Wednesday 31 July 2013

#26 Different Types of Web Vulnerabilities

[x] PHP code injection
[x] PHP curl_exec() url is controlled by user
[x] PHP invalid data type error message
[x] PHP preg_replace used on user input
[x] PHP unserialize() used on user input
[x] Arbitrary File Deletion
[x] Code Execution Hacking(LFI,RFI,Iframe Injection, Remote Code Execution)
[x] Cookie Manipulation (Meta HTTP-EQUIV & CRLF Injection)
[x] CRLF Injection (HTTP response splitting & Headers Injection)
[x] Cross Frame Scripting ( XFS )
[x] Cross-Site Scripting ( XSS - Persistent, Non-Persistent, DOM Based)
[x] Directory traversal including shell uploading
[x] Microsoft Office possible sensitive information
[x] Possible internal IP address disclosure
[x] Possible server path disclosure (Unix and Windows)
[x] Possible username or password disclosure
[x] Sensitive data not encrypted
[x] Source code disclosure
[x] Cross-Site Request Forgery (CSRF)
[x] Email Injection
[x] File Inclusion (LFI,RFI with and without null byte)
[x] Full Path Disclosure
[x] LDAP Injection
[x] Remote XSL inclusion
[x] Script source code disclosure
[x] Server-Side Includes (SSI) Injection
[x] Structured Query Language Injection(SQL Injection)
[x] URL Redirection
[x] XPath Injection vulnerability
[x] EXIF
[x] Buffer Overflows
[x] Clickjacking
[x] Dangling Pointers
[x] Format String Attack
[x] FTP Bounce Attack
[x] Symlinking and Server Rooting
[x] Blind SQL injection (timing - Boolean Based)
[x] Blind SQL Injection (Blind SQL String Based and Double Query Blind Based)
[x] 8.3 DOS Filename Source Code Disclosure
[x] Search for Backup files
[x] Cross Site Scripting in URI
[x] PHP super-globals-overwrite
[x] Script errors (such as the Microsoft IIS Cookie Variable Information Disclosure)
[x] WebDAV (very vulnerable component of IIS servers)
[x] Application error message
[x] Check for common files
[x] Directory Listing
[x] Email address found
[x] Local path disclosure
[x] Possible sensitive files

#25 Difference between http and https in URLs

The addresses that begin with "HTTP," stands for "Hyper Text Transfer Protocol." Whereas "HTTPS" stands for "Hyper Text Transfer Protocol Secure" which means that information exchanged between user and a web site is encrypted and cannot be hacked by someone who might want to electronically cheat when you type a credit card number, a password, a social security number, or any other confidential information.

#24 How to Unlock/Reset a Android Lock in Emergency?

1) First of all, you need to Switch off your android device and keep it for some time.
2) Now press the up volume button and hold it for 30 seconds.
3) Now press home button and hold it, Then press power button and after started your phone just release it.
4) Then you can see enter secret android menu you never see it before, just click on home button up and down in the menu.
5) Now click on third option which is Delete All User Data.
6) Now in this way, your android lock pattern is unlocked now problem is solved.


Note: Works only to most of the mobiles but not all.

#23 - 4 Ways to get Faster Boot Up Times

Step 1: Hard Disk Check Up

 Over time, your hard drives gets degraded both physically and digitally.
 It’s important to monitor your drives health. An error or damaged sector can throw software loading into an infinite loop causing long load times. To check your drive health:
 1. Click Start
 2. Choose Computer
 3. Right Click your Hard Drive
 4. Choose Properties
 5. Click Check Drives Health. After, the check up gives you repair options or a clean bill of health.
 6. Restart to get a faster boot up.

Step 2: Eliminate Startup Delay

 To get faster boot up speeds, you can cut the boot delay to 0. The delay is in place to allow your startup processes some breathing room during loading. Your default delay is 30 seconds. So, you can eliminate it for faster boot up times.
 1. Open your Start menu.
 2. Click Run
 3. In the command screen, type msconfig
 4. In the system configuration utility, click either BOOT tab.
 5. In the boot menu, change the default setting for the Time Out from 30 to 5 seconds.

Step 3: Organize your Hard Drive

 If you are looking for something in a messy room, naturally, it’s going to take you longer to find something. This is a good metaphor for a hard drive. Over time, filing system gets disorganized. Periodically, you need to reorganize this filing system on your hard drive. Luckily, Windows has a good utility called Defrag that will put your system in order.
 1.Open the Start Menu
 2. Click on My Computer
 3. Right Click your C: drive or your
 hard drive image.
 4. Scroll down to the Click Properties
 5. In the Properties Menus, Open
 the “Tools” menu.
 6. Choose Defragment.
 7. In the Disk Deframenter menu. Click on Defragment

Step 4: Remove Excess Startup

Programs, Most programs you add to your computer will opt to load when you startup your computer. Eventually you will rack up a load of programs that kill faster boot times. You need to reduce the startup programs. You can easily disable unnecessary startup programs. Here is how:
 1. Open your Start menu.
 2. Click Run
 3. Type msconfig, click Enter
 4. In the system configuration utility, click either services or startup tab.
 5. Uncheck all programs that your are no longer want to run in the background.

