XDA TV present, Best of Hacks 2012. See if you would want to try out another of the hacks on your Android smartphone/tablet/phablet.
Warning: you might void the warranty of your Android by doing any hack. I am not responsible of any of the problem if you want to try any of these hacks.
Like this if you are FB user and you think this post is useful. The button is at top right of content of this post.
+1 this post if you are Google+ users and you think this post is useful.
Hope you will enjoy this post, subscribe to my RSS or mailing list or follow me on blogger or twitter. :)
source: XDA
Update every month from http://outdatedpenanguncle.blogspot.com/
Outdated Penang Uncle
Showing posts with label hacking. Show all posts
Showing posts with label hacking. Show all posts
Friday, December 28, 2012
Saturday, May 19, 2012
How to Downgrade to Gingerbread for Samsung Galaxy Note
I said this too many times, but I still want to say this, XDA members are wonderful and talented people. This time XDA member thehackersz posted the guide on how to downgrade to Gingerbread from ICS on Samsung Galaxy Note.
Why do we want to downgrade when we supposedly upgrade the OS? Sometime it might be loosing the root, sometime it might be buggier than we thought, and some might don't like the new OS. For whatever reason, downgrade sometime is the only option.
So here is the method:
- download any GB custom rom, copy to your sdcard
- download jBroid Kernel Cleaning, copy to yout sdcard
- download AbyssNote v4.2 kernel, copy to your sdcard
- download CF LPY kernel, EXTRACT zImage and copy to you sdcard.
- Mobile Odin, flash zImage
- reboot to CWM recovery
- flash jBroid Kernel Cleaning
- flash AbyssNote v4.2 kernel
- reboot recovery
- flash new GB custom rom
- flash new kernel (if you prefer other than AbyssNote kernel)
- FULL WIPE
- REBOOT
For the full thread, go to this:
http://forum.xda-developers.com/showthread.php?t=1654721
Warning: for International Samsung Galaxy Note only
Warning: you might brick your Samsung Galaxy Note in the process, be careful and I am not responsible if anything bad happen to your Samsung Galaxy Note.
Like this if you are FB user and you think this post is useful. The button is at top right of content of this post.
+1 this post if you are Google+ users and you think this post is useful.
Hope you will enjoy this post, subscribe to my RSS or mailing list or follow me on blogger or twitter. :)
source: XDA forum
Why do we want to downgrade when we supposedly upgrade the OS? Sometime it might be loosing the root, sometime it might be buggier than we thought, and some might don't like the new OS. For whatever reason, downgrade sometime is the only option.
So here is the method:
- download any GB custom rom, copy to your sdcard
- download jBroid Kernel Cleaning, copy to yout sdcard
- download AbyssNote v4.2 kernel, copy to your sdcard
- download CF LPY kernel, EXTRACT zImage and copy to you sdcard.
- Mobile Odin, flash zImage
- reboot to CWM recovery
- flash jBroid Kernel Cleaning
- flash AbyssNote v4.2 kernel
- reboot recovery
- flash new GB custom rom
- flash new kernel (if you prefer other than AbyssNote kernel)
- FULL WIPE
- REBOOT
For the full thread, go to this:
http://forum.xda-developers.com/showthread.php?t=1654721
Warning: for International Samsung Galaxy Note only
Warning: you might brick your Samsung Galaxy Note in the process, be careful and I am not responsible if anything bad happen to your Samsung Galaxy Note.
Like this if you are FB user and you think this post is useful. The button is at top right of content of this post.
+1 this post if you are Google+ users and you think this post is useful.
Hope you will enjoy this post, subscribe to my RSS or mailing list or follow me on blogger or twitter. :)
source: XDA forum
Thursday, June 2, 2011
Overclock for Samsung Galaxy S 2
XDA is just a wonderful place. You can find all sorts of apps for your smartphone (they even have a section for certain dump phones), all for free! So to overclock your Samsung Galaxy S2, read more after the jump......
The apps actually also support overclock for Galaxy S series as well, so if you have a Galaxy S and would like to try some adventurous apps, here is the one for you.
