Saturday, November 3, 2018

Cyber Security Tips for Your Users

10 Most Important Cyber Security Tips For Your Users:

No matter how effective—or expensive—the security tools protecting your network are, there’s no way to predict the damage caused by a single careless user. The war against cyber criminals is fought each time a user decides to click an unfamiliar link or open an attachment—and just a single mistake could be the reason for massive data loss.

Read our top 10 Cyber Security tips below:

1. You Are A Target. 

 

 

Realize that you are an attractive target to hackers. Don’t ever say “It won’t happen to me.”

 

 

 

2. Eight Characters Is Not Enough.

Practice good password management. Use a strong mix of characters, and don’t use the same password for multiple sites. Don’t share your password with others, don’t write it down, and definitely don’t write it on a post-it note attached to your monitor.

 

3. Lock It Up.



Never leave your devices unattended. If you need to leave your computer, phone, or tablet for any length of time—no matter how short—lock it up so no one can use it while you’re gone. If you keep sensitive information on a flash drive or external hard drive, make sure to lock it up as well.





4. Practice Safe Clicking.

Always be careful when clicking on attachments or links in email. If it’s unexpected or suspicious for any reason, don’t click on it. Double check the URL of the website the link takes you to: bad actors will often take advantage of spelling mistakes to direct you to a harmful domain.



5. Beware Of Browsing.


Sensitive browsing, such as banking or shopping, should only be done on a device that belongs to you, on a network that you trust. Whether it’s a friend’s phone, a public computer, or a cafe’s free WiFi—your data could be copied or stolen.



6. Back It Up.


Back up your data regularly, and make sure your anti-virus software is always up to date.





7. Physical Cyber Safety.


Be conscientious of what you plug in to your computer. Malware can be spread through infected flash drives, external hard drives, and even smartphones.





8. Share Less Sensitive Information.


Watch what you’re sharing on social networks. Criminals can befriend you and easily gain access to a shocking amount of information—where you go to school, where you work, when you’re on vacation—that could help them gain access to more valuable data.



9. Cut Out The “Middle Man”.

Offline, be wary of social engineering, where someone attempts to gain information from you through manipulation. If someone calls or emails you asking for sensitive information, it’s okay to say no. You can always call the company directly to verify credentials before giving out any information.



10. Stay On Top Of  Your Accounts.


Be sure to monitor your accounts for any suspicious activity. If you see something unfamiliar, it could be a sign that you’ve been compromised.

 

Thursday, November 1, 2018

Why C is The Default Drive in Windows?

Here is Your Answer

A question that has bothered almost everyone of us at some point of time has been answered

Computers, which were thought as a luxury few years ago are now a necessity. Computers are making lives easier for almost everyone. Windows is a dominant OS used by majority of computer users. Actually it is used mostly in fields where computers have to be used for non technical tasks.(And hence those trolls on Facebook, describing how Linux wins).

There are many things which are usually ignored, And the question on naming of default drive in Windows is one of them.

It could be anything if it had to be C as it does not follow any order. Logically A should be the default drive.

Then why? why did Windows do this?

Actually the reason is something historical. And it is related to the classic floppy drives . Before hard disks became standard(1980), floppy disks were used for booting the computers. These were available in two sizes at that time: 5 1/4 ” and 3 1/2?.

Those two floppy disk drives were labelled as Local Disk (A) and Local Disk (B). After the invention of Hard disk, floppy disk of size 8 inch came into existence.

The hard disk drive was named C. Once hard disks became standard and floppy disks became obsolete, the drive names A and B vanished.

As a result , drives other than default drive (C) labelled as D, E etc. DVD drive and USB drive are labelled as F, G and so on.

This is the answer of our question.

Despite of all this, you can rename your default it to whatever letter you want( if no other drive is present with same alphabet as its name) if you have administrative rights.

If you have one such question that you think has been ignored for a long time and should be searched for answers, you can post it here in the comments.