Monday 29 July 2013

#22 Google does not consider the dots (.)

If we use dots in the mail address it will not consider. 

Its quite surprising and interesting. We have been using gmail since years.But you may not notice this feature.
It doesn't "recognize dots (.) in username". At gmail Log in page you can enter any number of dots in username. gmail ignores it as such.

 For example if your usenrname is xyz@gmail.com then,if you enter
 x.y.z@gmail.com
 x.....y.z@gmail.com
 xyz...@gmail.com
 or any number of dots , with same password it'll log in successfully.

 Try it.

Sunday 28 July 2013

#21 Know your Internet browser shortcuts

There are dozens of different shortcut keys that can be used with Internet browsers. Below are a few of our top suggested Internet browser shortcuts.

- Pressing Alt + D in any major Internet browser will move the cursor into the address bar. This is a great way to quickly enter an Internet address without having to click the mouse cursor in the address bar.
- Hold down the Ctrl key and press the + or - to increase and decrease the size of text.
- Press the backspace key or hold down the Alt key + left arrow to go back a page.
- Press F5 to refresh or reload a web page.
- Press F11 to make the Internet browser screen full screen. Press F11 again to return back to the normal view.
- Press Ctrl + B to open your Internet bookmarks.
- Press Ctrl + F to open the find box in the browser to search for text within the web page you're looking at.

Saturday 27 July 2013

#20 How To Encrypt and Send Password Protected Email In Gmail ?

 (1 ) Install "Secure Gmail" add on from chrome.
 (2) Now to send password protected encrypted email login n click the lock icon next to 'Compose' button.
 (3) Now type in the email and all, and click 'Send Encrypt'.
 (4) Then Type the Password, and the hint if u want. And click 'Encrypt & Send'. And tell the recipient the password.
 You're Done.

 The recipient will receive an encrypted email and it'll be demanded for password 2 decrypt it.
 Now you no need to bother if anyone hacks the accounts and look into your personal messages.

#19 Emails sent each second

Approximately 3.4 million emails are sent each second, that's 294 billion every day.
78% of emails are spam.

Friday 26 July 2013

#18 Android Hidden Codes

 *#06# – IMEI number
 *#0*# – Enter the service menu on newer phones like Galaxy S III
 *#*#4636#*#* – Phone information, usage statistics and battery
 *#*#34971539#*#* – Detailed camera information
 *#*#273282*255*663282*#*#* – Immediate backup of all media files
 *#*#197328640#*#* – Enable test mode for service
 *#*#232339#*#* – Wireless LAN tests
 *#*#0842#*#* – Backlight/vibration test
 *#*#2664#*#* – Test the touchscreen
 *#*#1111#*#* – FTA software version (1234 in the same code will give PDA and firmware version)
 *#12580*369# – Software and hardware info
 *#9090# – Diagnostic configuration
 *#872564# – USB logging control
 *#9900# – System dump mode
 *#301279# – HSDPA/HSUPA Control Menu
 *#7465625# – View phone lock status
 *#*#7780#*#* – Reset the /data partition to factory state
 *2767*3855# – Format device to factory state (will delete everything on phone)
 ##7764726 – Hidden service menu for Motorola Droid

Thursday 25 July 2013

#17 Security tips for Safe Online Banking

 1.Access your bank website only by typing the URL in the address bar of your browser.
 2.Do not click on any links in any e-mail message to access the site.
 3.State Bank never sends e-mail and embedded links asking you to update or verify personal, confidential and security details. NEVER RESPOND to such e-mails/phone calls/SMS if you receive.
 4.Do not be lured if you receive any-mail/SMS/phone call promising reward for providing your personal information or for updating your account details in the bank site.
 5.Having the following will improve your internet security:
 6.Newer version of Operating System with latest security patches.
 *Latest version of Browsers (IE 7.0 and above , Mozilla Firefox 3.1 and above, Opera 9.5 and above, Safari 3.5 and above, Google chrome,etc.)
 *Firewall is enabled.
 *Antivirus signatures applied
 5.Scan your computer regularly with Antivirus to ensure that the system is Virus/Trojan free.
 6.Change your Internet Banking password at periodical intervals.
 7.Always check the last log-in date and time in the post log in page.
 8.Avoid accessing Internet banking accounts from cyber cafes or shared PCs.

