Gooscan – Automated Google Hacking Tool

Monday, November 3rd, 2008

Gooscan is a tool that automates queries against Google search appliances, but with a twist. These particular queries are designed to find potential vulnerabilities on web pages. Think “cgi scanner” that never communicates directly with the target web server, since all queries are answered by a Google appliance, not by ...

New Google bugs empower phishermen

Saturday, October 11th, 2008

Google's Gmail service suffers from security flaws that make it trivial for attackers to create authentic-looking spoof pages that steal users' login credentials, a security expert has demonstrated. Google Calendar and other sensitive Google services are susceptible to similar tampering.A proof-of-concept (PoC) attack, published by Adrian Pastor of the GNUCitizen ...

Google Chrome vulnerable to carpet-bombing flaw

Tuesday, September 2nd, 2008

Google’s shiny new Web browser is vulnerable to a carpet-bombing vulnerability that could expose Windows users to malicious hacker attacks.Just hours after the release of Google Chrome, researcher Aviv Raff discovered that he could combine two vulnerabilities — a flaw in Apple Safari (WebKit) and a Java bug discussed at ...

Google announces Google Chrome web browser

Tuesday, September 2nd, 2008

Google has confirmed that it is launching Google Chrome, a new web browser. Rumours of a Google browser project had been around since 2004, but a posting on the Blogoscoped site has turned those rumours into something much more tangible. It reported on the arrival of a 38 page comic ...

Cool new snoop tool for HR people

Friday, August 22nd, 2008

Dutch Valleywag reader Dirk Dijksma has come up with a clever twist on the old metasearch engine: He's collected all the sites that HR people use to suss out job applicants, and put them into one page called CVGadget with expanding/collapsing widgets that only show the top few of each ...