Find out the detail and instruction to download to your Galaxy S and Galaxy S 2:
http://forum.xda-developers.com/showthread.php?t=1101355
You also need to root it first.
WARNING: Overclock can be harm to your hardware. Use at your own risk.
Here are the list of supported Galaxy S and Galaxy S 2 family:
Available Galaxy S 2 Family
*GalaxyS2 (GT-I9100, Gingerbread 2.3.3)
*GalaxyS2 (SHW-M250S, Gingerbread 2.3.3)
*GalaxyS2 (SHW-M250K, Gingerbread 2.3.3)
*GalaxyS2 (SHW-M250L, Gingerbread 2.3.3)
Available Galaxy S Family
*Captivate (SGH-I897, Froyo 2.2 / 2.2.1)
*Captivate, Rogers (SGH-I896, Froyo 2.2 / 2.2.1)
*Epic 4G (SPH-D700, Froyo 2.2 / 2.2.1)
*Fascinate (SCH-I500, Froyo 2.2 / 2.2.1)
*Fascinate, Telus (SGH-T959D, Froyo 2.2 / 2.2.1)
*Galaxy S (GT-I9000, Gingerbread 2.3.3, Froyo 2.2 / 2.2.1)
*Galaxy S (GT-I9000M, Froyo 2.2 / 2.2.1)
*Galaxy S (GT-I9000B, Froyo 2.2 /2.2.1)
*Galaxy S (SHW-M110S, Gingerbread 2.3.3, Froyo 2.2 / 2.2.1)
*Galaxy K (SHW-M130K, Gingerbread 2.3.3, Froyo 2.2 / 2.2.1)
*Galaxy U (SHW-M130L, Gingerbread 2.3.3, Froyo 2.2 / 2.2.1)
*Galaxy Player (YP-GB1, Froyo 2.2.1)
*Galaxy Player (YP-GB70, Froyo 2.2.1)
*Galaxy S Hoppin (SHW-M190S, Froyo 2.2.1)
*Giorgio Armani Galaxy S (GT-I9010, Froyo 2.2 / 2.2.1)
*Mesmerize (SCH-I500, Froyo 2.2 / 2.2.1)
*Vibrant (SGH-T959, Froyo 2.2 / 2.2.1 )
*Vibrant Plus (SGH-T959V, Froyo 2.2 / 2.2.1)
Hope you will enjoy this post, subscribe to my RSS or mailing list or follow me on blogger or twitter. :)
source: XDA
The apps actually also support overclock for Galaxy S series as well, so if you have a Galaxy S and would like to try some adventurous apps, here is the one for you.
Find out the detail and instruction to download to your Galaxy S and Galaxy S 2:
http://forum.xda-developers.com/showthread.php?t=1101355
You also need to root it first.
WARNING: Overclock can be harm to your hardware. Use at your own risk.
Here are the list of supported Galaxy S and Galaxy S 2 family:
Available Galaxy S 2 Family
*GalaxyS2 (GT-I9100, Gingerbread 2.3.3)
*GalaxyS2 (SHW-M250S, Gingerbread 2.3.3)
*GalaxyS2 (SHW-M250K, Gingerbread 2.3.3)
*GalaxyS2 (SHW-M250L, Gingerbread 2.3.3)
Available Galaxy S Family
*Captivate (SGH-I897, Froyo 2.2 / 2.2.1)
*Captivate, Rogers (SGH-I896, Froyo 2.2 / 2.2.1)
*Epic 4G (SPH-D700, Froyo 2.2 / 2.2.1)
*Fascinate (SCH-I500, Froyo 2.2 / 2.2.1)
*Fascinate, Telus (SGH-T959D, Froyo 2.2 / 2.2.1)
*Galaxy S (GT-I9000, Gingerbread 2.3.3, Froyo 2.2 / 2.2.1)
*Galaxy S (GT-I9000M, Froyo 2.2 / 2.2.1)
*Galaxy S (GT-I9000B, Froyo 2.2 /2.2.1)
*Galaxy S (SHW-M110S, Gingerbread 2.3.3, Froyo 2.2 / 2.2.1)
*Galaxy K (SHW-M130K, Gingerbread 2.3.3, Froyo 2.2 / 2.2.1)
*Galaxy U (SHW-M130L, Gingerbread 2.3.3, Froyo 2.2 / 2.2.1)
*Galaxy Player (YP-GB1, Froyo 2.2.1)
*Galaxy Player (YP-GB70, Froyo 2.2.1)
*Galaxy S Hoppin (SHW-M190S, Froyo 2.2.1)
*Giorgio Armani Galaxy S (GT-I9010, Froyo 2.2 / 2.2.1)
*Mesmerize (SCH-I500, Froyo 2.2 / 2.2.1)
*Vibrant (SGH-T959, Froyo 2.2 / 2.2.1 )
*Vibrant Plus (SGH-T959V, Froyo 2.2 / 2.2.1)
Hope you will enjoy this post, subscribe to my RSS or mailing list or follow me on blogger or twitter. :)
source: XDA
Saturday, March 26, 2011
Flatbed scanner becomes multitouch panel
Someone from hackaday.com demonstrated his creation of multitouch panel by using components from old flatbed scanner. See the video after the jump.
