Jump to content

DingleBerries

Dedicated Members
  • Posts

    1,291
  • Joined

  • Last visited

Everything posted by DingleBerries

  1. I have multiple services that communicate w/ me via sms messaging, twitter, voxtxt, MY BANK! So what security is implemented to prevent people from potentially ruining my reputation or even my finances? I decided to find out. DO NOT DO ANYTHING ILLEGAL AND IF YOU DO AND HAPPEN TO GET CAUGHT I LOL @ YOU! So usually these service ask for a carrier, why? I dont know, im no scientist but i do know that your cell number is paired with the provider, but i doubt that it helps any. But as i started reading i found that it it super easy to do.. With an abundance of services available to spoof caller id number and what not you can easily post on others twitter or depending on the services they use order ring tones from their number. Why order ring tones or sign up for services if you are not going to get any benefit? Well because it charges the person and if they do not catch it then you begin to have a monthly bill that you never agreed to.. Since most of these services charge i never got to try out any of my theories but i did find a blog that pointed out the vulnerability in twitter, i still would like to test out how my bank handles it but i guess i will have to wait. Hope this helps :) Refferences: Dhanjani(original test i found after writing this :( ) SMS Spoofing You Spoof Fun Stuff: Hoax Mail(tool used by dhanjani.com) Spoof Card(Not Free) SpoofTel(Requires Login, not 100% anonymous) vText(Send text messages to verizon numbers from any number of your choosing) Fake My Text(SMS Spoofing service)
  2. Looks GREAT! Cant wait to see it.. I just moved back to the US so now i am just waiting on all my shit to get here. Did you ever get your lappy back?
  3. I just installed LinuxMint on a old pc, 256RAM and a 1.80ghz pentium, and it is running great. The hardware support is good and i just like the look of it. The computer is for my grandparents and all they do is look at ebay and read the news so i didnt have to setup compiz or any bells and whistles.
  4. Im not sure if this goes in this topic or 'security' but here is a list of tools i have installed. OperaTor Metasploit(with Nmap) Tor Portable Firefox(do not want to soil my main install with testing utilities) VNCviewer Cain & Abel Recuva(for file recovery) YAPS Putty WPEPro(i use this mostly for games and what not but there are tons of uses for this) And a super tiny light weight key logger No linux tools please.There are more than enough security distros out there to choose from. Backtrack ftw
  5. I know that this is the internet's' but seriously.. "Get" has an 'e' not an 'i', it's "compAny" not compny and dusnt is'nt even a word.. do us a favor and spell shit correctly.. i mean honestly whats it to move a few spaces to hit the correct letter?
  6. “When you say, ‘I wrote a program that crashed Windows,’ people just stare at you blankly and say, ‘Hey, I got those with the system, for free.’” Linus Torvalds
  7. http://airpwn.sourceforge.net/Airpwn.html
  8. Why not just go out there and ask him what he is doing? or lifehacker. com/software/wifi/turn-your-wifi-piggybackers-internet-upside-down-190441.php... either way its a little extreme to take a bat to some poor kids computer for trying to get on the internet.. especially if he just moved in and doesnt have internet atm.. maybe rethink what you are doing and encrypt your network a little better.. WPA w/ MAC address filtering and limit the ip range so that only the amount of computers you own will be able to connect to the intertubes, and if he manages to still connect then let him be, he is obviously alot better than yourself :\
  9. I am just taking a shot at this but have you tried printing it to a .pdf file and then from there converting that information to a word file and merging it into an excel.
  10. CHECK MY WORK.. I am not sure if i have the INPUTS and OUTPUTS correct or backwards :/.. ORIG LARGE IMAGE FOUND IN MY FLICKR flickr .com/photos/23440615@N07/2505979283/sizes/l/
  11. Ok, the SHARP IR3Y29B is the actuall video controller, for SOMETHING, and its analog.. SOOOO; 1. Is that on the LCD board OR on the board with the DVD player If it is on the board with the DVD player then it may be for another rca input? The IR3Y29B is also a video controller i have a full pin out and a 43 page pdf on that.. I am almost positive this is what controls the lcd, and it looks like it accepts digital input :D. Interesting pins are; 3: VIDEO IN 17: GND1 (GROUND) 18: GND2 (GROUND) 28: RGB AMPLITUDE ADJUSTMENT 34: SYNC IN 35: SYNC OUT 36: SYNC SEP 40: B IN 41: G IN 42: R IN 48: PICTURE You get the picture.. theres a pull pinout in there.. just use the VGA one i posted earlier and maybe it will work.. do not jump into anything right now.. because it is late and i am not a spider expert or anything.. moving on... The HC4053 is a Analog Multiplexer/Demultiplexer, it controls voltage so thats ghey. One is probally an input and the other an out put. PM me and i will email you a full pdf on the IR3Y29B chip Links: For SHARP IR3Y29B www.arrowne. com/subsystems/catalogue/pdf/Arrow_Semis_IC_Support_(24).pdf FOR HC4053 http://pdf1.alldatasheet.com/datasheet-pdf...SLS/HC4053.html Keep in mind that i am tierd so do not take any of this to heart until i have time to comb over it :)
