Skip to main content

Kismet

As you setup your wireless access point you need to make sure it has encryption either it's WEP or WPA. My recommendation is WPA2 if you have that choice.
More likely wireless network don't have a password on it - over 80% of them don’t.

  1. Using kismet the hacker watchs you check your email. Kismet records every packet you send on the network.
  2. Kismet records the email server you connected to, and the login name and password you used to get your email.
  3. The hacker lets Kismet collect wifi packets for several hours, usually during the peak times this wifi network is in use. If this is a nearby hotel the hacker collects packets through the evening, if it’s a cafe or sandwich shop the hacker collects packets during lunch.
  4. The hacker goes back home and runs dsniff on the capture files that kismet created. Dsniff dumps out all the servers and name/password combinations that kismet collected that day.
  5. The hacker gets your server and login name/password and sets up his email client to now download all your email into a special folder. You are completely unaware he’s doing any of this.
  6. The hacker monitors your email for several weeks, taking note of all the emails you get from online stores. The hacker compiles a list of all the stores that send you emails.
  7. After several weeks of silently collecting your emails and making a list of where you have shopped the hacker is now ready to strike.
  8. The hacker goes to each of your stores and has your password reset. To do this all he has to do is enter your email address and click “forgot password”. The online stores quickly oblige him by sending a new password to your email, which the hacker is receiving. The hacker takes not of each of the new passwords and quickly deletes those emails from you email server so you never see them.
  9. The hacker then returns to each of the stores with the new passwords and places orders.
  10. The hacker has the items sent to a different address, usually an apartment complex where UPS/FedEx just knock on the door and drop the package off.
  11. One thing about online stores these days. They don’t charge your card until the merchandise is ready to ship. The hacker will have the packages overnighted which means your card is charged and he receives the goods the very next day.
  12. Most people will never be aware they’ve even been charged until it’s too late the hacker has long picked up the packages and can’t be caught.
Take note, all it took was the hacker gaining access to one thing. That’s how hackers work, they only need access to one thing, and from that they figure out how to gain access to other things. Another thing to note. The hacker never had to know your credit card numbers.

There are more complicated examples than this one, but this is certainly one of the easiest to understand.

Remember, everything you do on a wireless network can be seen by anyone else in the area, all it takes is one person deciding to record your activity and you can fall victim to identity theft very easily. So remember make sure there a lock when paying or ordering when on-line and remember if no one is on a wireless connection which means none of your clients, employees, or home users have a wireless card then, turn it off. 

Comments

Popular posts from this blog

Learning Linux

Learning linux from the ground up is really a challenge. As you progress even more you start customizing your OS from how it starts and how it shutdown. As soon as you start on a Live CD your x server is pretty much either gnome or KDE. I mean it looks easy to do, but as soon as you start research how the x server it can get trick. My recommendation is to also learn the bash line or command prompt. if your good with the line commands then reconfiguring your computer shouldn't be a problem, but you just learn the GUI layer of it and not the line commands believe me your going to have hard time restoring your computer. As I ask people around they say linux is hard to install. The easiest way to partition your drive manually is like this. sda1 /home -- This is where you want to store all your data in case your linux gets corrupted. This space can be as big as you want sda2 /swap -- Linux is just like windows it needs it virtual space. The swap size depends on your physical ram.

DTS OS Enterprise

Well here are screen-shots of the OS images that I am making. The Desktop Environment is KDE The web browser is Firefox with a simple theme in place. Overall DTS OS Enterprise has two versions and it was made for especially for the acer aspire one netbooks. The OS should work with other computers since it is Linux. Some of the network icons are going to replace with custom icons.    Different Edition s Network Security Restoration Edition  File name: DTS-NS.iso File size: 200 - 300 MB The release date is going to be sometime in the late spring 2010.

Netwars Competition

The NetWars game is a collection of computer and network security challenges. It is designed to represent real-world security issues: their flaws and their resolutions. Each player can follow an independent path based on individual problem solving skills, technical skills, aptitude, and creativity. The game is played in a fun but safe environment using the technology that drives our lives every day. The game starts when a player downloads and starts a CD-ROM image on a PC or in a virtual environment such as VMware Player. The image contains a brief tutorial and the game's full instructions. The player must find a hidden key within the image that is downloaded and then uses that key to enter an online environment where knowledge of security vulnerabilities and their exploits can be turned into points. Upcoming Competitions   June 18-20, 2010 PST September 17-19, 2010 November 5-7, 2010 December 17-19, 2010 April 29 - May 1, 2011 Click Here to read more