<?xml version='1.0' encoding='UTF-8'?><?xml-stylesheet href="http://www.blogger.com/styles/atom.css" type="text/css"?><feed xmlns='http://www.w3.org/2005/Atom' xmlns:openSearch='http://a9.com/-/spec/opensearchrss/1.0/' xmlns:georss='http://www.georss.org/georss' xmlns:gd='http://schemas.google.com/g/2005' xmlns:thr='http://purl.org/syndication/thread/1.0'><id>tag:blogger.com,1999:blog-5042359632580496092</id><updated>2012-02-16T17:40:44.311-08:00</updated><category term='Internet'/><category term='Computer Network and Security'/><category term='Internet Business'/><title type='text'>TRICKS-ONLINE</title><subtitle type='html'>tricks and tips for your life, there are hacking tips, internet tips, days tips, and other tips and tricks thats you need</subtitle><link rel='http://schemas.google.com/g/2005#feed' type='application/atom+xml' href='http://tricks-online.blogspot.com/feeds/posts/default'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/5042359632580496092/posts/default?max-results=100'/><link rel='alternate' type='text/html' href='http://tricks-online.blogspot.com/'/><link rel='hub' href='http://pubsubhubbub.appspot.com/'/><author><name>Haris Ainur Rozak</name><uri>http://www.blogger.com/profile/10792882402348607576</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='31' src='http://3.bp.blogspot.com/_W9mLVR5IXXE/TPe75L0FuUI/AAAAAAAAAFk/vbzJxbkO4eM/S220/n1504300046_30095369_4951961.jpg'/></author><generator version='7.00' uri='http://www.blogger.com'>Blogger</generator><openSearch:totalResults>10</openSearch:totalResults><openSearch:startIndex>1</openSearch:startIndex><openSearch:itemsPerPage>100</openSearch:itemsPerPage><entry><id>tag:blogger.com,1999:blog-5042359632580496092.post-2491878809194153832</id><published>2008-10-29T07:41:00.000-07:00</published><updated>2008-10-29T07:54:00.950-07:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='Internet'/><title type='text'>Windows Keyboard Shortcuts for Mozilla Firefox</title><content type='html'>&lt;table style="width: 661px; height: 567px;" class="tb590"&gt;&lt;tbody&gt;&lt;tr&gt;&lt;td class="kyb2" colspan="5"&gt;&lt;br /&gt;&lt;/td&gt;&lt;td style="vertical-align: top;"&gt;&lt;span style="font-size:130%;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/td&gt;&lt;td style="vertical-align: top;"&gt;&lt;span style="font-size:130%;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/td&gt;&lt;td style="vertical-align: top;"&gt;&lt;span style="font-size:130%;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/td&gt;&lt;td style="vertical-align: top;"&gt;&lt;span style="font-size:130%;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/td&gt;&lt;td style="vertical-align: top;"&gt;&lt;span style="font-size:130%;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/td&gt;&lt;td style="vertical-align: top;"&gt;&lt;span style="font-size:130%;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/td&gt; &lt;/tr&gt; &lt;tr&gt; &lt;td class="kyb1"&gt;&lt;span style="font-size:130%;"&gt;CTRL + A&lt;/span&gt;&lt;/td&gt; &lt;td style="vertical-align: top;"&gt;&lt;span style="font-size:130%;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/td&gt;&lt;td style="vertical-align: top;"&gt;&lt;span style="font-size:130%;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/td&gt;&lt;td style="vertical-align: top;"&gt;&lt;span style="font-size:130%;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/td&gt;&lt;td class="kyb2"&gt;&lt;span style="font-size:130%;"&gt;Select all text on a webpage&lt;/span&gt;&lt;/td&gt;&lt;td style="vertical-align: top;"&gt;&lt;span style="font-size:130%;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/td&gt;&lt;td style="vertical-align: top;"&gt;&lt;span style="font-size:130%;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/td&gt;&lt;td style="vertical-align: top;"&gt;&lt;span style="font-size:130%;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/td&gt;&lt;td style="vertical-align: top;"&gt;&lt;span style="font-size:130%;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/td&gt;&lt;td style="vertical-align: top;"&gt;&lt;span style="font-size:130%;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/td&gt;&lt;td style="vertical-align: top;"&gt;&lt;span style="font-size:130%;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/td&gt; &lt;/tr&gt; &lt;tr&gt; &lt;td class="kyb1"&gt;&lt;span style="font-size:130%;"&gt;CTRL + B&lt;/span&gt;&lt;/td&gt; &lt;td style="vertical-align: top;"&gt;&lt;span style="font-size:130%;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/td&gt;&lt;td style="vertical-align: top;"&gt;&lt;span style="font-size:130%;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/td&gt;&lt;td style="vertical-align: top;"&gt;&lt;span style="font-size:130%;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/td&gt;&lt;td class="kyb2"&gt;&lt;span style="font-size:130%;"&gt;Open the Bookmarks sidebar&lt;/span&gt;&lt;/td&gt;&lt;td style="vertical-align: top;"&gt;&lt;span style="font-size:130%;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/td&gt;&lt;td style="vertical-align: top;"&gt;&lt;span style="font-size:130%;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/td&gt;&lt;td style="vertical-align: top;"&gt;&lt;span style="font-size:130%;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/td&gt;&lt;td style="vertical-align: top;"&gt;&lt;span style="font-size:130%;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/td&gt;&lt;td style="vertical-align: top;"&gt;&lt;span style="font-size:130%;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/td&gt;&lt;td style="vertical-align: top;"&gt;&lt;span style="font-size:130%;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/td&gt; &lt;/tr&gt; &lt;tr&gt; &lt;td class="kyb1"&gt;&lt;span style="font-size:130%;"&gt;CTRL + C&lt;/span&gt;&lt;/td&gt; &lt;td style="vertical-align: top;"&gt;&lt;span style="font-size:130%;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/td&gt;&lt;td style="vertical-align: top;"&gt;&lt;span style="font-size:130%;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/td&gt;&lt;td style="vertical-align: top;"&gt;&lt;span style="font-size:130%;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/td&gt;&lt;td class="kyb2"&gt;&lt;span style="font-size:130%;"&gt;Copy the selected text to the Windows clipboard&lt;/span&gt;&lt;/td&gt;&lt;td style="vertical-align: top;"&gt;&lt;span style="font-size:130%;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/td&gt;&lt;td style="vertical-align: top;"&gt;&lt;span style="font-size:130%;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/td&gt;&lt;td style="vertical-align: top;"&gt;&lt;span style="font-size:130%;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/td&gt;&lt;td style="vertical-align: top;"&gt;&lt;span style="font-size:130%;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/td&gt;&lt;td style="vertical-align: top;"&gt;&lt;span style="font-size:130%;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/td&gt;&lt;td style="vertical-align: top;"&gt;&lt;span style="font-size:130%;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/td&gt; &lt;/tr&gt; &lt;tr&gt; &lt;td class="kyb1"&gt;&lt;span style="font-size:130%;"&gt;CTRL + D&lt;/span&gt;&lt;/td&gt; &lt;td style="vertical-align: top;"&gt;&lt;span style="font-size:130%;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/td&gt;&lt;td style="vertical-align: top;"&gt;&lt;span style="font-size:130%;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/td&gt;&lt;td style="vertical-align: top;"&gt;&lt;span style="font-size:130%;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/td&gt;&lt;td class="kyb2"&gt;&lt;span style="font-size:130%;"&gt;Bookmark the current webpage&lt;/span&gt;&lt;/td&gt;&lt;td style="vertical-align: top;"&gt;&lt;span style="font-size:130%;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/td&gt;&lt;td style="vertical-align: top;"&gt;&lt;span style="font-size:130%;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/td&gt;&lt;td style="vertical-align: top;"&gt;&lt;span style="font-size:130%;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/td&gt;&lt;td style="vertical-align: top;"&gt;&lt;span style="font-size:130%;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/td&gt;&lt;td style="vertical-align: top;"&gt;&lt;span style="font-size:130%;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/td&gt;&lt;td style="vertical-align: top;"&gt;&lt;span style="font-size:130%;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/td&gt; &lt;/tr&gt; &lt;tr&gt; &lt;td class="kyb1"&gt;&lt;span style="font-size:130%;"&gt;CTRL + F&lt;/span&gt;&lt;/td&gt; &lt;td style="vertical-align: top;"&gt;&lt;span style="font-size:130%;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/td&gt;&lt;td style="vertical-align: top;"&gt;&lt;span style="font-size:130%;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/td&gt;&lt;td style="vertical-align: top;"&gt;&lt;span style="font-size:130%;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/td&gt;&lt;td class="kyb2"&gt;&lt;span style="font-size:130%;"&gt;Find text within the current webpage&lt;/span&gt;&lt;/td&gt;&lt;td style="vertical-align: top;"&gt;&lt;span style="font-size:130%;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/td&gt;&lt;td style="vertical-align: top;"&gt;&lt;span style="font-size:130%;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/td&gt;&lt;td style="vertical-align: top;"&gt;&lt;span style="font-size:130%;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/td&gt;&lt;td style="vertical-align: top;"&gt;&lt;span style="font-size:130%;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/td&gt;&lt;td style="vertical-align: top;"&gt;&lt;span style="font-size:130%;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/td&gt;&lt;td style="vertical-align: top;"&gt;&lt;span style="font-size:130%;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/td&gt; &lt;/tr&gt; &lt;tr&gt; &lt;td class="kyb1"&gt;&lt;span style="font-size:130%;"&gt;CTRL + G&lt;/span&gt;&lt;/td&gt; &lt;td style="vertical-align: top;"&gt;&lt;span style="font-size:130%;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/td&gt;&lt;td style="vertical-align: top;"&gt;&lt;span style="font-size:130%;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/td&gt;&lt;td style="vertical-align: top;"&gt;&lt;span style="font-size:130%;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/td&gt;&lt;td class="kyb2"&gt;&lt;span style="font-size:130%;"&gt;Find more text within the same webpage&lt;/span&gt;&lt;/td&gt;&lt;td style="vertical-align: top;"&gt;&lt;span style="font-size:130%;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/td&gt;&lt;td style="vertical-align: top;"&gt;&lt;span style="font-size:130%;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/td&gt;&lt;td style="vertical-align: top;"&gt;&lt;span style="font-size:130%;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/td&gt;&lt;td style="vertical-align: top;"&gt;&lt;span style="font-size:130%;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/td&gt;&lt;td style="vertical-align: top;"&gt;&lt;span style="font-size:130%;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/td&gt;&lt;td style="vertical-align: top;"&gt;&lt;span style="font-size:130%;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/td&gt; &lt;/tr&gt; &lt;tr&gt; &lt;td class="kyb1"&gt;&lt;span style="font-size:130%;"&gt;CTRL + H&lt;/span&gt;&lt;/td&gt; &lt;td style="vertical-align: top;"&gt;&lt;span style="font-size:130%;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/td&gt;&lt;td style="vertical-align: top;"&gt;&lt;span style="font-size:130%;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/td&gt;&lt;td style="vertical-align: top;"&gt;&lt;span style="font-size:130%;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/td&gt;&lt;td class="kyb2"&gt;&lt;span style="font-size:130%;"&gt;Opens the webpage History sidebar&lt;/span&gt;&lt;/td&gt;&lt;td style="vertical-align: top;"&gt;&lt;span style="font-size:130%;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/td&gt;&lt;td style="vertical-align: top;"&gt;&lt;span style="font-size:130%;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/td&gt;&lt;td style="vertical-align: top;"&gt;&lt;span style="font-size:130%;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/td&gt;&lt;td style="vertical-align: top;"&gt;&lt;span style="font-size:130%;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/td&gt;&lt;td style="vertical-align: top;"&gt;&lt;span style="font-size:130%;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/td&gt;&lt;td style="vertical-align: top;"&gt;&lt;span style="font-size:130%;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/td&gt; &lt;/tr&gt; &lt;tr&gt; &lt;td class="kyb1"&gt;&lt;span style="font-size:130%;"&gt;CTRL + I&lt;/span&gt;&lt;/td&gt; &lt;td style="vertical-align: top;"&gt;&lt;span style="font-size:130%;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/td&gt;&lt;td style="vertical-align: top;"&gt;&lt;span style="font-size:130%;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/td&gt;&lt;td style="vertical-align: top;"&gt;&lt;span style="font-size:130%;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/td&gt;&lt;td class="kyb2"&gt;&lt;span style="font-size:130%;"&gt;Open the Bookmarks sidebar&lt;/span&gt;&lt;/td&gt;&lt;td style="vertical-align: top;"&gt;&lt;span style="font-size:130%;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/td&gt;&lt;td style="vertical-align: top;"&gt;&lt;span style="font-size:130%;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/td&gt;&lt;td style="vertical-align: top;"&gt;&lt;span style="font-size:130%;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/td&gt;&lt;td style="vertical-align: top;"&gt;&lt;span style="font-size:130%;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/td&gt;&lt;td style="vertical-align: top;"&gt;&lt;span style="font-size:130%;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/td&gt;&lt;td style="vertical-align: top;"&gt;&lt;span style="font-size:130%;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/td&gt; &lt;/tr&gt; &lt;tr&gt; &lt;td class="kyb1"&gt;&lt;span style="font-size:130%;"&gt;CTRL + J&lt;/span&gt;&lt;/td&gt; &lt;td style="vertical-align: top;"&gt;&lt;span style="font-size:130%;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/td&gt;&lt;td style="vertical-align: top;"&gt;&lt;span style="font-size:130%;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/td&gt;&lt;td style="vertical-align: top;"&gt;&lt;span style="font-size:130%;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/td&gt;&lt;td class="kyb2"&gt;&lt;span style="font-size:130%;"&gt;Opens the Download Dialogue Box&lt;/span&gt;&lt;/td&gt;&lt;td style="vertical-align: top;"&gt;&lt;span style="font-size:130%;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/td&gt;&lt;td style="vertical-align: top;"&gt;&lt;span style="font-size:130%;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/td&gt;&lt;td style="vertical-align: top;"&gt;&lt;span style="font-size:130%;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/td&gt;&lt;td style="vertical-align: top;"&gt;&lt;span style="font-size:130%;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/td&gt;&lt;td style="vertical-align: top;"&gt;&lt;span style="font-size:130%;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/td&gt;&lt;td style="vertical-align: top;"&gt;&lt;span style="font-size:130%;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/td&gt; &lt;/tr&gt; &lt;tr&gt; &lt;td class="kyb1"&gt;&lt;span style="font-size:130%;"&gt;CTRL + K&lt;/span&gt;&lt;/td&gt; &lt;td style="vertical-align: top;"&gt;&lt;span style="font-size:130%;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/td&gt;&lt;td style="vertical-align: top;"&gt;&lt;span style="font-size:130%;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/td&gt;&lt;td style="vertical-align: top;"&gt;&lt;span style="font-size:130%;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/td&gt;&lt;td class="kyb2"&gt;&lt;span style="font-size:130%;"&gt;Places the cursor in the Web Search box ready to type your search&lt;/span&gt;&lt;/td&gt;&lt;td style="vertical-align: top;"&gt;&lt;span style="font-size:130%;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/td&gt;&lt;td style="vertical-align: top;"&gt;&lt;span style="font-size:130%;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/td&gt;&lt;td style="vertical-align: top;"&gt;&lt;span style="font-size:130%;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/td&gt;&lt;td style="vertical-align: top;"&gt;&lt;span style="font-size:130%;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/td&gt;&lt;td style="vertical-align: top;"&gt;&lt;span style="font-size:130%;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/td&gt;&lt;td style="vertical-align: top;"&gt;&lt;span style="font-size:130%;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/td&gt; &lt;/tr&gt; &lt;tr&gt; &lt;td class="kyb1"&gt;&lt;span style="font-size:130%;"&gt;CTRL + L&lt;/span&gt;&lt;/td&gt; &lt;td style="vertical-align: top;"&gt;&lt;span style="font-size:130%;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/td&gt;&lt;td style="vertical-align: top;"&gt;&lt;span style="font-size:130%;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/td&gt;&lt;td style="vertical-align: top;"&gt;&lt;span style="font-size:130%;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/td&gt;&lt;td class="kyb2"&gt;&lt;span style="font-size:130%;"&gt;Places the cursor into the URL box ready to type a website address&lt;/span&gt;&lt;/td&gt;&lt;td style="vertical-align: top;"&gt;&lt;span style="font-size:130%;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/td&gt;&lt;td style="vertical-align: top;"&gt;&lt;span style="font-size:130%;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/td&gt;&lt;td style="vertical-align: top;"&gt;&lt;span style="font-size:130%;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/td&gt;&lt;td style="vertical-align: top;"&gt;&lt;span style="font-size:130%;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/td&gt;&lt;td style="vertical-align: top;"&gt;&lt;span style="font-size:130%;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/td&gt;&lt;td style="vertical-align: top;"&gt;&lt;span style="font-size:130%;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/td&gt; &lt;/tr&gt; &lt;tr&gt; &lt;td class="kyb1"&gt;&lt;span style="font-size:130%;"&gt;CTRL +M&lt;/span&gt;&lt;/td&gt; &lt;td style="vertical-align: top;"&gt;&lt;span style="font-size:130%;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/td&gt;&lt;td style="vertical-align: top;"&gt;&lt;span style="font-size:130%;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/td&gt;&lt;td style="vertical-align: top;"&gt;&lt;span style="font-size:130%;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/td&gt;&lt;td class="kyb2"&gt;&lt;span style="font-size:130%;"&gt;Opens your mail program (if you have one) to create a new email message&lt;/span&gt;&lt;/td&gt;&lt;td style="vertical-align: top;"&gt;&lt;span style="font-size:130%;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/td&gt;&lt;td style="vertical-align: top;"&gt;&lt;span style="font-size:130%;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/td&gt;&lt;td style="vertical-align: top;"&gt;&lt;span style="font-size:130%;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/td&gt;&lt;td style="vertical-align: top;"&gt;&lt;span style="font-size:130%;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/td&gt;&lt;td style="vertical-align: top;"&gt;&lt;span style="font-size:130%;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/td&gt;&lt;td style="vertical-align: top;"&gt;&lt;span style="font-size:130%;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/td&gt; &lt;/tr&gt; &lt;tr&gt; &lt;td class="kyb1"&gt;&lt;span style="font-size:130%;"&gt;CTRL + N&lt;/span&gt;&lt;/td&gt; &lt;td style="vertical-align: top;"&gt;&lt;span style="font-size:130%;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/td&gt;&lt;td style="vertical-align: top;"&gt;&lt;span style="font-size:130%;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/td&gt;&lt;td style="vertical-align: top;"&gt;&lt;span style="font-size:130%;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/td&gt;&lt;td class="kyb2"&gt;&lt;span style="font-size:130%;"&gt;Opens a new Firefox window&lt;/span&gt;&lt;/td&gt;&lt;td style="vertical-align: top;"&gt;&lt;span style="font-size:130%;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/td&gt;&lt;td style="vertical-align: top;"&gt;&lt;span