Wednesday, 21 September 2011

Firewall


firewall
There are several types of firewall techniques:
·  Packet filter: Looks at each packet entering or leaving the network and accepts or rejects it based on user-defined rules. Packet filtering is fairly effective and transparent to users, but it is difficult to configure. In addition, it is susceptible to IP spoofing.
·  Application gateway: Applies security mechanisms to specific applications, such as FTP and Telnet servers. This is very effective, but can impose a performance degradation.
·  Circuit-level gateway: Applies security mechanisms when a TCP or UDP connection is established. Once the connection has been made, packets can flow between the hosts without further checking.
·  Proxy server: Intercepts all messages entering and leaving the network. The proxy server effectively hides the true network addresses.

History

Firewall technology emerged in the late 1980s when the Internet was a fairly new technology in terms of its global use and connectivity. The original idea was formed in response to a number of major internet security breaches, which occurred in the late 1980s. In 1988 an employee at the NASA Ames Research Center in California sent a memo by email to his colleagues that read,
We are currently under attack from an Internet VIRUS! It has hit Berkeley, UC San Diego, Lawrence Livermore, Stanford, and NASA Ames.
This virus known as Morris Worm was carried by e-mail. The Morris Worm was the first large scale attack on Internet security; the online community was neither expecting an attack nor prepared to deal with one.


Background and Firewall Basics
Before being able to understand a complete discussion of firewalls, it's important to understand the basic principles that make firewalls work.

What is a network firewall?

A firewall is a system or group of systems that enforces an access control policy between two or more networks. The actual means by which this is accomplished varies widely, but in principle, the firewall can be thought of as a pair of mechanisms: one which exists to block traffic, and the other which exists to permit traffic. Some firewalls place a greater emphasis on blocking traffic, while others emphasize permitting traffic. Probably the most important thing to recognize about a firewall is that it implements an access control policy. If you don't have a good idea of what kind of access you want to allow or to deny, a firewall really won't help you. It's also important to recognize that the firewall's configuration, because it is a mechanism for enforcing policy, imposes its policy on everything behind it. Administrators for firewalls managing the connectivity for a large number of hosts therefore have a heavy responsibility.
Why would I want a firewall?
The Internet, like any other society, is plagued with the kind of jerks who enjoy the electronic equivalent of writing on other people's walls with spray-paint, tearing their mailboxes off, or just sitting in the street blowing their car horns. Some people try to get real work done over the Internet, and others have sensitive or proprietary data they must protect. Usually, a firewall's purpose is to keep the jerks out of your network while still letting you get your job done.
In a case where a company's policies dictate how data must be protected, a firewall is very important, since it is the embodiment of the corporate policy. Frequently, the hardest part of hooking to the Internet, if you're a large company, is not justifying the expense or effort, but convincing management that it's safe to do so. A firewall provides not only real security--it often plays an important role as a security blanket for management.


What can a firewall protect against?
Some firewalls permit only email traffic through them, thereby protecting the network against any attacks other than attacks against the email service. Other firewalls provide less strict protections, and block services that are known to be problems.
Generally, firewalls are configured to protect against unauthenticated interactive logins from the ``outside'' world. This, more than anything, helps prevent vandals from logging into machines on your network. More elaborate firewalls block traffic from the outside to the inside, but permit users on the inside to communicate freely with the outside. The firewall can protect you against any type of network-borne attack if you unplug it.
Design and Implementation Issues
What are some of the basic design decisions in a firewall?
There are a number of basic design issues that should be addressed by the lucky person who has been tasked with the responsibility of designing, specifying, and implementing or overseeing the installation of a firewall.
The first and most important decision reflects the policy of how your company or organization wants to operate the system: is the firewall in place explicitly to deny all services except those critical to the mission of connecting to the Net, or is the firewall in place to provide a metered and audited method of ``queuing'' access in a non-threatening manner? There are degrees of paranoia between these positions; the final stance of your firewall might be more the result of a political than an engineering decision.
The second is: what level of monitoring, redundancy, and control do you want? Having established the acceptable risk level (i.e., how paranoid you are) by resolving the first issue, you can form a checklist of what should be monitored, permitted, and denied. In other words, you start by figuring out your overall objectives, and then combine a needs analysis with a risk assessment, and sort the almost always conflicting requirements out into a laundry list that specifies what you plan to implement.
The third issue is financial. We can't address this one here in anything but vague terms, but it's important to try to quantify any proposed solutions in terms of how much it will cost either to buy or to implement. For example, a complete firewall product may cost between $100,000 at the high end, and free at the low end. The free option, of doing some fancy configuring on a Cisco or similar router will cost nothing but staff time and a few cups of coffee. Implementing a high end firewall from scratch might cost several man-months, which may equate to $30,000 worth of staff salary and benefits. The systems management overhead is also a consideration. Building a home-brew is fine, but it's important to build it so that it doesn't require constant (and expensive) attention. It's important, in other words, to evaluate firewalls not only in terms of what they cost now, but continuing costs such as support.
On the technical side, there are a couple of decisions to make, based on the fact that for all practical purposes what we are talking about is a static traffic routing service placed between the network service provider's router and your internal network. The traffic routing service may be implemented at an IP level via something like screening rules in a router, or at an application level via proxy gateways and services.
The decision to make is whether to place an exposed stripped-down machine on the outside network to run proxy services for telnet, FTP, news, etc., or whether to set up a screening router as a filter, permitting communication with one or more internal machines. There are benefits and drawbacks to both approaches, with the proxy machine providing a greater level of audit and, potentially, security in return for increased cost in configuration and a decrease in the level of service that may be provided (since a proxy needs to be developed for each desired service). The old trade-off between ease-of-use and security comes back to haunt us with a vengeance.
What are the basic types of firewalls?
Conceptually, there are three types of firewalls:
  1. Network layer
  2. Application layer
  3. Hybrids

