Showing posts with label wi-fi problems. Show all posts
Showing posts with label wi-fi problems. Show all posts

Firefox spoofing flaw reported

Mozilla’s Firefox web browser is vulnerable to spoofing attacks, according to an Israeli security researcher. Aviv Raff reported on his blog on Wednesday that Mozilla Firefox v2.0.0.11 allows information presented in a basic authentication dialogue box to be spoofed, opening up the possibility of users being redirected to a malicious website. Earlier versions of the browser may also be affected.

According to Raff, when a web server returns a 401 status code, it causes Firefox to display an authentication dialogue box. The 401 status code is returned by the web server when it recognises that the HTTP data stream sent by a browser or bot is correct, but access to the URL requires further user authentication.

The authentication dialogue box displays the server URL in what is called the WWW-Authenticate header field. This URL is in part defined by the realm value and, according to Raff, it is possible for an attacker to create a specially crafted realm value that will look as if the authentication dialogue came from a trusted website. This is due to Firefox failing to sanitise single quotes and spaces in the WWW-Authenticate header field, after a legitimate realm value enclosed in double quotes has been given.

At least two possible attack vectors are opened by this reported flaw, according to Raff. Man-in-the-middle attackers could create a web page with a link to a trusted website such as a bank. When a victim clicks on the link on the malicious page, the trusted web page would be opened in a new window. A script would be executed to redirect the newly opened window to the attacker’s web server, allowing username and password details to be compromised.

Alternatively, an attacker could embed an image in an email or web page which, when clicked on, would return a specially crafted dialogue login from the attacker’s web server, again allowing authentication details to be compromised.

President of Mozilla Europe, Tristan Nitot, told ZDNet.co.uk that Mozilla is in the process of investigating the report, and so could not comment further at this time.

“We take security seriously,” said Nitot. “We are taking this report seriously, and are investigating.”

computer security

Computer security is the process of preventing and detecting unauthorized use of your computer. Prevention measures help you to stop unauthorized users (also known as "intruders") from accessing any part of your computer system. Detection helps you to determine whether or not someone attempted to break into your system, if they were successful, and what they may have done.

We use computers for everything from banking and investing to shopping and communicating with others through email or chat programs. Although you may not consider your communications "top secret," you probably do not want strangers reading your email, using your computer to attack other systems, sending forged email from your computer, or examining personal information stored on your computer (such as financial statements).
   Intruders (also referred to as hackers, attackers, or crackers) may not care about your identity. Often they want to gain control of your computer so they can use it to launch attacks on other computer systems.

Having control of your computer gives them the ability to hide their true location as they launch attacks, often against high-profile computer systems such as government or financial systems. Even if you have a computer connected to the Internet only to play the latest games or to send email to friends and family, your computer may be a target.

Intruders may be able to watch all your actions on the computer, or cause damage to your computer by reformatting your hard drive or changing your data.

Unfortunately, intruders are always discovering new vulnerabilities (informally called "holes") to exploit in computer software. The complexity of software makes it increasingly difficult to thoroughly test the security of computer systems.

Also, some software applications have default settings that allow other users to access your computer unless you change the settings to be more secure. Examples include chat programs that let outsiders execute commands on your computer or web browsers that could allow someone to place harmful programs on your computer that run when you click on them.

LATEST VIRUS NAME..

    1.     Virus Name:     Virus:W32/Sality
   A malicious program that secretly integrates itself into program or datafiles.It spreads by integrating itself into more files each time the host program is run.
              
    2.     Virus Name:           Trojan-Downloader:W32/Hiloti
                   This type of trojan secretly downloads malicious files from a remote server, then installs and executes the files.
              
    3.     Virus Name:  Trojan-Downloader:W32/Fakerean.gen!A
This type of trojan secretly downloads malicious files from a remote server, then installs and executes the files.
              
    4.     Virus Name:  Trojan-Downloader:W32/Wimad.gen!A
     A trojan that secretly downloads malicious files from a remote server, then installs and executes the files.
              
    5.     Virus Name:           Trojan-Downloader:W32/Oficla
This type of trojan secretly downloads malicious files from a remote server, then installs and executes the files.
              
    6.     Virus Name:           Trojan:AndroidOS/Tapsnake
 Also known as a trojan horse program, this is a deceptive program that performs additional actions without the user's knowledge or permission. It does not replicate.
              