style="font-size:130%;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/td&gt;&lt;td style="vertical-align: top;"&gt;&lt;span style="font-size:130%;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/td&gt;&lt;td style="vertical-align: top;"&gt;&lt;span style="font-size:130%;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/td&gt;&lt;td style="vertical-align: top;"&gt;&lt;span style="font-size:130%;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/td&gt;&lt;td style="vertical-align: top;"&gt;&lt;span style="font-size:130%;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/td&gt; &lt;/tr&gt; &lt;tr&gt; &lt;td class="kyb1"&gt;&lt;span style="font-size:130%;"&gt;CTRL + O&lt;/span&gt;&lt;/td&gt; &lt;td style="vertical-align: top;"&gt;&lt;span style="font-size:130%;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/td&gt;&lt;td style="vertical-align: top;"&gt;&lt;span style="font-size:130%;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/td&gt;&lt;td style="vertical-align: top;"&gt;&lt;span style="font-size:130%;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/td&gt;&lt;td class="kyb2"&gt;&lt;span style="font-size:130%;"&gt;Open a local file&lt;/span&gt;&lt;/td&gt;&lt;td style="vertical-align: top;"&gt;&lt;span style="font-size:130%;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/td&gt;&lt;td style="vertical-align: top;"&gt;&lt;span style="font-size:130%;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/td&gt;&lt;td style="vertical-align: top;"&gt;&lt;span style="font-size:130%;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/td&gt;&lt;td style="vertical-align: top;"&gt;&lt;span style="font-size:130%;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/td&gt;&lt;td style="vertical-align: top;"&gt;&lt;span style="font-size:130%;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/td&gt;&lt;td style="vertical-align: top;"&gt;&lt;span style="font-size:130%;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/td&gt; &lt;/tr&gt; &lt;tr&gt; &lt;td class="kyb1"&gt;&lt;span style="font-size:130%;"&gt;CTRL + P&lt;/span&gt;&lt;/td&gt; &lt;td style="vertical-align: top;"&gt;&lt;span style="font-size:130%;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/td&gt;&lt;td style="vertical-align: top;"&gt;&lt;span style="font-size:130%;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/td&gt;&lt;td style="vertical-align: top;"&gt;&lt;span style="font-size:130%;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/td&gt;&lt;td class="kyb2"&gt;&lt;span style="font-size:130%;"&gt;Print the current webpage&lt;/span&gt;&lt;/td&gt;&lt;td style="vertical-align: top;"&gt;&lt;span style="font-size:130%;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/td&gt;&lt;td style="vertical-align: top;"&gt;&lt;span style="font-size:130%;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/td&gt;&lt;td style="vertical-align: top;"&gt;&lt;span style="font-size:130%;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/td&gt;&lt;td style="vertical-align: top;"&gt;&lt;span style="font-size:130%;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/td&gt;&lt;td style="vertical-align: top;"&gt;&lt;span style="font-size:130%;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/td&gt;&lt;td style="vertical-align: top;"&gt;&lt;span style="font-size:130%;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/td&gt; &lt;/tr&gt; &lt;tr&gt; &lt;td class="kyb1"&gt;&lt;span style="font-size:130%;"&gt;CTRL + R&lt;/span&gt;&lt;/td&gt; &lt;td style="vertical-align: top;"&gt;&lt;span style="font-size:130%;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/td&gt;&lt;td style="vertical-align: top;"&gt;&lt;span style="font-size:130%;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/td&gt;&lt;td style="vertical-align: top;"&gt;&lt;span style="font-size:130%;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/td&gt;&lt;td class="kyb2"&gt;&lt;span style="font-size:130%;"&gt;Reloads the current webpage&lt;/span&gt;&lt;/td&gt;&lt;td style="vertical-align: top;"&gt;&lt;span style="font-size:130%;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/td&gt;&lt;td style="vertical-align: top;"&gt;&lt;span style="font-size:130%;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/td&gt;&lt;td style="vertical-align: top;"&gt;&lt;span style="font-size:130%;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/td&gt;&lt;td style="vertical-align: top;"&gt;&lt;span style="font-size:130%;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/td&gt;&lt;td style="vertical-align: top;"&gt;&lt;span style="font-size:130%;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/td&gt;&lt;td style="vertical-align: top;"&gt;&lt;span style="font-size:130%;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/td&gt; &lt;/tr&gt; &lt;tr&gt; &lt;td class="kyb1"&gt;&lt;span style="font-size:130%;"&gt;CTRL + S&lt;/span&gt;&lt;/td&gt; &lt;td style="vertical-align: top;"&gt;&lt;span style="font-size:130%;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/td&gt;&lt;td style="vertical-align: top;"&gt;&lt;span style="font-size:130%;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/td&gt;&lt;td style="vertical-align: top;"&gt;&lt;span style="font-size:130%;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/td&gt;&lt;td class="kyb2"&gt;&lt;span style="font-size:130%;"&gt;Save the current webpage on your PC&lt;/span&gt;&lt;/td&gt;&lt;td style="vertical-align: top;"&gt;&lt;span style="font-size:130%;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/td&gt;&lt;td style="vertical-align: top;"&gt;&lt;span style="font-size:130%;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/td&gt;&lt;td style="vertical-align: top;"&gt;&lt;span style="font-size:130%;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/td&gt;&lt;td style="vertical-align: top;"&gt;&lt;span style="font-size:130%;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/td&gt;&lt;td style="vertical-align: top;"&gt;&lt;span style="font-size:130%;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/td&gt;&lt;td style="vertical-align: top;"&gt;&lt;span style="font-size:130%;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/td&gt; &lt;/tr&gt; &lt;tr&gt; &lt;td class="kyb1"&gt;&lt;span style="font-size:130%;"&gt;CTRL + T&lt;/span&gt;&lt;/td&gt; &lt;td style="vertical-align: top;"&gt;&lt;span style="font-size:130%;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/td&gt;&lt;td style="vertical-align: top;"&gt;&lt;span style="font-size:130%;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/td&gt;&lt;td style="vertical-align: top;"&gt;&lt;span style="font-size:130%;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/td&gt;&lt;td class="kyb2"&gt;&lt;span style="font-size:130%;"&gt;Opens a new Firefox Tab&lt;/span&gt;&lt;/td&gt;&lt;td style="vertical-align: top;"&gt;&lt;span style="font-size:130%;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/td&gt;&lt;td style="vertical-align: top;"&gt;&lt;span style="font-size:130%;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/td&gt;&lt;td style="vertical-align: top;"&gt;&lt;span style="font-size:130%;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/td&gt;&lt;td style="vertical-align: top;"&gt;&lt;span style="font-size:130%;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/td&gt;&lt;td style="vertical-align: top;"&gt;&lt;span style="font-size:130%;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/td&gt;&lt;td style="vertical-align: top;"&gt;&lt;span style="font-size:130%;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/td&gt; &lt;/tr&gt; &lt;tr&gt; &lt;td class="kyb1"&gt;&lt;span style="font-size:130%;"&gt;CTRL + U&lt;/span&gt;&lt;/td&gt; &lt;td style="vertical-align: top;"&gt;&lt;span style="font-size:130%;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/td&gt;&lt;td style="vertical-align: top;"&gt;&lt;span style="font-size:130%;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/td&gt;&lt;td style="vertical-align: top;"&gt;&lt;span style="font-size:130%;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/td&gt;&lt;td class="kyb2"&gt;&lt;span style="font-size:130%;"&gt;View the page source of the current webpage&lt;/span&gt;&lt;/td&gt;&lt;td style="vertical-align: top;"&gt;&lt;span style="font-size:130%;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/td&gt;&lt;td style="vertical-align: top;"&gt;&lt;span style="font-size:130%;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/td&gt;&lt;td style="vertical-align: top;"&gt;&lt;span style="font-size:130%;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/td&gt;&lt;td style="vertical-align: top;"&gt;&lt;span style="font-size:130%;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/td&gt;&lt;td style="vertical-align: top;"&gt;&lt;span style="font-size:130%;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/td&gt;&lt;td style="vertical-align: top;"&gt;&lt;span style="font-size:130%;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/td&gt; &lt;/tr&gt; &lt;tr&gt; &lt;td class="kyb1"&gt;&lt;span style="font-size:130%;"&gt;CTRL + V&lt;/span&gt;&lt;/td&gt; &lt;td style="vertical-align: top;"&gt;&lt;span style="font-size:130%;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/td&gt;&lt;td style="vertical-align: top;"&gt;&lt;span style="font-size:130%;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/td&gt;&lt;td style="vertical-align: top;"&gt;&lt;span style="font-size:130%;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/td&gt;&lt;td class="kyb2"&gt;&lt;span style="font-size:130%;"&gt;Paste the contents of the Windows clipboard&lt;/span&gt;&lt;/td&gt;&lt;td style="vertical-align: top;"&gt;&lt;span style="font-size:130%;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/td&gt;&lt;td style="vertical-align: top;"&gt;&lt;span style="font-size:130%;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/td&gt;&lt;td style="vertical-align: top;"&gt;&lt;span style="font-size:130%;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/td&gt;&lt;td style="vertical-align: top;"&gt;&lt;span style="font-size:130%;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/td&gt;&lt;td style="vertical-align: top;"&gt;&lt;span style="font-size:130%;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/td&gt;&lt;td style="vertical-align: top;"&gt;&lt;span style="font-size:130%;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/td&gt; &lt;/tr&gt; &lt;tr&gt; &lt;td class="kyb1"&gt;&lt;span style="font-size:130%;"&gt;CTRL + W&lt;/span&gt;&lt;/td&gt; &lt;td style="vertical-align: top;"&gt;&lt;span style="font-size:130%;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/td&gt;&lt;td style="vertical-align: top;"&gt;&lt;span style="font-size:130%;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/td&gt;&lt;td style="vertical-align: top;"&gt;&lt;span style="font-size:130%;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/td&gt;&lt;td class="kyb2"&gt;&lt;span style="font-size:130%;"&gt;Closes the current Firefox Tab or Window (if more than one tab is open)&lt;/span&gt;&lt;/td&gt;&lt;td style="vertical-align: top;"&gt;&lt;span style="font-size:130%;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/td&gt;&lt;td style="vertical-align: top;"&gt;&lt;span style="font-size:130%;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/td&gt;&lt;td style="vertical-align: top;"&gt;&lt;span style="font-size:130%;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/td&gt;&lt;td style="vertical-align: top;"&gt;&lt;span style="font-size:130%;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/td&gt;&lt;td style="vertical-align: top;"&gt;&lt;span style="font-size:130%;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/td&gt;&lt;td style="vertical-align: top;"&gt;&lt;span style="font-size:130%;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/td&gt; &lt;/tr&gt; &lt;tr&gt; &lt;td class="kyb1"&gt;&lt;span style="font-size:130%;"&gt;CTRL + X&lt;/span&gt;&lt;/td&gt; &lt;td style="vertical-align: top;"&gt;&lt;span style="font-size:130%;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/td&gt;&lt;td style="vertical-align: top;"&gt;&lt;span style="font-size:130%;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/td&gt;&lt;td style="vertical-align: top;"&gt;&lt;span style="font-size:130%;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/td&gt;&lt;td class="kyb2"&gt;&lt;span style="font-size:130%;"&gt;Cut the selected text&lt;/span&gt;&lt;/td&gt;&lt;td style="vertical-align: top;"&gt;&lt;span style="font-size:130%;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/td&gt;&lt;td style="vertical-align: top;"&gt;&lt;span style="font-size:130%;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/td&gt;&lt;td style="vertical-align: top;"&gt;&lt;span style="font-size:130%;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/td&gt;&lt;td style="vertical-align: top;"&gt;&lt;span style="font-size:130%;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/td&gt;&lt;td style="vertical-align: top;"&gt;&lt;span style="font-size:130%;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/td&gt;&lt;td style="vertical-align: top;"&gt;&lt;span style="font-size:130%;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/td&gt; &lt;/tr&gt; &lt;tr&gt; &lt;td class="kyb1"&gt;&lt;span style="font-size:130%;"&gt;CTRL + Z&lt;/span&gt;&lt;/td&gt; &lt;td style="vertical-align: top;"&gt;&lt;span style="font-size:130%;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/td&gt;&lt;td style="vertical-align: top;"&gt;&lt;span style="font-size:130%;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/td&gt;&lt;td style="vertical-align: top;"&gt;&lt;span style="font-size:130%;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/td&gt;&lt;td class="kyb2"&gt;&lt;span style="font-size:130%;"&gt;Undo the last action&lt;/span&gt;&lt;/td&gt;&lt;td style="vertical-align: top;"&gt;&lt;span style="font-size:130%;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/td&gt;&lt;td style="vertical-align: top;"&gt;&lt;span style="font-size:130%;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/td&gt;&lt;td style="vertical-align: top;"&gt;&lt;span style="font-size:130%;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/td&gt;&lt;td style="vertical-align: top;"&gt;&lt;span style="font-size:130%;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/td&gt;&lt;td style="vertical-align: top;"&gt;&lt;span style="font-size:130%;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/td&gt;&lt;td style="vertical-align: top;"&gt;&lt;span style="font-size:130%;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/td&gt; &lt;/tr&gt; &lt;/tbody&gt;&lt;/table&gt;&lt;table style="width: 680px; height: 205px;" class="tb590"&gt;&lt;tbody&gt;&lt;tr&gt; &lt;td class="kyb2" colspan="3"&gt;&lt;br /&gt;&lt;/td&gt;&lt;td style="vertical-align: top;"&gt;&lt;span style="font-size:130%;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/td&gt;&lt;td style="vertical-align: top;"&gt;&lt;span style="font-size:130%;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/td&gt; &lt;/tr&gt; &lt;tr&gt; &lt;td class="kyb1"&gt;&lt;span style="font-size:130%;"&gt;F1&lt;/span&gt;&lt;/td&gt; &lt;td style="vertical-align: top;"&gt;&lt;span style="font-size:130%;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/td&gt;&lt;td class="kyb2"&gt;&lt;span style="font-size:130%;"&gt;Opens Firefox help&lt;/span&gt;&lt;/td&gt;&lt;td style="vertical-align: top;"&gt;&lt;span style="font-size:130%;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/td&gt;&lt;td style="vertical-align: top;"&gt;&lt;span style="font-size:130%;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/td&gt; &lt;/tr&gt; &lt;tr&gt; &lt;td class="kyb1"&gt;&lt;span style="font-size:130%;"&gt;F3&lt;/span&gt;&lt;/td&gt; &lt;td style="vertical-align: top;"&gt;&lt;span style="font-size:130%;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/td&gt;&lt;td class="kyb2"&gt;&lt;span style="font-size:130%;"&gt;Find more text within the same webpage&lt;/span&gt;&lt;/td&gt;&lt;td style="vertical-align: top;"&gt;&lt;span style="font-size:130%;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/td&gt;&lt;td style="vertical-align: top;"&gt;&lt;span style="font-size:130%;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/td&gt; &lt;/tr&gt; &lt;tr&gt; &lt;td class="kyb1"&gt;&lt;span style="font-size:130%;"&gt;F5&lt;/span&gt;&lt;/td&gt; &lt;td style="vertical-align: top;"&gt;&lt;span style="font-size:130%;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/td&gt;&lt;td class="kyb2"&gt;&lt;span style="font-size:130%;"&gt;Reload the current webpage&lt;/span&gt;&lt;/td&gt;&lt;td style="vertical-align: top;"&gt;&lt;span style="font-size:130%;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/td&gt;&lt;td style="vertical-align: top;"&gt;&lt;span style="font-size:130%;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/td&gt; &lt;/tr&gt; &lt;tr&gt; &lt;td class="kyb1"&gt;&lt;span style="font-size:130%;"&gt;F6&lt;/span&gt;&lt;/td&gt; &lt;td style="vertical-align: top;"&gt;&lt;span style="font-size:130%;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/td&gt;&lt;td class="kyb2"&gt;&lt;span style="font-size:130%;"&gt;Toggles the cursor between the address/URL input box and the current webpage&lt;/span&gt;&lt;/td&gt;&lt;td style="vertical-align: top;"&gt;&lt;span style="font-size:130%;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/td&gt;&lt;td style="vertical-align: top;"&gt;&lt;span style="font-size:130%;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/td&gt; &lt;/tr&gt; &lt;tr&gt; &lt;td class="kyb1"&gt;&lt;span style="font-size:130%;"&gt;F7&lt;/span&gt;&lt;/td&gt; &lt;td style="vertical-align: top;"&gt;&lt;span style="font-size:130%;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/td&gt;&lt;td class="kyb2"&gt;&lt;span style="font-size:130%;"&gt;Toggles Caret Browsing on and off. Used to be able to select text on a webpage with the keyboard&lt;/span&gt;&lt;/td&gt;&lt;td style="vertical-align: top;"&gt;&lt;span style="font-size:130%;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/td&gt;&lt;td style="vertical-align: top;"&gt;&lt;span style="font-size:130%;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/td&gt; &lt;/tr&gt; &lt;tr&gt; &lt;td class="kyb1"&gt;&lt;span style="font-size:130%;"&gt;F11&lt;/span&gt;&lt;/td&gt; &lt;td style="vertical-align: top;"&gt;&lt;span style="font-size:130%;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/td&gt;&lt;td class="kyb2"&gt;&lt;span style="font-size:130%;"&gt;Switch to Full Screen mode&lt;/span&gt;&lt;/td&gt;&lt;td style="vertical-align: top;"&gt;&lt;span style="font-size:130%;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/td&gt;&lt;td style="vertical-align: top;"&gt;&lt;span style="font-size:130%;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/td&gt;&lt;/tr&gt;&lt;/tbody&gt;&lt;/table&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/5042359632580496092-2491878809194153832?l=tricks-online.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://tricks-online.blogspot.com/feeds/2491878809194153832/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=5042359632580496092&amp;postID=2491878809194153832' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/5042359632580496092/posts/default/2491878809194153832'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/5042359632580496092/posts/default/2491878809194153832'/><link rel='alternate' type='text/html' href='http://tricks-online.blogspot.com/2008/10/windows-keyboard-shortcuts-for-mozilla.html' title='Windows Keyboard Shortcuts for Mozilla Firefox'/><author><name>Haris Ainur Rozak</name><uri>http://www.blogger.com/profile/10792882402348607576</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='31' src='http://3.bp.blogspot.com/_W9mLVR5IXXE/TPe75L0FuUI/AAAAAAAAAFk/vbzJxbkO4eM/S220/n1504300046_30095369_4951961.jpg'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-5042359632580496092.post-394302662921255607</id><published>2008-10-25T13:49:00.000-07:00</published><updated>2008-10-25T14:01:21.203-07:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='Computer Network and Security'/><title type='text'>Amassing Your War Chest on The Hacking Wireless (3/3)</title><content type='html'>&lt;span style="font-weight: bold;"&gt;Stumbling tools&lt;/span&gt;&lt;br /&gt;In the methodology Kevin describes in his book, Hacking For Dummies (Wiley),&lt;br /&gt;and in the OSSTMM and ISSAF methods discussed in Chapter 2, the first step&lt;br /&gt;in ethical hacking is the same: reconnaissance. The best type of tool for reconnaissance&lt;br /&gt;is wardriving software. Programs like NetStumbler and Kismet help&lt;br /&gt;you find access points. Refer to Chapters 9 and 10 for more on the various&lt;br /&gt;stumbling tools.