Bharath on April 12th, 2007

Cryptographic researchers claim that the security found in most wireless access points can now be cracked in under a minute.
By refining an attack against Wired Equivalent Privacy (Wep) developed by Andreas Klein in 2005, enough packets could be collected to open up a Wep-protected network in around a minute. This is according to Erik [...]

Continue reading about Academics crack wireless security within a minute

Bharath on April 7th, 2007

Wep0ff is new tool to crack WEP-key without access to AP by mount fake access point attack against WEP-based wireless clients.
It uses combination of fragmentation and evil twin attacks to generate
traffic which can be used for KoreK-style WEP-key recovery.
This tool can be used to mount fake access point attack against WEP-based wireless clients.
Wep0ff is new [...]

Continue reading about Wep0ff – Wireless WEP Key Cracker Tool

Bharath on April 7th, 2007

Oracle Corp. has published a collection of software patches that address security vulnerabilities in a range of the company’s products, including its database and application server software. As part of this update, it also released a tool designed to ferret out commonly used default passwords that theoretically could be misused by hackers.
Earlier versions of Oracle’s [...]

Continue reading about Default Password Scanner from Oracel

Bharath on April 7th, 2007

The famous Phenoelit Default Password List has been updated
http://www.phenoelit.de/dpl/dpl.html

Continue reading about Router/Switch Default Password List

Bharath on April 7th, 2007

         eBay users are being targeted by an advanced Trojan that attempts to redirect traffic so it can silently bid on a car from the auction site’s car section, Symantec is warning. It is the latest security headache for eBay, which has faced an onslaught of complaints from some users who say fraud [...]

Continue reading about eBay users attacked with smart torjan

Bharath on April 4th, 2007

Security experts at RSA have come across a new tool that automatically creates sophisticated phishing sites, a sign that cybercrooks are getting increasingly professional.
The tool, which RSA calls the “Universal Man-in-the-Middle Phishing Kit,” is available on underground online marketplaces for about $1,000, Jens Hinrichsen, RSA’s product marketing manager for fraud auction, said in an [...]

Continue reading about New automated tool for sophisticated phishing