Archive for March, 2008

Goolag Scanner

Saturday, March 1st, 2008

—–FOR IMMEDIATE RELEASESECURITY ADVISORY: The following program may screw a large Internet searchengine and make the Web a safer place.

LUBBOCK, TX, February 20th — Today CULT OF THE DEAD COW (cDc), the world’s

most attractive hacker group, announced the release of Goolag Scanner, a web

auditing tool. Goolag Scanner enables everyone to audit his or her own web

site via Google. The scanner technology is based on “Google hacking,” a form

of vulnerability research developed by Johnny I Hack Stuff. He’s a lovely

fellow. Go buy him a drink.

“It’s no big secret that the Web is the platform,” said cDc spokesmodel

Oxblood Ruffin. “And this platform pretty much sucks from a security

perspective. Goolag Scanner provides one more tool for web site owners to

patch up their online properties. We’ve seen some pretty scary holes through

random tests with the scanner in North America, Europe, and the Middle East.

If I were a government, a large corporation, or anyone with a large web site,

I’d be downloading this beast and aiming it at my site yesterday. The v

ulnerabilities are that serious.”

Goolag Scanner will be released open source under the GNU Affero General

Public license. It is dedicated to the memory of Wau Holland, founder of the

Chaos Computer Club, and a true champion of privacy rights and social justice.

GOOLAG SCANNER FUNCTIONS AND FEATURES

Goolag Scanner is a standalone windows GUI based application. It uses one

xml-based configuration file for its settings. All dorks coming with the

distribution of gS are kept inside one file.

Press Contact

Oxblood Ruffin

oxblood at hacktivismo.com

Saya merasakan tools ini sangat membantu, terutama karena saya sangat malas menghafal jenis-jenis dork :-P . Get it from here.

Behind the “Yo G0at Pwn3d” Motivation

Saturday, March 1st, 2008

Oke, give ur reason to pwned some machine:

1. Show-off

2. Penasaran

3. Iseng

4. Untuk keuntungan pribadi

5. Politik

6. Fun

7. Underground War

8. Mencari lahan jajahan

9. Information Warfare

10. …

Itu kira-kira beberapa alasan kenapa seseorang/suatu tim melakukan penetrasi ke suatu mesin, atau bahasa kerennya hacking. Motivasi lainnya tentu masih banyak lagi.

Alasan pertama umumnya merupakan pintu masuk ke dunia hacking. Show-off. Yap. Hampir semua hacker hebat dan terkenal belajar dari bawah, dari komunitas underground. Dalam komunitas bisa saling share, dan yang pasti saling show-off. Ada yang show-off ke teman, ataupun langsung ke khalayak ramai dengan aksi deface.

Alasan berikutnya karena penasaran. Bagaimana caranya bisa mengganti halaman depan website seperti itu?!bagaimana caranya bisa mendapatkan informasi credit card?!bagaimana caranya bisa masuk ke sistem pemerintah?!bagaimana caranya membuat virus/worm?!dengan modal rasa penasaran itulah dunia computer security berkembang. Dengan modal rasa penasaran maka seseorang menjalani tingkatan dari wannabe, script kiddies, hingga menujus tingkatan old-skewl hacker.

(more…)