<?xml version="1.0" encoding="UTF-8"?> <rss
version="2.0"
xmlns:content="http://purl.org/rss/1.0/modules/content/"
xmlns:wfw="http://wellformedweb.org/CommentAPI/"
xmlns:dc="http://purl.org/dc/elements/1.1/"
xmlns:atom="http://www.w3.org/2005/Atom"
xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
> <channel><title>gHacks Technology News &#124; Latest Tech News, Software And Tutorials &#187; google hacks</title> <atom:link href="http://www.ghacks.net/tag/google-hacks/feed/" rel="self" type="application/rss+xml" /><link>http://www.ghacks.net</link> <description>A technology news blog covering software, mobile phones, gadgets, security, the Internet and other relevant areas.</description> <lastBuildDate>Fri, 10 Feb 2012 20:51:26 +0000</lastBuildDate> <language>en</language> <sy:updatePeriod>hourly</sy:updatePeriod> <sy:updateFrequency>1</sy:updateFrequency> <generator>http://wordpress.org/?v=3.3.1</generator> <atom:link rel="hub" href="http://pubsubhubbub.appspot.com"/><atom:link rel="hub" href="http://superfeedr.com/hubbub"/> <item><title>Why You Should Check Your Public Dropbox Folders</title><link>http://www.ghacks.net/2011/04/27/why-you-should-check-your-public-dropbox-folders/</link> <comments>http://www.ghacks.net/2011/04/27/why-you-should-check-your-public-dropbox-folders/#comments</comments> <pubDate>Wed, 27 Apr 2011 09:08:45 +0000</pubDate> <dc:creator>Martin Brinkmann</dc:creator> <category><![CDATA[Security]]></category> <category><![CDATA[The Web]]></category> <category><![CDATA[dropbox]]></category> <category><![CDATA[dropbox photos]]></category> <category><![CDATA[dropbox public]]></category> <category><![CDATA[dropbox security]]></category> <category><![CDATA[google hacks]]></category> <guid
isPermaLink="false">http://www.ghacks.net/?p=44417</guid> <description><![CDATA[Here is a task for you. Go to Google, Bing or your preferred search engine, and enter the following search term into the search box at the top: site:http://www.dropbox.com/gallery/ What&#8217;s the result? Right, 25k of unprotected Dropbox photo galleries. You can click on any of the links to see the contents of the selected gallery [...]]]></description> <content:encoded><![CDATA[<p>Here is a task for you. Go to Google, Bing or your preferred search engine, and enter the following search term into the search box at the top: <strong>site:http://www.dropbox.com/gallery/</strong></p><p>What&#8217;s the result? Right, 25k of unprotected Dropbox photo galleries. You can click on any of the links to see the contents of the selected gallery or folder right in your web browser. (Please note that we are not saying that Dropbox is not doing enough to inform users about that fact)</p><p>Even better, you can combine the default search with additional parameters, e.g. wallpapers, to find themed photos on Dropbox.</p><p>Second task. Search for <strong>site:http://www.dropbox.com/s/</strong> or <strong>site:http://dl.dropbox.com/</strong> and let me know what you find. Right, another batch of public folders hosted on Dropbox, again with the possibility to combine the standard search phrase with custom keywords for filtered results.</p><p><img
src="http://www.ghacks.net/wp-content/uploads/2011/04/dropbox-public-photos-570x555.png" alt="dropbox public photos" title="dropbox public photos" width="570" height="555" class="alignnone size-medium wp-image-44418" /></p><p>I&#8217;d assume that at least some of Dropbox&#8217;s users do not know that their photos and data may be publicly accessible on the Internet. You see, the Dropbox photo folder, or more precisely its subfolders, is public by design. The Dropbox help explains:</p><blockquote><p>The Photos folder automatically creates online galleries. Any image files you move or copy to your Photos folder are automatically included in an online gallery anyone can view from the Dropbox website. People can download the photos or view them as a slideshow. Because you don&#8217;t have to deal with uploaders or uploading files through a website one by one, the Photos folder is the easiest way to make your images accessible online.