M, which will eventually get some sweet sugary name too like all the previous versions of Android OS.

Till then, What do you think the "M" will stand for? Will it be Mousse, Muffin, or something else?
Read more...

Tuesday, 5 May 2015

London Railway System Passwords Exposed During TV Documentary 2015 !!

The Weakest Link In the Information Security Chain is still � Humans.

And this news has ability to prove this fact Right.

One of London's busiest railway stations has unwittingly exposed their system credentials during a BBC documentary. The sensitive credentials printed and attached to the top of a station controller's monitor were aired on Wednesday night on BBC.


What could be even worse?

If you think that the credentials might have been shown off in the documentary for a while or some seconds, then you are still unaware of the limit of their stupidity.

The login credentials were visible for about 44 minute in the BBC documentary "Nick and Margaret: The Trouble with Our Trains" on Wednesday night, which featured Nick Hewer and Margaret Mountford � the two business experts, both famous for their supporting role on The Apprentice.

The documentary was available on the YouTube, but have now been removed due to security concerns.

While talking about the concerns of the British railway network, the duo walked into London Waterloo's control room where these sensitive credentials were seen stuck to a monitor of a system.

A screenshot of the offending monitor with the machine-produced login was captured and shown above. The screenshot points to a particular workstation signaller's control desk seems to be running a type of software that controls signals and trains over? the final approach to Waterloo station?.

Now this is going to be a great idea to keep passwords. Isn�t this? I mean if it is, then what�s the need of putting passwords for the devices if you stuck it on the top of that device.

This shows that we are just humans. Remembering so many personal passwords of our different online accounts and then to remember the passwords of others � Ahh! Quite a tough Job.

Okay, now let�s come to another security concern. What would you expect next?

Password3, Wow! Isn�t this great password?


I mean, at least keep a strong password that take some time to guess and crack. Password3 could be in the list of top ten weakest passwords.

The incident occur few days after the news came that the computer systems controlling the railway signalling system in the United Kingdom could potentially be hacked by cyber criminals to cause incoming trains to crash into one another at highest speeds.

However, this security blunder of revealing passwords mistakenly in an interview, video or news channel is not new at all.

Last year, the World Cup security centre�s internal Wi-Fi passwords for the FIFA World Cup 2014 were broadcast live. Also, French TV network TV5Monde failed to keep its passwords secret and revealed a collection of the TV station�s usernames and passwords live on TV!!

Keep Connected !!  
Like On Facebook !!

Read more...