Utterly Boring dot com

Google Hacks of a Different Sort

You may have heard of the Google Hacks Book (which is on my "To Buy Whenever I Get The Cash" list), but one of the real strengths (and scary things) about Google is its ability to dig up information on passwords, usernames, and vulnerabilities that idiots have left open and online.

Link via Kottke.

Posted by Jake on 08/23/04 @ 08:11 AM
Posted in Geekdom, Interesting | 2 Comments | Permalink
Submit to digg, del.icio.us, reddit, or stumbleupon

2 Comments

Jesse Thompson said on 08/23/04 @ 11:49 AM:
Naw, mostly he focuses on SQL error messages that get displayed to the page-viewer that disclose juicey tidbits of information like paths. You know, like suddenly the hacker discovers that your html files are in "/usr/local/www/html", or maybe in "/ima/paranoid/freak/you/cant/find/me/html" and then the hacker goes "ah ha! Now, all I need is a root exploit, and then this information will allow me to use the CD command against this fool! mwuhahaha (etc)"

Jake said on 08/23/04 @ 11:53 AM:
Yes, but there is certainly information there you don't necessarily want exposed. Yes, it would take some work to use that information and do some naughty deeds with it, but it is certainly possible.

Post a comment












HTML Allowed: a href, b, br, p, strong, em, ul, li, blockquote




Note that comments on older entries are moderated automatically on this site to help fight comment spam. If you don't see your comment after submitting, it will appear on the site after it has been approved.

What are you doing down here? Don't you have something better to do? Like Go Back To The Top of the page, or even see who created this site? This site is © 2001 - 2008 by the Utterly Boring folks at UtterlyBoring.com. Steal my content, as I probably did, too, just link to my site or the original site. Batteries not included. One size fits all. Not for off-road use. Not for internal use. Do not taunt Happy Fun Ball. Technorati Profile.