</p></blockquote><p>If you use the Dropbox photo folder for your pictures, you make them accessible for anyone, which includes search engine bots. The only option for you is to store the photos in a different folder to block this from happening. For that, you need to create a new photo folder in your Dropbox structure and use that folder from then on to store your images. The gallery feature however is not available in that new folder which means that other Dropbox users that you share the url with will not be able to see the photos in a gallery in their web browser.</p><p>Two folders are public by default. The photo folder and the Public folder. If you copy files into either one, you make them accessible for everyone.</p><p>You can share additional folders which are then however only accessible by users that you specify during creation.</p><p>Dropbox users may want to check their public folders to make sure that the data stored inside should indeed be public. You can move the data out of the public folders if that is not the case. (via <a
href="http://stadt-bremerhaven.de/dropbox-denkt-mal-dran-dass-der-photo-ordner-oeffentlich-ist">Caschy</a>)</p> ]]></content:encoded> <wfw:commentRss>http://www.ghacks.net/2011/04/27/why-you-should-check-your-public-dropbox-folders/feed/</wfw:commentRss> <slash:comments>36</slash:comments> </item> <item><title>Access Subscription Based Newspaper Articles For Free [Google Hacks]</title><link>http://www.ghacks.net/2010/01/09/access-subscription-based-newspaper-articles-for-free-google-hacks/</link> <comments>http://www.ghacks.net/2010/01/09/access-subscription-based-newspaper-articles-for-free-google-hacks/#comments</comments> <pubDate>Sat, 09 Jan 2010 09:35:29 +0000</pubDate> <dc:creator>Martin Brinkmann</dc:creator> <category><![CDATA[The Web]]></category> <category><![CDATA[financial times]]></category> <category><![CDATA[Google]]></category> <category><![CDATA[google hacks]]></category> <category><![CDATA[wall street journal]]></category> <category><![CDATA[wsj]]></category> <guid
isPermaLink="false">http://www.ghacks.net/?p=22156</guid> <description><![CDATA[Some newspapers and other websites display only news excerpts on their website asking the visitor to subscribe to the newspaper or magazine to read the rest of the article. The Wall Street Journal is probably the most popular newspaper that makes use of this subscription system but there are others like the Financial Times. Most [...]]]></description> <content:encoded><![CDATA[<p>Some newspapers and other websites display only news excerpts on their website asking the visitor to subscribe to the newspaper or magazine to read the rest of the article. The Wall Street Journal is probably the most popular newspaper that makes use of this subscription system but there are others like the Financial Times.</p><p>Most users do not want to subscribe to the newspaper website just to read that one article which is probably the reason why some where looking for ways around this content restriction.</p><p>Amit over at Digital Inspiration has discovered an easy option to access limited content on newspaper websites.</p><p><span
id="more-22156"></span>Two steps need to be taken to read the full article.</p><ul><li>Copy the url of the article</li><li>Paste the url into the Google Search engine.</li></ul><p>The article should show up as the first search result. A click on that will load the full article. It sometimes works better with the title instead of the url but the results are usually the same.</p><p><object
width="425" height="344"><param
name="movie" value="http://www.youtube.com/v/5L-y459JqsA&#038;rel=0&#038;color1=0xd6d6d6&#038;color2=0xf0f0f0&#038;hl=en_US&#038;feature=player_embedded&#038;fs=1"></param><param
name="allowFullScreen" value="true"></param><param
name="allowScriptAccess" value="always"></param><embed