Network layer firewalls

These generally make their decisions based on the source, destination addresses and ports (see Appendix 6 for a more detailed discussion of ports) in individual IP packets. A simple router is the ``traditional'' network layer firewall, since it is not able to make particularly sophisticated decisions about what a packet is actually talking to or where it actually came from. Modern network layer firewalls have become increasingly sophisticated, and now maintain internal information about the state of connections passing through them, the contents of some of the data streams, and so on. One thing that's an important distinction about many network layer firewalls is that they route traffic directly though them, so to use one you either need to have a validly assigned IP address block or to use a ``private internet'' address block [5]. Network layer firewalls tend to be very fast and tend to be very transparent to users.
Image firewalls-faq1.jpg
Figure 1: Screened Host Firewall
In Figure 1, a network layer firewall called a ``screened host firewall'' is represented. In a screened host firewall, access to and from a single host is controlled by means of a router operating at a network layer. The single host is a bastion host; a highly-defended and secured strong-point that (hopefully) can resist attack.
Image firewalls-faq2.jpg
Figure 2: Screened Subnet Firewall
Example Network layer firewall: In Figure 2, a network layer firewall called a ``screened subnet firewall'' is represented. In a screened subnet firewall, access to and from a whole network is controlled by means of a router operating at a network layer. It is similar to a screened host, except that it is, effectively, a network of screened hosts.
Application layer firewalls
These generally are hosts running proxy servers, which permit no traffic directly between networks, and which perform elaborate logging and auditing of traffic passing through them. Since the proxy applications are software components running on the firewall, it is a good place to do lots of logging and access control. Application layer firewalls can be used as network address translators, since traffic goes in one ``side'' and out the other, after having passed through an application that effectively masks the origin of the initiating connection. Having an application in the way in some cases may impact performance and may make the firewall less transparent. Early application layer firewalls such as those built using the TIS firewall toolkit, are not particularly transparent to end users and may require some training. Modern application layer firewalls are often fully transparent. Application layer firewalls tend to provide more detailed audit reports and tend to enforce more conservative security models than network layer firewalls.
Image firewalls-faq3.jpg
Figure 3: Dual Homed Gateway
Example Application layer firewall: In Figure 3, an application layer firewall called a ``dual homed gateway'' is represented. A dual homed gateway is a highly secured host that runs proxy software. It has two network interfaces, one on each network, and blocks all traffic passing through it.
Most firewalls now lie someplace between network layer firewalls and application layer firewalls. As expected, network layer firewalls have become increasingly ``aware'' of the information going through them, and application layer firewalls have become increasingly ``low level'' and transparent. The end result is that now there are fast packet-screening systems that log and audit data as they pass through the system. Increasingly, firewalls (network and application layer) incorporate encryption so that they may protect traffic passing between them over the Internet. Firewalls with end-to-end encryption can be used by organizations with multiple points of Internet connectivity to use the Internet as a ``private backbone'' without worrying about their data or passwords being sniffed.
What are proxy servers and how do they work?
A proxy server (sometimes referred to as an application gateway or forwarder) is an application that mediates traffic between a protected network and the Internet. Proxies are often used instead of router-based traffic controls, to prevent traffic from passing directly between networks. Many proxies contain extra logging or support for user authentication. Since proxies must ``understand'' the application protocol being used, they can also implement protocol specific security (e.g., an FTP proxy might be configurable to permit incoming FTP and block outgoing FTP).
Proxy servers are application specific. In order to support a new protocol via a proxy, a proxy must be developed for it. One popular set of proxy servers is the TIS Internet Firewall Toolkit (``FWTK'') which includes proxies for Telnet, rlogin, FTP, the X Window System, HTTP/Web, and NNTP/Usenet news. SOCKS is a generic proxy system that can be compiled into a client-side application to make it work through a firewall. Its advantage is that it's easy to use, but it doesn't support the addition of authentication hooks or protocol specific logging.
What are some reasonable filtering rules for a Cisco?
The example in Figure 4 shows one possible configuration for using the Cisco as filtering router. It is a sample that shows the implementation of as specific policy. Your policy will undoubtedly vary.
Image firewalls-faq4.jpg
Figure 4: Packet Filtering Router
In this example, a company has Class C network address 195.55.55.0. Company network is connected to Internet via IP Service Provider. Company policy is to allow everybody access to Internet services, so all outgoing connections are accepted. All incoming connections go through ``mail host''. Mail and DNS are only incoming services.

