Browsing Author

Prateek Gianchandani


Prateek Gianchandani, a recent IIT graduate, has interests in the field of Penetration Testing, Web Application Security and Intrusion Detection. He is currently a researcher for InfoSec Institute. In the past he has worked for security-based startups. You can contact him at prateek.searchingeye@gmail.com and on twitter @prateekg147



iOS-App-Security-Part-5_06172013 0

IOS Application security Part 5 – Advanced Runtime analysis and manipulation using Cycript (Yahoo Weather App)

Introduction In the previous article, we learnt how to setup Cycript on your idevice, hook into a running process and obtain information about its properties

June 17, 2013 Application Security
yahoo-app06102013 0

iOS Application Security Part 4 – Runtime Analysis Using Cycript (Yahoo Weather App)

Introduction In the previous article, we learnt about the runtime capabilities of an IOS App written in Objective-C which uses the Cocoa framework. In this

June 10, 2013 Application Security
ObjectiveCRuntime06032013 0

IOS Application security Part 3 – Understanding the Objective-C Runtime

Introduction Almost all the native IOS applications are written in Objective-C. All these apps use Cocoa, which is a library that sits on top on

June 03, 2013 Application Security
iOS-Application 0

IOS Application security Part 2 – Getting class information of IOS apps

Introduction Have you ever checked out an IOS app and thought it was cool, and wondered if you could find some information about the source

May 07, 2013 Application Security
IOS-app-security 4

IOS Application security Part 1 – Setting up a mobile pentesting platform

Introduction In this article series, we will be learning about the tools and techniques required to perform penetration testing and Vulnerability assessment on IOS Applications.

April 26, 2013 Application Security
Backtrack_5_blue 0

Backtrack 5 R3 Walkthrough, Part 4

DHCPig DHCPig is a very nice and handy little tool used to carry out an advanced DHCP exhaustion attack. It does this by grabbing all

November 12, 2012 Hacking
Backtrack_5_blue 0

Backtrack 5 R3 Walkthrough – Part 3

This article is in continuation to part 2 of the Backtrack 5 r3 walkthrough series. In this article we will we look at some of

November 05, 2012 Hacking
Backtrack_5_blue 0

Backtrack 5 R3 Walkthrough part 2

This article is in continuation to part 1 of the Backtrack Walkthrough Series. In the previous articles we discussed some of the most important new

October 04, 2012 Hacking
Backtrack_5_blue 8

Backtrack 5 R3 Walkthrough part 1

Backtrack is one of the most popular Linux distributions used for Penetration testing and Security Auditing. The Backtrack development team is sponsored by Offensive Security.

September 27, 2012 Hacking
honey 0

Ghost USB Honeypot Part 2 – Installing and Running the Honeypot

This article is in continuation of Part 1 of the series on Ghost USB Honeypot. Malware threats have become very common these days and hence

September 18, 2012 Forensics
honey 0

Ghost USB Honeypot Part 1- Interview with Project Leader Sebastian Poeplau

Introduction Malware threats have become very common these days. In the past, many honeypots have been created to detect malware propagation over the network. These

August 15, 2012 Other
Defcon_700x500 0

Defcon 20 Day 3 Review

Defcon day 3 started with one of the most awaited talks of Defcon 20. It was the talk “Defeating PPTP VPNs and WPA2 Enterprise with

August 03, 2012 Other
defcon20_badge_2 0

Defcon 20 Day 2

The talks on Defcon day 2 were scheduled to begin from 10 am. I reached the venue at 8:30 am and decided to use the

July 31, 2012 Other
defcon20_badge_2 1

Defcon 20 Day 1 Review

This article will discuss about the talks and events that happened on Defcon day 1. Venue: Rio Hotel and Casino We reached Rio Hotel at

July 27, 2012 Other
defenders 1

Defending the Internet with Project Meshnet

Introduction Topics related to Internet censorship have been debated frequently in the last few years. The main purpose of most Internet censorship actions is to

July 11, 2012 Hacking
owl 1

w3af walkthrough and tutorial part 4 – w3af tools, profiles and scripting

This is part 4 in a series. Part 1 is available here:w3af Tutorial Part 1 Part 2 is available here:Discovery and Audit plugins Part 3

May 10, 2012 Application Security
ammonite 2

Scanning the Web with Ammonite

Introduction Ammonite is a Fiddler extension used to scan web applications for common vulnerabilities like verbose and blind SQL injection, OS commanding, local file inclusion,

May 08, 2012 Hacking
owl 0

w3af walkthrough and tutorial part 3 – Remaining plugins

In the previous article w3af walkthrough and tutorial part 2 – Discovery and Audit plugins, we looked at the various discovery and audit plugins used by w3af

April 16, 2012 Application Security
owl 6

w3af walkthrough and tutorial part 2 – Discovery and Audit plugins

In the previous article w3af walkthrough and tutorial Part 1 we looked at how to use the w3af console. We also learnt about the different

March 14, 2012 Application Security
forgery 0

Abusing Social Networking Sites to Perform Content Forgery

Web Application vulnerabilities in social networking sites are very common these days. In this article, we will discuss a vulnerability found in social networking sites

March 01, 2012 Application Security, Hacking
Back to Top Copyright © 2012 - InfoSec Institute