src="http://www.youtube.com/v/5L-y459JqsA&#038;rel=0&#038;color1=0xd6d6d6&#038;color2=0xf0f0f0&#038;hl=en_US&#038;feature=player_embedded&#038;fs=1" type="application/x-shockwave-flash" allowfullscreen="true" allowScriptAccess="always" width="425" height="344"></embed></object></p><p>Why is that working right now? One of the requirements of becoming a subscription based site in Google News is to allow access full Googlebot to the website in question which will happily index the site&#8217;s contents in Google&#8217;s vast index.</p> ]]></content:encoded> <wfw:commentRss>http://www.ghacks.net/2010/01/09/access-subscription-based-newspaper-articles-for-free-google-hacks/feed/</wfw:commentRss> <slash:comments>5</slash:comments> </item> <item><title>Doing some real google hacking</title><link>http://www.ghacks.net/2005/10/21/doing-some-real-google-hacking/</link> <comments>http://www.ghacks.net/2005/10/21/doing-some-real-google-hacking/#comments</comments> <pubDate>Fri, 21 Oct 2005 14:14:47 +0000</pubDate> <dc:creator>Martin Brinkmann</dc:creator> <category><![CDATA[Search Engines]]></category> <category><![CDATA[google hacking]]></category> <category><![CDATA[google hacks]]></category> <category><![CDATA[google tips]]></category> <guid
isPermaLink="false">http://www.deny.de/ghacks/?p=44</guid> <description><![CDATA[Until now we have concentrated our efforts ...]]></description> <content:encoded><![CDATA[<p>Until now we have concentrated our efforts on simple file finding methods using the google search engine and certain search commands.</p><p>Our goal now is to give you a wider understanding of a thing called &#8220;google hacking&#8221;. This time we will give you a basic understanding of whats possible and how to achieve this.</p><p>Before we start with the essay I want you to make sure that you understand that every move you make on the internet leaves traces that can be used to identify you. I will write a tutorial about &#8220;anonymous surfing&#8221; soon.  This article encourages no one to hack into servers that you don´t own or have the permission to hack.</p><p><span
id="more-44"></span></p><p>Lets start by asking some questions. Besides Google and the knowledge of search commands &#8211; what do you need to do some hacking with google ?</p><p>The answer is simple, you need a vulnerability that you can search for. There are lots of sites that posts vulnerabilities, also known as exploits. I will name two that you can use as a start, you know how to use google to find more.</p><p><a
href="http://packetstormsecurity.org/files/tags/exploit" target="_blank">Packetstormsecurity.org</a><br
/> <a
href="http://www.securiteam.com/exploits/" target="_blank">Securiteam.com</a></p><p>Lets use the packetstorm site as an example. When you open it you see lots of tables starting with filename ending with MD5 Checksum. Whats interesting to us is a) the filename and b) the description.</p><p></p><p>The description gives a short exerpt of what this exploit is about. Interessing for google hacking are only eploits that are web based or web connected. That means the first exploit for winrar 3.5 is not what we are looking for. The second in the list is more of our liking.</p><p>The description read &#8220;e107 content management system versions 0.617, 0.6171, 0.6172 resetcore.php utility SQL Injection, login bypass, remote code execution, and cross site scripting exploit.&#8221;</p><p>When we click the filename we see a textfile with lots of information about this exploit. I won´t give you information about the type of exploit (sql injection) because this time I only explain how you find new exploits and search for them using google.</p><p>The interesting line for us atm is &#8220;move to http://[target]/[path]/e107/e107_files/resetcore.php&#8221; and &#8220;e107 0.617 stable/ 0.6171 / 0.6172&#8243;</p><p>we see a filename and some folder names. in the first one and release numbers in the second one.</p><p>Using this information we open up google and enter one of the following strings, think of more if you like.</p><p>inurl:resetcore.php<br