I like DIY, but no space+time to do it. Nowadays I only do some easy and quick fixes for house appliances only. DO you like DIY?
Hope you will enjoy this post, subscribe to my RSS or mailing list or follow me on blogger or twitter. :)
Source: http://hackaday.com/2011/03/21/converting-a-scanner-into-a-touchscreen/
I like DIY, but no space+time to do it. Nowadays I only do some easy and quick fixes for house appliances only. DO you like DIY?
Hope you will enjoy this post, subscribe to my RSS or mailing list or follow me on blogger or twitter. :)
Source: http://hackaday.com/2011/03/21/converting-a-scanner-into-a-touchscreen/
Tuesday, March 22, 2011
hack and access any webcam?
Can we hack and access any webcam that is hook up to internet? Well, according to this guy he claim that he can, see the video after the jump:
The truth is YES, it can be done, but you have to get through the firewalls, etc etc. So the method is just working for webcam that is open to public. Go ahead, give it a try:
Just put this line in google.
inurl:/view/index.shtml
Let me show you how to google it :)
Hope you will enjoy this post, subscribe to my RSS or mailing list or follow me on blogger or twitter. :)
source:http://www.metacafe.com/watch/1779782/hack_and_access_any_webcam/
The truth is YES, it can be done, but you have to get through the firewalls, etc etc. So the method is just working for webcam that is open to public. Go ahead, give it a try:
Just put this line in google.
inurl:/view/index.shtml
Let me show you how to google it :)
Hope you will enjoy this post, subscribe to my RSS or mailing list or follow me on blogger or twitter. :)
source:http://www.metacafe.com/watch/1779782/hack_and_access_any_webcam/
Wednesday, March 16, 2011
Hacking video screens in Times Square
It is very expensive to advertise at Times Square, NY, or any other metropolitan, so someone come out any idea to hack or override the signal feeding into the big screen.
See the video, and no it is not fake, it is real.
This is not really magic, as long as his device is powerful enough to override what is actually feeding into the screen, he can override the signals and make the screen show his video. Also he need to make sure it is same frequency, otherwise the screen will not receive it.
Hope you will enjoy this post, subscribe to my RSS or mailing list or follow me on blogger or twitter. :) source: http://www.buzzfeed.com/edmondpielips/guy-hacks-times-square-video-screens-2vrp
See the video, and no it is not fake, it is real.
This is not really magic, as long as his device is powerful enough to override what is actually feeding into the screen, he can override the signals and make the screen show his video. Also he need to make sure it is same frequency, otherwise the screen will not receive it.
Hope you will enjoy this post, subscribe to my RSS or mailing list or follow me on blogger or twitter. :) source: http://www.buzzfeed.com/edmondpielips/guy-hacks-times-square-video-screens-2vrp
Sunday, January 9, 2011
TweakUI for Windows 7 (and Vista)
Microsoft never and will not release TweakUI (so far) for Windows 7. So if you don't find it comfortable to edit the registry of Windows 7 and Windows Vista, there a freeware tool out there for you to use.