&lt;br /&gt;&lt;span style="font-weight: bold;"&gt;You got the sniffers?&lt;/span&gt;&lt;br /&gt;Stumbling tools help you find the access points, but that’s not enough. You&lt;br /&gt;need to peek into the transmitted frames. If the frames are unencrypted, of&lt;br /&gt;course, then this is an easy task. But when the frames are encrypted, you&lt;br /&gt;need to decrypt the frame before you can look at it. This type of decryption&lt;br /&gt;software is generally called a sniffer.&lt;br /&gt;Many freeware and commercial sniffer products are floating around out there.&lt;br /&gt;Some run on Windows, and others run on Linux. Two of the more popular&lt;br /&gt;sniffers are Ethereal and AiroPeek, which we cover in Chapter 8.&lt;br /&gt;&lt;br /&gt;&lt;span style="font-weight: bold;"&gt;Picking Your Transceiver&lt;/span&gt;&lt;br /&gt;Wireless Networks For Dummies (Wiley) provides information on the various&lt;br /&gt;form factors for your clients. You have lots of options to choose from. Picking&lt;br /&gt;your wireless network interface card or transceiver depends on the operating&lt;br /&gt;system you choose. When NetStumbler and Kismet first came out, there were&lt;br /&gt;two chipsets for wireless NICs: Hermes and Prism2. As a general rule, if you&lt;br /&gt;decide to use NetStumbler, you want a card based on the Hermes chipset.&lt;br /&gt;&lt;br /&gt;Kismet, on the other hand, works best with a Prism2 (Intersil) card. If you are&lt;br /&gt;prepared to do a kernel modification, then Hermes cards will work with Kismet.&lt;br /&gt;&lt;br /&gt;&lt;span style="font-weight: bold;"&gt;Determining your chipset&lt;/span&gt;&lt;br /&gt;Don’t know whether you have a Prism2 chipset or a Hermes chipset? The following&lt;br /&gt;PC Card manufacturers use the Prism2 chipset:&lt;br /&gt;- 3Com&lt;br /&gt;- Addtron&lt;br /&gt;- AiroNet&lt;br /&gt;- Bromax&lt;br /&gt;- Compaq WL100&lt;br /&gt;- D-Link&lt;br /&gt;- Farallon&lt;br /&gt;- GemTek&lt;br /&gt;- Intel&lt;br /&gt;- LeArtery Solutions&lt;br /&gt;- Linksys&lt;br /&gt;- Netgear&lt;br /&gt;&lt;br /&gt;Further, if you have a Prism2 chipset, you may see a computer with antenna&lt;br /&gt;icon in the System Tray.&lt;br /&gt;The following PC Card manufacturers use the Hermes (Lucent) chipset:&lt;br /&gt;- Nokia&lt;br /&gt;- Nortel&lt;br /&gt;- Samsung&lt;br /&gt;- Senao&lt;br /&gt;- Siemens&lt;br /&gt;- SMC&lt;br /&gt;- Symbol&lt;br /&gt;- Z-Com&lt;br /&gt;- Zoom Technologies&lt;br /&gt;- 1stWave&lt;br /&gt;- Agere/ORiNOCO/Proxim&lt;br /&gt;- Alvarion&lt;br /&gt;- Apple&lt;br /&gt;- ARtem&lt;br /&gt;- Avaya&lt;br /&gt;- Buffalo&lt;br /&gt;- Cabletron&lt;br /&gt;- Compaq WL110&lt;br /&gt;- Dell&lt;br /&gt;- ELSA&lt;br /&gt;- Enterasys&lt;br /&gt;- HP&lt;br /&gt;- IBM&lt;br /&gt;- SONY&lt;br /&gt;- Toshiba&lt;br /&gt;&lt;br /&gt;Much like the Prism2 chipset, if you have a Hermes (Lucent) chipset, you will&lt;br /&gt;see an icon in the System Tray.&lt;br /&gt;To find information for your Hermes chipset, visit www.hpl.hp.com/personal/&lt;br /&gt;Jean_Tourrilhes/Linux/Wireless.html and look for “orinoco.”&lt;br /&gt;&lt;br /&gt;&lt;span style="font-weight: bold;"&gt;Buying a wireless NIC&lt;/span&gt;&lt;br /&gt;When purchasing a wireless NIC, look for one that supports an external&lt;br /&gt;antenna. Figure 4-13 depicts an ORiNOCO card with an external antenna connector&lt;br /&gt;on the top. In this figure, the built-in antenna is the black plastic part&lt;br /&gt;on the end.&lt;br /&gt;&lt;br /&gt;The ORiNOCO Gold Classic card from either Agere or Lucent is a popular&lt;br /&gt;card with wireless hackers because it has an external antenna connector&lt;br /&gt;and works with both Kismet and NetStumbler. Take care when buying new&lt;br /&gt;ORiNOCO cards. ORiNOCO is now owned by Proxim, which came out with&lt;br /&gt;an ORiNOCO card not based on the Hermes chipset. The Hermes card is still&lt;br /&gt;available, but it is usually sold as the ORiNOCO Gold Classic.&lt;br /&gt;&lt;br /&gt;You can find a somewhat dated but useful comparison of the wireless cards&lt;br /&gt;and their chipsets at Seattle Wireless: www.seattlewireless.net/index.&lt;br /&gt;cgi/HardwareComparison.&lt;br /&gt;&lt;br /&gt;&lt;span style="font-weight: bold;"&gt;Extending Your Range&lt;/span&gt;&lt;br /&gt;Antennae are generally optional, but if you want to test the boundary of your&lt;br /&gt;wireless signal, they are a must. Many companies that sell PC wireless NIC&lt;br /&gt;cards also sell antennae. But many of these cards do not come equipped with&lt;br /&gt;a jack to plug in the antenna. Many people have resorted to modifying these&lt;br /&gt;PC cards to add jacks or soldering wires to the built-in antennas of their&lt;br /&gt;cards. Check out eBay for examples.&lt;br /&gt;&lt;br /&gt;&lt;div style="text-align: center;"&gt;&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://4.bp.blogspot.com/_W9mLVR5IXXE/SQOH7zNLyNI/AAAAAAAAADw/Et2YjaPlmOg/s1600-h/GAMBAR+16.JPG"&gt;&lt;img style="margin: 0px auto 10px; display: block; text-align: center; cursor: pointer; width: 324px; height: 329px;" src="http://4.bp.blogspot.com/_W9mLVR5IXXE/SQOH7zNLyNI/AAAAAAAAADw/Et2YjaPlmOg/s400/GAMBAR+16.JPG" alt="" id="BLOGGER_PHOTO_ID_5261198251126409426" border="0" /&gt;&lt;/a&gt;&lt;span style="font-size:130%;"&gt;Wave guide cantenna.&lt;/span&gt;&lt;br /&gt;&lt;/div&gt;&lt;br /&gt;&lt;span style="font-size:130%;"&gt;Directional antennae are good for aiming at buildings across the street or&lt;br /&gt;pointing to the top of a very tall building, but they are not really good for&lt;br /&gt;wardriving. For wardriving, you want to get yourself an omnidirectional&lt;br /&gt;antenna. Peter bought this 5 dBi antenna,which has a magnetic base&lt;br /&gt;that can be attached to a car or cart, on eBay for&lt;br /&gt;$5.95(!). At that price, you should buy several and give them as gifts.&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;&lt;div style="text-align: center;"&gt;&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://3.bp.blogspot.com/_W9mLVR5IXXE/SQOINit7hNI/AAAAAAAAAD4/DNAV1-eyoXM/s1600-h/GAMBAR+17.JPG"&gt;&lt;img style="margin: 0px auto 10px; display: block; text-align: center; cursor: pointer; width: 320px; height: 243px;" src="http://3.bp.blogspot.com/_W9mLVR5IXXE/SQOINit7hNI/AAAAAAAAAD4/DNAV1-eyoXM/s320/GAMBAR+17.JPG" alt="" id="BLOGGER_PHOTO_ID_5261198555937998034" border="0" /&gt;&lt;/a&gt;&lt;span style="font-size:130%;"&gt;Omnidirectional antenna.&lt;br /&gt;&lt;/span&gt;&lt;/div&gt;&lt;span style="font-size:130%;"&gt;&lt;br /&gt;For more information on antennae, we encourage you to check out Wireless&lt;br /&gt;Networks For Dummies (Wiley). That book outlines in depth the different&lt;br /&gt;types of antennae. You’ll even find links for building your own wave guide&lt;br /&gt;antenna like that shown in Figure 4-16. That book provides information on RF&lt;br /&gt;mathematics so you can interpret what dBi means.&lt;br /&gt;&lt;br /&gt;&lt;/span&gt;&lt;span style="font-weight: bold;font-size:130%;" &gt;Using GPS&lt;/span&gt;&lt;span style="font-size:130%;"&gt;&lt;br /&gt;While driving in an unfamiliar place, Peter’s family often asks, Where are we?&lt;br /&gt;Until he got his global positioning system (GPS), he couldn’t always answer the&lt;br /&gt;question with great precision. As an answer, “somewhere between the Colorado&lt;br /&gt;border and El Paso” doesn’t cut it, especially when you get close to restricted&lt;br /&gt;government areas. Now, with GPS, he can tell you the exact latitude and longitude.&lt;br /&gt;That GPS device can help with your wireless hacking efforts as well.&lt;br /&gt;&lt;br /&gt;Using your GPS system with your wardriving software can give you more&lt;br /&gt;information. Remember, the hacker’s primary law is more information is&lt;br /&gt;better. When you have to cover a large area in a short amount of time, the&lt;br /&gt;GPS is essential. Otherwise, you may not find the access point again.&lt;br /&gt;To use GPS with wardriving software, you get the GPS unit to output GPS&lt;br /&gt;coordinates to the computer’s serial port. When you find a wireless access&lt;br /&gt;point, Kismet and NetStumbler log the exact coordinates (down to a few feet)&lt;br /&gt;of the effective range.&lt;br /&gt;&lt;br /&gt;Make sure you get a serial or USB cable to connect to your workstation when&lt;br /&gt;you buy your GPS device. If you are going to use the serial cable, ensure that&lt;br /&gt;you have a serial port; otherwise you’ll need a serial-to-USB adapter. The&lt;br /&gt;standard protocol for GPS is NMEA (National Marine Electronics Association),&lt;br /&gt;which dumps your coordinates every 2 seconds to a serial port via a special&lt;br /&gt;cable at 9600,8,N,1. If you use a Garmin GPS, you can use the Garmin format.&lt;br /&gt;The Garmin eTrex Venture is nice for its size and cost (about $150). The&lt;br /&gt;Garmin reports every second, compared to every 2 seconds for the NMEA&lt;br /&gt;standard. However, Kismet supports only the NMEA format.&lt;br /&gt;GPS units start at $100 and can run into the thousands. Peter purchased&lt;br /&gt;Microsoft Maps &amp;amp; Streets 2005 with GPS for about $129. The GPS (shown in&lt;br /&gt;Figure 4-16) labeled Microsoft is actually manufactured by Pharos, a wellknown&lt;br /&gt;GPS vendor.&lt;br /&gt;&lt;br /&gt;If you buy the Microsoft MapPoint software, you can take your output from&lt;br /&gt;NetStumbler and dump it right into StumbVerter (www.michiganwireless.&lt;br /&gt;org/tools/Stumbverter), which plots it on a map for you. You can then&lt;br /&gt;take your output, massage it, and import it into your Maps &amp;amp; Streets GPS&lt;br /&gt;device. Mapping Software Table lists some&lt;br /&gt;common mapping applications and their support for wardriving.&lt;br /&gt;&lt;br /&gt;Developer and Software      GPS Interface Support?      Import “Pushpins”?     NetStumbler Support   &lt;br /&gt;DeLorme Street Atlas USA     Yes     Yes     WiMap   &lt;br /&gt;DeLorme TopoUSA     Yes     Yes     PERL script   &lt;br /&gt;DeLorme XMap     Yes     Yes     PERL script   &lt;br /&gt;Microsoft MapPoint     Yes     Yes     StumbVerter   &lt;br /&gt;Microsoft Streets and Trips     Yes     Yes     PERL script &lt;br /&gt;&lt;br /&gt;&lt;/span&gt;&lt;span style="font-weight: bold;font-size:130%;" &gt;Signal Jamming&lt;/span&gt;&lt;span style="font-size:130%;"&gt;&lt;br /&gt;You can buy a transmitter and jam a signal, but jamming happens accidentally&lt;br /&gt;as well. Real crackers may jam your signals to deny service to your legitimate&lt;br /&gt;clients. The following can affect your signal:&lt;br /&gt;1. Cordless phones can cause narrowband interference, which may mean you need to eliminate the source.&lt;br /&gt;2. Bluetooth devices and microwave ovens can cause all-band interference, which may mean you need to change the technology or eliminate the source.&lt;br /&gt;3. Lightning can charge the air, which may mean you need to ground and protect your equipment.&lt;br /&gt;&lt;br /&gt;So, random interference can result in denial of service, but someone can do it&lt;br /&gt;intentionally as well by using one of two types of RF jamming devices:&lt;br /&gt;1. RF generators are rather expensive devices. You can get RF generators from companies like HP (www.hp.com) and Anritsu (www.anritsu.com).&lt;br /&gt;2. Power signal generators (PSGs) are not as pricey. They are used to test antennae, cables, and connectors. You can get PSGs from YDI (www.ydi.com) and Tektronix (www.tek.com).&lt;br /&gt;&lt;br /&gt;A variety of jammers are complete, standalone systems consisting of appropriate&lt;br /&gt;antennae, energy sources, and modulation electronics, such as techniques&lt;br /&gt;generators. But what causes interference is the effective radiated&lt;br /&gt;power (ERP). You can use the jammer to disrupt the operation of electromagnetic&lt;br /&gt;systems in either receiving or transmitting modes to reduce or deny the&lt;br /&gt;use of portions of the electromagnetic spectrum.&lt;br /&gt;&lt;br /&gt;You may want to test your wireless network to discover how susceptible it is&lt;br /&gt;to signal jamming from outside your organization. If you plan to run missioncritical&lt;br /&gt;applications over wireless networks, then you need to know whether&lt;br /&gt;others can cause unplanned network outages.&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;Taken from:&lt;br /&gt;Hacking Wireless Networks For Dummies®&lt;br /&gt;Published by&lt;br /&gt;Wiley Publishing, Inc.&lt;br /&gt;111 River Street&lt;br /&gt;Hoboken, NJ 07030-5774&lt;br /&gt;www.wiley.com&lt;/span&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/5042359632580496092-394302662921255607?l=tricks-online.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://tricks-online.blogspot.com/feeds/394302662921255607/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=5042359632580496092&amp;postID=394302662921255607' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/5042359632580496092/posts/default/394302662921255607'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/5042359632580496092/posts/default/394302662921255607'/><link rel='alternate' type='text/html' href='http://tricks-online.blogspot.com/2008/10/amassing-your-war-chest-on-hacking_5346.html' title='Amassing Your War Chest on The Hacking Wireless (3/3)'/><author><name>Haris Ainur Rozak</name><uri>http://www.blogger.com/profile/10792882402348607576</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='31' src='http://3.bp.blogspot.com/_W9mLVR5IXXE/TPe75L0FuUI/AAAAAAAAAFk/vbzJxbkO4eM/S220/n1504300046_30095369_4951961.jpg'/></author><media:thumbnail xmlns:media='http://search.yahoo.com/mrss/' url='http://4.bp.blogspot.com/_W9mLVR5IXXE/SQOH7zNLyNI/AAAAAAAAADw/Et2YjaPlmOg/s72-c/GAMBAR+16.JPG' height='72' width='72'/><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-5042359632580496092.post-4204607507439046375</id><published>2008-10-25T13:38:00.000-07:00</published><updated>2008-10-25T14:00:21.391-07:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='Computer Network and Security'/><title type='text'>Amassing Your War Chest on The Hacking Wireless (2/3)</title><content type='html'>&lt;span style="font-weight: bold;"&gt;Setting up VMware&lt;/span&gt;&lt;br /&gt;VMware allows you to run simultaneous operating systems. The VM in&lt;br /&gt;VMware stands for virtual machine. You install a host operating system, such&lt;br /&gt;as Windows XP, and then install VMware Workstation on top of it. Then you&lt;br /&gt;install the guest operating system in VMware. The virtual machine is similar&lt;br /&gt;to your real machine: You can power it on and off, and it boots up just like&lt;br /&gt;the real thing. As a guest operating system, VMware allows you to install anything&lt;br /&gt;that runs on the Intel x86 architecture. This means you can install&lt;br /&gt;Solaris x86, Windows 2003 Server, Red Hat Linux, SUSE Linux, or any other&lt;br /&gt;operating system you choose. Still need to test Windows 98 programs? Use&lt;br /&gt;VMware. The only thing stopping you from running every operating system&lt;br /&gt;known to man is disk space and real memory.&lt;br /&gt;&lt;br /&gt;You can download VMware from www.vmware.com. It takes up approximately&lt;br /&gt;21MB.&lt;br /&gt;Hover your cursor over the Products link at the top of the page and select the&lt;br /&gt;VMware Workstation link from the resulting drop-down list. If you click the&lt;br /&gt;red Buy Now button at the top, you go to the VMware Store, where you find&lt;br /&gt;out that VMware Workstation for Windows costs $189. After you use the software&lt;br /&gt;for a while, you’ll agree this is a good price. (You can get a 30-day trial if&lt;br /&gt;you are not convinced.)&lt;br /&gt;&lt;br /&gt;After you download VMware, it installs like any Windows application. Just&lt;br /&gt;follow the installation wizard.&lt;br /&gt;During the download process, you might see a warning message to disable&lt;br /&gt;AutoRun. VMware doesn’t like the CD-ROM AutoRun feature. (From a security&lt;br /&gt;standpoint, you shouldn’t either.) Agreeing with VMware and disabling&lt;br /&gt;AutoRun is a good idea.&lt;br /&gt;When the installation is complete, you need to reboot your machine. Now&lt;br /&gt;you are ready to add some guests or virtual machines. Installing new&lt;br /&gt;machines is easy:&lt;br /&gt;&lt;br /&gt;1. Start VMware.&lt;br /&gt;You see a window like the one shown in&lt;br /&gt;&lt;br /&gt;2. Click the New Virtual Machine icon.&lt;br /&gt;This starts the process of creating your first virtual machine. The New&lt;br /&gt;Virtual Machine wizard appears.&lt;br /&gt;&lt;br /&gt;3. Click Next.&lt;br /&gt;&lt;br /&gt;4. Select Typical and click Next.&lt;br /&gt;The Select a Guest Operating System window appears.&lt;br /&gt;&lt;br /&gt;5. Select the OS you want to install.&lt;br /&gt;You have a choice of the following:&lt;br /&gt;• Microsoft Windows&lt;br /&gt;• Linux&lt;br /&gt;• Novell Netware&lt;br /&gt;• Sun Solaris&lt;br /&gt;• Other&lt;br /&gt;If you select Other, you can install FreeBSD. Many good tools run on BSD.&lt;br /&gt;If you select Linux, you can select a Linux version from the drop-down box.&lt;br /&gt;&lt;br /&gt;6. Select the version you have and click Next.&lt;br /&gt;&lt;br /&gt;7. Type a name for your guest in the Virtual Machine Name box. Then click Next.&lt;br /&gt;You can create any name you want, so pick one that is meaningful to&lt;br /&gt;you. Also, decide where you want to store the image. Leave the default&lt;br /&gt;unless you have a compelling reason not to do so.&lt;br /&gt;&lt;br /&gt;8. Select the Network Type. Click Next.&lt;br /&gt;We suggest that you select Use Bridged Networking because it allows&lt;br /&gt;you to talk to your host operating system.&lt;br /&gt;&lt;br /&gt;9. Specify Disk Capacity.&lt;br /&gt;Virtual machines have virtual disks. You can pick any size you want as&lt;br /&gt;long as you have the available space. We recommend you leave the&lt;br /&gt;default of 4GB and leave the two other boxes deselected.&lt;br /&gt;&lt;br /&gt;10. Click Finish.&lt;br /&gt;However, you are not quite finished because you don’t have a&lt;br /&gt;system image.&lt;br /&gt;&lt;br /&gt;You now have a big choice. You can start the VM and install Red Hat&lt;br /&gt;Linux from a CD-ROM, or you can point to an ISO image. For this exercise,&lt;br /&gt;we’ll do the latter.&lt;br /&gt;&lt;br /&gt;11. From the Commands panel, click Edit Virtual Machine Settings.&lt;br /&gt;&lt;br /&gt;12. Click CD-ROM.&lt;br /&gt;If you want to install the operating system from a CD, then skip to Step 14.&lt;br /&gt;&lt;br /&gt;13. From the right-hand pane, select Use ISO image.&lt;br /&gt;&lt;br /&gt;14. Click the Browse button and find your ISO image. Click OK.&lt;br /&gt;&lt;br /&gt;15. Click Start This Virtual Machine from the left-hand pane.&lt;br /&gt;When you do this, you see a familiar display: The VM goes through the&lt;br /&gt;POST routine, does a memory check, and then boots itself.&lt;br /&gt;&lt;br /&gt;Cygwin and VMware are wonderful tools, but you need to install them on&lt;br /&gt;your system; they won’t run any other way. If you don’t want to install software&lt;br /&gt;on your system, you can use products like Knoppix and WarLinux that&lt;br /&gt;boot from a diskette or a CD.&lt;br /&gt;&lt;br /&gt;&lt;span style="font-weight: bold;"&gt;Linux distributions on CD&lt;/span&gt;&lt;br /&gt;The following solutions are different from the partitioning and emulation&lt;br /&gt;solutions discussed above. What makes them different is that you don’t need&lt;br /&gt;to install them on your system: They boot and run completely from a CD.&lt;br /&gt;Knoppix, for instance, runs from a CD based on the Linux 2.6.x kernel. It is&lt;br /&gt;a free and Open Source GNU/Linux distribution. You don’t need to install&lt;br /&gt;anything on a hard disk; it’s not necessary. Knoppix has automatic hardware&lt;br /&gt;detection and support for many graphics cards, sound cards, SCSI and USB&lt;br /&gt;devices, and other peripherals. It includes recent Linux software, the K Desktop&lt;br /&gt;Environment (KDE), and programs such as OpenOffice, Abiword, The Gimp&lt;br /&gt;(GNU Image Manipulation Program), the Konqueror browser, the Mozilla&lt;br /&gt;browser, the Apache Web server, PHP, MySQL database, and many more quality&lt;br /&gt;open-source programs. Knoppix offers more than 900 installed software&lt;br /&gt;packages with over 2,000 executable user programs, utilities, and games.