  12. So links so far: VGA Pinout (there is also a tut on his page as well for RBG to VGA) http://dragonsden.emuunlim.com/pinout.jpg Refresh rate app(MAC only) http://www.3dexpress.de/ Now you need a pin out for the lcd cable or for the controller its self. Best thing to do is start googling chips on the lcd board, if you make a list and post i will help as well. Also if the screen turns out to be analog then you might have some troubles, but if its digital then your in luck and it shouldnt be to hard at all to accomplish this :).
  13. a model number for the screen would be helpful
  14. Today i tore down the keyboard and ripped out the...keys lol.. and started tinkering.. This is what i found in the first 5mins or so... There is a reed that, when compressed, activates the reader its self... so i soldered a old reset button i had that way i can tell it to switch on and off with out a card being in... Also the cards do not stay mounted very long, about 15 secs, so i am looking for a way to make it stay mounted, meaning the led goes off after a bit. PICS: Original reed that the card depresses when inserted: Back side:(r12 and r14 are the switches reads) New switch soldered on:(i was using a Cold/Heat so excuse the sloppiness) Switch: LED activated from the new switch: this is a little more complicated then i had first thought.. but still a fun take down
  15. i have a few cards that a local business uses to pay out money to customers. i am thinking about using an acetone solution and just letting it eat away at the plastic, however if any of the other electronics inside are shielded with a plastic coating then... it just wont work.. so when i take apart a card i will post pics on this thread as well. The all the chips are from the same manufacture and the documentation is pretty well written Applications: hxxp://support.gemalto. com/?id=199#310 Documentation: hxxp://support.gemalto. com/fileadmin/user_upload/user_guide/GemPC410/GemCore_v1.21_Reference_Manual.pdf
  16. Quick Note: This was a quick tear down of a Dell SK-3106, standard issue for the United States Military but it is just as easy for a civilian to purchase one. Original Large photos are in my Flickr Stream. Docs: hxxps://ascp.monmouth.army.mil/scp/downloads/ standardspolicy_files/Army_CAC_PKI_Program.pdf hxxp://www.smartcardbasics. com/cardtypes.html Now the part you guys want, pics :) This is your standard CAC(SMART) Card. Here is the I/O layout for the gold contacts. Reader on the Keyboard Back of the Keyboard Controller for both the CAC reader and the keyboard its self. FRONT: http://farm3.static.flickr.com/2387/250030..._cdfecdea08.jpg BACK: http://farm3.static.flickr.com/2227/249947..._f605112622.jpg CHIP: http://farm4.static.flickr.com/3036/249947..._235024161e.jpg CAC card shots: Thats all for tonight.. maybe sometime next week i will play more with it and see what all i can do, edit data, execute arb. code? But now i DRINK!
  17. Something can not be stored in the ram forever. The password has to be placed there when the pc boots up so imaging the drive could give you the section of the hhd that holds and places the encryption key in the ram. The only way i see this not working is if there is a conflict with the drive being protected during the imaging process. In theory you should be able to take your new imaged drive and place it in a different pc and it boot with the exact same setting as the original giving you ample amounts of time to crack it and even if the admin changes the pass word on the original computer you should have all the data needed. On the other hand it might be difficult to make the imaged drive into a format that a VM can read and understand.
  18. reviving an old topic. if someone did happen to have enough time they could image the hhd and bring it home then run it inside a VM. Is it possible to image just select part of a drive? I am not very familiar with imaging software. Would you indeed be able to image and encrypted disk? 1. Locate a computer outside the usual work space, i.e in a back room or in my school there is one inside the teachers bathroom? 2. Boot imaging software 3. Plugin a usb powered external hdd 4. Hide hdd behind the computer 5. Hide the VGA adapter and or power cord for monitor 6. come back later with imaged drive 7. rum on vm 8. ???? 9. Profit This is of course very black hat way of doing this and probably very traceable. Getting longer sorry. Since the RAM in a VM can also be created as a paging file would it be easier to pause the VM make a copy of the page file and go at it with different attacks to your hearts content?
  19. You might want to try Pidgin with "Off the Record Messaging" plugin and i know there is an RSA plugin available somewhere. here is a link to the plugins pidgin supports: http://developer.pidgin.im/wiki/ThirdPartyPlugins Here are the links to the afore mentioned plugins. http://pidgin-paranoia.sourceforge.net/ http://pidgin-encrypt.sourceforge.net/
×
×
  • Create New...