Introducing WinBubble:
You can tweak Windows 7 (and Vista) to suite your need. You can hide and unhide lots of stuffs. So far I just use it to change the logon wallpapers only, haha, because haven't have the time to play with it.
I would recommend to run it as administrator, because tweak always need administrator permission. :)
For more info, go to this link:
WinBubble
There is also portable version available, so you don't need to worry about the installation, just unzip and use it.
Hope you will enjoy this post, subscribe to my RSS or mailing list or follow me on blogger or twitter. :)
Source: http://blog.unlockforus.org/
Introducing WinBubble:
You can tweak Windows 7 (and Vista) to suite your need. You can hide and unhide lots of stuffs. So far I just use it to change the logon wallpapers only, haha, because haven't have the time to play with it.
I would recommend to run it as administrator, because tweak always need administrator permission. :)
For more info, go to this link:
WinBubble
There is also portable version available, so you don't need to worry about the installation, just unzip and use it.
Hope you will enjoy this post, subscribe to my RSS or mailing list or follow me on blogger or twitter. :)
Source: http://blog.unlockforus.org/
Monday, January 3, 2011
How to change boring Office Communicator to not so boring
Do you use MS Office Communicator? Many companies actually allow Office Communicator, but block Windows Live Messenger (WLM) at the office. But communicator is very boring, super boring.
Unlike WLM, communicator don't have animated smiley, also you can't change the name/status as you like.
If you Google around, there are some solution to change the status of communicator, but you need to do some hacking, which some people don't like to do.
So Jak wrote a tool to help to change the status as you like. Also there is the problem with the hacking mentioned above, which is you need internet access, if your company don't allow internet access, there is nothing happen after the hacking, Mr Jak fixed that also.
My co-worker can't stop laughing with the "Busy being awesome" status. :D
Okay, you need to just download, install and change the status of communicator.
http://www.jak.cx/projects/office-communicator-custom-statuses/
Note: remember to run as administrator in Windows 7.
Hope you will enjoy this post, subscribe to my RSS or mailing list or follow me on blogger or twitter. :)
Source: www.jak.cx
Unlike WLM, communicator don't have animated smiley, also you can't change the name/status as you like.
If you Google around, there are some solution to change the status of communicator, but you need to do some hacking, which some people don't like to do.
So Jak wrote a tool to help to change the status as you like. Also there is the problem with the hacking mentioned above, which is you need internet access, if your company don't allow internet access, there is nothing happen after the hacking, Mr Jak fixed that also.
My co-worker can't stop laughing with the "Busy being awesome" status. :D
Okay, you need to just download, install and change the status of communicator.
http://www.jak.cx/projects/office-communicator-custom-statuses/
Note: remember to run as administrator in Windows 7.
Hope you will enjoy this post, subscribe to my RSS or mailing list or follow me on blogger or twitter. :)
Source: www.jak.cx
Wednesday, April 28, 2010
Keep emails and attachments on Storage Card for PPC
Free up your PPC device/internal memory by storing emails and attachments on storage card. The default setting on PPC is to store emails and attachment on internal memory, this create problem when you have a lot of emails and big attachments, it will eventually used up all the internal memory on your PPC.
As we know for PPC, the internal memory is limited to 64M(older PPC)/128M/256M(newer PPC), even you have 512M internal memory, it is still limited (sharing with other programs/files as well).
Okay, for PPC with build-in extended memory like Omnia, you should be fine, but I am not sure the default setting on Omnia is to store emails/attachments on device memory or extended memory (Too bad my brother sold his Omnia few month back, else I can check, if you know, please share with me :) )
Here are the steps:
1. Using the file manager in activesync or PPC (like Total Commander), create the following folders on your Storage Card.
2. Now browse to \Windows\Messaging (SmartPhone) or \Windows\MAPI (PocketPC)
3. Now use your registry editor (again, Total Commander can do this job) and navigate to the following registry:
4. Reboot/soft reset your PPC. For WM5, do wait for a while before you soft reset because the system need some time to save the registry. WM6 don't have this problem, you can soft reset immediately.