&lt;br /&gt;You can download Knoppix (it is approximately 700 MB) or you can buy it&lt;br /&gt;from a CD distributor. Knoppix is available for download from www.knoppix.&lt;br /&gt;net/get.php. It’s also included on a DVD in Knoppix For Dummies by Paul&lt;br /&gt;Sery (Wiley).&lt;br /&gt;Knoppix is not the only distribution of Linux that fits on a CD. Consider also&lt;br /&gt;using one of the following Linux CD distributions:&lt;br /&gt;- Cool Linux CD: http://sourceforge.net/project/showfilesphp?group_id=55396&amp;amp;release_id=123430&lt;br /&gt;- DSL (Damn Small Linux): www.damnsmalllinux.org&lt;br /&gt;- GNU/Debian Linux: www.debian.org&lt;br /&gt;- SLAX: http://slax.linux-live.org&lt;br /&gt;- WarLinux: http://sourceforge.net/projects/warlinux&lt;br /&gt;&lt;br /&gt;WarLinux is a special Linux distribution made for wardrivers. It is available&lt;br /&gt;on either a disk or bootable CD. The developer of WarLinux&lt;br /&gt;intended systems administrators to use it to audit and evaluate their&lt;br /&gt;wireless network installations.&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;Taken from:&lt;br /&gt;Hacking Wireless Networks For Dummies®&lt;br /&gt;Published by&lt;br /&gt;Wiley Publishing, Inc.&lt;br /&gt;111 River Street&lt;br /&gt;Hoboken, NJ 07030-5774&lt;br /&gt;www.wiley.com&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/5042359632580496092-4204607507439046375?l=tricks-online.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://tricks-online.blogspot.com/feeds/4204607507439046375/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=5042359632580496092&amp;postID=4204607507439046375' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/5042359632580496092/posts/default/4204607507439046375'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/5042359632580496092/posts/default/4204607507439046375'/><link rel='alternate' type='text/html' href='http://tricks-online.blogspot.com/2008/10/amassing-your-war-chest-on-hacking_25.html' title='Amassing Your War Chest on The Hacking Wireless (2/3)'/><author><name>Haris Ainur Rozak</name><uri>http://www.blogger.com/profile/10792882402348607576</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='31' src='http://3.bp.blogspot.com/_W9mLVR5IXXE/TPe75L0FuUI/AAAAAAAAAFk/vbzJxbkO4eM/S220/n1504300046_30095369_4951961.jpg'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-5042359632580496092.post-6866017417364188134</id><published>2008-10-25T13:12:00.000-07:00</published><updated>2008-10-25T13:36:14.615-07:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='Computer Network and Security'/><title type='text'>Amassing Your War Chest on The Hacking Wireless (1/3)</title><content type='html'>&lt;span style="font-weight: bold;"&gt;In This Chapter&lt;/span&gt;&lt;br /&gt;1. Choosing your platform: PDAs versus laptops&lt;br /&gt;2. Choosing your software&lt;br /&gt;3. Using software emulators&lt;br /&gt;4. Choosing transceivers, antennae, and GPS&lt;br /&gt;5. Signal jamming&lt;br /&gt;&lt;br /&gt;Acyberwar is being waged. Your perimeter is under siege. What makes&lt;br /&gt;the attack especially insidious is that you cannot see your enemy. This&lt;br /&gt;isn’t hand-to-hand combat. Your enemy could be 2 miles from your office and&lt;br /&gt;still access your network and data. Your access point is your first line of&lt;br /&gt;defense in this war. It behooves you, then, to prepare for battle.&lt;br /&gt;&lt;br /&gt;One way to prepare for any war is to participate in war games. Real war&lt;br /&gt;games allow you to test your equipment, tactics, and operations. In this case,&lt;br /&gt;war games allow you to test your wireless networks under normal conditions.&lt;br /&gt;Like the Reservist going off to war, you also must receive adequate training&lt;br /&gt;on the latest weapons and tactics. Although the rest of the book focuses on&lt;br /&gt;tactics, this chapter focuses on equipment. You need practice with the tools&lt;br /&gt;the crackers use for real.&lt;br /&gt;&lt;br /&gt;You need some hardware and software, but you have choices about what&lt;br /&gt;type of hardware and software you use. This chapter serves as your armory.&lt;br /&gt;If you favor the Windows platform, we have some tools for you. Should you&lt;br /&gt;favor Linux, you will find some tools as well. We don’t leave Apple enthusiasts&lt;br /&gt;out; we have something for you, too.&lt;br /&gt;&lt;br /&gt;&lt;span style="font-weight: bold;"&gt;Choosing Your Hardware&lt;/span&gt;&lt;br /&gt;What’s your poison? Laptop or personal digital assistant? The two primary&lt;br /&gt;hardware platforms for wireless hacking are&lt;br /&gt;- Personal digital assistant (PDA) or personal electronic device (PED)&lt;br /&gt;- Portable or laptop&lt;br /&gt;&lt;br /&gt;Each platform has its pros and cons. First, a PDA is readily portable so you&lt;br /&gt;can easily carry it from place to place. However, you won’t find as many tools&lt;br /&gt;for the PDA as you will for other platforms — depending on the operating&lt;br /&gt;system you run on your handheld device. If you run the Zaurus operating&lt;br /&gt;system, for example, you have more choices for software than you do if you&lt;br /&gt;choose the Pocket PC operating system.&lt;br /&gt;&lt;br /&gt;One thing is safe to say: You don’t want to run wireless-hacking tools on a&lt;br /&gt;desktop. You may want to store NetStumbler files on the desktop, but the&lt;br /&gt;desktop is not really portable. The key thing to think about when choosing&lt;br /&gt;your hardware is portability. When performing hacking tests, you must be&lt;br /&gt;able to walk around your office building or campus, so a desktop is probably&lt;br /&gt;not the best choice. However, we know of people who use mini-towers in&lt;br /&gt;their cars for wardriving (discussed later in this chapter), but we don’t recommend&lt;br /&gt;it!&lt;br /&gt;&lt;br /&gt;&lt;span style="font-weight: bold;"&gt;The personal digital assistant&lt;/span&gt;&lt;br /&gt;Because of its portability, a PDA is the perfect platform for wardriving — but&lt;br /&gt;not for tasks requiring processing power. You want to get a PDA that uses&lt;br /&gt;either the ARM, MIPS, or SH3 processor. We recommend the Hewlett-Packard&lt;br /&gt;iPAQ (ARM processor), the Hewlett-Packard Jornada (SH3 processor), or the&lt;br /&gt;Casio MIPS for wardriving. These are handy devices since someone was kind&lt;br /&gt;enough to develop network discovery software for these platforms.&lt;br /&gt;&lt;br /&gt;ARM’s processor technology has been licensed by more than 100 parties, so&lt;br /&gt;you should easily find a solution you like. It’s so easy, in fact, that you would&lt;br /&gt;better spend your time choosing the right operating system for your needs. We&lt;br /&gt;tell you more about operating systems in the software section of this chapter.&lt;br /&gt;&lt;br /&gt;&lt;span style="font-weight: bold;"&gt;The portable or laptop&lt;/span&gt;&lt;br /&gt;PDAs are great, but, typically, ethical hackers use laptops. Laptops have&lt;br /&gt;dropped dramatically in price the last few years, so they have become more&lt;br /&gt;accessible. You don’t need a lot of processing power, but, to paraphrase Tim&lt;br /&gt;Allen, more power is better. You can use almost any operating system, including&lt;br /&gt;Windows 98, although you will find you get better results when using a&lt;br /&gt;newer and supported operating system. In addition to the laptop, you need&lt;br /&gt;the following components to get maximum results from your ethical hacking:&lt;br /&gt;- Hacking software&lt;br /&gt;- A wireless network interface card (NIC) that can be inserted into your laptop — preferably one with an external antenna jack&lt;br /&gt;- External antenna (directional or omnidirectional) with the proper pigtail cable to connect your external antenna to your wireless NIC&lt;br /&gt;- Portable global positioning system (GPS)&lt;br /&gt;- DC power cable or DC to AC power inverter to power your laptop from your car’s 12-volt DC cigarette lighter plug socket. These are widely available from RadioShack, Kmart, Staples, CompUSA, or Wal-Mart stores.&lt;br /&gt;The next few sections discuss these components in greater detail.&lt;br /&gt;&lt;br /&gt;&lt;span style="font-weight: bold;"&gt;Hacking Software&lt;/span&gt;&lt;br /&gt;To do your job properly, you need a selection of freeware and commercial&lt;br /&gt;software. Fortunately, a glut of freeware programs is available, so you don’t&lt;br /&gt;need a champagne budget; a beer budget should suffice. In fact, if you are&lt;br /&gt;prepared to run more than one operating system, you can get by using only&lt;br /&gt;freeware tools. You need the following software to do all the hacking exercises&lt;br /&gt;in this book:&lt;br /&gt;- Partitioning or emulation software&lt;br /&gt;- Signal strength–testing software&lt;br /&gt;- Packet analyzer&lt;br /&gt;- Wardriving software&lt;br /&gt;- Password crackers&lt;br /&gt;- Packet injectors&lt;br /&gt;&lt;br /&gt;&lt;span style="font-weight: bold;"&gt;Using software emulators&lt;/span&gt;&lt;br /&gt;In a perfect world, all the tools available would work on the same operating&lt;br /&gt;system. But in the real world, that’s not the case. Many great tools operate on&lt;br /&gt;operating systems that are incompatible with each other. Very few of us, of&lt;br /&gt;course, are conversant with multiple operating systems. Also, few of us have&lt;br /&gt;the money to support duplicate hardware and software. So, how can you use&lt;br /&gt;all these tools? You need to find a solution that allows you to run more than&lt;br /&gt;one operating system on the same machine.&lt;br /&gt;&lt;br /&gt;To solve this problem, people often build dual-boot or multi-boot workstations.&lt;br /&gt;You can use a product like Symantec’s PartitionMagic (www.symantec.com/&lt;br /&gt;partitionmagic) to set up partitions for the various operating systems. For&lt;br /&gt;more information about setting up and using PartitionMagic, among other&lt;br /&gt;things, check out Kate Chase’s Norton All-in-One Desk Reference For Dummies&lt;br /&gt;(Wiley). After you set up your partitions, you install the operating systems on&lt;br /&gt;the various partitions.&lt;br /&gt;&lt;br /&gt;When everything’s installed, you can select the operating system you want to&lt;br /&gt;use when you boot the system. Say you’re using NetStumbler on Windows XP&lt;br /&gt;and you decide to use WEPcrack — which is available only on Linux — on the&lt;br /&gt;access points you just identified with NetStumbler. You shut down Windows&lt;br /&gt;XP, reboot your system, and select the Red Hat Linux operating system. When&lt;br /&gt;you want to use Windows XP again, you must do the reverse. This isn’t a bad&lt;br /&gt;solution, but flipping back and forth a lot eats up valuable time. And managing&lt;br /&gt;your partitions and trying to make the operating systems coexist on the&lt;br /&gt;same hardware can be challenging.&lt;br /&gt;&lt;br /&gt;Enter software emulators. Software emulators allow you to emulate a guest&lt;br /&gt;operating system by running it on top of a host operating system. You can&lt;br /&gt;run Linux emulation on a Windows host, and vice versa. To emulate Windows&lt;br /&gt;or DOS on a Linux host, you can choose one of the following Windows-based&lt;br /&gt;emulators:&lt;br /&gt;- Bochs (http://bochs.sourceforge.net)&lt;br /&gt;- DOSEMU (www.dosemu.org)&lt;br /&gt;- Plex86 (http://savannah.nongnu.org/projects/plex86)&lt;br /&gt;- VMware (www.vmware.com)&lt;br /&gt;- WINE (www.winehq.com)&lt;br /&gt;- Win4Lin (www.netraverse.com)&lt;br /&gt;&lt;br /&gt;Alternatively, you can emulate Linux on a Windows host. To do this, choose&lt;br /&gt;one of the following Linux-based emulators:&lt;br /&gt;- Cygwin (http://cygwin.com)&lt;br /&gt;- VMware (www.vmware.com)&lt;br /&gt;&lt;br /&gt;Mac lovers can already run most of the UNIX tools under the Mac OS. To&lt;br /&gt;emulate the Windows environment, you can run an emulator like Microsoft&lt;br /&gt;Virtual PC (www.microsoft.com/mac/products/virtualpc/virtualpc.&lt;br /&gt;aspx?pid=virtualpc).&lt;br /&gt;To get you going, the next two sections discuss Cygwin and VMware, two&lt;br /&gt;excellent examples of emulation software.&lt;br /&gt;&lt;br /&gt;&lt;span style="font-weight: bold;"&gt;Setting up Cygwin&lt;/span&gt;&lt;br /&gt;Do you use Windows but have software that only runs on Linux? If so, Cygwin&lt;br /&gt;is your answer. Cygwin is a contraction of Cygnus + Windows. It provides a&lt;br /&gt;UNIX-like environment consisting of a Windows dynamically linked library&lt;br /&gt;(cygwin1.dll). Cygwin is a subsystem that runs on Windows and intercepts&lt;br /&gt;and translates UNIX commands. This is transparent to the user. With Cygwin,&lt;br /&gt;you can have the experience of running xterm and executing ls commands&lt;br /&gt;without ever leaving your safe Windows environment.&lt;br /&gt;&lt;br /&gt;First, download Cygwin by going to http://cygwin.com. Installing Cygwin is&lt;br /&gt;easy when you follow these steps:&lt;br /&gt;&lt;br /&gt;1. On the home page, click the Install or Update Now! (Using setup.exe) link about halfway down the page.&lt;br /&gt;You see a File Download – Security Warning window.&lt;br /&gt;3. Click Run to download Cygwin.&lt;br /&gt;You see the message&lt;br /&gt;4. Click Run to run setup.exe.&lt;br /&gt;You see the Cygwin Setup window&lt;br /&gt;&lt;br /&gt;&lt;div style="text-align: center;"&gt;&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://4.bp.blogspot.com/_W9mLVR5IXXE/SQN_Oa9tQxI/AAAAAAAAADA/kvLIisTg9Uo/s1600-h/GAMBAR+4.JPG"&gt;&lt;img style="cursor: pointer; width: 349px; height: 173px;" src="http://4.bp.blogspot.com/_W9mLVR5IXXE/SQN_Oa9tQxI/AAAAAAAAADA/kvLIisTg9Uo/s400/GAMBAR+4.JPG" alt="" id="BLOGGER_PHOTO_ID_5261188675431908114" border="0" /&gt;&lt;/a&gt;&lt;br /&gt;&lt;/div&gt;&lt;div style="text-align: center;"&gt;&lt;br /&gt;&lt;span style="font-size:130%;"&gt;Security warning.&lt;/span&gt;&lt;br /&gt;&lt;/div&gt;&lt;br /&gt;&lt;span style="font-size:130%;"&gt;4. Click Next.&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;&lt;div style="text-align: center;"&gt;&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://2.bp.blogspot.com/_W9mLVR5IXXE/SQN_wuVO1qI/AAAAAAAAADI/7m9FVeBW0wg/s1600-h/GAMBAR+5.JPG"&gt;&lt;img style="margin: 0px auto 10px; display: block; text-align: center; cursor: pointer; width: 400px; height: 307px;" src="http://2.bp.blogspot.com/_W9mLVR5IXXE/SQN_wuVO1qI/AAAAAAAAADI/7m9FVeBW0wg/s400/GAMBAR+5.JPG" alt="" id="BLOGGER_PHOTO_ID_5261189264746403490" border="0" /&gt;&lt;/a&gt;&lt;span style="font-size:130%;"&gt;Cygwin setup.&lt;/span&gt;&lt;br /&gt;&lt;/div&gt;&lt;br /&gt;&lt;span style="font-size:130%;"&gt;5. Select Install from Internet and click Next.&lt;br /&gt;This is the installation type. If you have a CD-ROM with Cygwin, select&lt;br /&gt;Install from Local Directory instead.&lt;br /&gt;The Choose Installation Directory dialog box appears, as shown in this picture&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://1.bp.blogspot.com/_W9mLVR5IXXE/SQOAIq_Rb9I/AAAAAAAAADQ/9dv6u2QqY9s/s1600-h/GAMBAR+6.JPG"&gt;&lt;img style="margin: 0px auto 10px; display: block; text-align: center; cursor: pointer; width: 380px; height: 291px;" src="http://1.bp.blogspot.com/_W9mLVR5IXXE/SQOAIq_Rb9I/AAAAAAAAADQ/9dv6u2QqY9s/s400/GAMBAR+6.JPG" alt="" id="BLOGGER_PHOTO_ID_5261189676165853138" border="0" /&gt;&lt;/a&gt;&lt;br /&gt;&lt;div style="text-align: center;"&gt;&lt;span style="font-size:130%;"&gt;Choosing The installation directory.&lt;br /&gt;&lt;/span&gt;&lt;/div&gt;&lt;span style="font-size:130%;"&gt;&lt;br /&gt;6. Choose the installation directory options based on your needs and setup and then click Next.&lt;br /&gt;After installation, this is the Cygwin root directory. Leave the default or&lt;br /&gt;click Browse to select another location. You can decide whether to make&lt;br /&gt;Cygwin available to all users or just to you. In addition, you can decide&lt;br /&gt;whether you want DOS or UNIX file types.&lt;br /&gt;&lt;br /&gt;7. Select a location in which to store the installation files. Then click Next.&lt;br /&gt;Unless you have a compelling reason for not doing it, use the default. If&lt;br /&gt;you must put the installation files somewhere else, click Browse and&lt;br /&gt;select the location.&lt;br /&gt;&lt;br /&gt;8. Select the type of Internet connection you have. Click Next.&lt;br /&gt;We suggest that when you aren’t sure what to select here, use the&lt;br /&gt;default. If you’re doing this from your home office, then Direct&lt;br /&gt;Connection should work. If you’re at work, you might have a proxy&lt;br /&gt;server. If you have a proxy server, it’s perhaps best to talk to your&lt;br /&gt;system administrator.&lt;br /&gt;&lt;br /&gt;9. Select a download site from the scroll box. Click Next.&lt;br /&gt;You may have to try a few download sites before you find one that works&lt;br /&gt;for you. Peter tried several times to find a site. Either it would not start&lt;br /&gt;the download and required him to select a new site or it got halfway&lt;br /&gt;through the download and quit. You must persevere. Cygwin is worth it.&lt;br /&gt;The Select Packages window appears, as shown in this picture&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;&lt;div style="text-align: center;"&gt;&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://4.bp.blogspot.com/_W9mLVR5IXXE/SQOAmILuAGI/AAAAAAAAADY/m5aGaqQXBHc/s1600-h/GAMBAR+7.JPG"&gt;&lt;img style="margin: 0px auto 10px; display: block; text-align: center; cursor: pointer; width: 378px; height: 290px;" src="http://4.bp.blogspot.com/_W9mLVR5IXXE/SQOAmILuAGI/AAAAAAAAADY/m5aGaqQXBHc/s400/GAMBAR+7.JPG" alt="" id="BLOGGER_PHOTO_ID_5261190182218891362" border="0" /&gt;&lt;/a&gt;&lt;span style="font-size:130%;"&gt;Selecting the packages to install.&lt;br /&gt;&lt;/span&gt;&lt;/div&gt;&lt;span style="font-size:130%;"&gt;&lt;br /&gt;10. Select the packages you want to install. Click Next.&lt;br /&gt;If you want them all, click Default beside the word All under Category.&lt;br /&gt;The word Default appears next to many categories. Clicking this word&lt;br /&gt;more than once produces a range of results: Click it once, and it changes&lt;br /&gt;to Install. Click again, and it’s Reinstall. Click it again, and it’s Uninstall.&lt;br /&gt;Click one last time, and you are back at Default. We suggest you select&lt;br /&gt;Install. Installing everything takes up approximately 1 gigabyte. If you&lt;br /&gt;don’t have the available space, select only those categories you think&lt;br /&gt;you will need.&lt;br /&gt;&lt;br /&gt;If you choose to install everything, it can take a long time. Obviously,&lt;br /&gt;how long depends on the bandwidth of your connection to the Internet.&lt;br /&gt;It also depends on the speed of your processor. But trust us, when you&lt;br /&gt;install everything, it takes time, so prepare yourself for a long wait.&lt;br /&gt;Should you choose not to install a package at this time, you can always&lt;br /&gt;do so at a later time. Rerun the setup.exe program and install those&lt;br /&gt;programs you now want.&lt;br /&gt;&lt;br /&gt;While Cygwin installs, the progress window shown in the picture tracks&lt;br /&gt;your progress as it downloads the various components.&lt;br /&gt;When the setup is complete, you see the window shown in this picture&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;&lt;div style="text-align: center;"&gt;&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://1.bp.blogspot.com/_W9mLVR5IXXE/SQOBI3ykvwI/AAAAAAAAADg/FWWBw2LdrJo/s1600-h/GAMBAR+8.JPG"&gt;&lt;img style="margin: 0px auto 10px; display: block; text-align: center; cursor: pointer; width: 400px; height: 312px;" src="http://1.bp.blogspot.com/_W9mLVR5IXXE/SQOBI3ykvwI/AAAAAAAAADg/FWWBw2LdrJo/s400/GAMBAR+8.JPG" alt="" id="BLOGGER_PHOTO_ID_5261190779113881346" border="0" /&gt;&lt;/a&gt;&lt;span style="font-size:130%;"&gt;Cygwin downloading.&lt;/span&gt;&lt;br /&gt;&lt;/div&gt;&lt;br /&gt;&lt;span style="font-size:130%;"&gt;11. If you want to create desktop or Start menu icons, select (or deselect) the appropriate options. Click Finish.&lt;br /&gt;That’s it. You are now the proud owner of Cygwin.&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;&lt;div style="text-align: center;"&gt;&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://2.bp.blogspot.com/_W9mLVR5IXXE/SQOBJKcEiSI/AAAAAAAAADo/kBF2OwbvcfA/s1600-h/GAMBAR+9.JPG"&gt;&lt;img style="margin: 0px auto 10px; display: block; text-align: center; cursor: pointer; width: 400px; height: 176px;" src="http://2.bp.blogspot.com/_W9mLVR5IXXE/SQOBJKcEiSI/AAAAAAAAADo/kBF2OwbvcfA/s400/GAMBAR+9.JPG" alt="" id="BLOGGER_PHOTO_ID_5261190784119769378" border="0" /&gt;&lt;/a&gt;&lt;span style="font-size:130%;"&gt;Cygwin window.