Pantek Library
Hosting Provided By
CybrHost
High Speed Hosting

Re: Website "Scanner"

From: Nelson Sampaio Araujo Junior <nelson(at)lunenetworks.com.br>
Date: Wed Jan 08 2003 - 20:51:51 EST

Well,

That sounds you're not doing something legal with it. If you are the owner of the server/system, just dir or list them. Another hint is that if the administrator has disabled the Index option, its probably because you can't do it (legally speaking).

>
> -----BEGIN PGP SIGNED MESSAGE-----
rather trying to intelligently "guess" what else is in that directory. Either through dictionary use or other use. For example the following is publicly accessible:
>
> http://www.microsoft.com/new_products/bigwinner2003.html
the words "big" "winner" "2003" and let our dictionary spin:
>
> biggerwinner2003.html - nothing
publicly, we try to guess the names of whatever else might be in that directory.
>
> You can do this manually with small time sites and obvious file names e.g.
index1.html...index2.html etc. Even annualreport2002.html is visible, try annualreport.2003.html
>
> You can guess and hit on files that are not intended for public
consumption.
>
> If it can be automated with user input for obvious keywords, you probably
could strike many interesting and sensitive files in the directory.
>
> -----BEGIN PGP SIGNATURE-----
Received on Thu Jan 9 08:45:01 2003

This archive was generated by hypermail 2.1.8 : Wed Aug 23 2006 - 14:07:47 EDT


Contact Us  Legal Notices  Order Services Online 
Pantek Home  Privacy Policy  IT news  Site Map  Pantek Library