You should able to see your emails and attachments. If not, double check the string and path your added in registry are match the dir you created in Step1.
Enjoy!
p/s: I just perform these steps few days back after I hard reset my HTC Touch Elfin on Apr25, 2010. So I proved this is working for WM6.1!
also visit all the post related to HTC Touch on this blog:
http://outdatedpenanguncle.blogspot.com/search/label/HTC%20touch
also visit all the post related to tips on this blog:
http://outdatedpenanguncle.blogspot.com/search/label/tips
also visit all the post related to WinMo on this blog:
http://outdatedpenanguncle.blogspot.com/search/label/WinMo
Hope you will enjoy this post, subscribe to my RSS or mailing list or follow me on blogger or twitter. :)
As we know for PPC, the internal memory is limited to 64M(older PPC)/128M/256M(newer PPC), even you have 512M internal memory, it is still limited (sharing with other programs/files as well).
Okay, for PPC with build-in extended memory like Omnia, you should be fine, but I am not sure the default setting on Omnia is to store emails/attachments on device memory or extended memory (Too bad my brother sold his Omnia few month back, else I can check, if you know, please share with me :) )
Here are the steps:
1. Using the file manager in activesync or PPC (like Total Commander), create the following folders on your Storage Card.
\MAPI
\MAPI\ATTACHMENTS
Or you can name them whatever you want, "Inbox" or "Emails" for example.
2. Now browse to \Windows\Messaging (SmartPhone) or \Windows\MAPI (PocketPC)
Do this step only if you want to save all of your existing mail, move everything in this directory to the new ones on your Storage Card. I sync my emails from PC to PPC, so I don't need to keep them (I skip this step).
3. Now use your registry editor (again, Total Commander can do this job) and navigate to the following registry:
For WM5 Phones: [ HKEY_CURRENT_USER\Software\Microsoft\MAPI ]Then create the following STRING VALUES. Remember to use the paths you created in Step1, if you named them other than MAPI.
For WM6 Phones: [ HKEY_LOCAL_MACHINE\System\Inbox\Settings ]
Name: AttachPath
String: \Storage Card\MAPI\Attachments
Name: PropertyPath
String: \Storage Card\MAPI
4. Reboot/soft reset your PPC. For WM5, do wait for a while before you soft reset because the system need some time to save the registry. WM6 don't have this problem, you can soft reset immediately.
You should able to see your emails and attachments. If not, double check the string and path your added in registry are match the dir you created in Step1.
Enjoy!
p/s: I just perform these steps few days back after I hard reset my HTC Touch Elfin on Apr25, 2010. So I proved this is working for WM6.1!
also visit all the post related to HTC Touch on this blog:
http://outdatedpenanguncle.blogspot.com/search/label/HTC%20touch
also visit all the post related to tips on this blog:
http://outdatedpenanguncle.blogspot.com/search/label/tips
also visit all the post related to WinMo on this blog:
http://outdatedpenanguncle.blogspot.com/search/label/WinMo
Hope you will enjoy this post, subscribe to my RSS or mailing list or follow me on blogger or twitter. :)
Labels:
attachments,
email,
hacking,
HTC touch,
improve PPC,
ppc,
tips,
tutorial,
TweakUI,
WinMo
Friday, March 26, 2010
Windows or Macs, it still could be attack by hacker!
Just please careful, either on Windows or Macs. Read the news below:
Security Lessons Learned from Pwn2Own Contest
The CanSecWest security conference is going on this week in Vancouver. Part of the CanSecWest conference is the annual Pwn2Own contest where security researchers show off their hacking expertise and compete to exploit and compromise fully-patched systems--a challenge the security researchers seem to overcome with surprising ease year after year.
Two security researchers succeeded in exploiting a fully-updated iPhone 3GS in a matter of seconds--the first time the iPhone 2.0 has been hacked . Charlie Miller, famous for compromising a fully-patched Macbook the past two years, succeeded once again in hacking the Macbook to take the Pwn2Own prize. Another researcher bypassed Microsoft security controls like ASLR and DEP to compromise a 64-bit Windows 7 system.