 

 

 

Sunday, October 28, 2018

What is Surface Web, Dark Web, Deep Web and Dark Net??


Understanding:

Well if you are a tech enthusiast, you must have come across these words just like I have a lot of times! But I had never looked so deeply into finding out the differences as I thought deep web and darknet are the same, but it’s not. So, let’s understand the difference between Surface Web, Deep Web, Dark Web and Darknet. Also understand what darknet browsers are needed to enter darkweb and darknet.

What Is Surface Web?? 

Let me tell you one thing, if you are reading this blog then you are exploring the surface part of the web. The websites, webpages and information that you find using web search engine like Google, Yahoo, Bing, etc. only portray that you are exploring just the surface of the web. Search Engines use the crawling process to index the webpages. Thus, the general public access only surface web. Now, let’s go little deeper.

Did You Know??

4% of the content is only available for the general public in the entire ocean of the web.

What Is Deep Web??

The content that you cannot find using the search engine is termed as deep web. For example- If you search for something specific in the search engine it will give you many links and you will only find the content that you are looking for after clicking those links. Every website has its own search box. Thus the search engine’s search is limited to navigate the website. It won’t give you the links that are deep inside the website even if your search is specific. You have to go through different websites to find the particular link.


In simple terms, there are places in web that cannot be accessed by search engines but can be accessed if you have an address.

Did You Know?? 

96% of the content is available in the entire ocean of web.

What Is Dark Web??

The data that are purposefully unrevealed and is not attainable through any standard web browsers is termed as dark web. Dark Web is mostly used for illegal and nefarious activities. The content inside Dark Web is usually found using the Tor network.

Did You Know??

Have you heard of the Silk Road? It is an online black market, infamous for selling and purchasing illegal drugs. In October 2013, FBI shutdown the website and arrested the owner but still in November 2013 Silk Road 2.0 came online. It was shutdown again by the FBI in 2014.

What Is darkNet??

A different network that is encrypted and is created upon the existing internet is Darknet. It can only be accessed by using some specific configuration of the tools and software.

DarkNet Browsers: 

Some of the popular darknet browsers are Freenet, Tor, GNUnet, I2P, OneSwarm, RetroShare, etc.


Two types- i. Friend-to-friend networks (used for sharing files using peer-to-peer connection) ii. Privacy networks (such as Tor). Darknet is mainly used for doing illegal activities- computer crime, Purchase or sell illegal goods and services, news leaks, mass surveillance, pirated movies, child pornography, etc.

Did you know?

Tor Browser is not totally secure and has vulnerabilities through which attackers may be able to find who is using a Tor Browser. Maximizing the Tor Browser can reveal the window and screen size.

 

 

Saturday, September 22, 2018

What Is 127.0.0.1 (Local Host)??- In Hindi

Computer Localhost Kya Hai(क्या है)?

Computer Localhost वर्ड को आप सभी ने बहुत से लोगो से सुना होगा. But क्या आपको पता है की Computer Localhost Kya Hai(क्या है)? or 127.0.0.1 kya hai (क्या है)? और किस लिए Use होता है. अगर नहीं पता है तो आप बिलकुल सही जगह है, क्योकि अगर आप Website Development या Computer हैकिंग का practice करना चाहते है. तो इसके लिए Computer Localhost के बारे में जानकारी रखना बहुत जरुरी है. क्योकि ये दोनों Practice करने के लिए एक Server की जरुरत होती है और Localhost से ही सबसे सस्ता और सबसे Safe Server बना सकते है.

  • Computer Localhost Kya Hai(क्या है)? या 127.0.0.1 kya hota hai(क्या होता है)?

