MTU Cork Library Catalogue

Syndetics cover image
Image from Syndetics

Google hacking for penetration testers. Vol. 2 / Johnny Long.

By: Long, Johnny.
Material type: materialTypeLabelBookPublisher: Burlington, MA : Syngress Pub., 2008Description: xix, 534 p. : ill. ; 24 cm. + pbk.ISBN: 1597491764 ; 9781597491761 .Subject(s): Google | Web search engines | Computer security | Internet programming | Internet -- Security measures | Computer networks -- Security measuresDDC classification: 025.04
Contents:
Google searching basics -- Advanced operators -- Google hacking basics -- Document grinding and database digging -- Google's part in an information collection framework -- Locating exploits and finding targets -- Ten simple security searches that work -- Tracking down web servers, login portals and network hardware -- Usernames, passwords and secret stuff, oh my! -- Hacking google services -- Google hacking showcase -- Protecting yourself from google hackers.

Enhanced descriptions from Syndetics:

This book helps people find sensitive information on the Web.

Google is one of the 5 most popular sites on the internet with more than 380 million unique users per month (Nielsen/NetRatings 8/05). But, Google's search capabilities are so powerful, they sometimes discover content that no one ever intended to be publicly available on the Web including: social security numbers, credit card numbers, trade secrets, and federally classified documents. Google Hacking for Penetration Testers Volume 2 shows the art of manipulating Google used by security professionals and system administrators to find this sensitive information and "self-police" their own organizations.

Readers will learn how Google Maps and Google Earth provide pinpoint military accuracy, see how bad guys can manipulate Google to create super worms, and see how they can "mash up" Google with MySpace, LinkedIn, and more for passive reconaissance.

Includes index.

Google searching basics -- Advanced operators -- Google hacking basics -- Document grinding and database digging -- Google's part in an information collection framework -- Locating exploits and finding targets -- Ten simple security searches that work -- Tracking down web servers, login portals and network hardware -- Usernames, passwords and secret stuff, oh my! -- Hacking google services -- Google hacking showcase -- Protecting yourself from google hackers.

Table of contents provided by Syndetics

  • Why Bother w/Google for an Assessment Advanced Operators
  • Google Hacking Basics Pre-Assessment
  • Mapping the Target Network
  • Locating Exploits and Finding Targets
  • 10 Simple searches
  • Tracking Down Web Servers
  • Login Portals and Network Hardware Usernames
  • Passwords and Other Secret Stuff Document
  • Grinding and Database Digging Protecting
  • Yourself From Google Hackers Programming
  • Google Searches

Author notes provided by Syndetics

Johnny Long is a Christian by grace, a professional hacker by trade, a pirate by blood, a ninja in training, a security researcher and author. He can be found lurking at his website (http://johnny.ihackstuff.com). He is the founder of Hackers For Charity(http://ihackcharities.org), an organization that provides hackers with job experience while leveraging their skills for charities that need those skills.

Bill Gardner is an Assistant Professor at Marshall University, where he teaches information security and foundational technology courses in the Department of Integrated Science and Technology. He is also President and Principal Security Consultant at BlackRock Consulting. In addition, Bill is Vice President and Information Security Chair at the Appalachian Institute of Digital Evidence. AIDE is a non-profit organization that provides research and training for digital evidence professionals including attorneys, judges, law enforcement officers and information security practitioners in the private sector. Prior to joining the faculty at Marshall, Bill co-founded the Hack3rCon convention, and co-founded 304blogs, and he continues to serve as Vice President of 304Geeks. In addition, Bill is a founding member of the Security Awareness Training Framework, which will be a prime target audience for this book.

Justin Brown (@spridel11) is an Information Assurance Analyst at a large financial institution. Previously, Justin worked for as a consultant specializing in Open Source Intelligence. Through Google Hacking and dorks Justin has uncovered numerous troves of information leaks regarding his clients. Justin can usually be found at conferences volunteering with Hackers for Charity.

Powered by Koha