Thursday, 15 September 2011

FBI Teaches Lesson In How To Break Into Wi-Fi Networks

FBI Teaches Lesson In How To Break Into Wi-Fi Networks

FBI agents at a recent security conference demonstrated how they could break into a wireless network. They did it to prove how easy it was, and describe measures that users need to take to protect themselves.

By Humphrey Cheung, Tom's Networking
Security Pipeline

Apr 7, 2005 09:25 PM

Millions of wireless access points are spread across the US and the world. About 70% percent of these access points are unprotected — wide open to access by anyone who happens to drive by. The other 30% are protected by WEP (Wired Equivalent Privacy) and a small handful are protected by the new WPA (Wi-Fi Protected Access) standard.

At a recent ISSA (Information Systems Security Association) meeting in Los Angeles, a team of FBI agents demonstrated current WEP-cracking techniques and broke a 128 bit WEP key in about three minutes. Special Agent Geoff Bickers ran the Powerpoint presentation and explained the attack, while the other agents (who did not want to be named or photographed) did the dirty work of sniffing wireless traffic and breaking the WEP keys.

This article will be a general overview of the procedures used by the FBI team. A future article will give step-by-step instructions on how to replicate the attack.

WEP Cracking - The Next Generation

WEP is an encryption scheme, based on the RC-4 cipher, that is available on all 802.11a, b and g wireless products. WEP uses a set of bits called a key to scramble information in the data frames as it leaves the access point or client adapter and the scrambled message is then decrypted by the receiver.

Both sides must have the same WEP key, which is usually a total of 64 or 128 bits long. A semi-random 24 bit number called an Initialization Vector (IV), is part of the key, so a 64 bit WEP key actually contains only 40 bits of "strong" encryption while a 128 bit key has 104. The IV is placed in encrypted frame's header, and is transmitted in plain text.

Traditionally, cracking WEP keys has been a slow and boring process. An attacker would have to capture hundreds of thousands or millions of packets—a process that could take hours or even days, depending on the volume of traffic passing over the wireless network. After enough packets were captured, a WEP cracking program such as Aircrack would be used to find the WEP key.

Fast-forward to last summer, when the first of the latest generation of WEP cracking tools appeared. This current generation uses a combination of statistical techniques focused on unique IVs captured and brute-force dictionary attacks to break 128 bit WEP keys in minutes instead of hours. As Special Agent Bickers noted, "It doesn't matter if you use 128 bit WEP keys, you are vulnerable!"

On With The Show

Before we get into the steps that the FBI used to break WEP, it should be noted there are numerous ways of hacking into a wireless network. The FBI team used publicly available tools and emphasized that they are demonstrating an attack that many other people are capable of performing. On the other hand, breaking the WEP key may not necessarily give an attacker complete access to a wireless network. There could also be other protection mechanisms such as VPNs or proxy servers to deal with.

For the demonstration, Special Agent Bickers brought in a NETGEAR wireless access point and assigned it a SSID of NETGEARWEP. He encrypted the access point with a 128 bit key—made by just keying in random letters and numbers.

Note that normally, you have to find wireless networks before you can crack them. The two wireless scanning tools of choice are Netstumbler for Windows or Kismet for Linux. Since the other WEP cracking tools are mainly Linux-based, most people find it easier to stick with Kismet, so they don't have to switch between Windows and Linux.