    Localhost यानि 127.0.0.1 Microsoft Computers का Local Server या local Network होता है. जिसके Help से Windows Computer को एक Local Web Server बनाया जा सकता है और सभी HTTP Web Application को Offline run/test किया जा सकता है. इसे Internet Information Services (IIS) के नाम भी जाना जाता है. अगर आप Website Development करते है और आप अपने Website को HTTP Web पर test करना चाहते है तो आप IIS Feature को Enable करके अपने Computer को एक Web Server बना सकते है और कंप्यूटर पर ही वेबसाइट को टेस्ट कर सकते है.

    अक्सर आप सभी ने Ethical Hacker या black Hat Hacker से ये सुना होगा की Localhost जैसा और कोई जगह नहीं है. Hacking Practice करने के लिए और सीखने के लिए, तो ऐसा इसलिए है क्योकि Localhost पर किसी भी तरह के हैकिंग practice करना legal है और आप अपने Computer पर कुछ भी कर सकते है 

    आप सभी को शायद पता ना हो, Internet Network पर जितने भी Website, Web Applications, Servers मौजूद है इन सभी के पास दो तरह के Address होते है. 

    Physical Address: Localhost, Google.com, Facebook.com, blogspot.com ये सभी Physical Address है और इन्हें हम नाम से याद कर सकते है.

    Logical Address: हर एक Web Application, Servers का जो Original Address होता है वह IP (Internet Protocol) के रूप में होता है. जैसे की Localhost का 127.0.0.1, इसे ARP (Address Resolution Protocol) की मदद से Physical Address में कन्वर्ट किया जाता है ताकि लोगो को नाम याद रखने में आसानी हो.

    • दोस्तों, यहाँ पर बताया गया है की  Computer Localhost Kya Hai(क्या है)? या 127.0.0.1 kya hai (क्या है)? अगर आप Server Side Website (PHP, JSP, ASP) बनाना चाहते है तो आपको ये पता होना चाहिए की localhost kya hai (क्या है) क्योकि कोई भी Dynamic Website बिना Server के run नहीं होता है और Localhost सबसे सस्ता और सबसे अच्छा Server है. दोस्तों अगर आपको ये Computer और Networking इनफार्मेशन पसंद आया हो तो आप इसे Share जरुर करे 

     

Tuesday, September 18, 2018

Types of Hackers

7 Types of Hackers You Should Know

 

  • Script Kiddie – Script Kiddies normally don’t care about hacking (if they did, they’d be Green Hats. See below.). They copy code and use it for a virus or an SQLi or something else. Script Kiddies will never hack for themselves; they’ll just download overused software (LOIC or Metasploit, for example) and watch a YouTube video on how to use it. A common Script Kiddie attack is DoSing or DDoSing (Denial of Service and Distributed Denial of Service), in which they flood an IP with so much information it collapses under the strain. This attack is frequently used by the “hacker” group Anonymous, which doesn’t help anyone’s reputation.

  • White Hat – Also known as ethical hackers, White Hat hackers are the good guys of the hacker world. They’ll help you remove a virus or PenTest a company. Most White Hat hackers hold a college degree in IT security or computer science and must be certified to pursue a career in hacking. The most popular certification is the CEH (Certified Ethical Hacker) from the EC-Council.

  • Black Hat – Also known as crackers, these are the men and women you hear about in the news. They find banks or other companies with weak security and steal money or credit card information. The surprising truth about their methods of attack is that they often use common hacking practices they learned early on. 

  • Gray Hat – Nothing is ever just black or white; the same is true in the world of hacking. Gray Hat hackers don’t steal money or information (although, sometimes they deface a website or two), yet they don’t help people for good (but, they could if they wanted to). These hackers comprise most of the hacking world, even though Black Hat hackers garner most (if not all) of the media’s attention.  

  • Green Hat – These are the hacker “n00bz,” but unlike Script Kiddies, they care about hacking and strive to become full-blown hackers. They’re often flamed by the hacker community for asking many basic questions. When their questions are answered, they’ll listen with the intent and curiosity of a child listening to family stories. 

