Hacking Instant Messenger

Release Date: 2008-12
Hakin9_1_2009_en
Rating: 2 votes

Articles

  • FREE ISSUE: Hacking Instant Messenger
    Read Online
  • The Art of Black Packaging

    On this particular Pentest I connected to the client’s wireless connection. After I connected I immediately checked for open shares. Previously I have been lucky and on this particular Pentest luck happened to be on my side.


  • BPMTK

    Security issues arise from the fact that a limited user has full
    control over his own processes on the Windows platform.
    Security mechanisms implemented in the user’s own processes
    can be bypassed.


  • Keylogger 2.0

    New asynchronous scripting techniques improve Web users’ experience, but they can also be used for a new malware generation. In this article you will learn how to develop a basic Web 2,0 keylogger and use it against an XSS vulnerable website.


  • Defeating AntiVirus Software

    Penetration testers are frequently called upon to upload netcat to compromised computers to gain a command line.Security professionals work with many tools that AV vendors have labeled “hacker tools.” In the interest of enforcing common corporate policy, AV vendors rigorously quarantine and delete these tools.


  • Hacking IM Encryption Flaws

    This paper sheds a light on encryption problems in Instant Messaging client’s primary memory which lead to hacking. The IM clients have been used extensively all over the world to exchange messages between different parties.


  • HTTP Tunnel

    Most of all companies only provide a very restrictive environment. While Network and Security Adminstrators do their job, securing the enterprise network from intruders, users are trying to compromise perimeter security to get more than is allowed. Surfing the www and googling provides a huge knowledge on how to greak firewalls, proxies, anti-virus appliances and so on.


  • Agent-based Traffic Generation

    Agent programming is a paradigm for distributed computing. A mobile agent is nothing more than a computer program that can move taking its state with it. Distributed tasks that occur in some order and depend on the outcome of eachother are easily implemented with a single function.


  • Javascript Obfuscation Part 2

    In the first part, we saw how to decode some basic malicious Javascript code, in this last part we will introduce some technics to quickly identify what a shellcode embedded in the Javascript code do and present you some advanced Javascript obfuscation tips used by attacker.


  • Emerging Threats Episode 14

    Crime happens every day on this grand old Internet we call home. Daily, hourly, minute by minute. I’d venture that there are easily several crimes a second involving a user giving up their sensitive information, buying a fake security program, or installing the bot of the week.


  • Training – the Security Minefield

    Learning something new is a wonderful thing. However,
    with all the security training on offer right now, how do you know what’s right for you?



  • Interview with Rishi Narang

    Rishi Narang is a Vulnerability R&D consultant working with Third Brigade Inc., a security software company specializing in host intrusion defense. Narang’s profile includes research on recent & zero day vulnerabilities, reverse engineering and IDS/ IPS Signature Development. He holds a Bachelor’s degree in Information Technology, and has authored articles on recent advances in Information Security & Research. He has been a speaker in OWASP & private security trainings and can be reached through his personal blog Greyhat Insight (www.greyhat.in).


  • Self exposure with...

    Irina Oltu
    Co-founder, Director at Aiko Solutions Aiko Solutions provides encryption and secure data sanitizing products for PDAs and Smartphones.

    Igor Donskoy
    CTO at n-Trance Security Ltd, privately held company, established in 2004 in Israel. The company is devoted to development of biometric products oriented to data security and portable solutions.


Back

Comments

1 comment, Add comment
Add comment

Advertisement