Monday 22 July 2013

#16 Full form of computer related terms

 * HTTP - Hyper Text Transfer Protocol.
 * HTTPS - Hyper Text Transfer Protocol Secure.
 * IP - Internet Protocol.
 * URL - Uniform Resource Locator.
 * USB - Universal Serial Bus.
 * VIRUS - Vital Information Resource Under Seized.
 * 3G - 3rd Generation.
 * GSM - Global System for Mobile Communication.
 * CDMA - Code Division Multiple Access.
 * UMTS - Universal Mobile Telecommunication System.
 * SIM - Subscriber Identity Module.
 * AVI = Audio Video Interleave
 * RTS = Real Time Streaming
 * SIS = Symbian OS Installer File
 * AMR = Adaptive Multi-Rate Codec
 * JAD = Java Application Descriptor
 * JAR = Java Archive
 * JAD = Java Application Descriptor
 * 3GPP = 3rd Generation Partnership Project
 * 3GP = 3rd Generation Project
 * MP3 = MPEG player lll
 * MP4 = MPEG-4 video file
 * AAC = Advanced Audio Coding
 * GIF = Graphic Interchangeable Format
 * JPEG = Joint Photographic Expert Group
 * BMP = Bitmap
 * SWF = Shock Wave Flash
 * WMV = Windows Media Video
 * WMA = Windows Media Audio
 * WAV = Waveform Audio
 * PNG = Portable Network Graphics
 * DOC = Document (Microsoft Corporation)
 * PDF = Portable Document Format
 * M3G = Mobile 3D Graphics
 * M4A = MPEG-4 Audio File
 * NTH = Nokia Theme (series 40)
 * THM = Themes (Sony Ericsson)
 * MMF = Synthetic Music Mobile Application File
 * NRT = Nokia Ringtone
 * XMF = Extensible Music File
 * WBMP = Wireless Bitmap Image
 * DVX = DivX Video
 * HTML = Hyper Text Markup Language
 * WML = Wireless Markup Language
 * CD - Compact Disk.
 * DVD - Digital Versatile Disk.
 * CRT - Cathode Ray Tube.
 * DAT - Digital Audio Tape.
 * DOS - Disk Operating System.
 * GUI - Graphical User Interface.
 * HTTP - Hyper Text Transfer Protocol.
 * IP - Internet Protocol.
 * ISP - Internet Service Provider.
 * TCP - Transmission Control Protocol.
 * UPS - Uninterruptible Power Supply.
 * HSDPA - High Speed Downlink Packet Access.
 * EDGE - Enhanced Data Rate for GSM [Global System for Mobile Communication Evolution].
 * VHF - Very High Frequency.
 * UHF - Ultra High Frequency.
 * GPRS - General Packet Radio Service.
 * WAP - Wireless Application Protocol.
 * TCP - Transmission Control Protocol .
 * ARPANET - Advanced Research Project Agency Network.
 * IBM - International Business Machines.
 * HP - Hewlett Packard.
 * AM/FM - Amplitude/ Frequency Modulation.
 * WLAN - Wireless Local Area Network

Saturday 20 July 2013

#15 Create a shortcut key for Internet web pages

  1. Create a new shortcut on your Desktop or anyplace you want the shortcut to appear.
  2. For the location of the item, enter the full web address. For example, Google would be: http://www.google.com/
  3. Enter the name of the Shortcut and click Ok. 
  4. The new shortcut is now created and can be assigned a shortcut by right-clicking the shortcut and clicking Properties. In the shortcut properties window, assign a new shortcut key and click OK. 
  5. Now when the shortcut key is pressed the web page will be automatically loaded.

Friday 19 July 2013

#14 Use a picture password to log into your computer

Windows 8 includes a new feature called Picture password, which allows you to authenticate with the computer using a series of gestures that include circles, straight lines, and taps. Enable this feature if you want a new way to access your computer or have a hard time with passwords.

  1. Open the Windows Charms.
  2. Click Settings and then More PC settings
  3. In the PC settings window click Users and then select Create a picture password

Bonus tip: A four digit pin password can also be created and used to access your computer.

Thursday 18 July 2013

#13 List Of Full Form of Domain Names Extensions

.com → commercial Internet sites.
.edu → educational sites .
.firm → for an Internet site for a business.

.gov → for a government site on the Internet.
.int → international institutions.
.mil → for a U.S. military site on the Internet.
.mobi → for mobile phones.
.nato → for NATO sites.
.net → for Internet administrative sites.
.nom → for a personal site on the Internet.
.org → for organizational Internet sites.
.store →for a retail business.
.web → for an Internet site that is about the World Wide Web.
.in → India
.Us → united states
.uk -> united kindom