Another FBI agent started Kismet and immediately found the NETGEARWEP access point. Just for fun, a third agent used his laptop and ran FakeAP, a program that confuses scanning programs by putting up fake access points.

Attack!

After a target WLAN is found, the next step is to start capturing packets and convert them into pcap (short for packet capture) format. These pcap files will then be processed by other programs. Many programs, both commercial and open source, can be used to capture packets, but the two favorites seem to be Kismet or Airodump (now part of Aircrack). Ideally, one laptop should be scanning, while another laptop will be running the attack—which is what the FBI team did.

About half a dozen different software tools were then used by the FBI team, and they are listed—along with their download links—at the end of the article. Thankfully, the Auditor's Security Collection, which we reviewed last year, is a live CD that has all of these tools already installed. Even the FBI likes this distribution.





How To Protect Yourself

(Page 2 of 2) Apr 7, 2005 09:25 PM

If a hacker is lucky enough to find an extremely busy wireless network, passive sniffing should provide enough good packets to allow the WEP key to be recovered. In most cases, however, an active attack or series of attacks are needed to jump start the process and produce more packets. Note that active attacks generate wireless traffic that can itself be detected and possibly alert the target of the attack.

The FBI team used the deauth feature of void11 to repeatedly disassociate the laptop from the access point. Desired additional traffic was then generated as Windows XP tried to re-associate back to the AP. Note that this is not a particularly stealthy attack, as the laptop user will notice a series of "Wireless Network unavailable" notifications in the taskbar of their desktop screen.

Another attack method the FBI team used is a replay attack. The basic premise of this attack is to capture at least one packet traveling from the victim laptop to victim access point. This packet can then be replayed into the network, causing the target AP to respond and provide more traffic to capture.

Aireplay (also part of Aircrack) can perform a replay attack based on captured ARP (Address Resolution Protocol) packets, which are broadcast at regular intervals in wired and wireless networks and are easy to spot. Aireplay automatically scans a captured pcap file, pulls out the suspected ARP requests, and replays them to the access point.

After about three minutes of capturing and cracking, the FBI team found the correct WEP key, and displayed it on a projected notebook screen. Agent Bickers, still speaking to the audience, turned around, looked at the screen and was surprised, "Usually it takes five to ten minutes."

Countermeasures & Conclusion

So what can you do to prevent hackers from getting into your network? Special Agent Bickers and his team have some tips for wireless users. He stresses that these are mainly for home users and should not be considered as official FBI best practices for businesses.

1) Network segregation Put your access point on a separate subnet, with a firewall separating the wireless and internal users

2) Change the default settings on your access point Default settings (SSID, administrator password, channel) are well known and even included as part of some WLAN attack tools

3) Use WPA with a strong key WPA is a definite improvement over WEP in providing wireless security. But the version intended for home and SOHO use—WPA-PSK—has a weakness shared by any passphrase security mechanism. The choice of simple, common and short passphrases may allow your WPA-protected WLAN to be quickly compromised via dictionary attack (more info here).

4) Update your firmware This is helpful if your AP or client doesn't currently support WPA. Many manufacturers have newer firmware for 802.11g products that add WPA support. You may also find this for 802.11b gear, but it's not as common. Check anyway!

5) Turn off the WLAN when not in use A $5 lamp timer from your local hardware store is a simple, but effective way to keep your WLAN or LAN from harm while you're sleeping.

Bickers also said that if you have an access point that can swap keys fast enough, you may be able to stay ahead of an attacker. "Most likely they will get bored and attack someone else." But for most WLAN owners, this method isn't practical.

The FBI demonstrated this attack to the computer security professionals at the ISSA meeting in order to show the inadequate protection offered by WEP. It is one thing to read stories of WEP being broken in minutes, but it is shocking to see the attack done right before your eyes. It was fast and simple.

Thankfully, the FBI are the good guys.


Tools Used
Auditor's Security Collection - Contains all the wireless hacking tools already installed

Kismet
Airsnort
Aircrack (includes Aireplay and Airodump)
void11

Background

WEP: Dead Again, Part 1

This article appears courtesy of Tom's Networking.