There are two lessons for businesses to learn about security here, right off the bat. First, using Apple hardware and software is not an adequate defense, in and of itself. Despite the common perception that the Mac OS X operating system is just inherently more secure than Windows, the reality is that the primary reason Macs aren't attacked and compromised more often is that the platform with 92 percent market share promises malware developers a significantly higher return on investment than the platform with 5 percent market share.
Ironically, while there are admittedly no real malware threats circulating in the wild for the Mac OS X platform, the perception of inherent security makes Mac users more vulnerable in other ways. Many Mac users are so sure that the platform is impervious that they are oblivious to security concerns at all. Unfortunately for them, phishing attacks and identity theft are a function of social engineering more than security technology, and the lack of awareness makes Mac users more gullible.
The second lesson from Pwn2Own is that the browser is the new Achilles heel of security regardless of the hardware or software platform. The iPhone hack leveraged an unknown vulnerability in the Safari mobile Web browser. The Macbook attack by Charlie Miller also went through the Safari Web browser to get to the operating system. And, the 64-bit Windows 7 compromise relied on an exploit of Internet Explorer 8.
Contrary to the mantra to abandon Internet Explorer for "more secure" Web browsers, though, a recent study actually showed Internet Explorer 8 to perform significantly better than other browsers in defending against socially-engineered attacks. The operating system platform the browser is running on also has a significant impact on the security of the browser.
The number one lesson to take away from the Pwn2Own contest, though, isn't about which platform is more secure, or which browser was hacked the fastest. The important lesson to learn is that all platforms and browsers are vulnerable to an attacker with sufficient dedication and resources.
There is a common misperception that the targets of the Operation Aurora attacks earlier this year in China could have avoided being exploited and compromised had they just used a Web browser other than Internet Explorer.
This perception assumes that the attackers discovered a security hole in Internet Explorer, developed an exploit for it, and then sought out targets that use Internet Explorer as the default Web browser to attack and compromise. This logic seems reasonable because it fits--more or less--with the traditional model for malware attacks.
However, a targeted attack takes the opposite approach. A targeted attack identifies a target, researches what operating system, applications, and Web browser are used by the target, and then examines those products to find security vulnerabilities and develops exploits specifically aimed at compromising that specific target.
Using Mac OS X instead of Windows 7, or using Google Chrome instead of Microsoft Internet Explorer will not prevent a dedicated attacker from mounting a targeted attack.
I am not suggesting that you give up and simply abandon security. However, I am stressing that you not view anything as a security "silver bullet". It's not about choosing the right operating system, or the right Web browser, or even the right city.
Regardless of those choices, awareness and common sense are still the deciding factors in remaining secure. The Pwn2Own exploits against the iPhone and the Macbook both relied on luring the user to a malicious Web page to execute the attack. If users are aware of security risks, and have the common sense not to click on unknown or shady links, attacks such as these would not succeed.
Maybe Apple should go ahead and approve that Opera Mini Web browser for the iPhone so users have another, possibly more secure option than Safari, though. Just in case.
http://www.pcworld.com/businesscenter/article/192419/security_lessons_learned_from_pwn2own_contest.html
Security Lessons Learned from Pwn2Own Contest
The CanSecWest security conference is going on this week in Vancouver. Part of the CanSecWest conference is the annual Pwn2Own contest where security researchers show off their hacking expertise and compete to exploit and compromise fully-patched systems--a challenge the security researchers seem to overcome with surprising ease year after year.
Two security researchers succeeded in exploiting a fully-updated iPhone 3GS in a matter of seconds--the first time the iPhone 2.0 has been hacked . Charlie Miller, famous for compromising a fully-patched Macbook the past two years, succeeded once again in hacking the Macbook to take the Pwn2Own prize. Another researcher bypassed Microsoft security controls like ASLR and DEP to compromise a 64-bit Windows 7 system.
There are two lessons for businesses to learn about security here, right off the bat. First, using Apple hardware and software is not an adequate defense, in and of itself. Despite the common perception that the Mac OS X operating system is just inherently more secure than Windows, the reality is that the primary reason Macs aren't attacked and compromised more often is that the platform with 92 percent market share promises malware developers a significantly higher return on investment than the platform with 5 percent market share.
