Re: Google Hacking

From: Da Llorxillo (dallorx_at_gmail.com)
Date: 01/12/05

  • Next message: miguel.dilaj_at_pharma.novartis.com: "Re: Penetration Test Disclaimer?"
    Date: Wed, 12 Jan 2005 18:25:39 +0100
    To: pen-test@securityfocus.com
    
    

    I think it was a bug of the webpage that u can navigate under the
    directories using the "../", and someone used it to read the boot.ini
    file of the server

    i have found this (look at the end of the page)
    http://www.google.ca/search?q=cache:dO7rOHi7VFIJ:www.callawaygolf.com/+%22en/CustomerService.aspx%3Fpid%22&hl=en

    (Srry for my bad english...)

    On Tue, 11 Jan 2005 13:45:32 -0800 (PST), John Madden
    <chiwawa999@yahoo.com> wrote:
    > Hi,
    >
    > Googling around i found this.
    >
    > [Wrap lines]
    >
    > http://www.google.ca/search?q=cache:tG9K6OqlGs8J:www.callawaygolf.com/en/customerservice.aspx%3Fpid%3D..%255C..%255C..%255C..%255C..%255C..%255C..%255C..%255C..%255C..%255Cboot.ini+inurl:www.callawaygolf.com/en/customerservice.aspx&hl=en
    >
    > Is this a form of "Google Cache Poisoning" ?
    >
    > If not, what is it ?
    >
    > Thanks
    >
    >
    > __________________________________
    > Do you Yahoo!?
    > The all-new My Yahoo! - What will yours do?
    > http://my.yahoo.com
    >

    -- 
    Da Llorx
    

  • Next message: miguel.dilaj_at_pharma.novartis.com: "Re: Penetration Test Disclaimer?"

    Relevant Pages

    • Re: Bullet alignment problem with max-width on
    • OT: suggestion
      ... webpage as it is and I'll mention that bug in my webpage along with ... webpage as it is for a year or so, so that Microsoft can fix this bug ... I shudder to think what new "little gems" IE8 has in store for us! ... Jim Rapoza of /eWeek/ just wrote that IE8 passes the Acid2 test and Firefox doesn't. ...
      (comp.infosystems.www.authoring.stylesheets)
    • window.open + asp interfering with browser navigation?
      ... disappearing. ... and then navigate back, the previously entered text will have been cleared. ... Is this generally acceptable browser behaviour? ... really starting to bug some of my users. ...
      (microsoft.public.inetserver.asp.general)
    • Re: (msh) get-command does not work in variable provider
      ... Looks like get command is trying to navigate over current provider. ... Please open a bug. ...
      (microsoft.public.windows.server.scripting)
    • Re: The mystery of landscape printing
      ... > This is not a bug in IE, this is a bug in your code. ... guessing most people expect that once a navigate request has been ... the browser control would think that the COM reference to the document ...
      (microsoft.public.inetsdk.programming.webbrowser_ctl)
    • Re: Tray Speaker Icon
      ... >I am having a problem with XP Home where my icon for the speaker does not ... >show up when booting the system. ... I have to navigate to control panel, ... this is a well-known bug, microsoft is aware of it and many many other bugs ...
      (microsoft.public.windowsxp.hardware)