..........   http://www.informationweek.com/management/compliance/160502612



..........   http://new.remote-exploit.org/index.php/Tools

Monday, 12 September 2011

84 Hindi Movies are listed
Year Film Name Cast
2011 DIL TOH BACCHA HAI JI Ajay Devgan, Emran Hashmi, Omi Vaidya, Tisca Chopra, Shruti Haasan, Shraddha Das, Shazahn Padamsee, Rituparno Ghosh
2010 GOLMAAL 3 Ajay Devgan, Kareena Kapoor, Mithun Chakraborty, Tusshar Kapoor, Ratna Pathak, Kunal Khemu, Johnny Lever, Arshad Warsi, Sanjay Mishra, Vrajesh Hirjee, Ashwini Kalsekar, Murli Sharma, Mukesh Tiwari, Vijay Patkar
2010 TOONPUR KA SUPERRHERO Ajay Devgan, Kajol, Tanuja, Sanjay Mishra, Delnaz Paul, Mukesh Tiwari, Vivek Vasvani
2010 ATITHI TUM KAB JAOGE? Ajay Devgan, Paresh Rawal, Konkona Sen Sharma, Satish Kaushik, Mac Mohan, Sanjay Mishra, Akhilendra Mishra
2010 RAAJNEETI Ajay Devgan, Nana Patekar, Ranbir Kapoor, Naseeruddin Shah, Arjun Rampal, Katrina Kaif, Manoj Bajpai, Sarah Thompson, Darshan Jariwala, Shruti Seth, Nikhila Tirkha, Chetan Pandit, Vinay Apte, Kiran Karmarkar, Daya Shankar Pandey, Jahangir Khan, Ravi khemu
2010 ONCE UPON A TIME IN MUMBAAI Ajay Devgan, Emran Hashmi, Kangna Ranaut, Prachi Desai, Randeep Hooda
2010 AAKROSH Ajay Devgan, Bipasha Basu, Akshaye Khanna, Paresh Rawal, Amita Pathak, Reema Sen
2008 HALLA BOL Ajay Devgan, Vidya Balan, Pankaj Kapoor, Kareena Kapoor, Ruby Bhatia, Mukesh Tiwari, Lekh Tandon, Sayali Bhagat
2008 U ME AUR HUM Kajol, Isha Sharvani, Rituparna Sengupta, Sumeet Raghavan, Divya Dutta, Ajay Devgan, Karan Khanna, Sarika
2008 GOLMAAL RETURNS Ajay Devgan, Arshad Warsi, Celina Jaitley, Amrita Arora, Tusshar Kapoor, Shreyas Talpade, Kareena Kapoor, Anjana Sukhani
2008 SUNDAY Ajay Devgan, Arshad Warsi, Ayesha Takia, Irfan Khan, Mukesh Tiwari, Anjana Sukhani
2008 MEHBOOBA Ajay Devgan, Sanjay Dutt, Manisha Koirala
2007 MR. FRAUD Sanjay Dutt, Ajay Devgan, Bipasha Basu, Tanushree Dutta, Anuj Sawhney, Satish Shah
2007 RAM GOPAL VARMA KI AAG Amitabh Bachchan, Ajay Devgan, Sushmita Sen, Urmila Matondkar, Mohanlal, Sunil Shetty, Rajpal Yadav, Nisha Kothari, Prashant Raj, Gaurav Kapur, Sushant Singh, Abhishek Bachchan, Suchitra Krishnamurthy, Sachin, Virendra Saxena, Rasika Joshi, Sanjay Narvekar, Zakir Hussain, Ravi Kale, J. D. Chakravorty
2007 CASH Ajay Devgan, Ritesh Deshmukh, Zayed Khan, Esha Deol, Shamita Shetty, Sunil Shetty, Diya Mirza, Ayesha Takia
2006 GOLMAAL Ajay Devgan, Tusshar Kapoor, Arshad Warsi, Rimi Sen, Paresh Rawal, Sharman Joshi
2006 OMKARA Ajay Devgan, Saif Ali Khan, Kareena Kapoor, Konkona Sen Sharma, Vivek Oberoi, Naseeruddin Shah, Bipasha Basu
2005 KAAL Ajay Devgan, John Abraham, Vivek Oberoi, Lara Dutta, Esha Deol, Malaika Arora, Shahrukh Khan
2005 MAIN AISA HI HOON Ajay Devgan, Sushmita Sen, Esha Deol, Anupam Kher, Baby Rucha Vaidya, Master Raj Gokani
