Google Hacking for Penetration Testers

by SEO Consultant on March 28, 2010


Product DescriptionA self-respecting Google hacker spends hours trolling the Internet for juicy stuff. Firing off search after search, they thrive on the thrill of finding clean, mean, streamlined queries and get a real rush from sharing those queries and trading screenshots of their findings. I know because I’ve seen it with my own eyes. As the founder of the Google Hacking Database (GHDB) and the Search engine hacking forums at http://johnny. ihackstuff. com, I am constantly amazed at what the Google hacking community comes up with. It turns out the rumors are true-creative Google searches can reveal medical, financial, proprietary and even classified information. Despite government edicts, regulation and protection acts like HIPPA and the constant barking of security watchdogs, this problem still persists. Stuff still makes it out onto the web, and Google hackers snatch it right up. Protect yourself from Google hackers with this new volume of information. -Johnny Long . Learn Google Searching BasicsExplore Google’s Web-based Interface, build Google queries, and work with Google URLs. . Use Advanced Operators to Perform Advanced QueriesCombine advanced operators and learn about colliding operators and bad search-fu. . Learn the Ways of the Google HackerSee how to use caches for anonymity and review directory listings and traversal techniques. . Review Document Grinding and Database DiggingSee the ways to use Google to locate documents and then search within the documents to locate information. . Understand Google’s Part in an Information Collection FrameworkLearn the principles of automating searches and the applications of data mining. . Locate Exploits and Finding TargetsLocate exploit code and then vulnerable targets. . See Ten Simple Security SearchesLearn a few searches that give good results just about every time and are good for a security assessment. . Track Down Web ServersLocate and profile web servers, login portals, network hardware and utilities. . See How Bad Guys Troll for DataFind ways to search for usernames, passwords, credit card numbers, social security numbers, and other juicy information. . Hack Google ServicesLearn more about the AJAX Search API, Calendar, Blogger, Blog Search, and more.
Details

  • ISBN13: 9781597491761
  • Condition: NEW
  • Notes: Brand New from Publisher. No Remainder Mark.

Google Hacking for Penetration Testers
Average Ratings 4.5 out of 5

{ 5 comments }

Cybermark March 28, 2010 at 6:43 am

At first glance Google Hacking for Penetration Testers
seems to be full of the kind of information a person new to penetrating testing needs – but soon one will find out that it isn’t worth the inflated price. You can (and probably should) purchase a couple good books for the price.
Rating: 1 / 5

J. Samudio March 28, 2010 at 7:42 am

It has everything you NEED to learn how to hack w/ using something as simple as Google. i never in my life would have thought you could get that much server info and vuln. info with just using Google. Johnny knows his stuff and this is a must have if you are a novice hacker that wants to stem-away from the title; “script-kiddie”, this book will help you. Thanks to the authors for this great release.
Rating: 5 / 5

Book In Hand March 28, 2010 at 9:45 am

You name it someone may have left it in the wrong place. This text is a good reference for everyone interested in information security and honing their research abilities to a razor’s edge. As Obijan says “know your target- get inside of his mind. ” Experts might scoff, but a handy reference. I use it to nail airline miles, among other things. . . in all honesty I have found some wild things using the standard techniques- really you need a guide on unraveling people’s stupidity or, if you are feeling rather viscious lay a trap and hook it with cheese that has unexpected side effects. Fun for the whole family!
Rating: 4 / 5

Nils Valentin March 28, 2010 at 10:32 am

The book “Google Hacking for penetration testers” is no doubt a real eye opener and as far as I know the first book on the marcet thoroughly covering this important issue. I am confident that this will soon be refered to as a “Standard” literature for IT security.

It is also a nice additional feature that each chapter has its summary at the end.

The actual “contents” of the book is (currently) well worth the money, however there are a few things which I didnt like about the book:

- Book layout should be easier readable / accessable
- The physical pages look like photocopies or copy of a novell that I picked up in a sale.
- optional overview chart tables (take out) would have been a very helpful addition.
- The book reads like an interview or keynote speech, but should actually be more engineering like.
- Whats the point in printing pages of scripts ? Shouldnt that be downloadable or on a cd ? Or at least in the Appendix ?

Summary:

For now probably the “best search engine feature summary on the marcet”. The layout of the book should be newly structured to be in an easier accessable format. I guess what I dislike most about the book is the casual writing style and the missing engineer style. The book is hardly usable as a reference but more as a one time read.

If the contents wouldnt be worth it, I would rate it with less. Unfortunately the layout absolutely disvalues the contents value. Usually casual writing style is used to fill the pages, with content thats not thoroughly researched.

Rating: 4 / 5

Kerrigon Isaacs March 28, 2010 at 11:15 am

Very informative book, I’ve been using some of the knowledge I got in the book to improve my searches as well as to test the security of some of my company’s web pages.
Rating: 4 / 5

Comments on this entry are closed.

Previous post:

Next post: