Home
Calendar
Certifications
Columns
Features
Forum
Resources
Vitals
Latest Additions
April 2013 Free Giveaway Sponsor - eLearnSecurity
Human Intelligence to Navigate the Security Data Deluge
February 2013 Free Giveaway Winner of SANS CyberCon Training
Interview: Bugcrowd Founders on Herding Ninjas for Crowdsourced Bug Bounties
Network Forensics: The Tree in the Forest
March 2013 Free Giveaway Sponsor - Mile2
Book Review: Violent Python
February 2013 Free Giveaway Sponsor - SANS
Holiday 2012 Free Giveaway Winner of Metasploit Pro by Rapid7
Course Review: SANS FOR408 Computer Forensic Investigations – Windows In-Depth
The Security Consulting Sugar High
Tutorial: Fun with SMB on the Command Line
Interview: Ilia Kolochenko, CEO of High-Tech Bridge
October 2012 Free Giveaway Winner of LearningGate Training
The Broken: Assessing Corporate Security in 2012 to Make a Better 2013
EH-Net Login
Welcome Guest.
Username:
Password:
Remember me
Lost Password?
No account yet?
Register
Who's Online
We have 47 guests online
Free Business and Tech Magazines and eBooks
You are here:
Home
Ethical Hacking Discussions and Related Certifications
Social Engineering
Email engineering
EH-Net
May 24, 2013, 04:06:02 AM
Welcome,
Guest
. Please
login
or
register
.
Did you miss your
activation email?
1 Hour
1 Day
1 Week
1 Month
Forever
Login with username, password and session length
News
: Go back to The Ethical Hacker Network Online Magazine
Home Page
Home
Help
Calendar
Login
Register
EH-Net
>
Ethical Hacking Discussions and Related Certifications
>
Social Engineering
(Moderator:
don
) >
Email engineering
Pages: [
1
]
Go Down
« previous
next »
Print
Author
Topic: Email engineering (Read 36567 times)
0 Members and 1 Guest are viewing this topic.
W3bWarl0cK
Newbie
Offline
Posts: 9
Email engineering
«
on:
June 18, 2009, 07:11:00 AM »
I had an idea about a way to prank my brother.
My idea was to try to get my brother to give me his facebook password, and then add rediculous applications to his account...
To do this, I was hoping to change my email account settings in Outlook to make it look like I'm sending him an email from facebook saying that it looks like his account has been hacked and that his password may have been changed. And then asking for his password to make sure the records on facebook's systems are accurate.
I managed to change the name on the email, but when I read the test mail, it went through as 'Facebook Support [
w3bwarl0ck@gmail.com
].
Obviously, this is a problem and it made me think, is it actually possible to fake your email address? If so, how? I changed the email address on my gmail account in outlook, and I through the only sign that the mail's fake would be in the headers...
Logged
UNIX
Hero Member
Offline
Posts: 1235
Re: Email engineering
«
Reply #1 on:
June 18, 2009, 07:17:46 AM »
You may research mail-spoofing..
Is there any particular reason for such "pranking"? Guess you wouldn't like the idea if someone is pranking with you.
I would recommend to put your efforts somewhere else which is more useful for yourself such as learning networking basics or whatever else interests you.
Logged
W3bWarl0cK
Newbie
Offline
Posts: 9
Re: Email engineering
«
Reply #2 on:
June 18, 2009, 08:44:47 AM »
No real reason for the prank, just jokes between brothers...
Last time, I took a screenshot of his desktop, hid all his icons and set the background image to the screenshot I took... He was really confused, but we got a good laugh out of it...
Logged
unsupported
Sr. Member
Offline
Posts: 318
Unofficial Newbie Moderator
Re: Email engineering
«
Reply #3 on:
June 18, 2009, 08:59:23 AM »
There are ways to spoof emails, but why not think outside the box? Since you have physically access to the computer there are a lot more opportunities for you. Install key logging software on his machine and just look for the password in the output. Or find a program to read his browser settings, just in case he saved the Facebook password locally.
Either that, or you can hold him down and give him a pink belly until he gives up his password.
Logged
-Un
CISSP, GCIH, GCIA, C|EH, Sec+, Net+, MCP
Ketchup
Hero Member
Offline
Posts: 1021
Re: Email engineering
«
Reply #4 on:
June 18, 2009, 09:23:46 AM »
That's so juvenile. Why not just change his shell to something like, oh, a looped rickroll video. There is also the BSODomizer.
Logged
~~~~~~~~~~~~~~
Ketchup
don
Editor-In-Chief
Administrator
Hero Member
Offline
Posts: 4168
Editor-In-Chief
Re: Email engineering
«
Reply #5 on:
June 18, 2009, 03:37:50 PM »
Or if we're trying to be creative, these domains are available:
facebooksupport.org
face-book-support.com
facebookapproval.com
face-book-security.com
Have fun... but be careful. Your brother, in continuing the prank, could call the authorities on you. Then who'd be laughing!!
Don
Logged
CISSP, MCSE, CSTA, Security+ SME
UNIX
Hero Member
Offline
Posts: 1235
Re: Email engineering
«
Reply #6 on:
June 19, 2009, 12:23:20 AM »
Quote from: don on June 18, 2009, 03:37:50 PM
Then who'd be laughing!!
I guess the authorities/ police.
Logged
TeknoGod
Newbie
Offline
Posts: 5
I want to slap the shit out of Facebook!!!
Re: Email engineering
«
Reply #7 on:
August 05, 2010, 02:34:19 PM »
Im still new to this game and dont know much about anything yet. But one thing I do know is people and when someone wants to spy on his old lady. Dont trip, we have all been there before. Try putting on your deep voice and breaking stuff when she wants to go out with her friends and leave you to flip out.
Trust me its better in the long run to be the azz than it is to be the psycho computer stalker boyfriend.
If im wrong about this I apoligize but hacking your bro is only gonna get you knocked out. Plus its not that funny, try sending him an email with his profile in a fake megans list newsletter.
Logged
Help me!!!!! I need a mentor who lives in Los Angeles CA
Synquell
Full Member
Offline
Posts: 169
Re: Email engineering
«
Reply #8 on:
August 06, 2010, 03:38:05 AM »
Changing a desktop background is one thing, gaining access to his private data is another.
That's a line I wouldn't like to cross with my sis (and she with me).
Could be the start of a nice cyberwar between the two of you though, might be a good opportunity to learn.
Wargames ftw!
In any case, if you do continue, have fun. But be ready for some hard-ass retaliation coming your way. At least that would be the case with me if you were my brother
Logged
Twitter:
https://twitter.com/dietervds
Blog:
https://synquell.wordpress.com
(not much there yet)
The beginning of knowledge is the discovery of something we do not understand.
kerpap
Newbie
Offline
Posts: 8
Re: Email engineering
«
Reply #9 on:
August 10, 2010, 11:35:27 PM »
I dont condone this but I would say there is a much easier way to gain a facebook password.
create an html page that looks like the facebook login or a page that says login with your facebook account. then send a message to your brother saying, Wow you gotta check out this game! or Wow this site looks really cool!
you can easily create a page that will submit that data to your email then you have access.
the reason I say this is because this is one of the most common ways hackers gain access to social networking and or any other online account info
Phishing
Logged
nytfox
Newbie
Offline
Posts: 20
Re: Email engineering
«
Reply #10 on:
January 31, 2012, 06:05:55 AM »
you can use a fake email sender. with that you can send from anyones e-mail address. and if you wanna get his password . do a MITM in the local network and grab the password .
Logged
Unlike others I love NULLS
http://treasuresec.com
jinwald12
Jr. Member
Offline
Posts: 77
Re: Email engineering
«
Reply #11 on:
March 06, 2012, 10:15:57 PM »
http://emkei.cz/
my personal favorite
Logged
where did all the fun go?
millwalll
Guest
Re: Email engineering
«
Reply #12 on:
March 07, 2012, 06:52:20 PM »
This is a little off topic but I purchased an item online from a major company in the uk today and got an email to confirm my order. I then saw this bit in the email
Quote
Security
We will never ask you to send any personal details via email. If we require such details, for security reasons we will ask you to contact us by phone. Should you receive an email claiming to be from blar blar requesting this kind of information, please do not respond to it but do let us know.
Am I reading this wrong but does this not leave them open to a SE attack for example please contact us asap on 0111111111 then use social engineering to get all the personal details?