2005 TANGO CHARLIE Ajay Devgan,amp; Bobby Deol, Tanishaa, Nandana Sen, Sudesh Beri, Raj Zutshi, Alok Nath, Vivek Shauq, Mukesh Tiwari, Shahbaz Khan, Sanjay Mishra with Sanjay Dutt, Sunil Shetty, Kelly Dorji
2005 ZAMEER Ajay Devgan, Amisha Patel, Mahima Choudhary
2005 BLACKMAIL Ajay Devgan, Diya Mirza, Sunil Shetty, Priyanka Chopra
2005 INSAN Akshay Kumar, Ajay Devgan, Esha Deol, Lara Dutta, Tusshar Kapoor, Laila, Koena Mitra
2005 APAHARAN Ajay Devgan, Bipasha Basu, Nana Patekar, Mohan Agashe, Yashpal Sharma, Mukesh Tiwari, Chetan Pandit, Anoop Soni, Dayashankar Pandey, Akhilendra Mishra
2005 SHIKHAR Ajay Devgan, Shahid Kapoor, Bipasha Basu, Amrita Rao, John Abraham
2004 RAINCOAT Ajay Devgan, Aishwarya Rai, Mouli Ganguly, Sameer Dharmadhikari, Annu Kapoor, Surekha Sikri, Isha Koppikar
2004 YUVA Ajay Devgan, Vivek Oberoi , Abhishek Bachchan ,Esha Deol , Kareena Kapoor, Rani Mukherjee
2004 MASTI Aftab Shivdasani, Vivek Oberoi, Ritesh Deshmukh, Amrita Rao, Tara Sharma, Genelia DSouza , Ajay Devgan, Lara Dutta, Rakhi Sawant
2004 KHAKEE Abhishek Bachchan, Jaya Pradha, Akshay Kumar, Ajay Devgan, Aishwarya Rai, Tusshar Kapoor, Atul Kulkarni, D. Santosh, Tanuja
2003 L.O.C KARGIL Abhishek Bachchan, Ajay Devgan, Akshaye Khanna, Sanjay Dutt, Saif Ali Khan, Sunil Shetty, Manoj Bajpai, Sanjay Kapoor, Kareena Kapoor, Rani Mukherjee , Esha Deol , Raveena Tandon, Namrata Shirodkar, Ashutosh Rana
2003 ZAMEEN Ajay Devgan, Abhishek Bachchan, Bipasha Basu, Mukesh Tiwari
2003 GANGAAJAL Ajay Devgan, Gracy Singh, Mohan Agashe, Mohan Joshi, Yashpal Sharma, Akhilendra Mishra, Mukesh Tiwari, Anoop Soni, Ayub Khan, Ajay Rohilla, Chetan Pandit, Yash Pathak, Prateeksha Khanwelkar, Kranti Dinanath Redkar, Dayashankar Pandey
2003 QAYAMAT Ajay Devgan, Sunil Shetty, Raveena Tandon, Sanjay Kapoor, Chunkey Pandey, Lara Dutta, Neha Dhupia, Isha Koppikar, Aashish Chaudhary
2003 BHOOT Urmila Matondkar, Ajay Devgan, Seema Biswas, Nana Patekar, Rekha, Fardeen Khan, Victor Bannerjee
2002 CHORI CHORI Ajay Devgan, Kareena Kapoor, Rani Mukherjee
2002 COMPANY Ajay Devgan, Manisha Koirala, Mohanlal, Antra Mali, Seema Biswas, (Intro.) Vivek Oberoi, Isha Koppikar,Urmila Matondkar
2002 THE LEGEND OF BHAGAT SINGH Ajay Devgan, Sushant Singh, D.Santosh, Farida Jalal, Raj Babbar, Amrita Rao
2002 HUM KISISE KUM NAHIN Sanjay Dutt, Aishwarya Rai, Amitabh Bachchan, Ajay Devgan
2002 DEEWANGEE Akshaye Khanna, Ajay Devgan, Urmila Matondkar, Vijayendra Ghatge, Seema Biswas, Suresh Oberoi, Tanaz Currim
2001 LAJJA Manisha Koirala, Madhuri Dixit, Mahima Choudhary, Rekha, Anil Kapoor, Ajay Devgan, Jackie Shroff, Aarti Chabria, Samir Soni
2001 YEH RASTA HAI PYAR KA Ajay Devgan, Madhuri Dixit, Preity Zinta, Shakti Kapoor, Om Puri