    7.     Virus Name:           Email-Worm:W32/Bagle.GE
  This type of worm is embedded in an e-mail attachment, and spreads using the infected computer's e-mailing networks.
              
    8.     Virus Name:           Virus:W32/Bursted
A malicious program that secretly integrates itself into program or data files. It spreads by integrating itself into  more files each time the host program is run.
              
    9.     Virus Name:           Trojan:W32/Qhost
Also known as a trojan horse program, this is a deceptive program that performs additional actions without the user's knowledge or permission. It does not replicate.
              
    10.     Virus Name:           Trojan:W32/Agent.DKJC
Also known as a trojan horse program, this is a deceptive program that performs additional actions without the user's knowledge or permission. It does not replicate.  

Email Security...some Basic point

In today’s electronic world, email is critical to any business being competitive. In most cases it now forms the backbone of most organisations’ day-to-day activities, and its use will continue to grow. According to the The Radicati Group’s study, “Microsoft Exchange and Outlook Analysis, 2005-2009,” the worldwide email market will grow from 1.2 billion mailboxes in 2005 to 1.8 billion mailboxes in 2009.[sintuhack]
As email becomes more prevalent in the market, the importance of email security becomes more significant. In particular, the security implications associated with the management of email storage, policy enforcement, auditing, archiving and data recovery. Managing large, active stores of information takes time and effort in order to avoid failures – failures that will impact the users and therefore the business, undoubtedly leading to lost productivity. For secure and effective storage management, organisations must take a proactive approach and invest wisely in a comprehensive solution.When considering a secure email storage management solution, a layered approach, combining both business processes and applications makes sense. By considering the service email provides to the business, email management can be broken down into a number of components: mail flow, storage, and user access – both at the server and user levels. Whilst each one of these components should be addressed separately, they must be viewed as part of a total security agenda.[sintuhack]
Mail flow can encompass many aspects of an email system. However, the security of mail flow is for the large part focused around the auditing and tracking of mails into and out of the organisation. Monitoring the content and ensuring that any email that has been sent and received complies with business policy is fundamental.
[sintuhack].Proving who has sent or received email is a lawful requirement for many industries and email can often be used as evidence in fraud and human resource court cases.[sintuhack],Another key aspect of the management of mail flow security is the protection of the business from malicious or unlawful attacks. It is at the gateway into the mail system where a business must protect itself via a variety of methods including hardware and software protection systems, such as spam filters and virus scanner[sintuhack].

Common mobile viruses:Mobile Security Threat



How they spread and what are the effects:

Cabir: When this virus infects  your mobile then  message 'Caribe' will be displayed  at each  time you switch off and  on the mobile. These worms are generally  spread through blue tooth signals from surroundings  mobiles. 
Duts: A parasitic  file infector virus .its alos  known as Pocket PC. It try to infect all EXE files which are more than 4kb present in the directory where it saved. 
Skulls:  it is a Trojan horse. Means a piece of code will be  downloaded  on your mobile nad then the virus called Skull replaces your phone desktop into  image of skull as icon.it is very dangerous as  It is usually  transferred with all phone applications and also with SMS and MMS. 
Comm warrior: It's also spread through MMS  and  unsecured blue tooth  to other devices. It has more impact on devices running under OS Symbian Series 60. This virus launches The executable worm file and the worm  hunt for gaining access to your blue tooth devices and sends the infected files under various different  name to various random device.

BLuebugging:Can Breach YOUR Mobile Security



BLuebugging was somewhat like bluesnarfing but the difference is that it is more harmful to your mobile from the prospective of security of your mobile. It was first invented in 2004 by German scientist. In the initial phase, it was necessary to pair devices via Bluetooth before the security breacher  try to breach your mobile with the bugger, but now a days its not needed to pair up the devices.[sintuhack]. It can also possible to break you mobile security via the Bluetooth enabled headset which is used to take call as per to free your hands.[sintuhack]

At early stage it was done with laptop but now a days such powerful PDA and mobile phones are available  in the market that it can be done without laptops .[sintuhack]. you may be happy that your mobile Bluetooth has only a small range so its not easy to pair up your device hence you mobile is secured. But did you know that in market antenna’s are available which can send and receive weak signal s and hence data can be transferred from range of even 200 meters.[sintuhack]