Logged
Pages: [
1
]
Go Up
Print
« previous
next »
Jump to:
Please select a destination:
-----------------------------
EH-Net
-----------------------------
=> Calendar Of Events
===> ChicagoCon 2007
===> ChicagoCon 2008s
===> ChicagoCon 2008f
===> ChicagoCon 2009s
=> Ethical Hacktivism
=> News Items and General Discussion About EH-Net
===> Greetings
=> Special Events
-----------------------------
Ethical Hacking Discussions and Related Certifications
-----------------------------
=> General Certification
===> Networking
===> OS
===> Security
=> Compliance, Regulations & Standards
=> Control Systems
=> Cyber Warfare
=> Forensics
===> CCE / MCCE - (Master) Certified Computer Examiner
===> CHFI - Computer Hacking Forensic Investigator
===> EnCE - EnCase® Certified Examiner
===> GCFA - GIAC Certified Forensics Analyst
=> Hardware
=> Incident Response
===> CSIH - Computer Security Incident Handler
===> GCIH - GIAC Certified Incident Handler
=> Malware
===> Advisories
=> Mobile
=> Network Pen Testing
===> CEH - Certified Ethical Hacker
===> CPTC - Certified Penetration Testing Consultant
===> CPTE - Certified Penetration Testing Engineer
===> CSTA - Certified Security Testing Associate
===> eCPPT - eLearnSecurity Certified Professional Penetration Tester
===> ECSA - EC-Council Certified Security Analyst
===> GPEN - GIAC Certified Penetration Tester
===> OSCP - Offensive Security Certified Professional
=> Physical Security
=> Programming
=> Social Engineering
=> Web Applications
=> Wireless
===> CWNP Certs
===> GAWN - GIAC Assessing Wireless Networks
===> OSWP - Offensive Security Wireless Professional
=> Other
-----------------------------
Columns
-----------------------------
=> Editor-In-Chief
=> Andress
=> Gates
=> Haddix
=> Hadnagy
=> Heffner
=> Hoffman
=> Linn
=> RichM
=> Murray
=> J. Peltier
=> Weidman
=> Wilson
-----------------------------
Features
-----------------------------
=> /root
=> Book Reviews
=> Opinions
=> Skillz
===> Examples
===> May 06 - Star Hacks, Episode V: The Empire Hacks Back
===> July 06 - Hack Bill!
===> Sept 06 - Netcat in the Hat
===> Nov 06 - Hitch-Hackers Guide to the Galaxy
===> Dec 06 - A Christmas (Hacking) Story
===> Feb 07 - Charlottes Web Site
===> April 07 - Microsoft Office Space
===> June 07 - Serenity Hack
===> Oct 07 - Worst. Ethical. Hacker. Challenge. Ever.
===> Dec 07 - Frosty the Snow Crash
===> March 2008 - It Happened One Friday
===> Oct 2008 - Scooby Doo and the Crypto Caper
===> Dec 08 - Santa Claus Is Hacking to Town
===> Feb 2009 - Brady Bunch Boondoggle
===> July 2009 - Prison Break
===> October 2009 - SSHliders
===> December 2009 - Miracle on Thirty-Hack Street
===> December 2010 - The Nightmare Before Charlie Browns Christmas
-----------------------------
Resources
-----------------------------
=> Career Central
===> Looking For Work
===> Looking To Hire
=> Links to cool sites.
=> Mass Media
=> News from the Outside World
=> Tools
=> Tutorials
===> Tutorial Requests
Loading...
Exclusive Deal
SANSFIRE 2013
June 15 - 22
5% Off
w/ Code
:
EHN_5
SANS Deals 4 EH-Netters
5% OFF
Any
SANS Course
in Any Format!
Coupon Code:
EHN_5
Including
SANS Rocky Mountain 2013
&
SANS Boston 2013
Polls
Compared to this year, 2013 will be:
Great!
Better.
About the same.
Little worse.
FUBAR!
Recent Forum Topics
News Items and General Discussion About EH-Net
: ÌÀÃÀÇÈÍ ÌÎÄÍÎÉ ÎÄÅÆÄÛ APPLE-FASHION!
(0) by
Infabeemace
News Items and General Discussion About EH-Net
: When your benjamin will be to your own car and truck clean up
(0) by
areluctes
Network Pen Testing
: Want a challenge? Want a GXPN practice exam?
(0) by
ajohnson
GCIH - GIAC Certified Incident Handler
: Passed my GCIH
(8) by
ajohnson
News Items and General Discussion About EH-Net
: Change is Coming to EH-Net!!
(29) by
ajohnson
GCIH - GIAC Certified Incident Handler
: GCIH Free Practice test attempt
(1) by
prats84
Greetings
: Hi from the UK
(4) by
MrTuxracer
EH-Net News Feeds
Latest Additions
Privacy Notice
for TDCC & All Properties
© 2013 The Ethical Hacker Network
Joomla!
is Free Software released under the GNU/GPL License.