  • Red Hat – These are the vigilantes of the hacker world. They’re like White Hats in that they halt Black Hats, but these folks are downright SCARY to those who have ever tried so much as PenTest. Instead of reporting the malicious hacker, they shut him/her down by uploading viruses, DoSing and accessing his/her computer to destroy it from the inside out. They leverage multiple aggressive methods that might force a cracker to need a new computer.

  • Blue Hat – If a Script Kiddie took revenge, he/she might become a Blue Hat. Blue Hat hackers will seek vengeance on those who’ve them angry. Most Blue Hats are n00bz, but like the Script Kiddies, they have no desire to learn.

There you have it. Thanks for reading.  

Monday, September 10, 2018

What is Two Step Verification in Whatsapp???

WhatsApp two step verification:

WhatsApp has started rolling out the two step
verification security feature for its users on Android, iOS and Windows. As a part of the new feature, users will be able to verify their number on the app on a new device more securely by using a six-digit passcode.
But how secure or easy is the new feature? Here are four reasons why you could ignore the new security feature:

1) Mail trail or trouble?

The new two step verification feature provides an option to assign an email address for recovery purposes. But it is not mandatory. So if a user forgets to assign an email address, he or she will have no way to recover the forgotten password without entering an email address for the next seven days from the last time the app has been used.


2) Mail verification and exposed to promotions
WhatsApp, in case you provide an email address to activate the two-step verification, doesn’t verify the email address and hence opens the window for pranksters. The company may not be able to figure out if a user is providing a genuine email address however that might backfire on the user.

Even though the mail id is not verified, there are chances of being exposed to unwanted clutter of promotional messages and security threats.

3) Risk of deletion of chats post re-verification

The two step verification process brings with itself a risk of chats deletion. Once a user reverifies his or her account after 7 days without a passcode, then that user will lose all pending messages upon reverifying - they will be deleted.
Also, if a user reverifies his number on WhatsApp after 30 days of last using WhatsApp, and without a passcode, that particular account will be deleted and a new one will be created upon successfully reverifying.

4) Annoying passcode remembering exercises

Just like annoying pop-ups, WhatsApp’s two-step verification once enabled, may periodically ask users to enter the passcode in trying to help users to remember it. Unfortunately, there is no method to disable this nagging prompt without turning off two-step verification altogether. So much for safety.

Friday, September 7, 2018

What is encryption?

Encryption:


In computing, encryption is the method by which plaintext or any other type of data is converted from a readable form to an encoded version that can only be decoded by another entity if they have access to a decryption key. Encryption is one of the most important methods for providing data security, especially for end-to-end protection of data transmitted across networks.

Encryption is widely used on the internet to protect user information being sent between a browser and a server, including passwords, payment information and other personal information that should be considered private. Organizations and individuals also commonly use encryption to protect sensitive data stored on computers, servers and mobile devices like phones or tablets.

Benefits of encryption:


The primary purpose of encryption is to protect the confidentiality of digital data stored on computer systems or transmitted via the internet or any other computer network. A number of organizations and standards bodies either recommend or require sensitive data to be encrypted in order to prevent unauthorized third parties or threat actors from accessing the data. For example, the Payment Card Industry Data Security Standard requires merchants to encrypt customers' payment card data when it is both stored at rest and transmitted across public networks.

Modern encryption algorithms also play a vital role in the security assurance of IT systems and communications as they can provide not only confidentiality, but also the following key elements of security:

  • Authentication: the origin of a message can be verified.
  • Integrity: proof that the contents of a message have not been changed since it was sent.
  • Nonrepudiation: the sender of a message cannot deny sending the message.

Free WiFi Is Not As Safe As You Think! - In Hindi

फ्री Wi-fi इस्तेमाल करें, लेकिन संभलकर स्मार्टफोन हो, टैबलेट या फिर लैपटॉप. Internet की सुविधा के बिना इन तीनों की उपयोगिता बेमानी लग...