&lt;br /&gt;&lt;/span&gt;&lt;/div&gt;&lt;span style="font-size:130%;"&gt;&lt;br /&gt;Cygwin presents you with a command prompt. This is a bash shell. The Cygwin&lt;br /&gt;user is the same as the Windows user. If you want to see what Cygwin has&lt;br /&gt;mounted for you, in addition to the contents of the c:/cygwin directory you&lt;br /&gt;created, type df at the prompt. The c:/cygwin directory is the root directory.&lt;br /&gt;You have the opportunity to try some of the UNIX tools in later chapters. But&lt;br /&gt;just to get started, type uname –a at the prompt. Try an ls -al command.&lt;br /&gt;Ever cursed Windows because you couldn’t easily find out what processes&lt;br /&gt;are executing? Well, you just have to execute the ps –aWl command. (You&lt;br /&gt;might want to pipe (&gt;) the output to a file.) If you’re not familiar with UNIX&lt;br /&gt;commands, then you need to get a good UNIX book. Why not start with UNIX&lt;br /&gt;For Dummies, 5th Edition, by John Levine and Margaret Levine Young (Wiley)?&lt;br /&gt;&lt;br /&gt;Cygwin has a couple of drawbacks:&lt;br /&gt;- You have to use the UNIX version it gives you.&lt;br /&gt;- You cannot run other operating systems.&lt;br /&gt;That’s a pretty short list considering that Cygwin is free (it is distributed under&lt;br /&gt;the GNU Public License). However, should you feel flush, you can move up to&lt;br /&gt;VMware.&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;Taken from:&lt;br /&gt;Hacking Wireless Networks For Dummies®&lt;br /&gt;Published by&lt;br /&gt;Wiley Publishing, Inc.&lt;br /&gt;111 River Street&lt;br /&gt;Hoboken, NJ 07030-5774&lt;br /&gt;www.wiley.com&lt;/span&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/5042359632580496092-6866017417364188134?l=tricks-online.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://tricks-online.blogspot.com/feeds/6866017417364188134/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=5042359632580496092&amp;postID=6866017417364188134' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/5042359632580496092/posts/default/6866017417364188134'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/5042359632580496092/posts/default/6866017417364188134'/><link rel='alternate' type='text/html' href='http://tricks-online.blogspot.com/2008/10/amassing-your-war-chest-on-hacking.html' title='Amassing Your War Chest on The Hacking Wireless (1/3)'/><author><name>Haris Ainur Rozak</name><uri>http://www.blogger.com/profile/10792882402348607576</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='31' src='http://3.bp.blogspot.com/_W9mLVR5IXXE/TPe75L0FuUI/AAAAAAAAAFk/vbzJxbkO4eM/S220/n1504300046_30095369_4951961.jpg'/></author><media:thumbnail xmlns:media='http://search.yahoo.com/mrss/' url='http://4.bp.blogspot.com/_W9mLVR5IXXE/SQN_Oa9tQxI/AAAAAAAAADA/kvLIisTg9Uo/s72-c/GAMBAR+4.JPG' height='72' width='72'/><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-5042359632580496092.post-258736472870881498</id><published>2008-10-25T13:00:00.000-07:00</published><updated>2008-10-25T13:30:40.646-07:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='Computer Network and Security'/><title type='text'>The Wireless Hacking Process (2/2)</title><content type='html'>&lt;span style="font-weight: bold;"&gt;Thou shalt report all thy findings&lt;/span&gt;&lt;br /&gt;Should the duration of your test extend beyond a week, you should provide&lt;br /&gt;weekly progress updates. People get nervous when they know someone is&lt;br /&gt;attempting to break into their networks or systems — and they don’t hear&lt;br /&gt;from the people who’ve been authorized to do so.&lt;br /&gt;You should plan to report any high-risk vulnerabilities discovered during testing&lt;br /&gt;as soon as they are found. These include&lt;br /&gt;- discovered breaches&lt;br /&gt;- vulnerabilities with known — and high — exploitation rates&lt;br /&gt;- vulnerabilities that are exploitable for full, unmonitored, or untraceableaccess&lt;br /&gt;- vulnerabilities that may put immediate lives at risk&lt;br /&gt;&lt;br /&gt;You don’t want someone to exploit a weakness that you knew about and&lt;br /&gt;intended to report. This will not make you popular with anyone.&lt;br /&gt;Your report is one way for your organization to determine the completeness&lt;br /&gt;and veracity of your work. Your peers can review your method, your findings,&lt;br /&gt;your analysis, and your conclusions, and offer constructive criticism or suggestions&lt;br /&gt;for improvement.&lt;br /&gt;&lt;br /&gt;If you find that your report is unjustly criticized, following the Ten&lt;br /&gt;Commandments of Ethical Hacking, should easily allow you to defend it.&lt;br /&gt;One last thing: When you find 50 things, report on 50 things. You need not&lt;br /&gt;include all 50 findings in the summary but you must include them in the&lt;br /&gt;detailed narrative. Withholding such information conveys an impression&lt;br /&gt;of laziness, incompetence, or an attempted manipulation of test results.&lt;br /&gt;Don’t do it.&lt;br /&gt;&lt;br /&gt;&lt;span style="font-weight: bold;"&gt;Understanding Standards&lt;/span&gt;&lt;br /&gt;Okay, we’ve told you that you need to develop a testing process — here’s&lt;br /&gt;where we give you guidance on how to do so. We wouldn’t keep you hanging&lt;br /&gt;by a wire (this is, after all, a wireless book). The following standards (which&lt;br /&gt;we get friendly with in the upcoming sections) provide guidance on performing&lt;br /&gt;your test:&lt;br /&gt;- ISO 17799&lt;br /&gt;- COBIT&lt;br /&gt;- SSE-CMM&lt;br /&gt;- ISSAF&lt;br /&gt;- OSSTMM&lt;br /&gt;&lt;br /&gt;You may find that the methodology you choose is preordained. For instance,&lt;br /&gt;when your organization uses COBIT, you should look to it for guidance. You&lt;br /&gt;don’t need to use all of these methodologies. Pick one and use it. A good&lt;br /&gt;place to start is with the OSSTMM.&lt;br /&gt;&lt;br /&gt;&lt;span style="font-weight: bold;"&gt;Using ISO 17799&lt;/span&gt;&lt;br /&gt;The ISO/IEC 17799 is an internationally adopted “code of practice for information&lt;br /&gt;security management” from the International Organization for Standardization&lt;br /&gt;(ISO). The international standard is based on British Standard BS-799.&lt;br /&gt;You can find information about the standard at www.iso.org.&lt;br /&gt;ISO/IEC 17799 is a framework or guideline for your ethical hack — not a true&lt;br /&gt;methodology — but you can use it to help you plan. The document does not&lt;br /&gt;specifically deal with wireless, but it does address network-access control.&lt;br /&gt;The document is a litany of best practices at a higher level than we would&lt;br /&gt;want for a framework for ethical hacking.&lt;br /&gt;One requirement in the document is to control access to both internal and&lt;br /&gt;external networked services. To cover this objective, you need to try to connect&lt;br /&gt;to the wireless access point and try to access any resource on the wired&lt;br /&gt;network.&lt;br /&gt;&lt;br /&gt;The document also requires that you ensure there are appropriate authentication&lt;br /&gt;mechanisms for users. You can test this by attempting to connect to a&lt;br /&gt;wireless access point (AP). When there is Open System authentication (see&lt;br /&gt;Chapter 16) you need not do any more work. Obviously no authentication&lt;br /&gt;is not appropriate authentication. APs with shared-key authentication may&lt;br /&gt;require you to use the tools shown in Chapter 15 to crack the key. If the AP is&lt;br /&gt;using WPA security, then you will need to use another tool, such as WPAcrack.&lt;br /&gt;Should the AP implement Extensible Authentication Protocol (EAP), you may&lt;br /&gt;need a tool such as asleap (see Chapter 16).&lt;br /&gt;Bottom line: These guidelines don’t give you a step-by-step recipe for testing,&lt;br /&gt;but they can help you clarify the objectives for your test.&lt;br /&gt;&lt;br /&gt;&lt;span style="font-weight: bold;"&gt;Using COBIT&lt;/span&gt;&lt;br /&gt;COBIT is an IT governance framework. Like ISO 17799, this framework will&lt;br /&gt;not provide you with a testing methodology, but it will provide you with the&lt;br /&gt;objectives for your test.&lt;br /&gt;You can find information about COBIT at www.itgi.org/.&lt;br /&gt;&lt;br /&gt;&lt;span style="font-weight: bold;"&gt;Using SSE-CMM&lt;/span&gt;&lt;br /&gt;Ever heard of the CERT? (Give you a hint: It’s not a breath mint or a candy.)&lt;br /&gt;It’s the Computer Emergency Response Team that’s part of the Software&lt;br /&gt;Engineering Institute (SEI) at Carnegie Mellon University in Pittsburgh,&lt;br /&gt;Pennsylvania. Well, the SEI is known for something else: It developed a&lt;br /&gt;number of capability maturity models (CMM) — essentially specs that can give&lt;br /&gt;you a handle on whether a particular system capability is up to snuff. The SEI&lt;br /&gt;included a CMM just for security — the Systems Security Engineering CMM&lt;br /&gt;(SSE-CMM for short). Now, the SSE-CMM won’t lay out a detailed method of&lt;br /&gt;ethical hacking, but it can provide a framework that will steer you right. The&lt;br /&gt;SSE-CMM can help you develop a scorecard for your organization that can&lt;br /&gt;measure security effectiveness.&lt;br /&gt;You can find out about SSE-CMM at www.sei.cmu.edu/.&lt;br /&gt;The Computer Emergency Response team also sends out security alerts and&lt;br /&gt;advisories. The CERT has a methodology as well — OCTAVE. OCTAVE stands&lt;br /&gt;for Operationally Critical Threat, Asset, and Vulnerability Evaluation. You can&lt;br /&gt;use OCTAVE as a methodology to build a team, identify threats, quantify vulnerabilities,&lt;br /&gt;and develop an action plan to deal with them.&lt;br /&gt;You can find OCTAVE at www.cert.org/octave.&lt;br /&gt;&lt;br /&gt;&lt;span style="font-weight: bold;"&gt;Using ISSAF&lt;/span&gt;&lt;br /&gt;The Open Information System Security Group (www.oissg.org) has published&lt;br /&gt;the Information Systems Security Assessment Framework (ISSAF).&lt;br /&gt;Developed as an initiative by information-security professionals, the ISSAF is&lt;br /&gt;a practical tool — a comprehensive framework you can use to assess how&lt;br /&gt;your security effectiveness. It’s an excellent resource to use as you devise&lt;br /&gt;your test. (Draft 0.1 has, in fact, 23 pages on WLAN security assessment.)&lt;br /&gt;The ISSAF details a process that includes the following steps:&lt;br /&gt;1. Information gathering&lt;br /&gt;   a. Scan&lt;br /&gt;   b. Audit&lt;br /&gt;2. Analysis and research&lt;br /&gt;3. Exploit and attack&lt;br /&gt;4. Reporting and presentation&lt;br /&gt;&lt;br /&gt;These steps correspond to our Ten Commandments of Ethical Hacking. For&lt;br /&gt;each of the steps just given, the document identifies appropriate tasks and&lt;br /&gt;tools. For example, the scanning step lists the following tasks:&lt;br /&gt;1. Detect and identify the wireless network&lt;br /&gt;2. Test for channels and ESSID&lt;br /&gt;3. Test the beacon broadcast frame and recording of broadcast information&lt;br /&gt;4. Test for rogue access points from outside the facility&lt;br /&gt;5. IP address collection of access points and clients&lt;br /&gt;6. MAC address collection of access points and clients&lt;br /&gt;7. Detect and identify the wireless network&lt;br /&gt;&lt;br /&gt;The document recommends you use programs such as Kismet, nmap, and&lt;br /&gt;ethereal as tools for Step 1.&lt;br /&gt;You also will find information in the document on the software you can use&lt;br /&gt;and the equipment you will need to build or acquire to do your assessment&lt;br /&gt;of your organization’s wireless-security posture.&lt;br /&gt;The document we reviewed was a beta version, but it shows promise and is&lt;br /&gt;worth watching. You can find the ISSAF at www.oissg.org/issaf.&lt;br /&gt;&lt;br /&gt;&lt;span style="font-weight: bold;"&gt;Using OSSTMM&lt;/span&gt;&lt;br /&gt;We do recommend you take a long and hard look at the OSSTMM — the Open&lt;br /&gt;Source Security Testing Methodology Manual (www.osstmm.org). The Institute&lt;br /&gt;for Security and Open Methodologies (ISECOM), an open-source collaborative&lt;br /&gt;community, developed the OSSTMM’s methods and goals much along the&lt;br /&gt;lines of the ISSAF: as a peer-review methodology. Now available as version&lt;br /&gt;3.0, the OSSTMM has been available since January 2001 and is more mature&lt;br /&gt;than the ISSAF.&lt;br /&gt;&lt;br /&gt;You’ll find that the OSSTMM gathers the best practices, standard legal issues,&lt;br /&gt;and core ethical concerns of the global security-testing community — but&lt;br /&gt;this document also serves another purpose: consistent definition of terms.&lt;br /&gt;The document provides a glossary that helps sort out the nuances of vulnerability&lt;br /&gt;scanning, security scanning, penetration testing, risk assessment,&lt;br /&gt;security auditing, ethical hacking, and security hacking. The document also&lt;br /&gt;defines white-hat, gray-hat, and black-hat hackers, so that by their metaphorical&lt;br /&gt;hats ye shall know them. But even more importantly (from your viewpoint&lt;br /&gt;as an ethical-hacker-to-be), it provides testing methodologies for wireless&lt;br /&gt;security, distilled in the following bullets:&lt;br /&gt;&lt;br /&gt;&lt;span style="font-weight: bold;"&gt;Posture review&lt;/span&gt;: General review of best practices, the organization’s&lt;br /&gt;industry regulations, the organization’s business justifications, the organization’s&lt;br /&gt;security policy, and the legal issues for the organization and&lt;br /&gt;the organization’s regions for doing business.&lt;br /&gt;&lt;span style="font-weight: bold;"&gt;Electromagnetic radiation (EMR) testing&lt;/span&gt;: Testing of the electromagnetic&lt;br /&gt;radiation emitted from wireless devices.&lt;br /&gt;&lt;span style="font-weight: bold;"&gt;802.11 wireless-networks testing&lt;/span&gt;: Testing of access to 802.11 WLANs.&lt;br /&gt;Bluetooth network testing: Testing of Bluetooth ad-hoc networks.&lt;br /&gt;&lt;span style="font-weight: bold;"&gt;Wireless-input-device testing:&lt;/span&gt; Testing of wireless input devices, such as&lt;br /&gt;mice and keyboards.&lt;br /&gt;&lt;span style="font-weight: bold;"&gt;Wireless-handheld testing:&lt;/span&gt; Testing of handheld wireless devices, such&lt;br /&gt;as personal digital assistants and personal electronic devices.&lt;br /&gt;&lt;span style="font-weight: bold;"&gt;Cordless-communications testing:&lt;/span&gt; Testing of cordless communications&lt;br /&gt;communication devices, such as cellular technology.&lt;br /&gt;&lt;span style="font-weight: bold;"&gt;Wireless-surveillance device testing:&lt;/span&gt; Testing of wireless surveillance or&lt;br /&gt;monitoring devices, such as cameras and microphones.&lt;br /&gt;&lt;span style="font-weight: bold;"&gt;Wireless-transaction device testing:&lt;/span&gt; Testing of wireless-transaction&lt;br /&gt;devices, such as uplinks for cash registers and other point of sale&lt;br /&gt;devices in the retail industry.&lt;br /&gt;&lt;span style="font-weight: bold;"&gt;RFID testing:&lt;/span&gt; Testing of RFID (Radio Frequency Identifier) tags.&lt;br /&gt;&lt;span style="font-weight: bold;"&gt;Infrared testing:&lt;/span&gt; Testing of infrared communications communication&lt;br /&gt;devices.&lt;br /&gt;&lt;span style="font-weight: bold;"&gt;Privacy review:&lt;/span&gt; General privacy review of the legal and ethical storage,&lt;br /&gt;transmission, and control of data, based on employee and customer&lt;br /&gt;privacy.&lt;br /&gt;&lt;br /&gt;Each step has associated tasks that provide more detail and specific tests. As&lt;br /&gt;well, each step has a table that outlines the expected results. For example,&lt;br /&gt;expected results for Step 3 include these:&lt;br /&gt;1. Verification of the organization’s security policy and practices — and those of its users.&lt;br /&gt;2. Identification of the outermost physical edge of the wireless network.&lt;br /&gt;3. Identification of the logical boundaries of the wireless network.&lt;br /&gt;4. Enumeration of access points that lead into the network.&lt;br /&gt;5. Identification of the IP-range (and possibly DHCP-server) of the wireless network.&lt;br /&gt;6. Identification of the encryption methods used for data transfer.&lt;br /&gt;7. Identification of the authentication methods of exploitable “mobile units” (that is, the clients) and users.&lt;br /&gt;8. Verification of the configuration of all devices.&lt;br /&gt;9. Determination of the flaws in hardware or software that facilitate attacks.&lt;br /&gt;&lt;br /&gt;Obviously, you need to cut and paste these tests according to your needs.&lt;br /&gt;For instance, should your organization not have infrared, then you would&lt;br /&gt;skip Step 11.&lt;br /&gt;&lt;br /&gt;The OSSTMM is available from www.isecom.org/osstmm/.&lt;br /&gt;With resources like these, you have a methodology — and everything you&lt;br /&gt;need to map out your plan. But rather than leave you hanging there, the rest&lt;br /&gt;of the book shows you how to work through a methodology.&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;Taken from:&lt;br /&gt;Hacking Wireless Networks For Dummies®&lt;br /&gt;Published by&lt;br /&gt;Wiley Publishing, Inc.&lt;br /&gt;111 River Street&lt;br /&gt;Hoboken, NJ 07030-5774&lt;br /&gt;www.wiley.com&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/5042359632580496092-258736472870881498?l=tricks-online.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://tricks-online.blogspot.com/feeds/258736472870881498/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=5042359632580496092&amp;postID=258736472870881498' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/5042359632580496092/posts/default/258736472870881498'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/5042359632580496092/posts/default/258736472870881498'/><link rel='alternate' type='text/html' href='http://tricks-online.blogspot.com/2008/10/wireless-hacking-process-2.html' title='The Wireless Hacking Process (2/2)'/><author><name>Haris Ainur Rozak</name><uri>http://www.blogger.com/profile/10792882402348607576</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='31' src='http://3.bp.blogspot.com/_W9mLVR5IXXE/TPe75L0FuUI/AAAAAAAAAFk/vbzJxbkO4eM/S220/n1504300046_30095369_4951961.jpg'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-5042359632580496092.post-6488797017912640622</id><published>2008-10-25T12:56:00.000-07:00</published><updated>2008-10-25T13:31:10.264-07:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='Computer Network and Security'/><title type='text'>The Wireless Hacking Process (1/2)</title><content type='html'>&lt;span style="font-weight: bold;"&gt;In This Chapter&lt;/span&gt;&lt;br /&gt;1. Understanding the hacking process&lt;br /&gt;2. The Ten Commandments of Ethical Hacking&lt;br /&gt;3. Understanding the standards&lt;br /&gt;4. Evaluating your results&lt;br /&gt;&lt;br /&gt;We teach courses on ethical hacking — and when you’re teaching, you&lt;br /&gt;need an outline. Our teaching outline always starts with the introduction&lt;br /&gt;to the ethical-hacking process that comprises most of this chapter.&lt;br /&gt;Inevitably, when the subject of an ethical hacking process comes up, the class&lt;br /&gt;participants visibly slump into their chairs, palpable disappointment written&lt;br /&gt;all over their faces. They cross their arms across their chests and shuffle&lt;br /&gt;their feet. Some even jump up and run from class to catch up on their phone&lt;br /&gt;calls. Why? Well, every class wants to jump right in and learn parlor tricks&lt;br /&gt;they can use to amaze their friends and boss. But that takes procedure and&lt;br /&gt;practice. Without a defined process, you may waste time doing nonessential&lt;br /&gt;steps while omitting crucial ones. So bear with us for a while; this background&lt;br /&gt;information may seem tedious, but it’s important.&lt;br /&gt;&lt;br /&gt;&lt;span style="font-weight: bold;"&gt;Obeying the Ten Commandments of Ethical Hacking&lt;/span&gt;&lt;br /&gt;In his book Hacking For Dummies (Wiley), Kevin discussed the hacker genre&lt;br /&gt;and ethos. In Chapter 1, he enumerated the Ethical Hacking Commandments.