Author Topic: What is searchable is a security risk!  (Read 2976 times)

0 Members and 1 Guest are viewing this topic.

Offline polonus

  • Avast Überevangelist
  • Probably Bot
  • *****
  • Posts: 33925
  • malware fighter
What is searchable is a security risk!
« on: August 11, 2005, 11:32:36 AM »
Hi forum folks,

Google can be  a secific hacking tool in the hands of some. To know more, read this tutoral http://www.enterpriseitplanet.com/security/features/article.php/3354231 .
So when owner of a website etc. be careful that you check your outgoing links for not giving away security sensitive information. For counter measures: http://www.google.com/remove.html

Yours truly,

polonus
« Last Edit: August 11, 2005, 11:35:42 AM by polonus »
Cybersecurity is more of an attitude than anything else. Avast Evangelists.

Use NoScript, a limited user account and a virtual machine and be safe(r)!

Offline Eddy

  • Avast Evangelist
  • Maybe Bot
  • ***
  • Posts: 31079
  • Watching (over?) you
    • Malware removal, Biljart and other things.
Re: What is searchable is a security risk!
« Reply #1 on: August 11, 2005, 12:28:42 PM »
For your information, that is really old news.
The vulnarabillity has been patch several months ago already.

Offline polonus

  • Avast Überevangelist
  • Probably Bot
  • *****
  • Posts: 33925
  • malware fighter
Re: What is searchable is a security risk!
« Reply #2 on: August 11, 2005, 01:14:16 PM »
Hi Eddy,

Of course, this is just an example, there are enough information left if you know what to look for. I am not in to 0 day exploits, this was just a dated example. But I have seen what people could do with a browser tool and a special weak cgi list.
If you want to see what google can do use niktoogle. http://www.frame4.com/cms/news/downloads/niktoogle_1.0_20030606524.html

greets,

polonus
Cybersecurity is more of an attitude than anything else. Avast Evangelists.

Use NoScript, a limited user account and a virtual machine and be safe(r)!

Offline DavidR

  • Avast Überevangelist
  • Certainly Bot
  • *****
  • Posts: 89201
  • No support PMs thanks
Re: What is searchable is a security risk!
« Reply #3 on: August 11, 2005, 03:18:43 PM »
Web site developers should exclude what they don't want checked by the search bots like google using robots.txt file.

User-agent: *
Disallow: /cgi-bin/

Or any other locations that they don't want indexed. Google isn't responsible for poor site security. At least Google is giving a way to remove data that it has indexed.
Windows 10 Home 64bit/ Acer Aspire F15/ Intel Core i5 7200U 2.5GHz, 8GB DDR4 memory, 256GB SSD, 1TB HDD/ avast! free 24.4.6112 (build 24.4.9067.762) UI 1.0.803/ Firefox, uBlock Origin, uMatrix/ MailWasher Pro/ Avast! Mobile Security