Bluesnarfing:Mobile Security Breach

Bluesnarfing refers to a the method in which one has gained access to data, which is stored on a Bluetooth enabled phone of other people.
Literally Bluesnarfing can be described as unauthorized access of information from a wireless device through a Bluetooth connection. The level of access depends from case to case, but, in general, it involves pretty much anything that's stored on the user's mobile device.
Bluesnarfing allows the using person to make phone calls, send and receive text messages, read and write phonebook contacts, eavesdrop on phone conversations, and connect to the Internet. he can also download the material in his mobile from the victim mobile.
The good news is, bluesnarfing requires advanced equipment and much advanace expertise


In this field. As bluejacking can be done at the range of 10 meters, in bluesnarfing the intruder must be present within a 30 ft. range.
If the phone is in non-discoverable mode, then its not true that you cant be a victim of this.
Its adds only some problem and makes it little bit more difficult for intruders to bluesnarf your phone.


It can be possible from phone and laptop both to bluesnarf a mobile. By just using some bluesnarfing tools (Bluesnarfer, Blooover)

on mobile phone or laptop, anyone can detect and access those vulnerable mobile phones to view and download entire phonebook, calendar, real time clock, business card and other important private data without alerting the phone owner(you).




There's little info on whether Bluesnarfing is possible without the targeted phone being paired with the computer running the aforementioned software application, but anyone cannot completely rule out this possibility, either.


So that’s all about bluesnarfing. Wait till next post to know about other mobile security breach methods………….

Fix your 10 common Wi-Fi problems(last five)

6. Which wireless channel should I use?
Wireless 802.11b and 802.11g routers have at least 11 channels, and most routers come set to channel 6 as the default. If you experience interference--from a neighbor's router, for instance--you can change your channel to solve the problem. Channels 1, 6, and 11 are non-overlapping channels; other channels overlap a bit. So if your neighbor's network uses channel 6, change your router to 1 or 11. You'll typically find channel settings on the router's basic wireless settings page. Just click the drop-down menu and select an alternate channel, then save the settings.

7. How do I share files on a wireless network?
First, you'll need to set up a workgroup and make sure that all PCs are assigned to the same workgroup. Next, enable file sharing in Windows. First, right-click on the folder you want to share, choose Sharing and Security from the right-click context menu, then click the Sharing tab. Put checks in the boxes labeled "Share this folder on a network" and "Allow network users to change my files" to enable others to modify the documents. Finally, click OK.

8. Should I allow other people to access my Wi-Fi service? What are the dangers?
Some users see no harm in sharing the Wi-Fi love, giving neighbors and even total strangers free access to the Internet. Others maintain that piggybacking can open their networks to potential danger. The decision is yours, but if you choose not to encrypt, make sure to disable file sharing. Assuming you have your hardware firewall turned on, the worst that probably will happen is that your throughput will drop if your piggybacking neighbors crank up BitTorrent every evening. If you want to determine whether others are using your unsecured network, most routers have a page that lists all the wireless clients currently connected.

Most people, however, are not comfortable with the idea of allowing just anyone to use their wireless service. In theory, the practice can make your network vulnerable to hackers, since anyone who uses your wireless signal is on your home network. Malevolent users, for instance, could release nasty viruses or hijack your PC. That's not terribly likely, but you should avoid the possibility by using WPA to protect yourself and keep others off your network.

9. Should I worry about packet sniffers grabbing my information when I browse the Web at public hotspots?
Yes, you should at least consider this possibility, although whether you do anything about it depends on the sensitivity of your data and your level of paranoia. Anyone can install packet-sniffing software that will enable him or her to eavesdrop on what you do at a public hotspot. These snoops can read your emails and see what Web sites you visit, but they will not have access to the files on your laptop, unless you have file sharing enabled. Also, they cannot see any messages or Web pages sent over the secure server connections typically used by banks and e-commerce sites. (Look for https:// in the URL.)

If you use a VPN to access your corporate network, you can use it at hotspots to encrypt all transmissions and shield them from packet sniffers. If you don't have a corporate VPN but frequently use public hotspots, you might consider a consumer VPN service such as the PersonalVPN from Witopia (US$39.99 per year, www.witopia.net) or BlowFish from HotSpotVPN (US$10.88 to US$13.88 per month, www.hotspotvpn.com). These employ powerful 128-bit encryption to protect your data as it is transmitted.