/> &#8220;e107 powered website v0.617&#8243;</p><p>If you search for the first line make sure you check the version of the script first, second line automatically looks for the script that is vulnerable, you will have to navigate manually to the resetcore.php file</p><p>Thats all there is to do, you know now where to look for new vulnerabilities and how to use google to find vulnerable files.</p><p>There are other ways of looking for exploits, but those are for the advanced users, they find their own, for example by looking at the source code files.</p><p>If you really want to learn more try to find some sites with other exploits using google. You can also lookup what SQL Injection for instance means.</p><p>let me know if you have any problems following this article or comments about it.</p> ]]></content:encoded> <wfw:commentRss>http://www.ghacks.net/2005/10/21/doing-some-real-google-hacking/feed/</wfw:commentRss> <slash:comments>0</slash:comments> </item> <item><title>O’Reilly Google Hacks Code Online</title><link>http://www.ghacks.net/2005/10/17/o%e2%80%99reilly-google-hacks-code-online/</link> <comments>http://www.ghacks.net/2005/10/17/o%e2%80%99reilly-google-hacks-code-online/#comments</comments> <pubDate>Mon, 17 Oct 2005 15:47:58 +0000</pubDate> <dc:creator>Martin Brinkmann</dc:creator> <category><![CDATA[Search Engines]]></category> <category><![CDATA[google codes]]></category> <category><![CDATA[google hacking]]></category> <category><![CDATA[google hacks]]></category> <category><![CDATA[o reilly]]></category> <guid
isPermaLink="false">http://www.deny.de/ghacks/?p=36</guid> <description><![CDATA[O&#226;��Reilly makes available 100 of their Google ...]]></description> <content:encoded><![CDATA[<p>O&#8217;Reilly makes available 100 of their Google Hacks.  They sorted them out in categories like Advanced Web, Images, News and Groups, Add-Ons and Gmail.</p><p>Most of the hacks are pretty basic stuff, for example hack 6 &#8220;Check Your Spelling&#8221;, and the explanation &#8220;Google sometimes takes the liberty of &#8220;correcting&#8221; what it perceives is a spelling error in your query&#8221; Not such a great hack if you ask me.</p><p><span
id="more-36"></span>Most of the hacks published there are probably not hacks but advices. The advanced user should know most of them if he uses that services, so nothing new for us.</p><p>The inexperienced user has the chance to learn some new concepts, but he might receive the same level of insight from <a
href="http://www.google.com/support/websearch/bin/answer.py?answer=134479">googles help pages</a>.</p><p>Update:The page on the O&#8217;Reilly website is no longer available, which leaves Google&#8217;s own help page as the only source for this information.</p><p>Google divides the information on multiple pages. The basic search help page offers tips for better searches. Tips on the page include keeping it simple by using as few terms as possible and choosing descriptive words. Results will for instance be better if you are searching for headaches instead of &#8220;my head hurts&#8221;.</p><p>A click on the more search tips link at the bottom of the page opens a page that lists some of the operators that are supported by Google Search.</p><ul><li>Phrase Search: Use double quotes to ask Google to consider the exact phrase, e.g. &#8220;ghacks technology news&#8221;.</li><li>Search single word exactly: Use double quotes for this as well, e.g. &#8220;headaches&#8221;</li><li>Search within a specific site: Use the site: command for that, e.g. site:ghacks.net</li><li>Exclude terms: Use the minus sign to exclude terms from the search, e.g. apples -green</li><li>Use wildcards: Add * where appropriate, for instance Mercedes Benz model *</li><li>The Or operator: Google will only consider one of the OR terms, e.g. New York Mets 2010 OR 2011</li><li></li></ul> ]]></content:encoded> <wfw:commentRss>http://www.ghacks.net/2005/10/17/o%e2%80%99reilly-google-hacks-code-online/feed/</wfw:commentRss> <slash:comments>0</slash:comments> </item> <item><title>Using Google to find Movies</title><link>http://www.ghacks.net/2005/10/11/using-google-to-find-movies/</link> <comments>http://www.ghacks.net/2005/10/11/using-google-to-find-movies/#comments</comments> <pubDate>Tue, 11 Oct 2005 10:44:03 +0000</pubDate> <dc:creator>Martin Brinkmann</dc:creator> <category><![CDATA[Search Engines]]></category> <category><![CDATA[Google]]></category> <category><![CDATA[google hacks]]></category> <category><![CDATA[google movie search]]></category> <guid