2000 RAJU CHACHA Kajol, Ajay Devgan, Rishi Kapoor
2000 DEEWANGEE Sanjay Dutt, Ajay Devgan, Karishma Kapoor, Raveena Tandon
2000 DEEWANE Ajay Devgan, Urmila Matondkar, Mahima Choudhary
2000 AANKH MICHOLI Anil Kapoor,Sanjay Dutt,Ajay Devgan
2000 QURBAAN TUJH PE MERI JAAN Ajay Devgan, Aishwarya Rai, Fardeen Khan
2000 ZINDA DIL Ajay Devgan, Urmila Matondkar
1999 GAIR Ajay Devgan, Raveena Tandon
1999 HINDUSTAN KI KASAM Ajay Devgan, Sushmita Sen, Manisha Koirala
1999 HOGI PYAR KI JEET Ajay Devgan, Neha, Arshad Warsi
1999 KACHCHE DHAAGE Ajay Devgan, Saif Ali Khan , Manisha Koirala, Namrata Shirodkar, Maya Alagh, Sadashiv Amrapurkar, Govind Namdeo, Annu Kapoor, Parmeet Sethi
1999 NIHATA Ajay Devgan, Akshay Kumar, Kajol
1999 RAJA CHACHA Ajay Devgan, Manisha Koirala
1999 SINGER Ajay Devgan, Nagma, Shilpa Shirodkar
1999 THAKSHAK Ajay Devgan, Tabbu, Rahul Bose, Amrish Puri, Govind Namdeo, Nethra Raghuraman
1999 HUM DIL DE CHUKE SANAM Salman Khan, Ajay Devgan, Aishwarya Rai, Zohra Sehgal, Vikram Gokhale, Smita Jaykar
1999 DIL KYA KARE Ajay Devgan, Kajol, Mahima Choudhary, Chandrachur Singh
1998 MAJOR SAAB Amitabh Bachchan, Nafisa Ali, Ajay Devgan, Sonali Bendre
1998 PYAR TO HONA HI THA Ajay Devgan, Kajol, Kashmira Shah
1998 SAR UTHA KE JIYO Naseeruddin Shah, Madhoo, Monika Bedi, Kiran Kumar, Gulshan Grover, Salman Khan, Sunil Shetty, Ajay Devgan, Ayesha Jhulka
1998 ZAKHM Ajay Devgan, Pooja Bhatt, Sonali Bendre, Kunal Khemu, Akshay Anand, Nagarjuna Akkineni
1997 ISHQ Aamir Khan, Juhi Chawla, Ajay Devgan, Kajol, Dalip Tahil, Johnny Lever, Shweta Menon
1997 ITIHAAS Ajay Devgan, Twinkle Khanna, Amrish Puri, Aruna Irani
1996 DILJALE Ajay Devgan, Madhoo, Sonali Bendre
1996 JAAN Twinkle Khanna, Ajay Devgan, Amrish Puri, Aruna Irani
1996 JUNG Mithun Chakraborty, Aditya Panscholi, Ajay Devgan
1995 DHANWAAN Ajay Devgan, Manisha Koirala, Karishma Kapoor
1995 GUNDARAJ Ajay Devgan, Amrish Puri, Kajol
1995 HAQEEQAT Ajay Devgan, Tabbu, Aruna Irani
1995 HULCHUL Vinod Khanna, Ajay Devgan, Kajol
1995 JIGAR Ajay Devgan, Karishma Kapoor
1994 KANOON Ajay Devgan, Urmila Matondkar, Reema Lagoo
1994 BEDARDI Ajay Devgan, Urmila Matondkar, Naseeruddin Shah
1994 DILWALE Raveena Tandon, Sunil Shetty, Ajay Devgan
1994 NAAJAYAZ Naseeruddin Shah, Ajay Devgan, Juhi Chawla
1994 PLATFORM Ajay Devgan, Prithvi, intr. Priya Nandini Singh
1994 SUHAAG Ajay Devgan, Akshay Kumar, Karishma Kapoor, Nagma
1994 VIJAYPATH Ajay Devgan, Tabbu, Suresh Oberoi
1993 DIL HAI BETAAB Ajay Devgan, Pratibha Sinha
1993 EK HI RAASTA Ajay Devgan, Raveena Tandon
1993 SANGRAM Ajay Devgan, Ayesha Jhulka, Karishma Kapoor
1993 SHAKTIMAAN Ajay Devgan, Karishma Kapoor, Gulshan Grover
1992 PHOOL AUR KAANTE Amrish Puri, (intr.) Ajay Devgan, Jagdeep
19 DIVIYA SHAKTHI Ajay Devgan, Sonali Bendre