Ironically, while there are admittedly no real malware threats circulating in the wild for the Mac OS X platform, the perception of inherent security makes Mac users more vulnerable in other ways. Many Mac users are so sure that the platform is impervious that they are oblivious to security concerns at all. Unfortunately for them, phishing attacks and identity theft are a function of social engineering more than security technology, and the lack of awareness makes Mac users more gullible.
The second lesson from Pwn2Own is that the browser is the new Achilles heel of security regardless of the hardware or software platform. The iPhone hack leveraged an unknown vulnerability in the Safari mobile Web browser. The Macbook attack by Charlie Miller also went through the Safari Web browser to get to the operating system. And, the 64-bit Windows 7 compromise relied on an exploit of Internet Explorer 8.
Contrary to the mantra to abandon Internet Explorer for "more secure" Web browsers, though, a recent study actually showed Internet Explorer 8 to perform significantly better than other browsers in defending against socially-engineered attacks. The operating system platform the browser is running on also has a significant impact on the security of the browser.
The number one lesson to take away from the Pwn2Own contest, though, isn't about which platform is more secure, or which browser was hacked the fastest. The important lesson to learn is that all platforms and browsers are vulnerable to an attacker with sufficient dedication and resources.
There is a common misperception that the targets of the Operation Aurora attacks earlier this year in China could have avoided being exploited and compromised had they just used a Web browser other than Internet Explorer.
This perception assumes that the attackers discovered a security hole in Internet Explorer, developed an exploit for it, and then sought out targets that use Internet Explorer as the default Web browser to attack and compromise. This logic seems reasonable because it fits--more or less--with the traditional model for malware attacks.
However, a targeted attack takes the opposite approach. A targeted attack identifies a target, researches what operating system, applications, and Web browser are used by the target, and then examines those products to find security vulnerabilities and develops exploits specifically aimed at compromising that specific target.
Using Mac OS X instead of Windows 7, or using Google Chrome instead of Microsoft Internet Explorer will not prevent a dedicated attacker from mounting a targeted attack.
I am not suggesting that you give up and simply abandon security. However, I am stressing that you not view anything as a security "silver bullet". It's not about choosing the right operating system, or the right Web browser, or even the right city.
Regardless of those choices, awareness and common sense are still the deciding factors in remaining secure. The Pwn2Own exploits against the iPhone and the Macbook both relied on luring the user to a malicious Web page to execute the attack. If users are aware of security risks, and have the common sense not to click on unknown or shady links, attacks such as these would not succeed.
Maybe Apple should go ahead and approve that Opera Mini Web browser for the iPhone so users have another, possibly more secure option than Safari, though. Just in case.
http://www.pcworld.com/businesscenter/article/192419/security_lessons_learned_from_pwn2own_contest.html
Wednesday, February 3, 2010
Still using Windows XP r?
Yes. There are a lot of people still using Windows XP, especially those corporate users still using Windows XP because it is much much more stable than Windows Vista. And why do you need to upgrade to Windows7 if all your stuffs working in Windows XP? If using existing hardware to upgrade to Windows7, most of the time you will suffer, a lot! For small and medium companies, where got money to do these sort of crazy thing? So for Windows XP user out there, something for you to play with Windows XP setting. WARNING: for expert user only. Do not blame me if your computer/laptop/desktop/Windows XP corrupted or suffer some errors after try the stuffs below! :P
Microsoft PowerToys for Windows XP:
http://www.microsoft.com/windowsxp/Downloads/powertoys/Xppowertoys.mspx
10 cool things you can do with TweakUI:
http://blogs.techrepublic.com.com/10things/?p=1203
Microsoft PowerToys for Windows XP:
http://www.microsoft.com/windowsxp/Downloads/powertoys/Xppowertoys.mspx
10 cool things you can do with TweakUI:
http://blogs.techrepublic.com.com/10things/?p=1203
Subscribe to:
Posts (Atom)