&lt;br /&gt;In that book, Kevin listed three commandments. But (as with everything in&lt;br /&gt;networking) the list has grown to fill the available space. Now these commandments&lt;br /&gt;were not brought down from Mount Sinai, but thou shalt follow&lt;br /&gt;these commandments shouldst thou decide to become a believer in the doctrine&lt;br /&gt;of ethical hacking. The Ten Commandments are&lt;br /&gt;1. Thou shalt set thy goals.&lt;br /&gt;2. Thou shalt plan thy work, lest thou go off course.&lt;br /&gt;3. Thou shalt obtain permission.&lt;br /&gt;4. Thou shalt work ethically.&lt;br /&gt;5. Thou shalt work diligently.&lt;br /&gt;6. Thou shalt respect the privacy of others.&lt;br /&gt;7. Thou shalt do no harm.&lt;br /&gt;8. Thou shalt use a scientific process.&lt;br /&gt;9. Thou shalt not covet thy neighbor’s tools.&lt;br /&gt;10. Thou shalt report all thy findings.&lt;br /&gt;&lt;br /&gt;&lt;span style="font-weight: bold;"&gt;Thou shalt set thy goals&lt;/span&gt;&lt;br /&gt;When Peter was a kid, he used to play a game at camp called Capture the&lt;br /&gt;Flag. The camp counselors would split all the campers into two teams: one&lt;br /&gt;with a red flag and one with a blue flag. The rules were simple: If you were on&lt;br /&gt;the blue team, then you tried to find the red flag that the red team had hidden&lt;br /&gt;and protected, and vice versa. Despite appearances, this game could get&lt;br /&gt;rough — on the order of, say, Australian Rules Football. It was single-minded:&lt;br /&gt;Capture the flag. This single-mindedness is similar to the goals of a penetration&lt;br /&gt;test, a security test with a defined goal that ends either when the goal is&lt;br /&gt;achieved or when time runs out. Getting access to a specific access point is&lt;br /&gt;not much different from capturing a flag: Your opponent has hidden it and is&lt;br /&gt;protecting it, and you’re trying to circumvent the defenses. Penetration testing&lt;br /&gt;is Capture the Flag without the intense physical exercise.&lt;br /&gt;&lt;br /&gt;How does ethical hacking relate to penetration testing? Ethical hacking is a&lt;br /&gt;form of penetration testing originally used as a marketing ploy but has come&lt;br /&gt;to mean a penetration test of all systems — where there is more than one goal.&lt;br /&gt;In either case, you have a goal. Your evaluation of the security of a wireless&lt;br /&gt;network should seek answers to three basic questions:&lt;br /&gt;1. What can an intruder see on the target access points or networks?&lt;br /&gt;2. What can an intruder do with that information?&lt;br /&gt;3. Does anyone at the target notice the intruder’s attempts — or successes?&lt;br /&gt;&lt;br /&gt;You might set a simplistic goal, such as finding unauthorized wireless access&lt;br /&gt;points. Or you might set a goal that requires you to obtain information from a&lt;br /&gt;system on the wired network. Whatever you choose, you must articulate&lt;br /&gt;your goal and communicate it to your sponsors.&lt;br /&gt;Involve others in your goal-setting. If you don’t, you will find the planning&lt;br /&gt;process quite difficult. The goal determines the plan. To paraphrase the&lt;br /&gt;Cheshire Cat’s response to Alice: “If you don’t know where you are going, any&lt;br /&gt;path will take you there.” Including stakeholders in the goal-setting process&lt;br /&gt;will build trust that will pay off in spades later on.&lt;br /&gt;&lt;br /&gt;&lt;span style="font-weight: bold;"&gt;Thou shalt plan thy work, lest thou go off course&lt;/span&gt;&lt;br /&gt;Few, if any of us, have an unlimited budget. We usually are bound by one or&lt;br /&gt;more constraints. Money, personnel or time may constrain you. Consequently,&lt;br /&gt;it is important for you to plan your testing.&lt;br /&gt;With respect to your plan, you should do the following:&lt;br /&gt;1. Identify the networks you intend to test.&lt;br /&gt;2. Specify the testing interval.&lt;br /&gt;3. Specify the testing process.&lt;br /&gt;4. Develop a plan and share it with all stakeholders.&lt;br /&gt;5. Obtain approval of the plan.&lt;br /&gt;&lt;br /&gt;Share your plan. Socialize it with as many people as you can. Don’t worry&lt;br /&gt;that lots of people will know that you are going to hack into the wireless network.&lt;br /&gt;If your organization is like most others, then it’s unlikely they can&lt;br /&gt;combat the organizational inertia to do anything to block your efforts. It is&lt;br /&gt;important, though, to remember that you do want to do your testing under&lt;br /&gt;“normal” conditions.&lt;br /&gt;&lt;br /&gt;&lt;span style="font-weight: bold;"&gt;Thou shalt obtain permission&lt;/span&gt;&lt;br /&gt;When it comes to asking for permission, remember the case of the Internal&lt;br /&gt;Auditor who, when caught cashing a payroll check he didn’t earn, replied, “I&lt;br /&gt;wasn’t stealing. I was just testing the controls of the system.” When doing ethical&lt;br /&gt;hacking, don’t follow the old saw that “asking forgiveness is easier than&lt;br /&gt;asking for permission.” Not asking for permission may land you in prison!&lt;br /&gt;You must get your permission in writing. This permission may represent the&lt;br /&gt;only thing standing between you and an ill-fitting black-and-white-striped suit&lt;br /&gt;and a lengthy stay in the Heartbreak Hotel. You must ask for — and get — a&lt;br /&gt;“get out of jail free” card. This card will state that you are authorized to perform&lt;br /&gt;a test according to the plan. It should also say that the organization will&lt;br /&gt;“stand behind you” in case you are criminally charged or sued. This means&lt;br /&gt;they will provide legal and organizational support as long as you stayed&lt;br /&gt;within the bounds of the original plan (see Commandment Two).&lt;br /&gt;&lt;br /&gt;&lt;span style="font-weight: bold;"&gt;Thou shalt work ethically&lt;/span&gt;&lt;br /&gt;The term ethical in this context means working professionally and with good&lt;br /&gt;conscience. You must do nothing that is not in the approved plan or that has&lt;br /&gt;been authorized after the approval of the plan.&lt;br /&gt;&lt;br /&gt;As an ethical hacker, you are bound to confidentiality and non-disclosure of&lt;br /&gt;information you uncover, and that includes the security-testing results. You&lt;br /&gt;cannot divulge anything to individuals who do not “need-to-know.” What you&lt;br /&gt;learn during your work is extremely sensitive — you must not openly share it.&lt;br /&gt;Everything you do as an ethical hacker must be aboveboard, and must support&lt;br /&gt;the goals of the organization. You should notify the organization whenever&lt;br /&gt;you change the testing plan, change the source test venue, or detect&lt;br /&gt;high-risk conditions — and before you run any new high-risk or high-traffic&lt;br /&gt;tests, as well as when any testing problems occur.&lt;br /&gt;&lt;br /&gt;You must also ensure you are compliant with your organization’s governance&lt;br /&gt;and local laws. Do not perform an ethical hack when your policy expressly&lt;br /&gt;forbids it — or when the law does.&lt;br /&gt;&lt;br /&gt;&lt;span style="font-weight: bold;"&gt;Thou shalt keep records&lt;/span&gt;&lt;br /&gt;Major attributes of an ethical hacker are patience and thoroughness. Doing&lt;br /&gt;this work requires hours bent over a keyboard in a darkened room. You may&lt;br /&gt;have to do some off-hours work to achieve your goals, but you don’t have to&lt;br /&gt;wear hacker gear and drink Red Bull. What you do have to do is keep plugging&lt;br /&gt;away until you reach your goal.&lt;br /&gt;In the previous commandment we talked about acting professionally. One&lt;br /&gt;hallmark of professionalism is keeping adequate records to support your&lt;br /&gt;findings. When keeping paper or electronic notes, do the following:&lt;br /&gt;- Log all work performed.&lt;br /&gt;- Record all information directly into your log.&lt;br /&gt;- Keep a duplicate of your log.&lt;br /&gt;- Document — and date — every test.&lt;br /&gt;- Keep factual records and record all work, even when you think you were not successful.&lt;br /&gt;&lt;br /&gt;This record of your test design, outcome, and analysis is an important aspect&lt;br /&gt;of your work. Your records will allow you to compile the information needed&lt;br /&gt;for a written or oral report. You should take care in compiling your records.&lt;br /&gt;Be diligent in your work and your documentation.&lt;br /&gt;&lt;br /&gt;&lt;span style="font-weight: bold;"&gt;Thou shalt respect the privacy of others&lt;/span&gt;&lt;br /&gt;Treat the information you gather with the utmost respect. You must protect&lt;br /&gt;the secrecy of confidential or personal information. All information you obtain&lt;br /&gt;during your testing — for example, encryption keys or clear text passwords —&lt;br /&gt;must be kept private. Don’t abuse your authority; use it responsibly. This&lt;br /&gt;means you won’t (for example) snoop into confidential corporate records or&lt;br /&gt;private lives. Treat the information with the same care you would give to&lt;br /&gt;your own personal information.&lt;br /&gt;&lt;br /&gt;&lt;span style="font-weight: bold;"&gt;Thou shalt do no harm&lt;/span&gt;&lt;br /&gt;The prime directive for ethical hacking is, “Do no harm.” Remember that the&lt;br /&gt;actions you take may have unplanned repercussions. It’s easy to get caught&lt;br /&gt;up in the gratifying work of ethical hacking. You try something, and it works,&lt;br /&gt;so you keep going. Unfortunately, by doing this you may easily cause an&lt;br /&gt;outage of some sort, or trample on someone else’s rights. Resist the urge to&lt;br /&gt;go too far — and stick to your original plan.&lt;br /&gt;&lt;br /&gt;Also, you must understand the nature of your tools. Far too often, people jump&lt;br /&gt;in and start using the tools shown in this book without truly understanding the&lt;br /&gt;full implications of the tool. They do not understand that setting up a monkeyin-&lt;br /&gt;the-middle attack, for example, creates a denial of service. Relax, take a deep&lt;br /&gt;breath, set your goals, plan your work, select your tools, and (oh yeah) read&lt;br /&gt;the documentation.&lt;br /&gt;&lt;br /&gt;Many of the tools we discuss here allow you to control the depth and breadth&lt;br /&gt;of the tests you perform. Remember this point when you want to run your&lt;br /&gt;tests on the wireless access point where your boss connects!&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;span style="font-weight: bold;"&gt;Thou shalt use a “scientific” process&lt;/span&gt;&lt;br /&gt;By this commandment, we don’t mean that you necessarily have to follow&lt;br /&gt;every single step of the scientific process, but rather that you adopt some of&lt;br /&gt;its principles in your work. Adopting a quasi-scientific process provides some&lt;br /&gt;structure and prevents undue chaos (of the sort that can result from a&lt;br /&gt;random-walk through your networks).&lt;br /&gt;&lt;br /&gt;For our purposes, the scientific process has three steps:&lt;br /&gt;1. Select a goal and develop your plan.&lt;br /&gt;2. Test your networks and systems to address your goals.&lt;br /&gt;3. Persuade your organization to acknowledge your work.&lt;br /&gt;&lt;br /&gt;We address the first two steps in previous commandments, so let’s look at the&lt;br /&gt;third step here. Your work should garner greater acceptance when you adopt&lt;br /&gt;an empirical method. An empirical method has the following attributes:&lt;br /&gt;1. &lt;span style="font-weight: bold;"&gt;Set quantifiable goals&lt;/span&gt;: The essence of selecting a goal (such as capturing&lt;br /&gt;the flag) is that you know when you’ve reached it. You either possess&lt;br /&gt;the flag or you don’t. Pick a goal that you can quantify: associating with&lt;br /&gt;ten access points, broken encryption keys or a file from an internal server.&lt;br /&gt;Time-quantifiable goals, such as testing your systems to see how they&lt;br /&gt;stand up to three days of concerted attack, are also good.&lt;br /&gt;&lt;br /&gt;2. &lt;span style="font-weight: bold;"&gt;Tests are consistent and repeatable&lt;/span&gt;: If you scan your network twice and&lt;br /&gt;get different results each time, this is not consistent. You must provide&lt;br /&gt;an explanation for the inconsistency, or the test is invalid. If we repeat&lt;br /&gt;your test, will we get the same results? When a test is repeatable or&lt;br /&gt;replicable, you can conclude confidently that the same result will occur&lt;br /&gt;no matter how many times you replicate it.&lt;br /&gt;&lt;br /&gt;3. &lt;span style="font-weight: bold;"&gt;Tests are valid beyond the “now” time frame&lt;/span&gt;: When your results are&lt;br /&gt;true, your organization will receive your tests with more enthusiasm if&lt;br /&gt;you’ve addressed a persistent or permanent problem, rather than a temporary&lt;br /&gt;or transitory problem.&lt;br /&gt;&lt;br /&gt;&lt;span style="font-weight: bold;"&gt;Thou shalt not covet thy neighbor’s tools&lt;/span&gt;&lt;br /&gt;No matter how many tools you may have, you will discover new ones. Wireless&lt;br /&gt;hacking tools are rife on the Internet — and more are coming out all the time.&lt;br /&gt;The temptation to grab them all is fierce. Take, for instance, “wardriving” tools.&lt;br /&gt;Early on, your choices of software to use for this “fascinating hobby” were&lt;br /&gt;limited. You could download and use Network Stumbler, commonly called&lt;br /&gt;NetStumbler, on a Windows platform, or you could use Kismet on Linux. But&lt;br /&gt;these days, you have many more choices: Aerosol, Airosniff, Airscanner,&lt;br /&gt;APsniff, BSD-Airtools, dstumbler, Gwireless, iStumbler, KisMAC, MacStumbler,&lt;br /&gt;MiniStumbler, Mognet, PocketWarrior, pocketWiNc, THC-RUT, THC-Scan, THCWarDrive,&lt;br /&gt;&lt;br /&gt;Radiate, WarLinux, Wellenreiter WiStumbler, and Wlandump, to name&lt;br /&gt;a few. And those are just the free ones. You also could purchase AirMagnet,&lt;br /&gt;Airopeek, Air Sniffer, AP Scanner, NetChaser, Sniff-em, Sniffer Wireless . . . Well&lt;br /&gt;you get the idea. Should you have unlimited time and budget, you could use&lt;br /&gt;all these tools. But we suggest you pick one tool and stick with it. (We give&lt;br /&gt;you a closer look at some from this list in Chapters 9 and 10.)&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;Taken from:&lt;br /&gt;Hacking Wireless Networks For Dummies®&lt;br /&gt;Published by&lt;br /&gt;Wiley Publishing, Inc.&lt;br /&gt;111 River Street&lt;br /&gt;Hoboken, NJ 07030-5774&lt;br /&gt;www.wiley.com&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/5042359632580496092-6488797017912640622?l=tricks-online.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://tricks-online.blogspot.com/feeds/6488797017912640622/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=5042359632580496092&amp;postID=6488797017912640622' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/5042359632580496092/posts/default/6488797017912640622'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/5042359632580496092/posts/default/6488797017912640622'/><link rel='alternate' type='text/html' href='http://tricks-online.blogspot.com/2008/10/wireless-hacking-process-1.html' title='The Wireless Hacking Process (1/2)'/><author><name>Haris Ainur Rozak</name><uri>http://www.blogger.com/profile/10792882402348607576</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='31' src='http://3.bp.blogspot.com/_W9mLVR5IXXE/TPe75L0FuUI/AAAAAAAAAFk/vbzJxbkO4eM/S220/n1504300046_30095369_4951961.jpg'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-5042359632580496092.post-9148355821128632355</id><published>2008-10-25T12:20:00.000-07:00</published><updated>2008-10-25T13:31:42.399-07:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='Computer Network and Security'/><title type='text'>Introduction to Wireless Hacking (2/2)</title><content type='html'>&lt;span style="font-weight: bold;"&gt;Wireless-network complexities&lt;/span&gt;&lt;br /&gt;In addition to the various security vulnerabilities we mentioned above, one&lt;br /&gt;of the biggest obstacles to secure wireless networks is their complexity. It’s&lt;br /&gt;not enough to just install a firewall, set strong passwords, and have detailed&lt;br /&gt;access control settings. No, wireless networks are a completely different&lt;br /&gt;beast than their wired counterparts. These days, a plain old AP and wireless&lt;br /&gt;network interface card (NIC) might not seem too complex, but there’s a lot&lt;br /&gt;going on behind the scenes.&lt;br /&gt;&lt;br /&gt;The big issues revolve around the 802.11 protocol. This protocol doesn’t just&lt;br /&gt;send and receive information with minimal management overhead (as does,&lt;br /&gt;say, plain old Ethernet). Rather, 802.11 is highly complex — it not only has to&lt;br /&gt;send and receive radio frequency (RF) signals that carry packets of network&lt;br /&gt;data, it also has to perform a raft of other functions such as&lt;br /&gt;- Timing message packets to ensure client synchronization and help avoid data-transmission collisions&lt;br /&gt;- Authenticating clients to make sure only authorized personnel connect to the network&lt;br /&gt;- Encrypting data to enhance data privacy&lt;br /&gt;- Checking data integrity to ensure that the data remains uncorrupted or unmodified&lt;br /&gt;&lt;br /&gt;For a lot of great information on wireless-network fundamentals, check out&lt;br /&gt;the book that Peter co-authored — Wireless Networks For Dummies.&lt;br /&gt;In addition to 802.11-protocol issues, there are also complexities associated&lt;br /&gt;with wireless-network design. Try these on for size:&lt;br /&gt;- Placement of APs relative to existing network infrastructure devices, such as routers, firewalls, and switches&lt;br /&gt;- What type of antennae to use and where to locate them&lt;br /&gt;- How to adjust signal-power settings to prevent RF signals from leaking outside your building&lt;br /&gt;- Keeping track of your wireless devices — such as APs, laptops, and personaldigital assistants (PDAs)&lt;br /&gt;- Knowing which device types are allowed on your network and which ones don’t belong&lt;br /&gt;These wireless-network complexities can lead to a multitude of security&lt;br /&gt;weaknesses that simply aren’t present in traditional wired networks.&lt;br /&gt;&lt;br /&gt;&lt;span style="font-weight: bold;"&gt;Getting Your Ducks in a Row&lt;/span&gt;&lt;br /&gt;Before going down the ethical-hacking road, it’s critical that you plan everything&lt;br /&gt;in advance. This includes:&lt;br /&gt;- Obtaining permission to perform your tests from your boss, project sponsor, or client&lt;br /&gt;- Outlining your testing goals&lt;br /&gt;- Deciding what tests to run&lt;br /&gt;- Grasping the ethical-hacking methodology (what tests to run, what to look for, how to follow-up, etc.) before you carry out your tests&lt;br /&gt;&lt;br /&gt;All the up-front work and formal steps to follow may seem like a lot of hassle&lt;br /&gt;at first. However, we believe that if you’re going to go to all the effort to perform&lt;br /&gt;ethical hacking on your wireless network as a true IT professional, do it&lt;br /&gt;right the first time around. It’s the only way to go.&lt;br /&gt;&lt;br /&gt;The law of sowing and reaping applies to the ethical-hacking planning phase.&lt;br /&gt;The more time and effort you put in up front, the more it pays off in the long&lt;br /&gt;run — you’ll be better prepared, have the means to perform a more thorough&lt;br /&gt;wireless-security assessment, and (odds are) you’ll end up with a more&lt;br /&gt;secure wireless network.&lt;br /&gt;Planning everything in advance saves you a ton of time and work in the longterm;&lt;br /&gt;you won’t regret it. Your boss or your client will be impressed to boot!&lt;br /&gt;&lt;br /&gt;&lt;span style="font-weight: bold;"&gt;Gathering the Right Tools&lt;/span&gt;&lt;br /&gt;Every job requires the right tools. Selecting and preparing the proper security&lt;br /&gt;testing tools is a critical component of the ethical-hacking process. If&lt;br /&gt;you’re not prepared, you’ll most likely spin your wheels and not get the&lt;br /&gt;desired results.&lt;br /&gt;&lt;br /&gt;Just because a wireless hacking tool is designed to perform a certain test,&lt;br /&gt;that doesn’t mean it will. You may have to tweak your settings or find&lt;br /&gt;another tool altogether. Also keep in mind that you sometimes have to take&lt;br /&gt;the output of your tools with a grain of salt. There’s always the potential&lt;br /&gt;for false positives (showing there’s a vulnerability when there’s not) and even&lt;br /&gt;false negatives (showing there’s no vulnerability when there is).