Sunday, 11 September 2011

ajay devgan biography




Name
Ajay Devgan
Birth Name
Vishal Veeru Devgan

Date of Birth

April 2, 1967
Birth Place
Delhi, India
Star Sign
Aries

Ajay Devgan Height

5 ‘ 8
Eye colour
Black
Father
Veeru Devgan, director and stunt man
Mother
Veena Devgan
Spouse
Kajol (1999 – Present)
Daughter
Nysa Mukherjee- Devgan, born April 20, 2003.
Brother
Anil Devgan, director
Schoool Days
Silver Beach High School in Juhu
College Days
Mithibai College

First movie

Phool Aur Kaante
Profession
Actor, Model
Address ________
Sea Cliff, 1st Floor, Gandhigram Road, Juhu

Hot facts in Biography

# Ajay Devgan dated Kajol for five years before marrying.
# The actor married actress Kajol on February 24, 1999.# The couple have a daughter, Nysa born on April 20, 2003.
# His father Veeru Devgan,was a stunt choreographer in bollywood.
# His brother, Anil Devgan, is a Bollywood film director.
# He is originally from Punjab.
# He paired with his wife Kajol appeared on the TV show Kaun Banega Crorepati hosted by Amitabh Bachchan. They won 1 crore rupees and donated the same to a cancer hospital in Chennai. [2005]
# He won “National Award” for his performance twice.
# His made his film debut with “Phool Aur Kaante”and he also won “Filmfare Best Debut Award” for his performance.
# During the 2004 elections, Ajay Devgan had briefly joined BJP.
# The actor  is known for his creative pranks in the sets.
# “U, Me Aur Hum” is his directorial debut. He is also acting in the film.

Ajay Devgan best movie list

Shrouded in an air of melancholy and known for his reticence, Ajay Devgan stands out in the hustle-bustle of tinsel town. He is an award winning actor turned director and producer.

Life as Vishal
Ajay Devgan was born as Vishal Veeru Devgan in New Delhi on 2 April 1969. He is a Punjabi and the son of Veeru Devgan, a stunt director and Veena Devgan who is known to have produced a film. His uncle is film director Anil Devgan.

He was a student of Silver Beach High School and Mithibai College.

A couple of years after plunging into Bollywood, he married actress Kajol in 1999 and they had a daughter Nysa in 2003.

His Filmi Kahani
1991-1995 Devgan made his debut in Phool Aur Kante opposite Madhoo, winning the Filmfare Best Debut Award. Most of his films, at the start of his career were packed with a generous amount of dishum-dishum, like Jigar and Vijaypath. Mahesh Bhatt’s Naajayaz with Juhi Chawla won him his first nomination for the Filmfare Best Actor Award.

1996-2000 In 1997, he moved away from action with the romcom hit Ishq, which also starred Aamir Khan, Juhi Chawla, and Kajol. In 1998, he appeared in the Bollywood remake of French Kiss - Pyaar Tho Hona Hi Tha with Kajol. This fell in line among some of the most popular films that year. The same year saw the release of Mahesh Bhatt’s Zakhm, which looked at communal issues in India. The film won several awards including the National Film Award for Devgan’s performance.

His most talked about film in 1999 was Hum Dil De Chuke Sanam in which he played Vanraj, a man who tries to help his wife get back together with her lover. He was nominated for the Filmfare Best Actor Award. He produced and acted in Raju Chacha in 2000, along with Kajol. However the film made an average hit at the box office.

2001-2005 His role as Bulwa in the major hit Lajja won him a nomination for Filmfare Best Supporting Actor. Ram Gopal Verma’s Company in 2002 based on the underworld had Devgan playing Malik, a gangleader. His performance was praised. He walked away with the Filmfare Critics Award for Best Performance and his second National Film Award for his portrayal of the freedon fighter, Bhagat Singh, in Rajkumar Santoshi’s The Legend of Bhagat Singh.

In 2003, the audience feasted on films like Ram Gopal Verma’s horror flick Bhoot, Prakash Jha’s Gangaajal, and J.P.Dutta’s LOC Kargil. This was followed by some diverse but remarkable performances in Mani Ratnam’s Yuva, in which he played a student leader and Rituparno Ghosh’s Raincoat, which was non-mainstream cinema.

2006-2009 Both his releases in 2006 became major hits. Golmaal, a-laugh-a-minute comedy and Vishal Bharadwaj’s Omkaara, an adaptation of Shakespeare’s Othello. Year 2008 saw the release of U, Me Aur Hum, his directorial debut, in which he acted. He also produced and helped with the script of the film. The film received an average response and was partly inspired by 50 First Dates. The sequel Golmaal Returns, with Devgan playing Gopal, was a high-grosser.

He had two releases in 2009 – All the Best, a comedy and London Dreams with Salman Khan and Asin. Both did a fair job.

Upcoming
Next on his hit list is Rajneeti (2010), a political thriller and Once Upon a Time in Mumbai (2010), in which he plays Haji Mastan. He will be seen with Konkona Sen Sharma for the first time in Atithi Tum Kab Jaoge. The third installment of Golmaal is also expected to hit theaters in 2010.


Pages - Menu