|
|||||||||||
|
Re: Website "Scanner"
From: <backed.up.by.2048.bit.encryption(at)hushmail.com>
Date: Wed Jan 08 2003 - 18:22:04 EST -----BEGIN PGP SIGNED MESSAGE----- On Wed, 08 Jan 2003 14:21:16 -0800 sullo@cirt.net wrote: >2) take all the files an mix them with all the directories from
Yes, this is more the idea. We are not looking for vulns. or xploits, rather trying to intelligently "guess" what else is in that directory. Either through dictionary use or other use. For example the following is publicly accessible: http://www.microsoft.com/new_products/bigwinner2003.html We want to find out what else might be in "new_products" so we plug in say the words "big" "winner" "2003" and let our dictionary spin: biggerwinner2003.html - nothing
etc. Combining the dictionary and words from a specific site or files visible publicly, we try to guess the names of whatever else might be in that directory. You can guess and hit on files that are not intended for public consumption. -----BEGIN PGP SIGNATURE-----
wnUEARECADUFAj4csi8uHGJhY2tlZC51cC5ieS4yMDQ4LmJpdC5lbmNyeXB0aW9uQGh1
c2htYWlsLmNvbQAKCRDEHQGvBp4eRGE4AJ4joBLhRlZYcBX7sxnOmgYPfbtYOgCfUFun
Y0PA+csb++5g+pM+c/0Bkok=
Big $$$ to be made with the HushMail Affiliate Program: https://www.hushmail.com/about.php?subloc=affiliate&l=427 Received on Wed Jan 8 18:52:49 2003 This archive was generated by hypermail 2.1.8 : Wed Aug 23 2006 - 14:07:46 EDT |
||||||||||
|
|||||||||||