&lt;br /&gt;The following tools are some of our favorites for testing wireless networks&lt;br /&gt;and are essential for performing wireless hacking tests:&lt;br /&gt;- Google — yep, this Web site is a great tool&lt;br /&gt;- Laptop computer&lt;br /&gt;- Global Positioning System (GPS) satellite receiver&lt;br /&gt;- Network Stumbler network stumbling software&lt;br /&gt;- AiroPeek network-analysis software&lt;br /&gt;- QualysGuard vulnerability-assessment software&lt;br /&gt;- WEPcrack encryption cracking software&lt;br /&gt;&lt;br /&gt;You can’t do without good security-testing tools, but no one of them is “the”&lt;br /&gt;silver bullet for finding and killing off all your wireless network’s vulnerabilities.&lt;br /&gt;A trained eye and a good mix of tools is the best combination for finding&lt;br /&gt;the greatest number of weaknesses in your systems.&lt;br /&gt;It’s critical that you understand how to use your various tools for the specific&lt;br /&gt;tests you’ll be running. This may include something as informal as playing&lt;br /&gt;around with the tools or something as formal as taking a training class. Don’t&lt;br /&gt;worry, we’ll show you how to work the basics when we walk you through specific&lt;br /&gt;tests in Chapters 5 through 16.&lt;br /&gt;&lt;br /&gt;&lt;span style="font-weight: bold;"&gt;To Protect, You Must Inspect&lt;/span&gt;&lt;br /&gt;After you get everything prepared, it’s time to roll up your sleeves and get&lt;br /&gt;your hands dirty by performing various ethical hacks against your wireless&lt;br /&gt;network. There are dozens of security tests you can run to see just how vulnerable&lt;br /&gt;your wireless systems are to attack The outcomes&lt;br /&gt;of these tests will show you what security holes can — or cannot —&lt;br /&gt;be fixed to make your wireless network more secure. Not to worry, we won’t&lt;br /&gt;leave you hanging with a bunch of vulnerabilities to fix. We’ll outline various&lt;br /&gt;countermeasures you can use to fix the weaknesses you find.&lt;br /&gt;In the next few sections, we outline the various types of security attacks to&lt;br /&gt;establish the basis for the vulnerability tests you’ll be running against your&lt;br /&gt;wireless network.&lt;br /&gt;&lt;br /&gt;&lt;span style="font-weight: bold;"&gt;Non-technical attacks&lt;/span&gt;&lt;br /&gt;These types of attacks exploit various human weaknesses, such as lack of&lt;br /&gt;awareness, carelessness, and being too trusting of strangers. There are also&lt;br /&gt;physical vulnerabilities that can give an attacker a leg up on firsthand access&lt;br /&gt;to your wireless devices. These are often the easiest types of vulnerabilities&lt;br /&gt;to take advantage of — and they can even happen to you if you’re not careful.&lt;br /&gt;These attacks include&lt;br /&gt;- Breaking into wireless devices that users installed on their own and left&lt;br /&gt;unsecured&lt;br /&gt;- Social engineering attacks whereby a hacker poses as someone else and&lt;br /&gt;coaxes users into giving out too much information about your network&lt;br /&gt;- Physically accessing APs, antennae, and other wireless infrastructure&lt;br /&gt;equipment to reconfigure it — or (worse) capture data off it&lt;br /&gt;&lt;br /&gt;&lt;span style="font-weight: bold;"&gt;Network attacks&lt;/span&gt;&lt;br /&gt;When it comes to the nitty-gritty bits and bytes, there are a lot of techniques&lt;br /&gt;the bad guys can use to break inside your wireless realm or at least leave it&lt;br /&gt;limping along in a nonworking state. Network-based attacks include&lt;br /&gt;- Installing rogue wireless APs and “tricking” wireless clients into connecting to them&lt;br /&gt;- Capturing data off the network from a distance by walking around, driving by, or flying overhead&lt;br /&gt;- Attacking the networking transactions by spoofing MAC addresses (masquerading as a legitimate wireless user), setting up man-in-the-middle (inserting a wireless system between an AP and wireless client) attacks, and more&lt;br /&gt;- Exploiting network protocols such as SNMP&lt;br /&gt;- Performing denial-of-service (DoS) attacks&lt;br /&gt;- Jamming RF signals&lt;br /&gt;&lt;br /&gt;&lt;span style="font-weight: bold;"&gt;Software attacks&lt;/span&gt;&lt;br /&gt;As if the security problems with the 802.11 protocol weren’t enough, we now&lt;br /&gt;have to worry about the operating systems and applications on wireless-client&lt;br /&gt;machines being vulnerable to attack. Here are some examples of software&lt;br /&gt;attacks:&lt;br /&gt;- Hacking the operating system and other applications on wireless-client machines&lt;br /&gt;- Breaking in via default settings such as passwords and SSIDs that are easily determined&lt;br /&gt;- Cracking WEP keys and tapping into the network’s encryption system&lt;br /&gt;- Gaining access by exploiting weak network-authentication systems&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;Taken from:&lt;br /&gt;Hacking Wireless Networks For Dummies®&lt;br /&gt;Published by&lt;br /&gt;Wiley Publishing, Inc.&lt;br /&gt;111 River Street&lt;br /&gt;Hoboken, NJ 07030-5774&lt;br /&gt;www.wiley.com&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/5042359632580496092-9148355821128632355?l=tricks-online.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://tricks-online.blogspot.com/feeds/9148355821128632355/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=5042359632580496092&amp;postID=9148355821128632355' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/5042359632580496092/posts/default/9148355821128632355'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/5042359632580496092/posts/default/9148355821128632355'/><link rel='alternate' type='text/html' href='http://tricks-online.blogspot.com/2008/10/introduction-to-wireless-hacking-2.html' title='Introduction to Wireless Hacking (2/2)'/><author><name>Haris Ainur Rozak</name><uri>http://www.blogger.com/profile/10792882402348607576</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='31' src='http://3.bp.blogspot.com/_W9mLVR5IXXE/TPe75L0FuUI/AAAAAAAAAFk/vbzJxbkO4eM/S220/n1504300046_30095369_4951961.jpg'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-5042359632580496092.post-4475386123718302983</id><published>2008-10-24T09:50:00.000-07:00</published><updated>2008-10-25T13:32:21.184-07:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='Computer Network and Security'/><title type='text'>Introduction to Wireless Hacking (1/2)</title><content type='html'>&lt;span style="font-weight: bold;"&gt;In This Chapter&lt;/span&gt;&lt;br /&gt;1. Understanding the need to test your wireless systems&lt;br /&gt;2. Wireless vulnerabilities&lt;br /&gt;3. Thinking like a hacker&lt;br /&gt;4. Preparing for your ethical hacks&lt;br /&gt;5. Important security tests to carry out&lt;br /&gt;6. What to do when you’re done testing&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;Wireless local-area networks — often referred to as WLANs or Wi-Fi&lt;br /&gt;networks — are all the rage these days. People are installing them in&lt;br /&gt;their offices, hotels, coffee shops, and homes. Seeking to fulfill the wireless&lt;br /&gt;demands, Wi-Fi product vendors and service providers are popping up just&lt;br /&gt;about as fast as the dot-coms of the late 1990s. Wireless networks offer convenience,&lt;br /&gt;mobility, and can even be less expensive to implement than wired&lt;br /&gt;networks in many cases. Given the consumer demand, vendor solutions, and&lt;br /&gt;industry standards, wireless-network technology is real and is here to stay.&lt;br /&gt;But how safe is this technology?&lt;br /&gt;&lt;br /&gt;Wireless networks are based on the Institute of Electrical and Electronics&lt;br /&gt;Engineers (IEEE) 802.11 set of standards for WLANs. In case you’ve ever wondered,&lt;br /&gt;the IEEE 802 standards got their name from the year and month this&lt;br /&gt;group was formed — February 1980. The “.11” that refers to the wireless LAN&lt;br /&gt;working group is simply a subset of the 802 group. There’s a whole slew of&lt;br /&gt;industry groups involved with wireless networking, but the two main players&lt;br /&gt;are the IEEE 802.11 working group and the Wi-Fi Alliance.&lt;br /&gt;&lt;br /&gt;Years ago, wireless networks were only a niche technology used for very specialized&lt;br /&gt;applications. These days, Wi-Fi systems have created a multibilliondollar&lt;br /&gt;market and are being used in practically every industry — and in every&lt;br /&gt;size organization from small architectural firms to the local zoo. But with this&lt;br /&gt;increased exposure comes increased risk: The widespread use of wireless systems&lt;br /&gt;has helped make them a bigger target than the IEEE ever bargained for.&lt;br /&gt;(Some widely publicized flaws such as the Wired Equivalent Privacy (WEP)&lt;br /&gt;weaknesses in the 802.11 wireless-network protocol haven’t helped things,&lt;br /&gt;either.) And, as Microsoft has demonstrated, the bigger and more popular you&lt;br /&gt;are, the more attacks you’re going to receive.&lt;br /&gt;&lt;br /&gt;With the convenience, cost savings, and productivity gains of wireless networks&lt;br /&gt;come a whole slew of security risks. These aren’t the common security&lt;br /&gt;issues, such as spyware, weak passwords, and missing patches. Those weaknesses&lt;br /&gt;still exist; however, networking without wires introduces a whole new&lt;br /&gt;set of vulnerabilities from an entirely different perspective.&lt;br /&gt;This brings us to the concept of ethical hacking. Ethical hacking — sometimes&lt;br /&gt;referred to as white-hat hacking — means the use of hacking to test and improve&lt;br /&gt;defenses against unethical hackers. It’s often compared to penetration testing&lt;br /&gt;and vulnerability testing, but it goes even deeper. Ethical hacking involves&lt;br /&gt;using the same tools and techniques the bad guys use, but it also involves&lt;br /&gt;extensive up-front planning, a group of specific tools, complex testing methodologies,&lt;br /&gt;and sufficient follow-up to fix any problems before the bad guys — the&lt;br /&gt;black- and gray-hat hackers — find and exploit them.&lt;br /&gt;&lt;br /&gt;Understanding the various threats and vulnerabilities associated with 802.11-&lt;br /&gt;based wireless networks — and ethically hacking them to make them more&lt;br /&gt;secure — is what this book is all about. Please join in on the fun.&lt;br /&gt;In this chapter, we’ll take a look at common threats and vulnerabilities associated&lt;br /&gt;with wireless networks. We’ll also introduce you to some essential wireless&lt;br /&gt;security tools and tests you should run in order to strengthen your airwaves.&lt;br /&gt;&lt;br /&gt;&lt;span style="font-weight: bold;"&gt;Why You Need to TestYour Wireless Systems&lt;/span&gt;&lt;br /&gt;Wireless networks have been notoriously insecure since the early days of&lt;br /&gt;the 802.11b standard of the late 1990s. Since the standard’s inception, major&lt;br /&gt;802.11 weaknesses, such as physical security weaknesses, encryption flaws,&lt;br /&gt;and authentication problems, have been discovered. Wireless attacks have&lt;br /&gt;been on the rise ever since. The problem has gotten so bad that two wireless&lt;br /&gt;security standards have emerged to help fight back at the attackers:&lt;br /&gt;&lt;br /&gt;- &lt;span style="font-weight: bold;"&gt;Wi-Fi Protected Access (WPA)&lt;/span&gt;: This standard, which was developed by&lt;br /&gt;the Wi-Fi Alliance, served as an interim fix to the well-known WEP vulnerabilities&lt;br /&gt;until the IEEE came out with the 802.11i standard.&lt;br /&gt;-  &lt;span style="font-weight: bold;"&gt;IEEE 802.11i (referred to as WPA2)&lt;/span&gt;: This is the official IEEE standard,&lt;br /&gt;which incorporates the WPA fixes for WEP along with other encryption&lt;br /&gt;and authentication mechanisms to further secure wireless networks.&lt;br /&gt;These standards have resolved many known security vulnerabilities of the&lt;br /&gt;802.11a/b/g protocols. As with most security standards, the problem with these&lt;br /&gt;wireless security solutions is not that the solutions don’t work — it’s that many&lt;br /&gt;network administrators are resistant to change and don’t fully implement them.&lt;br /&gt;Many administrators don’t want to reconfigure their existing wireless systems&lt;br /&gt;and don’t want to have to implement new security mechanisms for fear of&lt;br /&gt;making their networks more difficult to manage. These are legitimate concerns,&lt;br /&gt;but they leave many wireless networks vulnerable and waiting to be&lt;br /&gt;compromised.&lt;br /&gt;&lt;br /&gt;Even after you have implemented WPA, WPA2, and the various other wireless&lt;br /&gt;protection techniques described in this book, your network may still be at&lt;br /&gt;risk. This can happen when (for example) employees install unsecured wireless&lt;br /&gt;access points or gateways on your network without you knowing about&lt;br /&gt;it. In our experience — even with all the wireless security standards and&lt;br /&gt;vendor solutions available — the majority of systems are still wide open to&lt;br /&gt;attack. Bottom line: Ethical hacking isn’t a do-it-once-and-forget-it measure.&lt;br /&gt;It’s like an antivirus upgrade — you have to do it again from time to time.&lt;br /&gt;Knowing the dangers your systems face&lt;br /&gt;Before we get too deep into the ethical-hacking process, it will help to define&lt;br /&gt;a couple of terms that we’ll be using throughout this book. They are as follows:&lt;br /&gt;&lt;br /&gt;- &lt;span style="font-weight: bold;"&gt;Threat&lt;/span&gt;: A threat is an indication of intent to cause disruption within an&lt;br /&gt;information system. Some examples of threat agents are hackers, disgruntled&lt;br /&gt;employees, and malicious software (malware) such as viruses&lt;br /&gt;or spyware that can wreak havoc on a wireless network.&lt;br /&gt;- &lt;span style="font-weight: bold;"&gt;Vulnerability&lt;/span&gt;: A vulnerability is a weakness within an information&lt;br /&gt;system that can be exploited by a threat. Some examples are wireless&lt;br /&gt;networks not using encryption, weak passwords on wireless access&lt;br /&gt;points or APs (which is the central hub for a set of wireless computers),&lt;br /&gt;and an AP sending wireless signals outside the building. Wireless-network&lt;br /&gt;vulnerabilities are what we’ll be seeking out in this book.&lt;br /&gt;Beyond these basics, quite a few things can happen when a threat actually&lt;br /&gt;exploits the vulnerabilities of a various wireless network. This situation is&lt;br /&gt;called risk. Even when you think there’s nothing going across your wireless&lt;br /&gt;network that a hacker would want — or you figure the likelihood of something&lt;br /&gt;bad happening is very low — there’s still ample opportunity for trouble.&lt;br /&gt;Risks associated with vulnerable wireless networks include&lt;br /&gt;&lt;br /&gt;- Full access to files being transmitted or even sitting on the server&lt;br /&gt;- Stolen passwords&lt;br /&gt;- Intercepted e-mails&lt;br /&gt;- Back-door entry points into your wired network&lt;br /&gt;- Denial-of-service attacks causing downtime and productivity losses&lt;br /&gt;- Violations of state, federal, or international laws and regulations relating to privacy, corporate financial reporting, and more&lt;br /&gt;- “Zombies” — A hacker using your system to attack other networks making you look like the bad guy&lt;br /&gt;- Spamming — A spammer using your e-mail server or workstations to send out spam, spyware, viruses, and other nonsense e-mails&lt;br /&gt;&lt;br /&gt;We could go on and on, but you get the idea. The risks on wireless networks&lt;br /&gt;are not much different from those on wired ones. Wireless risks just have a&lt;br /&gt;greater likelihood of occurring — that’s because wireless networks normally&lt;br /&gt;have a larger number of vulnerabilities.&lt;br /&gt;&lt;br /&gt;The really bad thing about all this is that without the right equipment and&lt;br /&gt;vigilant network monitoring, it can be impossible to detect someone hacking&lt;br /&gt;your airwaves — even from a couple of miles away! Wireless-network compromises&lt;br /&gt;can include a nosy neighbor using a frequency scanner to listen in&lt;br /&gt;on your cordless phone conversations — or nosy co-workers overhearing&lt;br /&gt;private boardroom conversations. Without the physical layer of protection&lt;br /&gt;we’ve grown so accustomed to with our wired networks, anything is possible.&lt;br /&gt;&lt;br /&gt;&lt;span style="font-weight: bold;"&gt;Understanding the enemy&lt;/span&gt;&lt;br /&gt;The wireless network’s inherent vulnerabilities, in and of themselves, aren’t&lt;br /&gt;necessarily bad. The true problem lies with all the malicious hackers out&lt;br /&gt;there just waiting to exploit these vulnerabilities and make your job — and&lt;br /&gt;life — more difficult. In order to better protect your systems, it helps to&lt;br /&gt;understand what you’re up against — in effect, to think like a hacker. Although&lt;br /&gt;it may be impossible to achieve the same malicious mindset as the cyberpunks,&lt;br /&gt;you can at least see where they’re coming from technically and how&lt;br /&gt;they work.&lt;br /&gt;&lt;br /&gt;For starters, hackers are likely to attack systems that require the least&lt;br /&gt;amount of effort to break into. A prime target is an organization that has just&lt;br /&gt;one or two wireless APs. Our findings show that these smaller wireless networks&lt;br /&gt;help stack the odds in the hackers’ favor, for several reasons:&lt;br /&gt;- Smaller organizations are less likely to have a full-time network administrator keeping tabs on things.&lt;br /&gt;- Small networks are also more likely to leave the default settings on theirwireless devices unchanged, making them easier to crack into.&lt;br /&gt;- Smaller networks are less likely to have any type of network monitoring, in-depth security controls such as WPA or WPA2, or a wireless intrusiondetection system (WIDS). These are exactly the sorts of things that smart hackers take into consideration.&lt;br /&gt;&lt;br /&gt;However, small networks aren’t the only vulnerable ones. There are various&lt;br /&gt;other weaknesses hackers can exploit in networks of all sizes, such as the&lt;br /&gt;following:&lt;br /&gt;- The larger the wireless network, the easier it may be to crack Wired Equivalent Privacy (WEP) encryption keys. This is because larger networks likely receive more traffic, and an increased volume of packets to be captured thus leads to quicker WEP cracking times.&lt;br /&gt;- Most network administrators don’t have the time or interest in monitoring their networks for malicious behavior.&lt;br /&gt;- Network snooping will be easier if there’s a good place such as a crowded parking lot or deck to park and work without attracting attention.&lt;br /&gt;- Most organizations use the omnidirectional antennae that come standard on APs — without even thinking about how these spread RF signals around outside the building.&lt;br /&gt;- Because wireless networks are often an extension of a wired network, where there’s an AP, there’s likely a wired network behind it. Given this, there are often just as many treasures as the wireless network, if not more.&lt;br /&gt;- Many organizations attempt to secure their wireless networks with routine security measures — say, disabling service-set-identifier (SSID) broadcasts (which basically broadcasts the name of the wireless network to any wireless device in range) and enabling media-access control (MAC) address filtering (which can limit the wireless hosts that can attach to your network) — without knowing that these controls are easily circumvented.&lt;br /&gt;- SSIDs are often set to obvious company or department names that can give the intruders an idea which systems to attack first.&lt;br /&gt;&lt;br /&gt;Throughout this book, we point out ways the bad guys work when they’re&lt;br /&gt;carrying out specific hacks. The more cognizant you are of the hacker mindset,&lt;br /&gt;the deeper and broader your security testing will be — which leads to&lt;br /&gt;increased wireless security.