isPermaLink="false">http://www.deny.de/ghacks/?p=13</guid> <description><![CDATA[Some days ago i told you how to use the goo...]]></description> <content:encoded><![CDATA[<p>Some days ago i told you how to use the Google search to find Mp3 files and Ebooks.  Today I will describe how to use similar searches to find movies using Google searches.</p><p>To achieve this we will borrow some of the operators from the Mp3 Search, namely -inurl:htm -inurl:html  intitle:&#8221;index of&#8221;</p><p>You could also add &#8220;-inurl:php&#8221; to avoid those nasty index.php files as well.</p><p>Lets take a look at what those operators do:</p><li>inurl:htm &#8211; This one tells the search engine to only include results that have the term in their web address</li><li> intitle:&#8221;index of&#8221; &#8211; This one does nearly the same thing as the operator above, with the difference that it will limit the results to pages that have the term in their page title</li><p>Now we could simply add the known movie file extensions like mpg, avi, wmv to the search and look at the first results.</p><p>We probably want to find special movies, like TV commercials, movies with a special actor in it, adult movies aso. What you do is to simply add what you are looking for to the search. For example movies with Claudia Schiffer would be found with the following search</p><p>-inurl:htm -inurl:html  -inurl:php intitle:&#8221;index of? (mpg|avi|wmv) &#8220;Claudia Schiffer&#8221;</p><p>The (mpg|avi|wmv) operator can also be written (mpg or avi or wmv).</p><p><strong>Update:</strong> You can still use the operators and searches to find media on the Internet. You may want to add new video formats to the search though, for instance mkv, ogg or flv to increase the number of search results that are displayed by the search engine.</p><p>You can also exclude file types from the results by using the minus operator. The operator -ogg would for instance exclude all results with off files in the search results.</p> ]]></content:encoded> <wfw:commentRss>http://www.ghacks.net/2005/10/11/using-google-to-find-movies/feed/</wfw:commentRss> <slash:comments>43</slash:comments> </item> <item><title>Using Google to find free Ebooks</title><link>http://www.ghacks.net/2005/10/09/using-google-to-find-free-ebooks/</link> <comments>http://www.ghacks.net/2005/10/09/using-google-to-find-free-ebooks/#comments</comments> <pubDate>Sun, 09 Oct 2005 13:57:03 +0000</pubDate> <dc:creator>Martin Brinkmann</dc:creator> <category><![CDATA[Search Engines]]></category> <category><![CDATA[Google]]></category> <category><![CDATA[google ebook search]]></category> <category><![CDATA[google hacks]]></category> <guid
isPermaLink="false">http://www.deny.de/ghacks/?p=17</guid> <description><![CDATA[By using the knowledge we gained from previ...]]></description> <content:encoded><![CDATA[<p>By using the knowledge we gained from previous articles on how to find mp3 files using the Google search engine we will be able to easily find other files as well using almost the same search techniques.</p><p>The main ebook format is .pdf, but ebooks also are delivered as .chm, doc and even .txt format. That means we will have to include at least pdf, doc and chm to get good results in our searches. Ebooks are unfortunately sometimes packed, that means you probably would like to include zip and rar as well to your search</p><p><code>(pdf|chm|doc|txt|zip|rar)</code></p><p>To get good results we need to exclude the following  -inurl:htm -inurl:html</p><p>To search for directories that contain ebooks you use the following search string.</p><p><code>-inurl:htm -inurl:asp -inurl:html (“index of|"last modified"|"parent of")  AND ("ebook"|"ebooks"|"book"|"books") AND (pdf|chm|doc|txt|zip|rar) AND "Oct-2005"</code></p><p>You should really add another keyword, a title, author or publisher to get better results than that general search. Simply add the keyword at the end of your search using +&#8221;keyword&#8221;</p><p><strong>Update:</strong> Here are explanations for the commands listed on this page:</p><ul><li>-inurl:htm -inurl:asp -inurl:html (This one forces the search engine to only include pages in the results that do not have htm, asp or html in their urls.</li><li>(“index of|&#8221;last modified&#8221;|&#8221;parent of&#8221;)  AND (&#8220;ebook&#8221;|&#8221;ebooks&#8221;|&#8221;book&#8221;|&#8221;books&#8221;) AND (pdf|chm|doc|txt|zip|rar) AND &#8220;Oct-2005&#8243; (a large command with several operators tied together. It basically tells Google to only include pages in the results that contain at least one phrase of each, for instance index of AND ebook AND pdf AND Oct-2005.