10. What is a hardware firewall? If my router has one, do I need to run the Windows firewall or other third-party firewall software?
Most wireless routers have a hardware firewall that safeguards the network by providing both incoming and outgoing protection. A hardware firewall will include network address translation (NAT) capabilities that make your PC invisible to anyone trying to attack it. If you enable the hardware firewall, you probably don't need a third-party software firewall. You should still run the Windows firewall, however, because it keeps a low profile and will stop basic worms if your PC gets hit by a drive-by downloader.

Fix your 10 common Wi-Fi problems

1. I cannot connect to my router. How do I resolve this?
This is a wide-open problem with an almost limitless range of causes and solutions, but here are several actions that might do the trick. First, make sure your router is configured for Dynamic Host Configuration Protocol (DHCP). If it is, try disabling and re-enabling the DHCP function. If that doesn't work, disable wireless security and see if you get a connection; sometimes a mismatched Wired Equivalent Privacy (WEP) key can drop the IP address. You should also check for electrical interference from competing devices such as cordless phones, baby monitors, alarm systems, and microwave ovens. Disable all suspect devices, then recheck your Wi-Fi connection. If all else fails, reboot the router and all computers on your network.

2. What steps should I take to secure my Wi-Fi network?
Routers typically offer at least two common forms of security: WEP, and Wi-Fi Protected Access (WPA) encryption. Both are easy to enable, although you'll get maximum protection from WPA. To activate security, go to your router's browser-based administration tool (the default address for most routers is http://192.168.0.1 or http://192.168.1.1) and look for the wireless security area. WPA requires you to enter a simple security phrase (eight to 63 characters), or, with some routers, a more secure (but much harder to remember) 64-digit key. Similarly, WEP demands that you choose from 64-bit or 128-bit encryption, and enter an alphanumeric hex phrase, with some routers giving you the option to enter a simpler ASCII phrase. In addition to enabling wireless security, you can also disable the broadcasting of the Service Set Identifier (SSID, or network name). Doing so can make the network more difficult for hackers to see. Also, make sure to enable the router's hardware firewall (more on that later), and change the router's default password. And do not enable file sharing, unless you really use it. This will safeguard your personal files from interlopers.

3. How do I open ports on my router?
Certain functions and applications--personal Web servers, IP Webcams, home FTP servers, and online games--require that you open ports on your router to allow outside requests to be sent to an internal computer on a home network. This procedure, called port forwarding, is pretty straightforward. First, you'll need to find out which ports you need to open for your particular application or service. Then, you'll open those ports on the router. All models vary slightly, but the process is similar. Open your router's configuration tool, and find a tab labeled Port Forwarding. Enter the service or software name, then type the Start Port and End Port numbers. If you're opening one port, enter the same number in both fields. Select TCP as the protocol, then click OK. Check your router's Web site for instructions for your specific brand or take a look at Port Forward, for help.

4. How do I extend the range of my wireless signal?
Improving a wireless signal is an inexact science that's part voodoo, part trial and error. No two homes are alike, and no two solutions will work for everyone, but here are some common guidelines. First, position your antenna on a high perch clear of obstructions. (The wireless signal radiates down.) Keep in mind that certain things will interfere with the signal: Objects with high water content, metal, and dense building materials such as brick, stucco, and concrete. So avoid blocks of liquid (fish tanks and water coolers), and metal pipes and construction.

If antenna positioning doesn't help, you can get an extender (or "repeater"), such as the Linksys Wireless-G Range Expander WRE54G. Devices like this will boost your range from 50 to 75ft, but they can be tricky because they require setup and configuration. A somewhat easier (if visually less elegant) approach is Wireless Garden's Super Cantenna. This tripod-mounted, high-gain antenna connects to your router and can be pointed at a specific area to amplify the signal. It's easy to set up, but it ain't pretty.

5. How do I automatically connect to a Wi-Fi network without having to manually connect the first time?
If you just want to connect fast to any available network, you can set your notebook to do so automatically. Go to Control Panel > Network Connections and right-click your current wireless network. Then click Properties > Wireless Networks > Advanced. Make sure the radio button next to "Any available network (access point preferred)" is on, then check the box "Automatically connect to non-preferred networks."

next five will be posted on next blog...