&lt;br /&gt;&lt;br /&gt;Many hackers don’t necessarily want to steal your information or crash your&lt;br /&gt;systems. They often just want to prove to themselves and their buddies that&lt;br /&gt;they can break in. This likely creates a warm fuzzy feeling that makes them feel&lt;br /&gt;like they’re contributing to society somehow. On the other hand, sometimes&lt;br /&gt;they attack simply to get under the administrator’s skin. Sometimes they are&lt;br /&gt;seeking revenge. Hackers may want to use a system so they can attack other&lt;br /&gt;people’s networks under disguise. Or maybe they’re bored, and just want to&lt;br /&gt;see what information is flying through the airwaves, there for the taking.&lt;br /&gt;The “high-end” uberhackers go where the money is — literally. These are the&lt;br /&gt;guys who break into online banks, e-commerce sites, and internal corporate&lt;br /&gt;databases for financial gain. What better way to break into these systems than&lt;br /&gt;through a vulnerable wireless network, making the real culprit harder to trace?&lt;br /&gt;One AP or vulnerable wireless client is all it takes to get the ball rolling.&lt;br /&gt;Whatever the reasons are behind all of these hacker shenanigans,&lt;br /&gt;the fact is that your network, your information,&lt;br /&gt;and (heaven forbid) your job are at risk.&lt;br /&gt;&lt;br /&gt;There’s no such thing as absolute security on any network — wireless or not.&lt;br /&gt;It’s basically impossible to be completely proactive in securing your systems&lt;br /&gt;since you cannot defend against an attack that hasn’t already happened.&lt;br /&gt;Although you may not be able to prevent every type of attack, you can prepare,&lt;br /&gt;prepare, and prepare some more — to deal with attacks more effectively&lt;br /&gt;and minimize losses when they do occur.&lt;br /&gt;&lt;br /&gt;Information security is like an arms race — the attacks and countermeasures&lt;br /&gt;are always one-upping each other. The good thing is that for every new attack,&lt;br /&gt;there will likely be a new defense developed. It’s just a matter of timing. Even&lt;br /&gt;though we’ll never be able to put an end to the predatory behavior of unethical&lt;br /&gt;cyber thugs, it’s comforting to know that there are just as many ethical&lt;br /&gt;security professionals working hard every day to combat the threats.&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;Taken from:&lt;br /&gt;Hacking Wireless Networks For Dummies®&lt;br /&gt;Published by&lt;br /&gt;Wiley Publishing, Inc.&lt;br /&gt;111 River Street&lt;br /&gt;Hoboken, NJ 07030-5774&lt;br /&gt;www.wiley.com&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/5042359632580496092-4475386123718302983?l=tricks-online.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://tricks-online.blogspot.com/feeds/4475386123718302983/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=5042359632580496092&amp;postID=4475386123718302983' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/5042359632580496092/posts/default/4475386123718302983'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/5042359632580496092/posts/default/4475386123718302983'/><link rel='alternate' type='text/html' href='http://tricks-online.blogspot.com/2008/10/introduction-to-wireless-hacking-part-1.html' title='Introduction to Wireless Hacking (1/2)'/><author><name>Haris Ainur Rozak</name><uri>http://www.blogger.com/profile/10792882402348607576</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='31' src='http://3.bp.blogspot.com/_W9mLVR5IXXE/TPe75L0FuUI/AAAAAAAAAFk/vbzJxbkO4eM/S220/n1504300046_30095369_4951961.jpg'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-5042359632580496092.post-4440468087278550168</id><published>2008-10-21T19:58:00.000-07:00</published><updated>2008-10-24T09:04:57.777-07:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='Internet Business'/><title type='text'>Proof of Business Google AdSense</title><content type='html'>&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://4.bp.blogspot.com/_W9mLVR5IXXE/SQHxqL18PJI/AAAAAAAAACc/CxsNO0RduKA/s1600-h/bukti.PNG"&gt;&lt;img style="cursor: pointer; width: 400px; height: 264px;" src="http://4.bp.blogspot.com/_W9mLVR5IXXE/SQHxqL18PJI/AAAAAAAAACc/CxsNO0RduKA/s400/bukti.PNG" alt="" id="BLOGGER_PHOTO_ID_5260751546781285522" border="0" /&gt;&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;Proved that the business google adsense is a good business opportunity.&lt;br /&gt;one of them is from the site admin PlentyOfFish.com receive a check from google.com&lt;br /&gt;not less than U.S. $ .1,000,000&lt;br /&gt;&lt;br /&gt;PlentyOfFish.com site, is an online dating site, or sites such as friendster.com, where&lt;br /&gt;at this site you can find new friends, or exchange photos, share testimonials, send messages, etc..&lt;br /&gt;&lt;br /&gt;The high number of visitors is one of the key to the success of its business adsense.&lt;br /&gt;&lt;br /&gt;actually there are many who receive checks in large numbers, but only slightly once the photo display from a check on it.&lt;br /&gt;&lt;br /&gt;as in the photo below, from the site admin shoemoney.com that in the month of September 2005 received yesterday from google check of $ 132,994 or if it convert to the rupiah become more than 1 billion rupiah.&lt;br /&gt;&lt;br /&gt;This was only he received in 1 month, not next month for the incoming count.&lt;br /&gt;Following the check list of recipients of the program is admin adsense from the site:&lt;br /&gt;&lt;br /&gt;friendster.com: online dating sites, site search contacts&lt;br /&gt;rapidshare.de: a site for sharing files such as software, scripts, film, and others.&lt;br /&gt;megaupload.com: a site for sharing files such as software, scripts, film, and others.&lt;br /&gt;who.is: the site to check the owner's name address of the site&lt;br /&gt;iwebtool.com: sites that provide facilities to the webmaster.&lt;br /&gt;tinyurl.com: creator of the site's short url, or the address of a site that can make long into tinyurl.com / 1 (example only)&lt;br /&gt;themore.info: creator of the site's short url, or the address of a site that can make long into tinyurl.com / 1 (example only)&lt;br /&gt;thebestfive.com: the site author, can submit articles, publish your articles, etc..&lt;br /&gt;&lt;br /&gt;and many more other sites list the name of the recipient check adsense, which I can not mention one by one.&lt;br /&gt;&lt;br /&gt;When we see the owner of the sites above, then there are some similarities that make them successful.&lt;br /&gt;1. Traffic / number of visitors per day is very high, above 10 thousand visitor / day&lt;br /&gt;2. Providing this free, his example and themore.info tinyurl.com site, which provides a free link.&lt;br /&gt;3. Can be used to share a place, such as Rapidshare, megaupload, etc.&lt;br /&gt;&lt;br /&gt;The most important key to the success of a website is located from the number of visitors it. when many in the site visit, the business FUNKSTAR, etc. can be made in additional income.&lt;br /&gt;&lt;br /&gt;Sites such as their local detik.com, which provides news, can be included in the site's success.&lt;br /&gt;&lt;br /&gt;when you ask how many ads installation, you will be surprised to see how expensive to install a small image ads in the site.&lt;br /&gt;&lt;br /&gt;I never ask them to the website detik.com, and then send the list price, average, above the tens of million / month only to display image ads on the small site.&lt;br /&gt;&lt;br /&gt;I once site detik.com not interested to take business from adsense google.com, and if I were doing it sure can be a sizable infusion of additional large.&lt;br /&gt;&lt;br /&gt;&lt;div id="result_box" dir="ltr"&gt;Regard success&lt;/div&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/5042359632580496092-4440468087278550168?l=tricks-online.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://tricks-online.blogspot.com/feeds/4440468087278550168/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=5042359632580496092&amp;postID=4440468087278550168' title='2 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/5042359632580496092/posts/default/4440468087278550168'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/5042359632580496092/posts/default/4440468087278550168'/><link rel='alternate' type='text/html' href='http://tricks-online.blogspot.com/2008/10/proof-of-business-google-adsense.html' title='Proof of Business Google AdSense'/><author><name>Haris Ainur Rozak</name><uri>http://www.blogger.com/profile/10792882402348607576</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='31' src='http://3.bp.blogspot.com/_W9mLVR5IXXE/TPe75L0FuUI/AAAAAAAAAFk/vbzJxbkO4eM/S220/n1504300046_30095369_4951961.jpg'/></author><media:thumbnail xmlns:media='http://search.yahoo.com/mrss/' url='http://4.bp.blogspot.com/_W9mLVR5IXXE/SQHxqL18PJI/AAAAAAAAACc/CxsNO0RduKA/s72-c/bukti.PNG' height='72' width='72'/><thr:total>2</thr:total></entry><entry><id>tag:blogger.com,1999:blog-5042359632580496092.post-832702953230578595</id><published>2008-10-21T18:55:00.000-07:00</published><updated>2008-10-21T20:21:28.893-07:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='Internet Business'/><title type='text'>Business With a Google AdSense</title><content type='html'>&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://4.bp.blogspot.com/_W9mLVR5IXXE/SP6PQMJffFI/AAAAAAAAABQ/ebGHadxI_3w/s1600-h/logo_main.gif"&gt;&lt;img style="cursor: pointer;" src="http://4.bp.blogspot.com/_W9mLVR5IXXE/SP6PQMJffFI/AAAAAAAAABQ/ebGHadxI_3w/s400/logo_main.gif" alt="" id="BLOGGER_PHOTO_ID_5259798923117034578" border="0" /&gt;&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;Google AdSense, is a business number 2, which most recomended in my list of my portfolio online business. Besides free, their income also very large, important and serious remain consistent to build your business.&lt;br /&gt;&lt;br /&gt;Before I explain there is more you know him well, that google.com is currently occupying the rank 3 in the world range top sites and sites that get the most income. Still in first rank by the site yahoo.com (2002, the inflow of the site is yahoo.com 5 billion dollars).&lt;br /&gt;&lt;br /&gt;I do not know exactly how much income growth of the site google.com, but I believe their income count in the billions of dollars. From the billions of dollars Google's profit, Will you take replied only benefits?, May be just 0:01%, 0:02%% or 0:05?&lt;br /&gt;&lt;br /&gt;How the Google AdSense.&lt;br /&gt;&lt;br /&gt;You only place Google ads on your site, and you will be in the pay-per-click ads. google average pay for each click on the ads is $ 0:01 and $ 5.00&lt;br /&gt;&lt;br /&gt;You may laugh if you hear how "small" google pay. But you try to think, if there are 50,000 clicks x 0:01? = $ 500 in ad rates that count most small ie $ 0:01&lt;br /&gt;&lt;br /&gt;I quoted the following explanation adsense already in my life by Partners I Andargini Muhammad Rivai, from the site Vavai.com&lt;br /&gt;&lt;br /&gt;Google AdSense&lt;br /&gt;&lt;br /&gt;Google AdSense is a Google advertising program. Explanation nutshell, if we install the code of Google ads, ads will appear every visitor to the website / blog us. If visitors do click on one of your existing ads, we can get a fee from Google, from attending cents dollars to several dollars per click. Ads could appears in the form of text, images, combined text and pictures, video and the use of certain software (such as the Firefox browser).&lt;br /&gt;&lt;br /&gt;What is easy is that? Yes and no. Google AdSense is the art to attract visitors. More convenience and value of Google AdSense is located on the relevance of the ads that appear. Without the need to deceive visitors, the ads appear in accordance with relevant content and theme of the post website / blog. Visitors are attracted by these ads can only do click on ads without any sense of the strange, because the ads that appear are related to the material read.&lt;br /&gt;&lt;br /&gt;Complexity, there are many factors that support this success. Start from the ad placement, content to the post for the visitors to the ads that appear.&lt;br /&gt;&lt;br /&gt;Google AdSense is one way to get money from the internet that are real and can be proven. Unlike with other models of money the Internet, there is no way to pass by can be successful with Google AdSense. Here are some of my suggestions to the bloggers who are interested in the Google AdSense:&lt;br /&gt;&lt;br /&gt;1. Do not think turgid&lt;br /&gt;&lt;br /&gt;Many people who joined Google AdSense-called normal-and Publisher AdSense thinking can get a monthly salary in large amounts. This makes them tend to take a shortcut to do things that violate the TOS (Terms of Service) Google AdSense.&lt;br /&gt;&lt;br /&gt;Value of money obtained from the ad is clicked the amount varies. Can be only one of ten cents to U.S. $ dollar. It is also one to several dollars per click. In one day, can not do that, click on the ad (especially if only slightly). For people who want great results without hard work, of course, this is quite a thorn.&lt;br /&gt;&lt;br /&gt;Do not think flowery questions AdSense. Indeed, there are many successful AdSense publisher, but many also failed. Think is simple. If you want to join with Google AdSense, make it as a challenge. Do not think money problems first. Challenges Google AdSense is, how do we fix the ad, placing it in position and the lay-out appropriate and interesting visitors in large numbers. Make Google AdSense as the media continue to fill a good article on the blog and media practice as a discipline in writing. The more articles, the more opportunities the increase of visitors blog. The more you know, the greater the opportunities in ad clicks.&lt;br /&gt;&lt;br /&gt;If you get results from Google AdSense, brand it as a replacement cost of surfing, hosting, domain and a charge for articles that are made. Google AdSense checks are sent in multiples of U.S. $ 100, so, after the reduced cost of the transfer and disbursement checks, the value is still just enough to pay for the domain and hosting for 1 year. Interesting is not it?&lt;br /&gt;&lt;br /&gt;2. The Success Requires The Time&lt;br /&gt;Value reached U.S. $ 100 during the Google AdSense program can take a short but often need more time speaking month. If for 1 month you only get an average of U.S. $ 5 (much less than that, varied depending on the blog), you need 20 months to reach U.S. $ 100.&lt;br /&gt;&lt;br /&gt;Do not take a shortcut by clicking on the ads themselves, or tell friends, relatives, colleagues and others to deliberately do click on ads. Google has the ability to detect cheating and you can be. Remember Google's motto, "Do not be Evil." If dibanned, the value of the money you earn will have been destroyed and blog or website you can not re-registered.&lt;br /&gt;&lt;br /&gt;Patient on the results obtained. Results obtained reflect the value of your blog. If it is still minimal, that means we must focus more on efforts to improve the quality of writing articles and blogs.&lt;br /&gt;&lt;br /&gt;3. Show all of your ability&lt;br /&gt;Google AdSense publisher that successful usually learn a lot about how to fill the post with a variety of interesting things. How to place ads in the appropriate position. How the layout of the website / blog that good. How do I mix colors between ads and content of the website of sync and others. You can learn more about HTML, css (Cascading Style Sheet), Java Script, Engine Blog, website format and various other interesting things.&lt;br /&gt;&lt;br /&gt;Then, learn how to present the website / blog is elegant and attract visitors. Fill with a variety of interesting things. Create a target number of visitors who want to achieve each month.&lt;br /&gt;&lt;br /&gt;If you are interested in the Google AdSense, you can follow the following steps:&lt;br /&gt;&lt;br /&gt;1. Listing on Google AdSense&lt;br /&gt;You can register through the Google AdSense service URL http://www.google.com/adsense&lt;br /&gt;&lt;br /&gt;2. Making Website / Blog&lt;br /&gt;Blog is very easy to make, so this is more than I recommend. Blog website also true, only more personal and more simple than the general website. My advice, make a blog on blogspot service / blogger. This service is owned by Google. Can only use free blog service providers other, WordPress, for example. However, free WordPress not support Java Script, which is used for the AdSense code.&lt;br /&gt;&lt;br /&gt;This blog can be made only to register a blog. Later, after the registration is received, we can use the AdSense code on the blog's other property.&lt;br /&gt;&lt;br /&gt;If you have your own blog or even blog with the domain and hosting your own, there is no problem using your blog. Courtney, supports Java script and is eligible number 2 following:&lt;br /&gt;&lt;br /&gt;3. Fill Website / Blog Post with the English Language&lt;br /&gt;Until this is made, Google AdSense not support the Indonesian language. Fill your blog with a posting in English at least 5 posts. For the purposes of registration, use the copy-paste mechanism, of course, consider the conditions of the license on the website / blog that you copy.&lt;br /&gt;&lt;br /&gt;Condition number 2, I recommend the blog owner to create a new blog used for the purposes of registration. Later, after the registration is received, code-adsense it can be used on an existing blog. I had declined to 5 times during ngeyel register with the blog in Indonesia :-).&lt;br /&gt;&lt;br /&gt;follow the instructions provided. Fill with your data because the data and the email address used for payment.&lt;br /&gt;&lt;br /&gt;4. Registration Confirmation wait 2-5 days&lt;br /&gt;Google will give confirmation about the registration, both accepted and rejected in a period of 2 to 5 days. If rejected, repeat the procedure from initial registration. Google usually provides an explanation on the reasons for rejection.&lt;br /&gt;&lt;br /&gt;If accepted, you will be given the address to take the adsense code to be installed on the website / blog. How to put adsense code depending on the engine's use. To which I use Serendipity, the plugin is available that is ready to use. Some blog engine also has a plugin that facilitates the installation adsense code. WordPress for example.&lt;br /&gt;&lt;br /&gt;5. Make Improvement&lt;br /&gt;Once the code is used adsense, do Improvement on the blog. Learn how to integrate Google AdSense with the layout that you use. To do creative blog visitors increased.&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;For solutions that you do not have the Website.&lt;br /&gt;&lt;br /&gt;If you do not have a website, you can display your adsense ads in www.TheBestFive.com,&lt;br /&gt;With Note: You write articles or articles to contribute to this site, and these articles can be any theme, and must use English as the language.&lt;br /&gt;&lt;br /&gt;If your article in the load on this site, the article you, will you adsense ads appear.&lt;br /&gt;&lt;br /&gt;How to register:&lt;br /&gt;1. Please refer to www.TheBestFive.com,&lt;br /&gt;2. Click the paper become the author.&lt;br /&gt;3. Adsense and enter your ID, your ID adsense roughly like this: Pub-XXXXXX&lt;br /&gt;4. Write articles.&lt;br /&gt;5. When loaded, then your adsense ads will appear on the site.&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;Regard success and hopefully useful.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/5042359632580496092-832702953230578595?l=tricks-online.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://tricks-online.blogspot.com/feeds/832702953230578595/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=5042359632580496092&amp;postID=832702953230578595' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/5042359632580496092/posts/default/832702953230578595'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/5042359632580496092/posts/default/832702953230578595'/><link rel='alternate' type='text/html' href='http://tricks-online.blogspot.com/2008/10/business-with-google-adsense.html' title='Business With a Google AdSense'/><author><name>Haris Ainur Rozak</name><uri>http://www.blogger.com/profile/10792882402348607576</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='31' src='http://3.bp.blogspot.com/_W9mLVR5IXXE/TPe75L0FuUI/AAAAAAAAAFk/vbzJxbkO4eM/S220/n1504300046_30095369_4951961.jpg'/></author><media:thumbnail xmlns:media='http://search.yahoo.com/mrss/' url='http://4.bp.blogspot.com/_W9mLVR5IXXE/SP6PQMJffFI/AAAAAAAAABQ/ebGHadxI_3w/s72-c/logo_main.gif' height='72' width='72'/><thr:total>0</thr:total></entry></feed>