</li></ul><p>You can naturally modify the parameters to suite your needs better. You could for instance change the date, remove a phrase or add a new file extension to the mix for more versatility.</p> ]]></content:encoded> <wfw:commentRss>http://www.ghacks.net/2005/10/09/using-google-to-find-free-ebooks/feed/</wfw:commentRss> <slash:comments>6</slash:comments> </item> <item><title>Using Google to find Free Mp3 files 2</title><link>http://www.ghacks.net/2005/10/08/using-google-to-find-free-mp3-files-2/</link> <comments>http://www.ghacks.net/2005/10/08/using-google-to-find-free-mp3-files-2/#comments</comments> <pubDate>Sat, 08 Oct 2005 08:28:43 +0000</pubDate> <dc:creator>Martin Brinkmann</dc:creator> <category><![CDATA[Search Engines]]></category> <category><![CDATA[Google]]></category> <category><![CDATA[google hacks]]></category> <category><![CDATA[google mp3 search]]></category> <category><![CDATA[google search]]></category> <guid
isPermaLink="false">http://www.deny.de/ghacks/?p=15</guid> <description><![CDATA[Two days ago i gave you some basics on how to f...]]></description> <content:encoded><![CDATA[<p>Two days ago I gave you some basics on how to <a
href="http://www.ghacks.net/2005/10/06/using-google-to-find-free-mp3-files/">find mp3 files using the Google search</a> engine. The commands described in the previous post were basic, but sufficient enough to find music that is freely hosted on web servers that are publicly accessible. Today I will use the basic concept to enhance the searches even more and get rid of some of the false hits that are still displayed while we search for mp3 files.</p><p>The search string that we constructed looked like the following:</p><p><span
id="more-15"></span><code>-inurl:htm -inurl:html “index of mp3 “Oct-2005″ “Fresh Fantasy Dizzy Singers</code></p><p>There are more filetypes that we should exclude from our searches to get better results, those are:</p><p><code>php, asp, doc, pdf, shtml and txt</code></p><p>You may want to add additional file types and extensions. Just add -inurl:extension to your search query to exclude them from search.</p><p>To exclude these as well we use the following search string:</p><p><code>-inurl:htm -inurl:html -inurl:php -inurl:asp -inurl:doc -inurl:pdf -inurl:shtml -inurl:txt “index of mp3 “Oct-2005″ “Fresh Fantasy Dizzy Singers</code></p><p>We also don´t want the following results to appear in our search results:</p><p><code>ringtones, lyric and playlists</code></p><p>That means we exclude those as well and get:</p><p><code>-inurl:htm -inurl:html -inurl:php -inurl:asp -inurl:doc -inurl:pdf -inurl:shtml -inurl:txt “index of mp3 -ringtone -lyric -playlist “Oct-2005″ “Fresh Fantasy Dizzy Singers/code></p><p>You can again add keywords that you do not want to see in your search results. Just use the -keyword parameter for that.</p><p>The last step is to add more possibly words that appear in the directory structure, those are</p><p><code>"parent of" and "last modified"</code></p><p>Our final searchstring now looks like this:</p><p><code>-inurl:htm -inurl:html -inurl:php -inurl:asp -inurl:doc -inurl:pdf -inurl:shtml -inurl:txt AND (“index of|"last modified"|"parent of") AND mp3 -ringtone -lyric -playlist AND “Oct-2005″ AND “dizzy singers</code></p><p><img
src="http://www.ghacks.net/wp-content/uploads/2005/10/google-advanced-mp3-search-600x566.png" alt="google advanced mp3 search" title="google advanced mp3 search" width="600" height="566" class="alignnone size-medium wp-image-45752" /></p><p>You can of course exclude more search types from your searches, this depends on the circumstances, maybe you don´t want audiobooks to be displayed, or only audiobooks..<br
/> I think you have the basic understanding now to enhance the searches yourself and get pretty good results using google.</p> ]]></content:encoded> <wfw:commentRss>http://www.ghacks.net/2005/10/08/using-google-to-find-free-mp3-files-2/feed/</wfw:commentRss> <slash:comments>12</slash:comments> </item> </channel> </rss>
